Easter Sale 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: save70

VMware 3V0-21.23 Based on Real Exam Environment

Page: 5 / 7
Total 92 questions

VMware vSphere 8.x Advanced Design Questions and Answers

Question 17

An architect is tasked with creating a design for a vSphere-based solution.

Reviewing requirements with the security team, the architect makes the following design decision:

ESXi hosts in the environment will enable shell sandbox for SSH connections and the local ESXi shell

What is an implication of the design decision to enable shell sandboxing?

Options:

A.

Only certain commands can be executed in the sandboxed shell

B.

Only administrative accounts can access the sandbox shell

C.

All commands executed in the sandbox shell will be logged

D.

The vSphere 8 hosts will operate in strict lockdown mode

Question 18

An architect is reviewing the security and compliance requirements for a new application that will be hosted on a vSphere 8 environment.

The following information has been noted about the new application:

The application stores and processes confidential data

The supporting virtual infrastructure is shared with other departments

No other application stores or processes confidential data

The application virtual machines must be able to run on any ESXi host in the cluster

The storage layer is a iSCSI attached SAN

Data at Rest Encryption is in place for each presented LUN validated to FIPS 140-2

No budget is available for additional infrastructure components or software

Application data must not be accessible outside of the application's virtual machines

The architect has been tasked with providing a secure virtual machine design to host the application.

Which three design elements must the architect include to meet the requirements? (Choose three.)

Options:

A.

Virtual Machine Encryption

B.

The vSphere Native Key Provider

C.

A new encrypted iSCSI LUN

D.

External Key Management Service (KMS) provider

E.

A new local VMFS volume

F.

VMware vSAN

Question 19

What is a use case for a VMware Cloud Foundation consolidated architecture model?

Options:

A.

Run customer workloads in separate virtual infrastructure workload domains for scalability and autonomous licensing.

B.

Deploy an SDDC for a small-scale environment that can be extended later.

C.

Implement a dedicated management domain for high availability of management workloads.

D.

Deploy a large-scale environment with multiple vCenter instances for workload isolation.

Question 20

An architect is responsible for designing a new vSphere-based solution to meet the following customer requirements:

The solution must support component-level redundancy.

The solution must support physical segregation of management and workload traffic.

Any traffic from virtual infrastructure-level operations (such as migrations of workloads between hosts within a cluster) must not impact any workload.

The solution should react to any substantial impact of physical network traffic to ensure workload traffic is unaffected.

In response to this requirement, the architect makes the following logical design decisions:

The solution will separate vSphere management traffic from all other network traffic.

The solution will ensure that all replication and vMotion traffic will be separated from all other traffic.

The solution will separate workload traffic from all other network traffic.

The customer has a hardware standard for physical VMware ESXi host servers that includes 6 x 10 GbE network.

Which three physical design decisions should the architect make to meet the requirements? (Choose three.)

Options:

A.

The solution will configure the Route Based on Source MAC Hash load balancing method.

B.

The solution will deploy three (3) vSphere standard switches each with a single uplink port group.

C.

The solution will configure the six (6) available network connections into load balanced pairs.

D.

The solution will deploy a vSphere distributed switch with three (3) uplink port groups.

E.

The solution will configure the six (6) available network connections into a single load balanced group.

F.

The solution will configure the Route Based on Physical NIC Load load balancing method.

Page: 5 / 7
Total 92 questions