Exam 2V0-41.20 All QuestionsBrowse all questions from this exam
Question 49

A security administrator needs to configure a firewall rule based on the domain name of a specific application.

Which field in a distributed firewall rule does the administrator configure?

    Correct Answer: A

    To configure a firewall rule based on the domain name of a specific application, the administrator needs to use the 'Profile' field. This field allows the creation and configuration of context profiles, which include attributes such as domain names. This enables the firewall to filter traffic based on the fully qualified domain names (FQDN) of specific applications.

Discussion
CapyOption: A

A is correct: https://yogovirtual.com/2021/02/25/nsx-t-filtering-specific-domains-fqdn-urls/ Context Profiles Click the edit icon, and Add Context Profile and name the profile. In the Attributes column, select Set > Add Attribute > Domain (FQDN) Name . Select the list of Attribute Name/Values from the predefined list, or create a custom FQDN My Customer Context Profile is Named FQDN-Profile and I added the following builtin FQDN attributes to start my testing with:

diegof1Option: A

A is correct. NSX Manager includes a list of predefined context profiles. You can also configure custom context profiles for your firewall rules. Layer 7 firewall rules can be defined only in a stateful firewall policy. A context profile defines context-aware attributes, including application ID, domain name, as well as subattributes such as application version or cipher set. Context profiles for distributed firewall rules include the following main attributes: •APP_ID: You can choose from a list of preconfigured applications. You cannot add any additional applications. Examples include FTP, SSH, and SSL. Certain applications allow users to specify subattributes. For example, when choosing SSL administrators, you can specify the TLS_VERSION and the TLS_CIPHER_SUITE. For CIFS, you can specify the SMB_VERSION. •DOMAIN_NAME: You can choose from a static list of fully qualified domain names (FQDNs). Taken from NSX-T ICM 3.0 Lecture Manual

CapyOption: A

A it's correct https://docs.vmware.com/en/VMware-NSX-T-Data-Center/3.1/administration/GUID-63262728-CA72-47D2-8E4F-16617B63A9A4.html Context Profiles Click the edit icon, and Add Context Profile and name the profile. In the Attributes column, select Set > Add Attribute > Domain (FQDN) Name . Select the list of Attribute Name/Values from the predefined list, or create a custom FQDN. See Context Profiles for details. Click Add, and Apply.

AmrxOption: A

A is correct

belaminOption: A

A is correct

PIKO_0113Option: A

ドメイン名の問いはProfile

PIKO_0113Option: A

ドメイン名のときは、Profile

Eiichi06328Option: C

「Service」