Prepare for the Nutanix Certified Associate Exam with tailored resources, including multiple choice questions and detailed explanations. Hone your skills and master the exam content for success!

Practice this question and more.


If microsegmentation is enabled, which policy should be used to block all traffic between two VM groups?

  1. An Isolation Environment Policy

  2. A Quarantine Policy

  3. A Whitehat-Based Policy

  4. An Application Security Policy

The correct answer is: An Isolation Environment Policy

The correct choice for blocking all traffic between two VM groups when microsegmentation is enabled is an Isolation Environment Policy. This type of policy is specifically designed to prevent communication between defined groups of virtual machines (VMs), thereby enhancing security and containment. When microsegmentation is in place, it allows for the creation of granular security rules at the VM level. By applying an Isolation Environment Policy, you effectively isolate the selected VM groups, ensuring that they cannot communicate with each other. This is crucial in preventing lateral movement of threats within a network, as each VM group operates independently without the risk of data or traffic leakage to another group. The other policy options do not serve the primary function needed for this scenario. A Quarantine Policy typically allows for the isolation of compromised VMs but may not block traffic with the same strictness as the Isolation Environment Policy. A Whitehat-Based Policy is not a standard term in microsegmentation contexts and does not address traffic control between VM groups. An Application Security Policy focuses on protecting specific applications rather than enforcing isolation between VM groups, making it less suitable for this objective.