ExamGecko
Home Home / VMware / 5V0-31.22

VMware 5V0-31.22 Practice Test - Questions Answers, Page 9

Question list
Search
Search

List of questions

Search

Related questions











During the design phase for a greenfield VMware Cloud Foundation (VCF) deployment, the following design decisions have been agreed upon:

* Stretched Cluster needs to be deployed

* Identity and Access Management for VMware Cloud Foundation needs to be deployed

The Infrastructure Architect is working with the client to fill the Planning and Preparation Workbook. The Option for Stretched Cluster has been set to 'Include'. The 'Identity and Access Management' is displaying an error, and its Final Result is stating *Excluded'.

Which option should be enabled in the Planning and Preparation Workbook to address the issue?

A.
Apply Signed Certificates
A.
Apply Signed Certificates
Answers
B.
Consolidated Management Domain
B.
Consolidated Management Domain
Answers
C.
Clustered Workspace One Access
C.
Clustered Workspace One Access
Answers
D.
NSX Routing for Management Domain
D.
NSX Routing for Management Domain
Answers
Suggested answer: D

Explanation:

According to About Identity and Access Management for VMware Cloud Foundation23, one of the prerequisites for deploying Identity and Access Management for VMware Cloud Foundation is to enable NSX Routing for Management Domain in SDDC Manager. This allows SDDC Manager to communicate with Active Directory servers across different networks.

https://docs.vmware.com/en/VMware-vSphere/7.0/com.vmware.vsphere.vsan-planning.doc/GUID-AFF133BC-F4B6-4753-815F-20D3D752D898.html

Which two steps must be performed to create a vSphere with Tanzu namespace? (Choose two.)

A.
Deploy a vSphere Cluster
A.
Deploy a vSphere Cluster
Answers
B.
Enable Harbor Image Registry
B.
Enable Harbor Image Registry
Answers
C.
Use a DNS-compliant name
C.
Use a DNS-compliant name
Answers
D.
Assign permissions
D.
Assign permissions
Answers
E.
Define resource limits
E.
Define resource limits
Answers
Suggested answer: C, D

Explanation:

https://docs.vmware.com/en/VMware-vSphere/7.0/vmware-vsphere-with-tanzu/GUID-177C23C4-ED81-4ADD-89A2-61654C18201B.html#:~:text=be%20in%20a-,DNS%2Dcompliant,-format.

A VMware Cloud Foundation (VCF) architect is presented with a customer's requirements for an architecture that needs to achieve:

* Network high availability across workloads in two data center locations.

* Maintain the least administrative overhead when performing day 2 operations.

* Decrease the RTO of both management plane and data plane when site-wide failure occurs

Which VCF design consideration should the architect recommend?

A.
VCF with NSX-T Bridging
A.
VCF with NSX-T Bridging
Answers
B.
VCF with NSX-T L2-VPN
B.
VCF with NSX-T L2-VPN
Answers
C.
VCF with NSX-T Federation
C.
VCF with NSX-T Federation
Answers
D.
VCF with NSX-T Multi-Site
D.
VCF with NSX-T Multi-Site
Answers
Suggested answer: C

Explanation:

According to VMware Cloud Foundation Architecture Poster, VCF with NSX-T Federation provides network high availability across workloads in two data center locations by synchronizing network configuration and state across sites. It also simplifies day 2 operations by providing centralized management and policy enforcement across sites. It also reduces RTO by enabling fast failover of network services between sites.

An administrator is tasked with deploying an additional cluster within VI Workload Domain which has been created with vSAN as a principal storage

Which types of principal storage may the administrator configure during this process?

A.
iSCSI, Wols, vSAN; NFS v4 1
A.
iSCSI, Wols, vSAN; NFS v4 1
Answers
B.
NFS v4.1, VMFSon FC, vSAN
B.
NFS v4.1, VMFSon FC, vSAN
Answers
C.
vSAN, iSCSI, SMB3.0
C.
vSAN, iSCSI, SMB3.0
Answers
D.
Wols, vSAN, NFS v3, VMFS on FC
D.
Wols, vSAN, NFS v3, VMFS on FC
Answers
Suggested answer: D

Explanation:

https://docs.vmware.com/en/VMware-Cloud-Foundation/5.0/vcf-admin/GUID-2C4653EB-5654-45CB-B072-2C2E29CB6C89.html

According to the VMware Cloud Foundation Specialist (v2) exam guide1, one of the objectives is to ''Identify the supported storage types for VMware Cloud Foundation''.

According to the VMware Cloud Foundation Design Guide2, the supported storage types for VI workload domains are vSAN, vVols, NFS v3, and VMFS on FC as principal storage, and vSAN, vVols, NFS v3 and v4.1, iSCSI, and NVMeoF/TCP as supplemental storage.

Therefore, when deploying an additional cluster within a VI workload domain that has been created with vSAN as a principal storage, the administrator can choose any of the supported principal storage types for the new cluster.

The only option that contains only valid principal storage types is D. vVols, vSAN, NFS v3, VMFS on FC.

1:VMware Cloud Foundation Specialist (v2) Exam Guide2:Supported Storage Types for VMware Cloud Foundation

Which two roles are played by a Spherelet in a Tanzu-enabled VCF workload domain? (Choose two.)

A.
It runs as a VIB on all Supervisor Cluster ESXi hosts configured with the vSphere Networking Stack.
A.
It runs as a VIB on all Supervisor Cluster ESXi hosts configured with the vSphere Networking Stack.
Answers
B.
It enables an ESXi hypervisor to act as a Kubernetes master node.
B.
It enables an ESXi hypervisor to act as a Kubernetes master node.
Answers
C.
It enables an ESXi hypervisor to act as a Kubernetes worker node.
C.
It enables an ESXi hypervisor to act as a Kubernetes worker node.
Answers
D.
It starts and monitors vSphere pods running on the workload domain cluster
D.
It starts and monitors vSphere pods running on the workload domain cluster
Answers
E.
It communicates with the vSphere with Tanzu embedded Harbor registry.
E.
It communicates with the vSphere with Tanzu embedded Harbor registry.
Answers
Suggested answer: B, C

Explanation:

According to vSphere with Tanzu Architecture1, a Spherelet is a component that runs as a VIB on all Supervisor Cluster ESXi hosts configured with the vSphere Networking Stack. It enables an ESXi hypervisor to act as a Kubernetes master node or a Kubernetes worker node, depending on the role assigned by the Supervisor Cluster control plane.

Which two health checks can be performed using the SoS tool? (Choose two.)

A.
---password-health
A.
---password-health
Answers
B.
---credential-health
B.
---credential-health
Answers
C.
---system-check
C.
---system-check
Answers
D.
---health-check
D.
---health-check
Answers
E.
---esxi-health
E.
---esxi-health
Answers
Suggested answer: A, D

Explanation:

https://docs.vmware.com/en/VMware-Cloud-Foundation/4.5/vcf-admin/GUID-9EBC6D42-B799-4177-9EFF-78E98FDBA0FD.html

What is a characteristic about the Credentials Worksheet in the Deployment Parameter Workbook?

A.
Passwords can be common only for appliance users.
A.
Passwords can be common only for appliance users.
Answers
B.
Passwords can be different per user.
B.
Passwords can be different per user.
Answers
C.
Passwords must be different per user.
C.
Passwords must be different per user.
Answers
D.
Passwords must be common across all users.
D.
Passwords must be common across all users.
Answers
Suggested answer: C

Explanation:

According to VMware Cloud Foundation Planning and Preparation Workbook, when filling out the Credentials Worksheet in the Deployment Parameter Workbook, you must provide different passwords for each user account that will be created during deployment. This ensures security and compliance for your environment.

Which two functionalities does a NSX Tier-0 Gateway provide to a vSphere with Tanzu deployment? (Choose two.)

A.
Gateway for Segments
A.
Gateway for Segments
Answers
B.
Layer 2 Switching
B.
Layer 2 Switching
Answers
C.
Connectivity to all Tier-1 Gateways
C.
Connectivity to all Tier-1 Gateways
Answers
D.
Downlink Connections to Segments
D.
Downlink Connections to Segments
Answers
E.
Connectivity to physical networks and routers
E.
Connectivity to physical networks and routers
Answers
Suggested answer: C, E

Explanation:

According to About Architecture and Design for a vSphere with Tanzu Workload Domain4, two of the functionalities that a NSX Tier-0 Gateway provides to a vSphere with Tanzu deployment are:

Connectivity to all Tier-1 Gateways: A Tier-0 Gateway connects to one or more Tier-1 Gateways that provide routing services for each namespace in vSphere with Tanzu.

Connectivity to physical networks and routers: A Tier-0 Gateway connects to external networks via uplink interfaces that can use static routing or dynamic routing protocols such as BGP.

Which two prerequisites must be met before creating a vSphere with Tanzu Namespace? (Choose two.)

A.
Define CPU and Memory limits
A.
Define CPU and Memory limits
Answers
B.
Create storage policies for persistent storage
B.
Create storage policies for persistent storage
Answers
C.
Enable a cluster with vSphere with Tanzu
C.
Enable a cluster with vSphere with Tanzu
Answers
D.
Enable Harbor Image Registry
D.
Enable Harbor Image Registry
Answers
E.
Assign user and groups access
E.
Assign user and groups access
Answers
Suggested answer: B, C

Explanation:

https://docs.vmware.com/en/VMware-vSphere/7.0/vmware-vsphere-with-tanzu/GUID-177C23C4-ED81-4ADD-89A2-61654C18201B.html

According to the VMware Cloud Foundation documentation1, the prerequisites for creating a vSphere Namespace are:

Configure a cluster with vSphere with Tanzu.This is the first step to enable Workload Management on a vSphere cluster and create a Kubernetes management cluster known as a Supervisor Cluster2

Create storage policies for persistent storage. Storage policies can define different types and classes of storage, for example, gold, silver, and bronze.They are used to specify the storage requirements for the vSphere Namespace and the workloads that run on it1

A) Define CPU and Memory limits is not a correct option, because it is not a prerequisite for creating a vSphere Namespace, but a configuration option that can be done after creating the namespace.CPU and Memory limits are used to specify the resource allocation for the vSphere Namespace and the workloads that run on it1

D) Enable Harbor Image Registry is not a correct option, because it is not a prerequisite for creating a vSphere Namespace, but an optional feature that can be enabled after creating the namespace. Harbor Image Registry is an embedded container registry that provides secure image management for the Supervisor Cluster and Tanzu Kubernetes clusters.It is only available when using NSX-T networking for the Supervisor Cluster3

E) Assign user and groups access is not a correct option, because it is not a prerequisite for creating a vSphere Namespace, but a configuration option that can be done after creating the namespace.User and group access are used to specify the permissions for the vSphere Namespace and the workloads that run on it1

What are the correct steps to grant the DevOps team permissions to a vSphere Namespace in a VMware Cloud Foundation (VCF) developer-ready workload domain while following the principle of least privilege access?

A.
At the Permissions setting, add the DevOps group and assign the ''Editor'' permission
A.
At the Permissions setting, add the DevOps group and assign the ''Editor'' permission
Answers
B.
At the Global Permissions setting, add the DevOps group and assign the vSphere Kubernetes Manager role
B.
At the Global Permissions setting, add the DevOps group and assign the vSphere Kubernetes Manager role
Answers
C.
At the Global Permissions setting, add the DevOps group and assign the SupervisorService Cluster Operator role
C.
At the Global Permissions setting, add the DevOps group and assign the SupervisorService Cluster Operator role
Answers
D.
At the Permissions setting, add the DevOps group and assign the ''Can edit'' permission
D.
At the Permissions setting, add the DevOps group and assign the ''Can edit'' permission
Answers
Suggested answer: A

Explanation:

At the Permissions setting, add the DevOps group and assign the ''Editor'' permission. This is the recommended way to grant the DevOps team permissions to a vSphere Namespace in a VMware Cloud Foundation (VCF) developer-ready workload domain while following the principle of least privilege access.According to the VMware Cloud Foundation documentation1, the Editor permission allows users to create, modify, and delete objects within a vSphere Namespace, such as vSphere Pods, Tanzu Kubernetes clusters, and stand-alone VMs.The Editor permission also allows users to view and manage storage policies, VM classes, and content libraries for the namespace1

B) At the Global Permissions setting, add the DevOps group and assign the vSphere Kubernetes Manager role is not a correct option, because it will grant more privileges than necessary to the DevOps team. The vSphere Kubernetes Manager role is a global role that allows users to manage all aspects of vSphere with Tanzu, such as enabling Workload Management on clusters, creating and configuring vSphere Namespaces, and managing storage policies and VM classes.This role should be assigned only to vSphere administrators who are responsible for configuring and maintaining the VCF developer-ready workload domain1

C) At the Global Permissions setting, add the DevOps group and assign the SupervisorService Cluster Operator role is not a correct option, because it will also grant more privileges than necessary to the DevOps team. The SupervisorService Cluster Operator role is a global role that allows users to manage all aspects of Supervisor Services on clusters, such as creating and configuring Supervisor Service namespaces, managing service accounts and roles, and deploying service instances.This role should be assigned only to vSphere administrators who are responsible for enabling and managing Supervisor Services on VCF developer-ready workload domains1

D) At the Permissions setting, add the DevOps group and assign the ''Can edit'' permission is not a correct option, because there is no such permission in vSphere with Tanzu. The available permissions for vSphere Namespaces are Viewer, Editor, and Admin. The Viewer permission allows users to view objects within a vSphere Namespace, but not create or modify them.The Admin permission allows users to perform all actions within a vSphere Namespace, as well as manage permissions for other users or groups1

Total 117 questions
Go to page: of 12