nerdexam
Broadcom-VMware

5V0-43.21 · Question #65

When Web Application Firewall (WAF) is enabled on VMware NSX Advanced Load Balancer, which of the following types of log entries are likely to increase? (Choose Two)

The correct answer is B. Alerts related to potential security threats D. Warnings about traffic anomalies and potential attacks. Enabling WAF on NSX Advanced Load Balancer introduces active security inspection of HTTP/HTTPS traffic, which naturally generates Alerts (B) when the WAF detects malicious payloads, signatures, or rule violations, and Warnings (D) when traffic patterns suggest anomalies…

Avi Vantage Platform Operations and Management

Question

When Web Application Firewall (WAF) is enabled on VMware NSX Advanced Load Balancer, which of the following types of log entries are likely to increase? (Choose Two)

Options

  • ADebug-level messages about the application performance
  • BAlerts related to potential security threats
  • CInformational entries about routine operations
  • DWarnings about traffic anomalies and potential attacks

How the community answered

(53 responses)
  • A
    2% (1)
  • B
    94% (50)
  • C
    4% (2)

Explanation

Enabling WAF on NSX Advanced Load Balancer introduces active security inspection of HTTP/HTTPS traffic, which naturally generates Alerts (B) when the WAF detects malicious payloads, signatures, or rule violations, and Warnings (D) when traffic patterns suggest anomalies, scanning behavior, or potential attacks - both are core outputs of any WAF engine doing its job.

Why the distractors are wrong:

  • A (Debug-level performance messages) - WAF doesn't add application performance instrumentation; debug logs relate to system internals and wouldn't noticeably increase from enabling WAF in normal operation.
  • C (Informational routine operations) - Routine/informational entries reflect normal, expected traffic flow. WAF is specifically focused on suspicious or policy-violating traffic, not benign routine activity.

Memory tip: Think of WAF as a security guard - guards don't write routine activity logs, they write alerts (threats found) and warnings (suspicious behavior spotted). B and D map directly to those two guard behaviors.

Topics

#Web Application Firewall#Security Logging#Threat Detection#NSX ALB

Community Discussion

No community discussion yet for this question.

Full 5V0-43.21 Practice