2V0-41.24 exam dumps

2V0-41.24 practice question 373 of 462

VMware Certified Professional - Network Virtualization 2024. Associate level, VMware. Free question with the correct answer and a full explanation.

2V0-41.24 Question 373

Single answer

You are configuring a NAT rule in a VMware NSX-T Data Center environment to enable external access to a web server located in a private network. The web server has an IP address of 192.168.10.10 and listens on port 80. The NAT rule should translate traffic from an external IP (203.0.113.5) to the web server. Which configuration option ensures external users can access the web server using port 80?

  1. A

    Create a Destination NAT (DNAT) rule with an external IP of 203.0.113.5 translating to 192.168.10.10:80

  2. B

    Create a Source NAT (SNAT) rule with an internal IP of 192.168.10.10 translating to 203.0.113.5:80

  3. C

    Create a Firewall Rule allowing traffic from 203.0.113.5 to 192.168.10.10:80

  4. D

    Create a Destination NAT (DNAT) rule with an external IP of 192.168.10.10 translating to 203.0.113.5:80

Show answer and explanation

Correct answer: A

Explanation

To enable external access to an internal web server using NAT in NSX-T, you need to configure a Destination NAT (DNAT) rule. DNAT translates traffic destined for an external IP address to the appropriate internal IP address and port. In this scenario, a DNAT rule is needed to translate the external IP 203.0.113.5 to the web server's internal IP 192.168.10.10 on port 80 to ensure proper connectivity for external users.

  • A. Correct.

    This is the correct option. A Destination NAT (DNAT) rule is used to translate the external IP (203.0.113.5) to the internal IP of the web server (192.168.10.10) for incoming traffic. This allows external users to access the internal resource on port 80.

  • B. Incorrect.

    This option is incorrect because Source NAT (SNAT) is used to translate internal source addresses to an external address for outgoing traffic, not for incoming traffic to the web server.

  • C. Incorrect.

    This option is incorrect because a Firewall Rule alone does not perform NAT. While a Firewall Rule might allow traffic, it will not translate the IP addresses required for NAT.

  • D. Incorrect.

    This option is incorrect because it incorrectly defines the NAT translation. The external IP (203.0.113.5) should be translated to the internal IP (192.168.10.10), not the other way around.

Timed practice exam

Take a 2V0-41.24 practice test under exam conditions

55 questions in 135 minutes, drawn from this bank, with a score report and a per-question review when you finish.

Start timed exam