Which task is required to create steering rules on NSX-V Manager?
A. Select Steering Rules > 3rd Party Firewalls > Palo Alto Networks and then populate the object with the required details
B. Configure the rule in Panorama and push it to NSX-V Manager.
C. Select Fabric > Access Policies > Quick Start and follow the prompts
D. Add a network introspective service and select Redirect to Service under Action.
Whichthree deployment modes of VM-Series firewalls are supported across NSX-T? (Choose three)
A. Partner Service
B. Boot Strap
C. Prism Central
D. Tier-1 insertion
E. Tier-0 insertion
Which VM series model is NOT supported on VMware NSX platform?
A. VM-500
B. VM-1000-HV
C. VM-700
D. VM-300
Describe the Automated Deployment of the NSX VM-Series firewall for NSX Solution?
A. When a new ESXi host is added to a cluster, a new VM-Series firewall is automatically deployed, provisioned and available for immediate policy enforcement without any little manual intervention.
B. When a new ESXi host is added to a cluster, a new VM-Series firewall is automatically deployed, provisioned and available for immediate policy enforcement without any manual intervention.
C. When a new ESXi host is added to a cluster, a new VM-Series firewall is automatically deployed provisioned and after manually retrieving licenses available for immediate policy enforcement.
D. When a new ESXi host is added to a cluster, a new VM-Series firewall is automatically deployed and after manually adding licenses available for policy enforcement.
Which feature removes the limitation of requiring the first interface to be management?
A. Management interface swap
B. Utilize a separate Load Balancer VM
C. Utilize a separate NAT VM.
D. Dataport interface switch
Which three steps are valid for deploying a VM-Series firewall on NSX? (Choose three)
A. create steering policies to redirect traffic to the VM-Series firewall
B. create a vDC and a vApp that includes the VM-Series firewall
C. register the VM-Series firewall as a service
D. obtain the AMI from market place
E. enable communication between Panorama and the NSX Manager
Which two design options address split-brain when configuring HA? (Choose two)
A. Send heartbeats across the HA2 interfaces.
B. Bundle multiple interfaces in an Aggregated Interface Group and assign HA2.
C. Use the heartbeat backup.
D. Add a backup HA1 interface.
Whichconfiguration is required in NSX for Panorama to use the tags from security groups in dynamic address groups?
A. Create security groups only.
B. Create security groups and mark them as exchangeable.
C. Create security groups with tags marked as shareable.
D. Create security groups and use them in an NSX-to-Palo Alto Networks redirection policy.
What are two ways to size a VM-Series firewall deployment to secure a VMware ESXi environment? (Choose two)
A. one per virtual network
B. one per vCenter server
C. one per SaaS application in use
D. one per ESXi host
How does the Palo Alto Networks NGFW integrate with Arista Networks Macro-Segmentation Service?
A. Arista supports all hardware models of the Palo Alto Networks NGFW natively.
B. Arista allows standalone non-HA firewalls to be attached to a service leaf switch. You must configure an Elastic Load Balancer to obtain fault tolerance.
C. Arista CloudVision obtains relevant rules from Panorama through API and programs the Arista switches to steer intercepted east-west traffic to the Palo Alto Networks NGFW.
D. Arista owns the Security policy. It can extend the concept of fine-grained intra-hypervisor security for VMs by enabling dynamic insertion of services for virtualized devices such as firewalls.