2V0-642 Exam Questions
292 real 2V0-642 exam questions with expert-verified answers and explanations. Page 5 of 6.
- Question #202
An administrator has implemented VMware NSX on a leaf-spine underlay. They have deployed the following in the data center: * Two racks for a management cluster that is not prepared...
- Question #203
Which is a prerequisite for deploying an Edge Service Gateway?
- Question #204
A virtualized application needs access to a physical database. Both servers are on the 172.168.3.0/24 subnet. NSX has been deployed across the entire virtual environment. What meth...
- Question #205Section 6 – Administer and Analyze NSX
An NSX administrator notices that when configuring Flow Monitoring, the graphs do not include the IPFix flows. Where are these flows displayed?
Flow MonitoringIPFixflow collectionNSX monitoring - Question #207Section 4 – Configure and Administer NSX Logical Security Services
What is a requirement of NSX Data Security?
NSX Data SecurityGuest Introspectiondata security requirementscluster preparation - Question #208Section 6 – Administer and Analyze NSX
A user has configured a specific distributed firewall rule preventing VM-A (172.16.10.11) on the Web-Logical Switch to communicate to VM-B (172.16.20.11), running on the same switc...
Distributed FirewalltroubleshootingESXi host logsfirewall rule debugging - Question #209Section 3 – Configure and Administer NSX Logical Network Services
What is the effect on NSX Edge virtual machines when NSX Edge high availability is configured but vSphere HA is NOT configured?
NSX Edge HAvSphere HAhigh availabilityEdge failover behavior - Question #210
When configuring BGP routing in NSX, what is the purpose of the Graceful Restart check box?
- Question #211
What vSphere Distributed Switch security policy allows virtual machines to send frames with a MAC Address that is different from the one specified in the vmx file?
- Question #212
An NSX administrator notices an error during the initial configuration of the SSO lookup service, as shown: The administrator pulls up the lookup service status, which displays Dis...
- Question #213Section 4 – Configure and Administer NSX Logical Security Services
When specifying a source for a security rule, what is the purpose of the Negates Source check box?
security rulesNegate SourceDistributed Firewallrule configuration - Question #214Section 2 – Install, Configure, and Manage NSX Infrastructure
Which three objects are supported for universal synchronization in a Cross-vCenter NSX deployment? (Choose three)
Cross-vCenter NSXuniversal synchronizationIP SetsMAC Sets - Question #215
Which are two uses of the NSX DLR protocol address? (Choose two.)
- Question #216Section 3 – Configure and Administer NSX Logical Network Services
Which two statements are true regarding L2 Bridges and Distributed Logical Routers? (Choose two )
L2 BridgeDistributed Logical RouterVLAN mappingDLR instances - Question #217Section 5 – Perform Operational Tasks in an NSX Environment
Which details can an administrator verify from the Summary tab of the VMware NSX Manager? (Choose three)
NSX ManagerSummary tabsystem informationstorage utilization - Question #218
A new ESXi host was added to an existing cluster, prepared for NSX and enabled for Distributed Firewall, logical switching and Logical Routing. The Most Preparation page in the NSX...
- Question #219Section 1 – Install, Configure, and Manage vSphere Networking
Which vSphere network object obstructs the physical network, provides access-level switching in the hypervisor and enables support tot overlay networking?
vSphere Distributed Switchoverlay networkinghypervisor switchingaccess-level switching - Question #220
Which is required to support unicast mode in NSX?
- Question #221
Where can firewall rules be applied on the NSX Edge Services Gateway?
- Question #222
What is true when configuring vSphere Distributed Switches (vDS)?
- Question #223
An administrator creates a SpoofGuard policy for specific network. Which two modes are associated with this type of policy? (Choose two )
- Question #224Section 5 – Perform Operational Tasks in an NSX Environment
A network administrator is troubleshooting an issue and needs to observe an injected packet as it passes through the physical and logical network. Which tool will accomplish this?
Traceflowpacket tracingnetwork troubleshootinglogical network analysis - Question #225
What configuration change do you need to make to allow this connection?
- Question #226Section 3 – Configure and Administer NSX Logical Network Services
When deploying a standalone NSX Edge as a Layer 2 VPN client, which port needs to be configured on the client vSphere Distributed Switch?
L2 VPNNSX Edge standalonetrunk portvSphere Distributed Switch - Question #227
Your environment has two sites designated as Site A and Site B. Each site has its own vCenler Server instance with NSX installed and configured in standalone mode. You are migratin...
- Question #228Section 4 – Configure and Administer NSX Logical Security Services
If the Applied To scope is set to Distributed Firewall, which virtual machines with have the firewall rule applied?
Distributed FirewallApplied To scopeprepared hostsfirewall rule scope - Question #229
An NSX Administrator is examining a broken set of firewall rules and discovers that the Block Telnet rule was created in the wrong section. Based on the exhibit, which option would...
- Question #230
Which two options are correct regarding vSphere Distributed Switches? (Choose two )
- Question #231Section 4 – Configure and Administer NSX Logical Security Services
An organization has PCI compliant application deployed as part of a larger NSX environment. Every year a team of contractors evaluates the security of the environment and recommend...
NSX RBACAuditor rolePCI complianceaccess scope restriction - Question #232Section 4 – Configure and Administer NSX Logical Security Services
Winch virtual machine does VMware recommend be manually excluded from the Distributed Firewall?
Distributed Firewallexclusion listvCenter Serverfirewall best practices - Question #233Section 4 – Configure and Administer NSX Logical Security Services
Which three ways can membership be defined in a dynamic security group? (Choose three)
dynamic security groupsSecurity Tagsmembership criteriaRegular Expressions - Question #234
Which three options are true about NSX logical bridges? (Choose three.)
- Question #235Section 3 – Configure and Administer NSX Logical Network Services
With which Application Profile types would the Insert X-Forwarded-for HTTP header option be used?
Load BalancerApplication ProfileX-Forwarded-For headerHTTP/HTTPS - Question #236
An administrator is attempting to troubleshoot a routing issue between the Edge Services Gateway (ESG) and the Distributed Logical Router (DLR). Based on the exhibit, which method...
- Question #237Section 2 – Install, Configure, and Manage NSX Infrastructure
When designing a multi-site NSX deployment, which capably requires Enhanced Linked Mode to function?
Cross-vCenter NSXEnhanced Linked ModeCross-vCenter vMotionmulti-site deployment - Question #238Section 2 – Install, Configure, and Manage NSX Infrastructure
How many vCenter Server environments can a single NSX Manager serve at one time?
NSX ManagervCenter Serverarchitecture limits - Question #239Section 6 – Administer and Analyze NSX
Which two NSX rotes could be used to create security policies? (Choose two.)
NSX rolesRBACsecurity policiesEnterprise Administrator - Question #240
Which two functions are provided by VMkernel ports? (Choose two)
- Question #241Section 1 – Install, Configure, and Manage vSphere Networking
Which is a best practice to secure system traffic, ensure optimal performance and satisfy prerequisites for NSX?
VMkernel adapterssystem traffic separationNSX prerequisitesvSphere networking best practices - Question #242Section 4 – Configure and Administer NSX Logical Security Services
What resource must a partner security service be registered with before the service is available to a policy?
partner security serviceservice registrationNSX Managerpolicy integration - Question #243
A group of users' needs secured access to a set of web-based applications in a SDDC. Which VPN option is best suited for this?
- Question #244
The user at 192.168.150.10 can reach the physical router but CANNOT reach edge-2 or any virtual machines. What routing change would resolve the issue?
- Question #245Section 4 – Configure and Administer NSX Logical Security Services
When creating a new security policy how is the default weight determined?
security policypolicy weightService Composerdefault weight - Question #246Section 2 – Install, Configure, and Manage NSX Infrastructure
Which would best describe a workload in Compute Cluster 1 attached to a logical switch port group?
logical switchL2 connectivitycompute clusterport group behavior - Question #247
An administrator has been asked to provide single failure redundancy. What is the minimum supported number of NSX Controllers needed to meet this requirement?
- Question #248Section 4 – Configure and Administer NSX Logical Security Services
Which term describes a situation where a bottleneck is created when traffic is sent to a single device for security enforcement?
hairpinningsecurity enforcement bottlenecktraffic flowmicro-segmentation - Question #249Section 2 – Install, Configure, and Manage NSX Infrastructure
A network administrator has been tasked with deploying a 3-tier application across two data centers. Tier-1 and tier-2 will be located in Datacenter-A and tier-3 will be located in...
universal transport zoneUDLRcross-vCenter NSXmulti-datacenter deployment - Question #250
Which three statements ore valid methods of Link Aggregation Control Protocol negotiation? (Choose three.)
- Question #251
Which two network services are abstracted from the underlying hardware by NSX? (Choose two.)
- Question #252Section 2 – Install, Configure, and Manage NSX Infrastructure
In which VMware NSX use case would VXLAN NOT be required?
VXLANmicro-segmentationNSX use casesoverlay networking