ExamGecko
Question list
Search
Search

Related questions











Question 6 - 5V0-41.21 discussion

Report
Export

Which two are true of the NSX Gateway Firewall? (Choose two.)

A.
Firewall rules in System category cannot be edited.
Answers
A.
Firewall rules in System category cannot be edited.
B.
Firewall rules in Pre Rule category are applied to all gateways.
Answers
B.
Firewall rules in Pre Rule category are applied to all gateways.
C.
NAT service can be configured in NSX Gateway Firewall policy.
Answers
C.
NAT service can be configured in NSX Gateway Firewall policy.
D.
Security Groups can be used in Applied-To column.
Answers
D.
Security Groups can be used in Applied-To column.
E.
Applied-To can be configured at Firewall Policy level.
Answers
E.
Applied-To can be configured at Firewall Policy level.
Suggested answer: B, D

Explanation:

NSX Gateway Firewall is a distributed firewall that provides security for east-west traffic within a virtual environment.

1. Firewall rules in Pre Rule category are applied to all gateways. This category contains systemdefined rules that are always applied first to all gateways and cannot be modified. These rules include the default deny all rule and others that control basic connectivity.

2. Security Groups can be used in Applied-To column. Security groups allow you to group together VMs that have similar security requirements and then apply firewall policies to those groups. This way you can apply the same security rules to multiple VMs at once, instead of configuring the rules on each individual VM.

Reference:

VMware NSX-T Data Center documentation https://docs.vmware.com/en/VMware-NSX-T-Data-Center/index.html

VMware NSX-T Data Center Gateway Firewall documentation

https://docs.vmware.com/en/VMware-NSX-T-Data-Center/3.1/com.vmware.nsxt.firewall.doc/GUID-4C5D5A5F-8FDF-4F2A-9C5A-2C1903A3E5A5.html

asked 16/09/2024
Yohane Phompho
33 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first