Free PSE-StrataDC Exam Braindumps (page: 4)

Page 3 of 16

A customer in a non-NSX VMware environment wants to add a VM-Series firewall and to partition an existing group of VMs in the same subnet into two groups. One group needs no additional security, but the second group requires substantially more security. How can this partition be accomplished without editing the IP addresses or the default gateways of any of the guest VMs?

  1. Create a new virtual switch and use the VM-Series firewall to separate virtual switches using Virtual Wire mode Then move the guests that require more security into the new virtual switch
  2. Edit the IP address of all of the affected VMs
  3. Send the VLAN out of the virtual environment into a hardware Palo Alto Networks firewall in Layer 3 mode. Use the same IP address as the old default gateway, then delete the old default gateway
  4. Create a Layer 3 interface in the same subnet as the VMs and configure proxy ARP

Answer(s): D



How is traffic directed to a Palo Alto Networks firewall integrated with Cisco ACI?

  1. by creating an access policy
  2. through a policy-based redirect (PBR)
  3. contracts between EPGs that send traffic to the firewall using a shared policy
  4. through a virtual machine monitor (VMM) domain

Answer(s): C



Which VM series model is NOT supported on VMware NSX platform?

  1. VM-500
  2. VM-1000-HV
  3. VM-700
  4. VM-300

Answer(s): C

Explanation:

on VMware NSX, only the VM-100, VM-200, VM-300, VM-500, and VM-1000-HV firewalls are supported.
https://docs.paloaltonetworks.com/vm-series/9-0/vm-series-deployment/about-the-vm-series- firewall/vm-series-models.html



Which VM-Series can be deployed on VMware NSX?

  1. VM-100, VM-200, VM-300. VM-500. VM-1000-HV
  2. VM-50r VM-100, VM-200, VM-300, VM-500
  3. VM-100, VM-200, VM-300, VM-500, VM-700
  4. All VM Series Models can be deployed on VMware NSX

Answer(s): A

Explanation:

https://docs.paloaltonetworks.com/vm-series/8-1/vm-series-deployment/about-the-vm-series- firewall/vm-series-models.html






Post your Comments and Discuss Palo Alto Networks PSE-StrataDC exam with other Community members:

PSE-StrataDC Discussions & Posts