nerdexam
Broadcom-VMware

3V0-41.19 · Question #47

An architect is helping an organization redesign a previously installed NSX-T Data Center solution. This information was gathered during the Assessment Phase: - The company's headquarters Is located…

The correct answer is D. Replace vCenter root certificate with a certificate signed by a third-party Certificate Authority. See the full explanation below for the reasoning.

Question

An architect is helping an organization redesign a previously installed NSX-T Data Center solution. This information was gathered during the Assessment Phase:

  • The company's headquarters Is located In Eastern Europe and there are

several regional offices.

  • The company owns several smaller companies around the globe.
  • All locations must access the RESTful API of NSX-T through the

internal network for automating the creation of segments.

  • The company's HQ does not have any internal Public Key

Infrastructure.

  • NSX-T has already been installed at the company's headquarters. The

architect has determined self-signed certificates should be replaced with certificates signed by a Public Key Infrastructure. Which should the architect recommend in their design?

Options

  • AReplace the certificate on all three NSX Managers with a certificate that is signed by a third-
  • BReplace the NSX-T root certificate with an internal Certificate Authority.
  • CReplace the NSX Managers certificate with a certificate that Is signed by Company Public Key
  • DReplace vCenter root certificate with a certificate signed by a third-party Certificate Authority.

How the community answered

(21 responses)
  • A
    14% (3)
  • B
    5% (1)
  • C
    5% (1)
  • D
    76% (16)

Community Discussion

No community discussion yet for this question.

Full 3V0-41.19 Practice