VMware Certified Advanced Professional 6 - Network Virtualization Deployment Exam
Section 1 - Prepare VMware NSX Infrastructure
Objective 1.1 - Deploy VMware NSX Infrastructure components
- Deploy the NSX Manager virtual appliance
- Integrate the NSX Manager with vCenter Server
- Configure Single Sign On
- Specify a Syslog Server
- Implement and Configure NSX Controllers
- Exclude virtual machines from firewall protection according to a deployment plan
Objective 1.2 - Prepare Host Clusters for Network Virtualization
- Prepare vSphere Distributed Switching for NSX
- Prepare a cluster for NSX
- Add/Remove Hosts from cluster
- Configure the appropriate teaming policy for a given implementation
- Configure VXLAN Transport parameters according to a deployment plan
Objective 1.3 - Configure and Manage Transport Zones
- Create Transport Zones according to a deployment plan
- Configure the control plane mode for a Transport Zone
- Add clusters to Transport Zones
- Remove clusters from Transport Zones
Section 2 - Create and Manage VMware NSX Virtual Networks
Objective 2.1 - Create and Manage Logical Switches
- Create/Delete Logical Switches
- Assign and configure IP addresses
- Connect a Logical Switch to an NSX Edge
- Deploy services on a Logical Switch
- Connect/Disconnect virtual machines to/from a Logical Switch
- Test Logical Switch connectivity
Objective 2.2 - Configure and Manage Layer 2 Bridging
- Add Layer 2 Bridging
- Connect Layer 2 Bridging to the appropriate distributed virtual port group
Objective 2.3 - Configure and Manage Routing
- Deploy the appropriate NSX Edge (ESG/LDR) device according to a deployment plan
- Configure centralized and distributed routing
- Configure default gateway parameters
- Configure static routes
- Select and configure appropriate dynamic routing protocol according to a deployment plan:
- OSPF
- BGP
- IS-IS
- Configure route redistribution to support a multi-protocol environment
Section 3 - Deploy and Manage VMware NSX Network Services
Objective 3.1 - Configure and Manage Logical Load Balancing
- Configure the appropriate Load Balancer model for a given application topology
- Configure SSL off-loading
- Configure a service monitor to define health check parameters for a specific type of network traffic
- Optimize a server pool to manage and share backend servers
- Configure an application profile and rules
- Configure virtual servers
Objective 3.2 - Configure and Manage Logical Virtual Private Networks (VPNs)
- Configure IPSec VPN service to enable site to site communication
- Configure SSL VPN service to allow remote users to access private networks
- Configure L2 VPN service to stretch multiple logical networks across geographical sites
Objective 3.3 - Configure and Manage Additional VMware NSX Edge Services
- Configure DHCP services according to a deployment plan:
- Create/edit a DHCP IP Pool
- Create/edit DHCP Static Binding
- Configure DHCP relay
- Configure DNS services
- Configure NAT services to provide access to services running on privately addressed virtual machines
Section 4 - Secure a vSphere Data Center with VMware NSX
- Configure Edge and Distributed Firewall rules according to a deployment plan:
- Create/configure Firewall rule sections for specific departments
- Create/configure Identity-based firewall (IDFW) for specific users/groups
- Configure SpoofGuard policies to enhance security
- Filter firewall rules to narrow a scope
Objective 4.2 - Configure and Manage Service Composer
- Create/configure Service Composer according to a deployment plan:
- Configure Security Groups
- Configure Security Policies
- Configure Activity Monitoring for a Security Policy
- Create/edit/delete Security Tags
- Configure Network Introspection
- Configure Guest Introspection
Section 5 - Perform Operational Management of a VMware NSX Implementation
- Schedule/Backup/Restore NSX Manager data
- Export/Restore vSphere Distributed Switch configuration
- Export/Import Service Composer profiles
- Save/Export/Import/Load Distributed Firewall configurations
Objective 5.2 - Monitor a VMware NSX Implementation
- Configure logging for NSX components according to a deployment plan
- Monitor health of networking services
- Monitor health and status of infrastructure components:
- vSphere
- NSX Manager
- Control Cluster
- Enable data collection for single/multiple virtual machines
Objective 5.3 - Configure and Manage Role Based Access Control
- Implement identity service support for Active Directory, NIS, and LDAP with Single Sign-On (SSO)
- Manage User rights:
- Assign roles to user accounts
- Change a user role
- Delete/disable/enable a user account
Section 6 - Configure Cross vCenter Networking and Security
- Configure NSX manager roles (Primary, Secondary, Standalone, Transit) according to a deployment plan:
- Assign Primary role to specified NSX Manager
- Assign Secondary role to specified NSX Managers
- Deploy/configure Universal Controller Cluster
- Configure Universal segment ID pools
- Create/manage Universal transport zones
Objective 6.2 - Configure and Manage Universal Logical Network Objects
- Create/configure Universal Logical Switches
- Create/configure Universal Distributed Logical Routers
- Configure local egress
Objective 6.3 - Configure and Manage Universal Logical Security Objects
- Configure Universal MAC sets
- Configure Universal IP sets
- Configure Universal security groups
- Configure Universal firewall rules
- Configure Universal services and service groups
Section 7 - Perform Advanced VMware NSX Troubleshooting
- Troubleshoot NSX Manager services
- Download Technical Supports logs from NSX Manager
- Troubleshoot host preparation issues
- Troubleshoot NSX Controller cluster status, roles and connectivity
- Troubleshoot Logical Switch transport zone and NSX Edge mappings
- Troubleshoot Logical Router interface and route mappings
- Troubleshoot distributed and edge firewall implementations
Objective 7.2 - Troubleshoot VMware NSX Connectivity Issues
- Monitor and analyze virtual machine traffic with Flow Monitoring
- Troubleshoot virtual machine connectivity
- Troubleshoot dynamic routing protocols
Objective 7.3 - Troubleshoot VMware NSX Edge Services Issues
- Troubleshoot VPN service issues
- Troubleshoot DHCP/DNS/NAT service issues
- Troubleshoot Logical Load Balancer implementation issues
- Download Technical Support logs from NSX Edge instances
Section 8 - Utilize API Commands to Manage a VMware NSX Deployment
- Construct and execute an API call using correct syntax and formatting
- Programmatically configure system parameters including:
- NSX controller syslog
- Modify DLR declared dead time
- Analyze, modify, and successfully retrieve configuration data using an existing API call