2024 Realistic Verified Free VMware 3V0-42.20 Exam Questions [Q17-Q41]

Share

2024 Realistic Verified Free VMware 3V0-42.20 Exam Questions

3V0-42.20 Real Exam Questions and Answers FREE


VMware 3V0-42.20 exam is a 60-minute long exam that consists of 23 questions. 3V0-42.20 exam is designed to test the knowledge of candidates in various areas of VMware NSX-T Data Center, including design principles, network virtualization, security, and automation. 3V0-42.20 exam is available in English and Japanese languages and can be taken online or in-person at a Pearson VUE testing center.


VMware 3V0-42.20 exam is a challenging exam that is designed to test the knowledge and skills of IT professionals in several areas related to the VMware NSX-T Data Center platform. 3V0-42.20 exam covers topics such as NSX-T architecture, deployment models, security, automation, and integration with other VMware products. Candidates must demonstrate their proficiency in these areas by answering a series of multiple-choice questions, drag-and-drop questions, and scenario-based questions.

 

NEW QUESTION # 17
An architect is helping an organization with the Conceptual Design of an NSX-T Data Center solution.
This information was gathered by the architect during the Discover Task of the Engagement Lifecycle:
Existing hardware will be used in any design proposal.
Network bandwidth cannot be expanded.
Which concept of the Discover Task do these items belong to? (Choose the best answer.)

  • A. constraint
  • B. risk
  • C. assumption
  • D. requirement

Answer: A


NEW QUESTION # 18
An architect is helping an organization with the Physical Design of an NSX-T Data Center solution.
This information was gathered during a workshop:
Any proposed solution must provide low latency.
Any proposed solution must provide high throughput.
Customer is running stock trading applications.
Which two selections should the architect recommend to meet high-performance workload requirements? (Choose two.)

  • A. Leverage KVM as the compute host.
  • B. Leverage ESXi as the compute host.
  • C. Use LACP for all uplink profiles.
  • D. Enable latency sensitivity mode on the N-VDS.
  • E. Enable enhanced data path mode on the N-VDS.

Answer: B,E


NEW QUESTION # 19
Which is a family of solutions for data center designs that span compute, storage, networking, and management, serving as a blueprint for a customer's Software Defined Data Center (SDDC) implementations? (Choose the best answer.)

  • A. VMware SDDC Design
  • B. VMware POC Design
  • C. VMware Validated Design
  • D. VMware Cloud Foundation

Answer: C


NEW QUESTION # 20
A customer has a requirement to implement a next generation firewall (NGFW) to improve security network introspection. The customer wants to apply the NGFW to all workloads exposed both internally and externally. The customer wants the NGFW to work seamlessly with NSX-T Data Center and vSphere.
Which solution should be recommended to the customer? (Choose the best answer.)

  • A. Use NSX-T Data Center leveraged with NSX Intelligence to protect all workloads at the network inspection level.
  • B. Apply the NGFW to internal and external workloads for increased protection and use NSX-T Data Center with Federation to set network policies.
  • C. Apply the NGFW on bare metal hosts which will offer better performance of inline network introspection.
  • D. Use network introspection only on the external workloads and use NSX DFW for internal workloads.

Answer: D


NEW QUESTION # 21
An architect is helping an organization with the Physical Design of an NSX-T Data Center solution. This information was gathered during a workshop about ESXi Host networking:
A total of 50 ESXi hosts to be configured as Transport Nodes.
All ESXi hosts have a dedicated 2 X Intel 10Gbps Physical Network adapter for the Overlay Traffic.
To achieve low latency, high throughput, redundancy, and performance, which two NIC teaming policies should the architect recommend? (Choose two.)

  • A. Load Balance Port ID
  • B. Failover Order
  • C. Load Balance Source Port ID
  • D. Load Balance Source MAC
  • E. Load Balance Source

Answer: D,E

Explanation:
Uplink profiles within NSX-T shows that you can only use Load balance Source and Load balance Source MAC, failover order doesnt provide any load balancing or high throughput https://docs.vmware.com/en/VMware-NSX-T-Data-Center/3.1/installation/GUID-50FDFDFB-F660-4269-9503-39AE2BBA95B4.html
https://docs.vmware.com/en/VMware-NSX-T-Data-Center/3.2/installation/GUID-50FDFDFB-F660-4269-9503-39AE2BBA95B4.html Failover Order: Select an active uplink is specified along with an optional list of standby uplinks. If the active uplink fails, the next uplink in the standby list replaces the active uplink. No actual load balancing is performed with this option. Load Balance Source: Select a list of active uplinks. When you configure a transport node, you can pin each interface of the transport node to one active uplink. This configuration allows use of several active uplinks at the same time. Load Balance Source MAC Address: Select an uplink based on a hash of the source Ethernet.


NEW QUESTION # 22
A telecom company has purchased NSX-T as part of a Software Defined Data Center (SDDC) initiative. The company wants to ensure the highest performance for network traffic leaving the virtual environment.

  • A. Use bare metal NSX Edges.
  • B. Select Network cards that support VXLAN Offload.
  • C. Configure SR-IOV for the virtual NSX Edges.
  • D. Configure Equal-Cost Multi-Pathing on the NSX Edges.
  • E. Set "Latency Sensitive" option to High when deploying the virtual NSX Edges.

Answer: A,D


NEW QUESTION # 23
Which type of design includes vendor models, host names, IP Addresses, port connections, logical unit number sizes, and number of CPUs? (Choose the best answer.)

  • A. Physical Design
  • B. High-Level Design
  • C. Conceptual Design
  • D. Logical Design

Answer: A


NEW QUESTION # 24
An architect is helping an organization with the Conceptual Design of an NSX-T Data Center solution. This information was gathered by the architect during the Discover Task of the Engagement Lifecycle:
There are applications which use IPv6 addressing.
Network administrators are not familiar with NSX-T Data Center solutions.
Hosts can only be configured with two physical NICs.
There is an existing management cluster to deploy the NSX-T components.
Dynamic routing should be configured between the physical and virtual network.
There is a storage array available to deploy NSX-T components.
Which two requirements were documented by the architect? (Choose two.)

  • A. Network administrators are not familiar with NSX-T Data Center solutions.
  • B. Dynamic routing should be configured between the physical and virtual network.
  • C. The storage array has enough capacity to deploy NSX components.
  • D. Hosts can only be configured with two physical NICs.
  • E. There are applications which use IPv6 addressing.

Answer: B,E


NEW QUESTION # 25
A Solutions Architect is working with a customer which wants to extend their traditional Telco IP/MPLS core network to an NFV cloud.
Which NSX-T Data Center feature can be recommended by the architect? (Choose the best answer.)

  • A. Load Balancer
  • B. Distributed IDS
  • C. EVPN
  • D. BGP

Answer: C

Explanation:
In NSX-T Data Center 3.0, EVPN is used to extend traditional Telco networks to NFV clouds:
- Telco virtual router use BPG to dynamically exchange tenant routing with NSX gateways.
- NSX gateways implement VRFs to provide isolation between tenants.
- NSX gateways support MP-BPG to interconnect Telco traditional networks with NSX virtual networks.
- VXLAN is the encaptulation supported to exchange traffic with the remote gateways.
Taken from NSX-T ICM 3.0 Lecture Manual - Telco NFV Solution


NEW QUESTION # 26
What would an architect recommend to a customer that wants to extend management to an additional data center through Layer 2, but does not want to add additional NSX-T licensing? (Choose the best answer.)

  • A. Deploy a standalone NSX Controller.
  • B. Deploy a standalone Edge as the IPSec VPN.
  • C. Deploy Autonomous Edge as the L2 VPN client.
  • D. Deploy a standalone NSX Manager.

Answer: C

Explanation:
https://docs.vmware.com/en/VMware-NSX-T-Data-Center/3.1/administration/GUID-BE8A3D3C-5E0D-4777-B4F4-908E64FCB771.html


NEW QUESTION # 27
An architect is helping an organization with the Physical Design of an NSX-T Data Center solution.
This information was gathered during a workshop:
Some workloads should be moved to a Cloud Provider.
Extend network's VLAN or VNI across sites on the same broadcast domain.
Enable VM mobility use cases such as migration and disaster recovery without IP address changes.
Support 1500 byte MTU between sites.
Which selection should the architect include in their design? (Choose the best answer.)

  • A. Load Balancer
  • B. Reflexive NAT
  • C. SSL VPN
  • D. L2 VPN

Answer: D


NEW QUESTION # 28
A customer deploying NSX-T Data Center requires role based access controls be enforced in NSX Manager with these requirements:
* identity platform must be highly available
* authentication must be performed by customer's existing SAML identity provider
* MFA must be performed by administrator to gain access to NSX Manager
Which identity deployments would meet the customer's requirements? (Choose the best answer.)

  • A. NSX Manager OAuth 2.0 registered to a 2-node VMware Identity Manager cluster.
  • B. NSX Manager OAuth 2.0 registered to a 3-node VMware Identity Manager cluster.
  • C. NSX Manager OAuth 2.0 registered to a 2-node Active Directory Federation Services cluster
  • D. NSX Manager OAuth 2.0 registered to a 3-node Active Directory Federation Services cluster.

Answer: B


NEW QUESTION # 29
An architect is helping an organization with the Conceptual Design of an NSX-T Data Center solution. Which three selections are requirements documented by an architect? (Choose three.)

  • A. Aggregate N-S throughput at any given time should be at least 10G.
  • B. All traffic should recover in the event of Host/Rack/ToR failure.
  • C. The Development Team are heavy on API usage.
  • D. Business critical applications should have an SLA of 99.99%.
  • E. Hardware is 5 years old and new hardware is already purchased.
  • F. SAN storage has enough capacity to build the new infrastructure.

Answer: A,B,D


NEW QUESTION # 30
An architect is helping an organization with the Logical Design of an NSX-T Data Center solution. This information was gathered during the Assessment Phase:
Customer currently has a single 10 host vSphere cluster.
Customer wants to improve network security and automation.
Current cluster utilization and business policies prevent changing the existing vSphere deployment.
High-availability is important to the customer.
Which three selections should the architect include in their design? (Choose three.)

  • A. Apply vSphere Distributed Resource Scheduler (vSphere DRS) VM-Host anti-affinity rules to NSX Managers.
  • B. Deploy at least two NSX-T Edge virtual machines in the vSphere cluster.
  • C. Remove vSphere DRS VM-Host affinity rules to the NSX-T Controller VMs.
  • D. Apply vSphere DRS VM-Host anti-affinity rules to the virtual machines of the NSX-T Edge cluster.
  • E. Deploy the NSX Controllers in the management cluster.
  • F. Remove 2 hosts from the cluster and create a new edge cluster.

Answer: A,B,D


NEW QUESTION # 31
An architect is helping an organization with the Logical Design of an NSX-T Data Center solution.
This information was gathered during the Assessment Phase:
Data between two networks connected over a public network needs to be encrypted.
Certificate authentication is required.
Dynamic route learning is preferred.
Which selection should the architect include in their design? (Choose the best answer.)

  • A. Deploy a Tier-0 gateway in Active/Standby mode. Configure policy-based IPSec VPN with SHA512 with RSA as the hash algorithm.
  • B. Deploy a Tier-0 gateway in Active/Active mode. Configure policy-based IPSec VPN with SHA512 with RSA as the hash algorithm.
  • C. Deploy a Tier-0 gateway in Active/Standby mode. Configure route-based IPSec VPN with SHA512 with RSA as the hash algorithm.
  • D. Deploy a Tier-0 gateway in Active/Active mode. Configure route-based IPSec VPN with SHA512 with RSA as the hash algorithm.

Answer: C

Explanation:
Route-based IPSec VPN provides tunneling on traffic based on the static routes or routes learned dynamically.
Tier-0 gateway in the active-standby state supports the following services:
NAT
Load balancing
Stateful firewall
VPN
Reference Docs:
https://docs.vmware.com/en/VMware-NSX-T-Data-Center/3.0/administration/GUID-C0E5AF10-576D-493A-A079-C4C95D8F5373.html
https://docs.vmware.com/en/VMware-NSX-T-Data-Center/3.0/administration/GUID-7B0CD287-C5EB-493C-A57F-EEA8782A741A.html#GUID-7B0CD287-C5EB-493C-A57F-EEA8782A741A
https://docs.vmware.com/en/VMware-NSX-T-Data-Center/3.0/administration/GUID-DF689847-252E-451E-84B5-DB507CC010AC.html


NEW QUESTION # 32
Which two VMware recommendations should an architect follow when configuring top of rack (ToR) switches in an NSX-T Data Center environment? (Choose two.)

  • A. Configure redundant physical switches to enhance availability.
  • B. Configure switch ports with a Dynamic Trunking Protocol.
  • C. Configure switch ports that connect to ESXi host manually as trunk ports.
  • D. Use only IPv4 addressing in all deployments.
  • E. Modify the Spanning Tree Protocol to increase the time to transition to the forwarding state.

Answer: B,E


NEW QUESTION # 33
Which NSX-T feature is used to allocate the network bandwidth to business-critical applications and to resolve situations where several types of traffic compete for common resources? (Choose the best answer.)

  • A. Transport Node Profiles
  • B. Network I/O Control Profiles
  • C. LAG Uplink Profile
  • D. LLDP Profile

Answer: B

Explanation:
Use the Network I/O Control (NIOC) profile to allocate the network bandwidth to business-critical applications and to resolve situations where several types of traffic compete for common resources.
NIOC profile introduces a mechanism to reserve bandwidth for the system traffic based on the capacity of the physical adapters on a host. Version 3 of the Network I/O Control feature offers improved network resource reservation and allocation across the entire switch.
Network I/O Control version 3 for NSX-T Data Center supports the resource management of the system traffic related to virtual machines and to infrastructure services, such as vSphere Fault Tolerance. System traffic is strictly associated with an ESXi host.
Taken from https://docs.vmware.com/en/VMware-NSX-T-Data-Center/3.0/installation/GUID-9A8FD62A-F099-4329-8220-6D5853F9A62D.html


NEW QUESTION # 34
An architect is helping an organization with the Physical Design of an NSX-T Data Center solution.
This information was gathered during a workshop about ESXi Host networking:
* A total of 50 ESXi hosts to be configured as Transport Nodes.
* All ESXi hosts have a dedicated 2 × Intel 10Gbps Physical Network adapter for the Overlay Traffic.
To achieve low latency, high throughput, redundancy, and performance, which two NIC teaming policies should the architect recommend? (Choose two.)

  • A. Load Balance Port ID
  • B. Load Balance Source MAC
  • C. Failover Order
  • D. Load Balance Source Port ID
  • E. Load Balance Source

Answer: C,D


NEW QUESTION # 35
An architect is designing a solution for containerization. The solution will include high availability and security using NSX-T Data Center. The architect plans to provide a basic required components list in the Logical Design.
Which solution should the architect recommend? (Choose the best answer.)

  • A. 2 NSX Managers, 2 virtual NSX Edges, one Tier-0 gateway, BGP configuration and a static route
  • B. 3 NSX Managers, 3 virtual NSX Edges, two Tier-0 gateways in Active/Standby, BGP configuration
  • C. 3 NSX Managers, 3 virtual NSX Edges, one Tier-0 gateway and a static route and OSPF
  • D. 1 NSX Manager, 2 virtual NSX Edges, two Tier-0 gateways in Active/Active, BGP configuration

Answer: B


NEW QUESTION # 36
A Solutions Architect is working with a customer which wants to extend their traditional Telco IP/MPLS core network to an NFV cloud.
Which NSX-T Data Center feature can be recommended by the architect? (Choose the best answer.)

  • A. Load Balancer
  • B. Distributed IDS
  • C. BGP
  • D. EVPN

Answer: C


NEW QUESTION # 37
Which two protocols are typically used for multicast in a NSX-T Data Center environment? (Choose two.)

  • A. PIM Dense Mode
  • B. IGMPv3
  • C. PIM Full Form
  • D. IGMPv2
  • E. PIM Sparse mode

Answer: D,E

Explanation:
The following protocols are used to implement multicast in NSX-T Data Center 3.0> Internet Group Management Protocol (IMGP)
- IGMPv2
- IGMP Snooping
Protocol-Independent Mutlicast (PIM)
- PIM Sparse Mode (PIM-SM)
- PIM Bootstrap.
Take from NSX-T ICM 3.0 Lecture Manual - Multicas Protocols section.
or
https://docs.vmware.com/en/VMware-NSX-T-Data-Center/3.0/administration/GUID-6AAC3360-4F79-4FBF-BCC1-0D8C220B0621.html


NEW QUESTION # 38
An architect is helping an organization with the Physical Design of an NSX-T Data Center solution.
This information was gathered during a workshop about ESXi Host networking:
A total of 50 ESXi hosts to be configured as Transport Nodes.
All ESXi hosts have a dedicated 2 * Intel 10Gbps Physical Network adapter for the Overlay Traffic.
To achieve low latency, high throughput, redundancy, and performance, which two NIC teaming policies should the architect recommend? (Choose two.)

  • A. Load Balance Port ID
  • B. Load Balance Source MAC
  • C. Failover Order
  • D. Load Balance Source Port ID
  • E. Load Balance Source

Answer: C,D


NEW QUESTION # 39
A Solution Architect will be deploying an Ethernet Virtual Private Network (EVPN) in their NSX-T Data Center environment.
What two selections must be prepared for the EVPN deployment? (Choose two.)

  • A. deployed Load Balancer
  • B. remote gateway with support for MP-BGP and VXLAN
  • C. deployed Tier-0 gateway
  • D. remote gateway with support for IGP and VLAN priority
  • E. deployed Tier-1 gateway

Answer: A,B


NEW QUESTION # 40
A customer has a requirement to implement a next generation firewall (NGFW) to improve security network introspection. The customer wants to apply the NGFW to all workloads exposed both internally and externally.
The customer wants the NGFW to work seamlessly with NSX-T Data Center and vSphere.
Which solution should be recommended to the customer? (Choose the best answer.)

  • A. Use network introspection only on the external workloads and use NSX DFW for internal workloads.
  • B. Apply the NGFW to internal and external workloads for increased protection and use NSX-T Data Center with Federation to set network policies.
  • C. Apply the NGFW on bare metal hosts which will offer better performance of inline network introspection.
  • D. Use NSX-T Data Center leveraged with NSX Intelligence to protect all workloads at the network inspection level.

Answer: D


NEW QUESTION # 41
......


VMware 3V0-42.20 exam measures candidates' ability to design, implement, and operate VMware NSX-T data center solutions. 3V0-42.20 exam covers a wide range of topics, including NSX-T architecture, security, automation, multi-site deployments, and integration with other VMware products. 3V0-42.20 exam format consists of multiple-choice questions, drag-and-drop questions, and design scenarios. To pass the exam, candidates must achieve a score of at least 300 out of 500.

 

Exam Dumps 3V0-42.20 Practice Free Latest VMware Practice Tests: https://www.lead2passed.com/VMware/3V0-42.20-practice-exam-dumps.html

3V0-42.20 Exam Questions | Real 3V0-42.20 Practice Dumps: https://drive.google.com/open?id=1G9Dt8KP9G6LR-Iki2C-H-DGLvobmPtDg