PrepAway - Latest Free Exam Questions & Answers

Which statement describes the traffic throughput of the NSX Distributed Firewall?

Which statement describes the traffic throughput of the NSX Distributed Firewall?

PrepAway - Latest Free Exam Questions & Answers

A.
By decoupling the firewall services from the virtualization layer, traffic is directed to the
distribution layer for firewall processing within a service module.

B.
By deploying firewall software on a per virtual machine basis, firewall services will be distributed
across multiple compute nodes.

C.
Firewall services are implemented as kernel modules and provide traffic filtering between the
virtual machine’s vNIC and the vSwitch.

D.
Firewall services are distributed as a software firewall appliance and may be deployed on more
than one ESXi host for scalability and high availability.

3 Comments on “Which statement describes the traffic throughput of the NSX Distributed Firewall?

  1. MRK says:

    A: INCORRECT: because there is no interaction of NSX with distribution layer.
    B: INCORRECT – FW services are not per virtual machine based, they reside on the kernel module of hypervisor
    C: CORRECT: DFW services are in kernel module, and used for filtering traffic on the VMs connected to the port groups of VDS, i.e. VM to VM / East West traffic
    D: INCORRECT: Firewall services are not available on a separate appliance




    0



    0

Leave a Reply