Spring Special Sale - 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: best70

Page: 1 / 2
Total 18 questions
Exam Code: 3V0-25.25                Update: Mar 17, 2026
Exam Name: Advanced VMware Cloud Foundation 9.0 Networking

VMware Advanced VMware Cloud Foundation 9.0 Networking 3V0-25.25 Exam Dumps: Updated Questions & Answers (March 2026)

Question # 1

The administrator must configure Border Gateway Protocol (BGP) on the Tier-0 Gateway to establish neighbor relationships with upstream routers. Which two statements describe the Border Gateway Routing Protocol (BGP) configuration on a Tier-0 Gateway? (Choose two.)

A.

EIGRP is configured by default.

B.

Can be used as an Exterior Gateway Protocol.

C.

The network is divided into areas that are logical groups.

D.

It supports a 4-byte autonomous system number.

Question # 2

An administrator is troubleshooting east—west network performance between several virtual machines connected to the same logical segment. The administrator inspects the internal forwarding tables used by ESXi and notices that different tables exist for MAC and IP mapping. Which table on an ESXi host is used to determine the location of a particular workload for frame forwarding?

A.

ARP Table

B.

FIP Table

C.

TEP Table

D.

MAC Table

Question # 3

An administrator is configuring Border Gateway Protocol (BGP) routing on a Tier-0 Gateway to optimize north—south traffic flow between the NSX environment and multiple upstream physical routers. The environment includes two external connections that advertise overlapping routes to the same destination networks. To ensure predictable and efficient routing behavior, the administrator decides to manipulate specific BGP attributes on outbound advertisements and inbound route updates. What are two valid BGP Attributes that can be used to influence the route path traffic will take? (Choose two.)

A.

BFD

B.

Cost

C.

AS-Path Prepend

D.

MED

Question # 4

When attempting to deploy or expand an edge cluster from an administrator encounters a failure: "Failed to validate the BGP Route Distribution". Prior to calling support, the administrator attempts to troubleshoot the issue. How should the administrator troubleshoot this issue?

A.

Log into the NSX manager and examine the nsxapi.log for errors.

B.

Log into the Tier-1 router to verify that route distribution is being enabled.

C.

Log into the vCenter and verify there are no errors or warnings from the NSX manager.

D.

Log into the edge node of the Tier-0 being deployed and check the routes being learnt.

Question # 5

An administrator created a new Tier-1 Gateway and is attempting to change the connected gateway for a deployed segment to use the new gateway. In the UI, when the administrator clicks the Connected Gateway dropdown, the new Tier-1 gateway is not shown as an available gateway. What would prevent the new Tier-1 gateway from showing in the list of available gateways?

A.

The Tier-1 Gateway is not connected to an NSX Edge Cluster.

B.

The Tier-1 Gateway connectivity policy is set to "None".

C.

The Tier-1 Gateway and NSX Segment are in different transport zones.

D.

The Tier-1 Gateway and NSX Segment are connected to different Tier-0 Gateways.

Question # 6

An administrator has noticed an issue in a freshly deployed VMware Cloud Foundation (VCF) environment where the BGP neighborship between the Tier-0 gateway and a physical router remains in the Idle state. Pings between the uplink IPs are successful. What is the issue?

A.

Autonomous System number mismatch.

B.

Distributed Firewall blocking traffic.

C.

Geneve tunnel down.

D.

Overlay MTU too low.

Question # 7

The administrator is working to ascertain the encapsulation of GENEVE by reviewing the capture on Wireshark.

The administrator instructed VM-1 to send a continuous ICMP request directed at VM-2.

Click to highlight where the administrator should observe the GENEVE encapsulated packet.

Question # 8

An administrator is tasked to configure NSX Federation between separate VMware Cloud Foundation (VCF) Fleets. Which requirement must all sites meet before being added to a Global Manager (GM) for NSX Federation?

A.

All Sites must use the same VTEP VLAN and IP pools.

B.

All sites must use identical Tier-0 gateway BGP autonomous system numbers.

C.

All sites must be managed by the same VCF instance.

D.

All sites must have the same NSX version and build.

Question # 9

An administrator must provide North/South connectivity for a VPC. The fabric exposes a distributed external VLAN across all ESX hosts. But, the only BGP peer to the core is on a VLAN only accessible on the Edge Cluster. Which design is required?

A.

Use a VPC Tier-0 Gateway in active/active mode with distributed eBGP peering.

B.

Distributed Transit Gateway with an EVPN route reflector on the transport nodes.

C.

Centralized Transit Gateway on the Edge Cluster.

D.

Deploy a Provider Tier-1 with BGP and connect the VPC Transit Gateway via route leaking.

Question # 10

An administrator is troubleshooting a BGP connectivity issue on a Tier-0 Gateway (Active/Active). The Tier-0 has the following configuration:

• Uplink VLAN 100: 192.168.100.0/24

• Uplink VLAN 101: 192.168.101.0/24

• BGP neighbors configured: 192.168.100.1 and 192.168.101.1

• A single static default route (0.0.0.0/0) exists with next-hop 192.168.100.1.

Symptoms observed on both Edge Nodes:

• Get BGP neighbors —> both neighbors stuck in Idle (Connect) — "No route to peer"

• Ping to 192.168.100.1 and 192.168.101.1 succeeds from the Edge nodes

• Get route shows the default route present only on VLAN 100 interface (fp-eth0), missing on VLAN 101 (fp-eth1)

What is the root cause of both BGP sessions remaining in Idle state?

A.

The static default route Scope is set only to the uplink VLAN 100 segment.

B.

The ToR routers do not have routes back to the Edge uplink interfaces.

C.

Multi-hop eBGP is required when using two VLANs.

D.

BGP authentication mismatch between Tier-0 and ToR routers.

Page: 1 / 2
Total 18 questions

Most Popular Certification Exams

Payment

       

Contact us

Site Secure

mcafee secure

TESTED 17 Mar 2026