Nutanix Certified Professional Network & Security v6.10 - NCP-NS Exam Practice Test

An administrator needs to delegate the management of security policies to a dedicated SecOps team. To enforce the principle of least privilege, the administrator assigns the predefined Flow Policy Author role to a user on the team.
The user confirms they can create, monitor, and enforce security policies. However, when attempting to build a new application security policy for a set of newly deployed VMs, the user reports they are unable to create a new category to group these VMs. The option is not available in the Prism Central UI.
Which statement explains this behavior?

Correct Answer: D Vote an answer
A VM with IP address 172.20.10.5 on a Subnet with CIDR 172.20.10.0/24 is unable to be routed externally from the VPC.
The VPC is successfully peered via BGP... However, when checking the BGP Session, no routes are being advertised by the VPC.
What is the most likely configuration issue?

Correct Answer: C Vote an answer
An administrator has a VPC with multiple overlay subnets and a VPN gateway configured for site-to-site connectivity. During testing, the administrator noticed fragmented packets and poor performance.
Which configuration change resolves this issue without disabling VPN?

Correct Answer: A Vote an answer
A junior network operator is assigned two predefined roles in Prism Central...
Role A: Prism Viewer
Role B: VPC Admin
The operator reports being able to successfully create, update, and delete Virtual Private Clouds (VPCs). However, the operator is unable to create a VM into the VPC.
How does Prism Central determine the operator's effective permissions?

Correct Answer: B Vote an answer
What happens when a monitored policy is enforced?

Correct Answer: D Vote an answer
An administrator is setting up a transit VPC to connect two VPCs and enable both internal (on-prem) and Internet connectivity.
Which is the best configuration to meet the requirement?

Correct Answer: B Vote an answer
During a security review, the administrator confirms that the existing security policy does not explicitly allow traffic from Environment: Development to Environment: Production. A VM in the Development category was still able to reach a Production VM over IPv6.
What is the most likely cause of this behavior?

Correct Answer: D Vote an answer
An administrator needs to isolate communication between VMs in Production and Development environments. Each VM is categorized by Environment and Site category values. The administrator wants this isolation to apply only to VMs located at Site: Branch-001.
Which configuration best meets the requirement?

Correct Answer: D Vote an answer
An administrator is tasked with configuring an application policy for a two-tier public website with Web and DB components. The database servers need to communicate with each other for replication, but the web servers should not be able to communicate with each other. The administrator configures the policy... and sets it to Enforce mode.
Later testing reveals that the web servers are able to communicate with each other.
What should the administrator do to resolve this?

Correct Answer: D Vote an answer
An administrator needs to configure a security policy that controls VM-to-VM communication within a category defined as secured entity.
Which configuration action should the administrator take to restrict all intra-tier communication between the VMs within a category defined as secured entity?

Correct Answer: D Vote an answer

Contact Us

If you have any question please leave me your email address, we will reply and send email to you in 12 hours.

Our Working Time: ( GMT 0:00-15:00 ) From Monday to Saturday

Support: Contact now 

日本語 Deutsch 繁体中文 한국어