VMware vDefend Security for VCF 5.x Administrator 온라인 연습
최종 업데이트 시간: 2025년11월17일
당신은 온라인 연습 문제를 통해 VMware 6V0-21.25 시험지식에 대해 자신이 어떻게 알고 있는지 파악한 후 시험 참가 신청 여부를 결정할 수 있다.
시험을 100% 합격하고 시험 준비 시간을 35% 절약하기를 바라며 6V0-21.25 덤프 (최신 실제 시험 문제)를 사용 선택하여 현재 최신 241개의 시험 문제와 답을 포함하십시오.
/ 6
Question No : 1
An administrator is investigating why a Windows VM, which is part of a cluster enabled for vDefend Malware Prevention, is not generating any file events. The administrator has confirmed the DFW policy and Malware Prevention profile are correctly applied.
Which of the following would prevent the Malware Prevention service from functioning on this specific VM? (Choose 2.)
정답:
Question No : 2
An auditor is reviewing a vDefend Malware Prevention profile to understand how it handles new, unknown threats.
They see the following setting configured in the profile:
File Status: Unknown
On-Access File-Write Action: Cloud File Analysis
What does this configuration instruct the vDefend platform to do?
정답:
Question No : 3
What underlying VMware technology does vDefend Distributed Malware Prevention leverage to gain access to the file system operations within a guest virtual machine?
정답:
Question No : 4
A security administrator is configuring a new vDefend Distributed Firewall policy. The policy is applied to a security group named `App-Servers`.
When configuring a rule within this policy, what happens if the administrator sets the rule's 'Applied To' field to a *different* group named `Web-Servers`?
정답:
Question No : 5
An IT Operations team is managing a VCF environment. As part of a disaster recovery (DR) test, they need to export the entire vDefend Distributed Firewall configuration from their primary site so it can be replicated to a DR site.
What is the correct method to export the *entire* DFW configuration, including all policies and rules?
정답:
Question No : 6
An administrator needs to make multiple, dependent changes via the NSX Policy API. The goal is to create two new groups (`app_vms`, `db_vms`) and a new security policy (`app_policy`) with a rule that uses these two new groups as the source and destination.
Which API method provides the most efficient and atomic way to create all of these objects in a single transaction?
정답:
Question No : 7
A developer is writing a script to add a new security rule to an existing vDefend DFW policy named "App-Policy". The developer wants the new rule to be evaluated *before* all other rules currently in that policy.
How should the developer construct the API call to achieve this?
정답:
Question No : 8
A developer is using a script to query the NSX Manager for all security groups within the 'default' domain. The script makes the following API call: `GET https://nsx.corp.local/policy/api/v1/infra/domains/default/groups`
The JSON response includes a "cursor" field at the end.
What does the presence of this field indicate?
정답:
Question No : 9
A DevOps engineer needs to programmatically create a new Distributed Firewall policy using the NSX Policy API. The policy should be named "api-policy" and be placed in the "Application" category.
Which API call and payload are correct for this action?
정답:
Question No : 10
An IT Manager is reviewing the capabilities of the VMware vDefend Advanced Threat Prevention (ATP) suite. They want to understand how the different components work together to stop a multi-stage ransomware attack.
Which three of the following capabilities are part of the vDefend ATP solution? (Choose 3.)
정답:
Question No : 11
A security administrator is configuring a vDefend Malware Prevention policy for a VCF cluster. The administrator wants to ensure that all guest VMs on the cluster are protected.
What component must be installed on the guest VMs to enable the Distributed Malware Prevention service to inspect files?
정답:
Question No : 12
A security administrator is concerned about a new ransomware attack that is exploiting a known vulnerability (CVE-2025-1234) to spread between servers. The IT team is unable to patch the affected servers immediately.
How can the administrator use vDefend Advanced Threat Prevention to block this specific attack vector?
정답:
Question No : 13
An auditor is reviewing the vDefend Advanced Threat Prevention configuration. They want to know what types of files can be analyzed by the Gateway Malware Detection feature.
According to the documentation, which file types are analyzed by vDefend Gateway Malware Detection? (Select all that apply.)
정답:
Question No : 14
A security administrator is configuring a vDefend Malware Prevention profile. The administrator wants to ensure that any file not recognized by local analysis is sent to the cloud for advanced analysis.
Which feature must be configured in the Malware Prevention profile to send unknown files to the advanced sandbox environment?
정답:
Question No : 15
An organization is required to comply with PCI-DSS, which mandates protection against malware for all systems in the Cardholder Data Environment (CDE).
Which VMware vDefend feature is specifically designed to meet this requirement by safeguarding private cloud workloads against ransomware and malicious activity?