2V0-41.24 Question 229
Select 3An organization is planning to implement NSX Federation to provide centralized policy management and ensure consistent security across multiple NSX-T Data Center environments. Before deploying the Federation architecture, which of the following prerequisites must be met?
- A
A Global Manager Cluster must be deployed at the primary site.
- B
Each local site must have its own NSX Local Manager instance deployed.
- C
An Edge Cluster must be configured on at least one local site.
- D
All sites must share a common vCenter Server instance.
- E
A Layer 3 VPN must be established between the Global Manager and Local Managers.
Show answer and explanation
Correct answers: A, B, C
Explanation
To successfully deploy NSX Federation, a Global Manager Cluster must be deployed at the primary site to manage the Federation. Each local site needs its own NSX Local Manager to enable local operations and integration with the Global Manager. An Edge Cluster is also necessary to provide required networking and security services. However, sharing a common vCenter Server is not a prerequisite, as NSX Federation supports independent vCenter environments. Additionally, while connectivity between components is essential, a Layer 3 VPN is not specifically required for Federation.
- A. Correct.
Correct: The Global Manager Cluster is central to NSX Federation and is required for managing policies and configurations across sites.
- B. Correct.
Correct: Each site participating in the Federation must have its own NSX Local Manager to support localized operations and communication with the Global Manager.
- C. Correct.
Correct: At least one Edge Cluster is required at a local site to support networking and security services for Federation.
- D. Incorrect.
Incorrect: NSX Federation does not require all sites to share a common vCenter Server instance, as it is designed to operate across independent vCenter environments.
- E. Incorrect.
Incorrect: NSX Federation uses a secure communication channel between Global Manager and Local Managers, but a Layer 3 VPN is not explicitly required.