Nutanix NCP-NS-7.5 Exam Overview:
| Certification Vendor: | Nutanix |
| Exam Name: | Nutanix Certified Professional - Network and Security (NCP-NS) 7.5 Exam |
| Exam Number: | NCP-NS-7.5 |
| Real Exam Qty: | 75 |
| Exam Duration: | 120 minutes |
| Available Languages: | English, Japanese |
| Related Certifications: | Nutanix Certified Professional (NCP) |
| Certificate Validity Period: | 2 years |
| Passing Score: | 3000 (scaled score 1000–6000) |
| Exam Price: | $200 USD |
| Exam Format: | Multiple choice, Scenario-based questions |
| Recommended Training: | Nutanix Network & Security Administration (NNSA) |
| Exam Registration: | Nutanix Certification Portal |
| Sample Questions: | Nutanix NCP-NS-7.5 Sample Questions |
| Exam Way: | Online proctored or onsite testing center |
| Pre Condition: | Approx. 2 years of network/security experience; 6+ months working with Nutanix Flow; recommended: Nutanix Network & Security Administration (NNSA) training |
| Official Syllabus URL: | https://www.nutanix.com/en_sg/support-services/training-certification/certifications/certification-details-nutanix-certified-professional-network-security |
Nutanix NCP-NS-7.5 Exam Syllabus Topics:
| Section | Weight | Objectives |
|---|---|---|
| Troubleshoot Flow Network and Security | 15% | - Troubleshoot security policy issues
|
| Deploy and Upgrade Flow Environment | 10% | - Prepare cluster for Flow deployment
|
| Configure Flow Virtual Networking | 25% | - Configure virtual switches and MTU settings - Create and manage VPC and overlay networks
|
| Manage Flow Operations and Monitoring | 20% | - Manage user roles and access control
|
| Configure Flow Network Security | 30% | - Manage policy enforcement and monitoring - Implement microsegmentation and security policies
|
Nutanix Certified Professional - Network and Security (NCP-NS) 7.5 Sample Questions:
1. An administrator recently deployed a new set of virtual machines... 3-tier web application... restricted as follows: Only application VMs can talk to database VMs on port 3306 Frontend VMs should only communicate with application VMs on port 8080 Which action will correctly create and configure the Security Policies in Nutanix Flow to satisfy this task?
A) Create IP-based rules for each VM category within a Security Policy.
B) Configure a global "Allow All" Security Policy and rely on guest OS firewalls for tier-based restrictions.
C) Create categories for each tier then define an Application Policy allowing specific ports between them.
D) Create VLANs for each tier and configure ACLs to restrict communication.
2. Which two options are supported as a Secured Entity in Flow Network Security Application Policies?
(Choose two.)
A) VG Category
B) Subnet Category
C) VPC Category
D) vNIC Category
3. An administrator is deploying a multi-tier (web, app, database) application on a Nutanix cluster using AHV.
The administrator needs to allow internal communication between tiers and provide external access to the web tier. How should the administrator satisfy this requirement?
A) Create separate VPCs for each tier and connect them to the same external NAT network and configure routing policies for inter-tier traffic.
B) Create a VPC with subnets for each tier and configure the Externally Routable Prefix to include only web subnets.
C) Create a VPC with a single subnet and assign workloads of each tier to this subnet.
D) Create separate VLAN networks for each tier and configure routing on the physical network.
4. An administrator needs to allow communication between several VPCs without requiring to configure routes in the physical network or using a dynamic routing protocol like BGP. How should the administrator satisfy this requirement?
A) Connect the VPCs to a single Transit VPC.
B) Configure a VPN network between each of the VPCs.
C) Peer the VPCs directly.
D) Merge all the subnets into a single VPC.
5. An administrator is building a VPC... VPC CIDR: 10.10.0.0/16 Subnet CIDR: 10.10.10.0/24 "Ext_Net_Ext" (NAT): 192.168.1.0/24 "Ext_Net_Internal" (Routed): 172.16.1.0/24 The on-premises application server has an IP address of 172.16.2.50/24. A VM (10.10.10.100) in the VPC Subnet can reach the internet but cannot reach the on-premises server. Which static route needs to be added to the VPC route table to resolve this?
A) Destination prefix: 192.168.1.0/24 Next-Hop: Ext_Net_Ext
B) Destination prefix: 172.16.2.0/24, Next-Hop: Ext_Net_Internal
C) Destination Prefix: 10.10.0.0/16, Next-Hop: Ext_Net_Internal
D) Destination prefix: 172.16.2.0/24, Next-Hop: Ext_Net_Ext
Solutions:
| Question # 1 Answer: C | Question # 2 Answer: B,C | Question # 3 Answer: B | Question # 4 Answer: A | Question # 5 Answer: B |
We're so confident of our products that we provide no hassle product exchange.


By Kevin

