nerdexam
Broadcom-VMware

2V0-13.25 · Question #14

During the design workshop, the customer stated the following requirement: The solution must comply with the organization's security standards. Which two design decisions should be included in the…

The correct answer is D. Use an SHA-2 algorithm or higher when signing certificates. E. Establish an operations practice to capture and update the thumbprint of the NSX Local Manager. SHA-2 or higher certificate signing ensures cryptographic compliance with modern security Maintaining updated certificate thumbprints is a crucial operational security task to prevent man- in- the-middle attacks between NSX managers. These measures directly align with security…

Section 4 – Secure VMware Cloud Foundation Solutions

Question

During the design workshop, the customer stated the following requirement:

The solution must comply with the organization's security standards. Which two design decisions should be included in the logical design for the workload domain? (Choose two.)

Options

  • AUse large-size NSX Edge virtual appliances to account for the additional firewall rules.
  • BEnable VM Monitoring for each workload within the cluster.
  • CEnable Inter-SR iBGP routing.
  • DUse an SHA-2 algorithm or higher when signing certificates.
  • EEstablish an operations practice to capture and update the thumbprint of the NSX Local Manager

How the community answered

(35 responses)
  • A
    6% (2)
  • B
    11% (4)
  • C
    3% (1)
  • D
    80% (28)

Explanation

SHA-2 or higher certificate signing ensures cryptographic compliance with modern security Maintaining updated certificate thumbprints is a crucial operational security task to prevent man- in- the-middle attacks between NSX managers. These measures directly align with security hardening guidance outlined in the VCF design

Topics

#certificate signing#NSX thumbprint#security standards#logical design decisions

Community Discussion

No community discussion yet for this question.

Full 2V0-13.25 Practice