Which esxcli command lists the firewall configuration on ESXi hosts?
A. vsipioct1 getrules -f <filter-name>
B. esxcli network firewall ruleset list
C. esxcli network firewall rules
D. vsipioct1 getrules -filter <filter-name>
正解:B
解説: (Pass4Test メンバーにのみ表示されます)
質問 2:
Refer to the exhibit.

A security administrator is configuring a time window to create a time-based distributed firewall rule. While configuring the time window, an error displayed as shown in the exhibit. Which action will resolve the problem?
A. Change the time windows frequency
B. Restart me NTP service on the ESXl host.
C. Change the time window interval.
D. Configure the ESXl host to use a remote NTP server.
正解:D
解説: (Pass4Test メンバーにのみ表示されます)
質問 3:
A Security Administrator needs to update their NSX Distributed IDS/IPS policy to detect new attacks with critical CVSS scoring that leads to credential theft from targeted systems.
Which actions should you take?
A. * Update Distributed IDS/IPS signature database
* Edit your profile from Security > Distributed IDS > Profiles
* Select Critical severity, filter on attack type and select Successful Credential Theft Detected
* Check the profile is applied in Distributed IDS rules
B. * Edit your Distributed IDS rule from Security > Distributed IDS/IPS > Rules
* Filter on attack type and select Successful Credential Theft Detected
* Update Mode to detect and prevent
* Click on gear icon and change direction to OUT
C. * Create a new profile from Security > Distributed IDS > Profiles
* Select Critical severity, filter on attack type and select Successful Credential Theft Detected
* Check the profile is applied In Distributed IDS rules
* Monitor Distributed IDS alerts to validate changes are applied
D. * Edit your Distributed IDS rule from Security > Distributed IDS/IPS > Rules
* Filter on attack type and select Successful Credential Theft Detected
* Update Mode to detect and prevent
* Click on gear icon and change direction to IN-OUT
正解:A
解説: (Pass4Test メンバーにのみ表示されます)
質問 4:
An NSX administrator has been tasked with deploying a NSX Edge Virtual machine through an ISO image.
Which virtual network interface card (vNIC) type must be selected while creating the NSX Edge VM allow participation in overlay and VLAN transport zones?
A. VMXNET3
B. Flexible
C. e1000
D. VMXNET2
正解:A
解説: (Pass4Test メンバーにのみ表示されます)
質問 5:
Which vCenter component is used by the NSX Manager to deploy the Partner Service VM on every host of a cluster configured for guest introspection?
A. Component Manager
B. ESXi Agent Manager (EAM)
C. Auto Deploy
D. Update Manager (VUM)
正解:A
解説: (Pass4Test メンバーにのみ表示されます)
質問 6:
An administrator is creating the first distributed firewall rules for a company's salts department. What is the first object that must be created in the distributed firewall'
A. firewall file
B. firewall folder
C. firewall service
D. firewall policy
正解:D
解説: (Pass4Test メンバーにのみ表示されます)
質問 7:
What component in a transport node receives the firewall configuration from the central control plane?
A. nsx-ccp
B. nsx-proxy
C. nsx-mpa
D. nsx-appl-proxy
正解:C
解説: (Pass4Test メンバーにのみ表示されます)
Uehara -
絶妙なバランスの解説が分かりやすい5V0-41.21試験対策書で本当にPass4Testに助かられました。ありがとうございました。