ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 17 - 2V0-21.23 discussion

Report
Export

An administrator is tasked with configuring certificates for a VMware software-defined data center (SDDC) based on the following requirements:

• All certificates should use certificates trusted by the Enterprise Certificate Authority (CA).

• The solution should minimize the ongoing management overhead of replacing certificates.

Which three actions should the administrator take to ensure that the solution meets corporate policy? (Choose three.)

A.
Replace the VMware Certificate Authority (VMCA) certificate with a self-signed certificate generated from the
Answers
A.
Replace the VMware Certificate Authority (VMCA) certificate with a self-signed certificate generated from the
B.
Replace the machine SSL certificates with custom certificates generated from the Enterprise CA.
Answers
B.
Replace the machine SSL certificates with custom certificates generated from the Enterprise CA.
C.
Replace the machine SSL certificates with trusted certificates generated from the VMwareCertificate Authority (VMCA).
Answers
C.
Replace the machine SSL certificates with trusted certificates generated from the VMwareCertificate Authority (VMCA).
D.
Replace the VMware Certificate Authority (VMCA) certificate with a custom certificate generated from the Enterprise CA.
Answers
D.
Replace the VMware Certificate Authority (VMCA) certificate with a custom certificate generated from the Enterprise CA.
E.
Replace the solution user certificates wife custom certificates generated from the Enterprise CA.
Answers
E.
Replace the solution user certificates wife custom certificates generated from the Enterprise CA.
F.
Replace the solution user certificates with trusted certificates generated from the VMware Certificate Authority (VMCA).
Answers
F.
Replace the solution user certificates with trusted certificates generated from the VMware Certificate Authority (VMCA).
Suggested answer: B, D, E

Explanation:

Option B, D and E are correct because they allow the administrator to replace the machine SSL certificates, the VMware Certificate Authority (VMCA) certificate and the solution user certificates with custom certificates generated from the Enterprise CA, which will ensure that all certificates are trusted by the Enterprise CA and minimize the ongoing management overhead of replacing certificates. Option A is incorrect because replacing the VMCA certificate with a self-signed certificate generated from the VMCA will not ensure that the certificate is trusted by the Enterprise CA. Option C is incorrect because replacing the machine SSL certificates with trusted certificates generated from the VMCA will not ensure that the certificates are trusted by the Enterprise CA. Option F is incorrect because replacing the solution user certificates with trusted certificates generated from the VMCA will not ensure that the certificates are trusted by the Enterprise CA.

Reference: https://docs.vmware.com/en/VMwarevSphere/ 7.0/com.vmware.vsphere.security.doc/GUID-A2A4371A-B888-404C-B23FC422A8C40F54.html

asked 16/09/2024
Darpan Sodhi
41 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first