Your success in VMware 2V0-642 is our sole target and we develop all our 2V0-642 braindumps in a way that facilitates the attainment of this target. Not only is our 2V0-642 study material the best you can find, it is also the most detailed and the most updated. 2V0-642 Practice Exams for VMware VCP6-NV 2V0-642 are written to the highest standards of technical accuracy.


♥♥ 2021 NEW RECOMMEND ♥♥

Free VCE & PDF File for VMware 2V0-642 Real Exam (Full Version!)

★ Pass on Your First TRY ★ 100% Money Back Guarantee ★ Realistic Practice Exam Questions

Free Instant Download NEW 2V0-642 Exam Dumps (PDF & VCE):
Available on: http://www.surepassexam.com/2V0-642-exam-dumps.html

Q21. An administrator has implemented VMware NSX on a leaf-spine underlay. They have deployed the following in the data center:

• Two racks for a management cluster that is not prepared for VMware NSX

• Six racks for compute clusters

• Two racks for an Edge cluster which holds a DLR control VM for bridging, and North/South Edge Service Gateways

Which three of the following are true regarding the physical and logical networking of the environment? (Choose three )

A. At least one VXLAN segment spans across all the racks

B. VXLAN segments span the compute and Edge racks

C. At least one VLAN spans the compute racks

D. At least one VLAN spans across the two management racks

E. At least 2 VLANs span across the two Edge racks.

Answer: B,C,D


Q22. An NSX Edge Service Gateway has two interfaces:

• Internal interface named Internal Access

-- IP address = 10.10.10.1

-- Network mask = 255.255.255.0

• Uplink interface named Physical Uplink

-- IP address = 20.20.20.1

-- Network mask = 255.255.255.0

A vSphere administrator wants to add a SNAT rule to allow traffic from the internal network segment to access external resources via the uplink interface.

Which three steps should the vSphere administrator do to add the SNAT rule? (Choose three.)

A. Apply the SNAT rule to the Internal Access interface.

B. Select 10.10.10.1 as the translated source IP.

C. Apply the SNAT rule on the Physical Uplink interface.

D. Select 10.10.10.0/24 as the original subnet.

E. Choose 20.20.20.2 as the translated source IP address.

Answer: C,D,E


Q23. Which three NSX services are available for synchronization in a Cross-vCenter implementation? (Choose three.)

A. Spoofguard

B. Distributed Firewall

C. Edge Firewall

D. Logical Switch

E. Transport Zone

Answer: B,D,E

Explanation:

Referencehttps://pubs.vmware.com/NSX- 62/topic/com.vmware.ICbase/PDF/nsx_62_cross_vc_install.pdf


Q24. When specifying a source for a security rule, what is the purpose of the Negates Source check box?

A. IfNegate Sourceis selected, the rule is sent to only the objects identified under object type.

B. IfNegate Sourceis selected, the rule is applied to traffic coming from all sources except for the source identified under the object type.

C. IfNegate Sourceis not selected, the rule is applied to traffic comingfrom all sources except for the source identified under the object type.

D. ifNegate Sourceis not selected, the rule is sent to only the objects identified under the object type.

Answer: B

Reference: https://pubs.vmware.com/NSX-6/index.jsp?topic=%2Fcom.vmware.nsx.admin.doc%2FGUID-C7A0093A-4AFA-47EC- 9187-778BDDAD1C65.html


Q25. What is the function of NSX Data Security?

A. Prevents sensitive data in your virtualized environment from being copied

B. Prevents sensitive data in your virtualized environment from being modified

C. Identifies sensitive data in your virtualized environment based upon regulation security policies

D. Identifies sensitive data in your virtualized environment based upon regulation violation reports

Answer: D


Q26. What is a requirement of NSX Data Security?

A. NSX manager must be configured for Active Directory integration

B. The Global Flow Collection Status must be set to Enabled

C. Guest Introspection must be installed on the cluster

D. AN IP Pool must be created.

Answer: C

Explanation:

Referencehttp://pubs.vmware.com/NSX-61/index.jsp?topic=%2Fcom.vmware.nsx.install.doc%2FGUID-62B22E0C-ABAC-42D8-93AA-BDFCD0A43FEA.html


Q27. Which service cannot be included in a Security Policy using Service Composer?

A. Endpoint Services

B. Firewall Rules

C. Virtual Private Network Services

D. Network Introspection Services

Answer: C


Q28. What are two benefits of the NSX Distributed Firewall? (Choose two )

A. VMs are protected even as they are vMotioned

B. Each VM is individually protected by a L2-L4 stateful firewall

C. ESXi hosts are automatically protected by a distributed firewall

D. VXLANs are automatically protected by the Transport Zone definition

Answer: A,C


Q29. A customer has Cisco Nexus 1000V switches in their environment and is looking at deploying NSX

Which statement is correct?

A. The environment must be migrated from the Nexus 1000V to vSphere Distributed Switches.

B. The environment must be configured for VXLAN over the Nexus 1000V.

C. The environment can use the Nexus 1000V switches for the NSX deployment.

D. The environment must be migrated from the Nexus 1000V to vSphere Standard Switches.

Answer: A


Q30. The fact that NSX Data Security has visibility into sensitive data provides which two benefits? (Choose two )

A. It helps address compliance and risk management requirements.

B. It acts as a forensic tool to analyze TCP and UDP connections between virtual machines

C. It is able to trace packets between a source and destination without requiring access to the guest OS

D. It eliminates the typical agent footprint that exists with legacy software agents

Answer: A,B