Unofficial VCIX6-NV Study Guide

I’ll be following the VCAP6-NV Deployment Exam Blueprint

Section 1 – Prepare VMware NSX Infrastructure

Objective 1.1 – Deploy VMware NSX Infrastructure Components

Objective 1.2 – Prepare Host Clusters for Network Virtualization

  • Prepare vSphere Distributed Switching for NSX
  • Prepare a cluster for NSX
    • Add/Remove Hosts from cluster
  • Configure the appropriate teaming policy for a given implementation
  • Configure VXLAN Transport parameters according to a deployment plan

Objective 1.3 – Configure and Manage Transport Zones

  • Create Transport Zones according to a deployment plan
  • Configure the control plane mode for a Transport Zone
  • Add clusters to Transport Zones
  • Remove clusters from Transport Zones

Section 2 – Create and Manage VMware NSX Virtual Networks

 

Objective 2.1 – Create and Manage Logical Switches

  • Create/Delete Logical Switches
  • Assign and configure IP addresses
  • Connect a Logical Switch to an NSX Edge
  • Deploy services on a Logical Switch
  • Connect/Disconnect virtual machines to/from a Logical Switch
  • Test Logical Switch connectivity

Objective 2.2 – Configure and Manage Layer 2 Bridging

  • Add Layer 2 Bridging
  • Connect Layer 2 Bridging to the appropriate distributed virtual port group

Objective 2.3 – Configure and Manage Routing

  • Deploy the appropriate NSX Edge (ESG/LDR) device according to a deployment plan
  • Configure centralized and distributed routing
  • Configure default gateway parameters
  • Configure static routes
  • Select and configure appropriate dynamic routing protocol according to a deployment plan:
    • OSPF
    • BGP
    • IS-IS
  • Configure route redistribution to support a multi-protocol environment

 

Section 3 – Deploy and Manage VMware NSX Network Services

 

Objective 3.1 – Configure and Manage Logical Load Balancing

  • Configure the appropriate Load Balancer model for a given application topology
  • Configure SSL off-loading
  • Configure a service monitor to define health check parameters for a specific type of network traffic
  • Optimize a server pool to manage and share backend servers
  • Configure an application profile and rules
  • Configure virtual servers

Objective 3.2 – Configure and Manage Logical Virtual Private Networks (VPN)

  • Configure IPSec VPN service to enable site to site communication
  • Configure SSL VPN service to allow remote users to access private networks
  • Configure L2 VPN service to stretch multiple logical networks across geographical sites

Objective 3.3 – Configure and Manage Additional VMware NSX Edge Services

  • Configure DHCP services according to a deployment plan:
  • Create/edit a DHCP IP Pool
  • Create/edit DHCP Static Binding
  • Configure DHCP relay
  • Configure DNS services
  • Configure NAT services to provide access to services running on privately addressed virtual machines

 

Section 4 – Secure a vSphere Data Center with VMware NSX

 

Objective 4.1 – Configure and Manage Logical Firewall Services

  • Configure Edge and Distributed Firewall rules according to a deployment plan:
  • Create/configure Firewall rule sections for specific departments
  • Configure SpoofGuard policies to enhance security
  • Filter firewall rules to narrow a scope

Objective 4.2 – Configure and Manage Service Composer

  • Create/configure Service Composer according to a deployment plan:
  • Configure Security Groups
  • Configure Security Policies
  • Configure Activity Monitoring for a Security Policy
  • Create/edit/delete Security Tags
  • Configure Network Introspection
  • Configure Guest Introspection

 

Section 5 – Perform Operational Management of a VMware NSX Implementation

 

Objective 5.1 – Backup and Restore Network Configurations

  • Schedule/Backup/Restore NSX Manager data
  • Export/Restore vSphere Distributed Switch configuration
  • Export/Import Service Composer profiles
  • Save/Export/Import/Load Distributed Firewall configurations

Objective 5.2 – Monitor a VMware ESX Implementation

  • Configure logging for NSX components according to a deployment plan
  • Monitor health of networking services
  • Monitor health and status of infrastructure components:
    • vSphere
    • NSX Manager
    • Control Cluster
  • Enable data collection for single/multiple virtual machines

Objective 5.3 – Configure and Manage Role Based Access Control

  • Implement identity service support for Active Directory, NIS, and LDAP with Single Sign-On (SSO)
  • Manage User rights:
  • Assign roles to user accounts
  • Change a user role
  • Delete/disable/enable a user account

 

Section 6 – Configure Cross vCenter Networking and Security

 

Objective 6.1 – Configure Cross vCenter VMware NSX infrastructure components

  • Configure NSX manager roles (Primary, Secondary, Standalone, Transit) according to a deployment plan:
  • Assign Primary role to specified NSX Manager
  • Assign Secondary role to specified NSX Managers
  • Deploy/configure Universal Controller Cluster
  • Configure Universal segment ID pools
  • Create/manage Universal transport zones

Objective 6.2 – Configure and Manage Universal Logical Network Objects

  • Create/Configure Universal Logical Switches
  • Create/Configure Universal Logical Routers
  • Configure local egress

Objective 6.3 – Configure and Manage Universal Logical Security Objects

  • Configure Universal MAC sets
  • Configure Universal IP sets
  • Configure Universal security groups
  • Configure Universal firewall rules
  • Configure Universal services and service groups

 

Section 7 – Perform Advanced VMware NSX Troubleshooting

 

Objective 7.1 – Troubleshoot Common NSX Installation/Configuration Issues

  • Troubleshoot NSX Manager services
  • Download Technical Supports logs from NSX Manager
  • Troubleshoot host preparation issues
  • Troubleshoot NSX Controller cluster status, roles and connectivity
  • Troubleshoot Logical Switch transport zone and NSX Edge mappings
  • Troubleshoot Logical Router interface and route mappings
  • Troubleshoot distributed and edge firewall implementations

Objective 7.2 – Troubleshoot VMware NSX Connectivity Issues

  • Monitor and analyze virtual machine traffic with Flow Monitoring
  • Troubleshoot virtual machine connectivity
  • Troubleshoot dynamic routing protocols

Objective 7.3 – Troubleshoot VMware NSX Edge Services Issues

  • Troubleshoot VPN service issues
  • Troubleshoot DHCP/DNS/NAT service issues
  • Troubleshoot Logical Load Balancer implementation issues
  • Download Technical Support logs from NSX Edge instances

 

Section 8 – Utilize API Commands to Manage a VMware NSX Deployment

 

Objective 8.1 – Administer and Execute calls using the VMware NSX vSphere API

  • Construct and execute an API call using correct syntax and formatting
  • Programmatically configure system parameters including:
    • NSX controller syslog
    • Modify DLR declared dead time
  • Analyze, modify, and successfully retrieve configuration data using an existing API call