nerdexam
Broadcom-VMware

3V0-25.25 · Question #20

An administrator is investigating reports that several Virtual Machines (VMs) deployed on an NSX virtual network segment are dropping packets. To troubleshoot the issue the administrator has…

The correct answer is B. Traceflow in the NSX Manager UI. In a VMware Cloud Foundation (VCF) environment, pinpointing the exact location of packet drops within the software-defined data center requires tools that can see into the logical forwarding pipeline. While traditional networking tools like pings only provide a "binary" up/down…

Troubleshoot NSX-T Data Center Networking

Question

An administrator is investigating reports that several Virtual Machines (VMs) deployed on an NSX virtual network segment are dropping packets. To troubleshoot the issue the administrator has attached two test VMs to the virtual network in order to inspect the packets sent between the two test VMs. What tool will allow the administrator to analyze the packet flow?

Options

  • AFlows Monitoring in the VCF Operations UI.
  • BTraceflow in the NSX Manager UI.
  • CPort Mirroring in the NSX Manager UI.
  • DLive Traffic Analysis in the NSX Manager UI.

How the community answered

(46 responses)
  • A
    2% (1)
  • B
    83% (38)
  • C
    11% (5)
  • D
    4% (2)

Explanation

In a VMware Cloud Foundation (VCF) environment, pinpointing the exact location of packet drops within the software-defined data center requires tools that can see into the logical forwarding pipeline. While traditional networking tools like pings only provide a "binary" up/down status, Traceflow is the definitive diagnostic tool within the NSX Manager UI for deep packet path Traceflow works by injecting a synthetic "trace packet" into the data plane, originating from a source vNIC of a specific VM. This packet is uniquely tagged so that every NSX component it touches-- including the Distributed Switch (VDS), Distributed Firewall (DFW) rules, Distributed Routers (DR), and Service Routers (SR) on Edge nodes--reports back an observation. When an administrator observes packet drops, Traceflow provides a step-by-step visualization of the packet's journey. If the packet is dropped, Traceflow will explicitly identify the component responsible. For example, it might show that the packet was "Dropped by Firewall Rule #102" or "Dropped by SpoofGuard." It can also identify if the packet was lost during Geneve encapsulation or at the physical uplink interface.

Topics

#Traceflow#packet inspection#overlay segment#VM connectivity

Community Discussion

No community discussion yet for this question.

Full 3V0-25.25 Practice