Broadcom-VMware
2V0-41.20 · Question #30
A company is deploying a NSX-T Data Center micro-segmentation in their vSphere environment to secure a simple application composed of web, app, and database tiers. The naming convention will be…
The correct answer is B. Group all by means of tags membership. https://docs.vmware.com/en/VMware-NSX-T-Data-Center/3.1/administration/GUID-358DF469- 75C8-48C4-B0E2-279E55C7BB3E.html?hWord=N4IghgNiBcIC5gOYGcQF8g
Section 2 – Planning and Design
Question
A company is deploying a NSX-T Data Center micro-segmentation in their vSphere environment to secure a simple application composed of web, app, and database tiers. The naming convention will be:
- WKS-WEB-SRV-XXX
- WKY-APP-SRR-XXX
- WKI-DB-SRR-XXX
What is the optimal way to group them in order to enforce security policies from NSX-T Data Center?
Options
- ACreate an Ethernet based security policy.
- BGroup all by means of tags membership.
- CUse Edge as a firewall between tiers.
- DDo a service insertion to accomplish the task.
How the community answered
(55 responses)- A7% (4)
- B76% (42)
- C13% (7)
- D4% (2)
Explanation
https://docs.vmware.com/en/VMware-NSX-T-Data-Center/3.1/administration/GUID-358DF469- 75C8-48C4-B0E2-279E55C7BB3E.html?hWord=N4IghgNiBcIC5gOYGcQF8g
Topics
#micro-segmentation#security groups#tags#grouping policy
Community Discussion
No community discussion yet for this question.