2V0-41.24 Question 205
Select 3An organization needs to extend a Layer 2 network between their on-premises datacenter and a VMware NSX environment in a public cloud. Which of the following are supported Layer 2 VPN endpoints that can be used to establish this connection?
- A
An NSX Edge Service Gateway (ESG)
- B
An NSX Tier-0 Gateway
- C
A standalone VMware ESXi host
- D
A hardware-based L2 VPN capable router
- E
An NSX Distributed Firewall
Show answer and explanation
Correct answers: A, B, D
Explanation
Layer 2 VPNs in VMware NSX environments support specific endpoints, such as NSX Edge Service Gateways, Tier-0 Gateways, and hardware-based L2 VPN capable routers. These endpoints facilitate seamless Layer 2 network extension across different environments. Other components, such as ESXi hosts or the NSX Distributed Firewall, are not designed to act as Layer 2 VPN endpoints, as they serve different functions.
- A. Correct.
An NSX Edge Service Gateway (ESG) is a supported endpoint for establishing Layer 2 VPN connections in NSX environments, making it a correct choice.
- B. Correct.
An NSX Tier-0 Gateway provides routing and VPN services, including support for Layer 2 VPN endpoints, making it a valid option.
- C. Incorrect.
A standalone VMware ESXi host is not a supported Layer 2 VPN endpoint, as it lacks the necessary L2 VPN capabilities by itself.
- D. Correct.
A hardware-based L2 VPN capable router is a valid endpoint when extending Layer 2 networks, as it can integrate with NSX for L2 VPN connections.
- E. Incorrect.
An NSX Distributed Firewall is not a valid Layer 2 VPN endpoint, as its primary function is to provide distributed firewalling and security, not VPN services.