To reduce the attack vectors for a virtual machine, which two settings should an administrator set to false? (Choose two.)
A. ideX:Y.present
B. serial.present
C. ideX:Y.enabled
D. serial.enabled
Answer: AB
Which two groups of settings should be reviewed when attempting to increase the security of virtual machines (VMs)? (Choose two.)
A. Disable hardware devices
B. Disable unexposed features
C. Disable VMtools devices
D. Disable VM Template features
Answer: AB
Tuesday, 12 September 2017
Monday, 12 June 2017
VMware 2V0-621D Question Answer
A common root user account has been configured for a group of ESXi 6.x hosts.
Which two steps should be taken to mitigate security risks associated with this configuration? (Choose two.)
A. Remove the root user account from the ESXi host.
B. Set a complex password for the root account and limit its use.
C. Use ESXi Active Directory capabilities to assign users the administrator role.
D. Use Lockdown mode to restrict root account access.
Answer: BC
An administrator wants to configure an ESXi 6.x host to use Active Directory (AD) to manage users and groups. The AD domain group ESX Admins is planned for
administrative access to the host.
Which two conditions should be considered when planning this configuration? (Choose two.)
A. If administrative access for ESX Admins is not required, this setting can be altered.
B. The users in ESX Admins are not restricted by Lockdown Mode.
C. An ESXi host provisioned with Auto Deploy cannot store AD credentials.
D. The users in ESX Admins are granted administrative privileges in vCenter Server.
Answer: AC
Which two steps should be taken to mitigate security risks associated with this configuration? (Choose two.)
A. Remove the root user account from the ESXi host.
B. Set a complex password for the root account and limit its use.
C. Use ESXi Active Directory capabilities to assign users the administrator role.
D. Use Lockdown mode to restrict root account access.
Answer: BC
An administrator wants to configure an ESXi 6.x host to use Active Directory (AD) to manage users and groups. The AD domain group ESX Admins is planned for
administrative access to the host.
Which two conditions should be considered when planning this configuration? (Choose two.)
A. If administrative access for ESX Admins is not required, this setting can be altered.
B. The users in ESX Admins are not restricted by Lockdown Mode.
C. An ESXi host provisioned with Auto Deploy cannot store AD credentials.
D. The users in ESX Admins are granted administrative privileges in vCenter Server.
Answer: AC
Monday, 8 May 2017
VMware Tightens NSX Integration with Photon

AUSTIN, Texas - Today at the Dockercon 2017 conference, VMware announced that an integration between its NSX network virtualization software and Photon OS has been significantly improved. Photon OS is a lightweight Linux distribution developed by VMware to house containers.Paul Fazzone, general manager of native cloud applications at VMware, said that NSX can now be used to create virtual networks on a pod level within a group of Kubernetes that runs on top of Photon OS.
In addition, VMware also incorporates DHCP services along with support for overlapping IP addresses across subnets, floating IP addresses and multiple routers within a deployment. VMware is also providing IT organizations with more granular control over Kubernetes clusters along with tighter integration with VMware vSAN storage software and Microsoft Active Directory and LDAP-based network directories.These capabilities collectively make it possible to automatically isolate container applications that run on top of Kubernetes using micro-segmentation and virtual firewalls, Fazzone said."We are automating networking at the container level," says Fazzone.
PhotonPhoton OS was originally developed by VMware to provide a Linux operating system for a wide variety of applications that the company makes available to customers to deploy tools such as VMware vCenter. To address the need to manage the containers, VMware developed a Photon driver. The controller and Photon OS are collectively packaged together to create the photon platform.Fazzone said the Photon platform enables IT organizations that have already invested in virtual networks and VMware storage technologies to support container applications. Rather than having to deploy additional storage platforms and networks, IT organizations must be able to standardize on a common layer of networks and storage services for both legacy and emerging cloud applications, Fazzone said.
Through the photon platform, VMware is trying to navigate a major shift in the way products and technologies are introduced into the enterprise. Thanks to increased DevOps processes, Fazzone said that developers today exert much more influence over platform options. The Photon Platform is designed to help bridge the gap between IT operations teams that have standardized on VMware software and native cloud application developers. That's critical, Fazzone said, because in the absence of a platform like Photon, IT organizations will find themselves duplicating network and storage services they already have in place.
Dennis Smith, a Gartner industry analyst, said closing that gap is critical if VMware wants to remain relevant to the company."They have about 18 months to prove they can be part of the larger container community," Smith said.Today, most containers are deployed in a public cloud or on top of a virtual machine (VM). In these environments, VMware provides VMware Integrated Containers (VIC) so that it is possible to manage the containers running on top of VMware VMs.
A new update from 1.1 to VIC announced today provides a new user interface for container management.But as more IT organizations become familiar with the containers, a much larger percentage of containers will end up being deployed on bare metal servers to significantly increase server utilization. Because containers essentially replace virtual machines on those systems, VMware is clearly trying to position itself as a virtual network provider and storage fabric that can support any type of application regardless of whether it runs on a virtual machine or a metal server naked.
Tuesday, 11 April 2017
Thursday, 1 September 2016
VMware 2V0-621D Question Answer
Lockdown Mode has been enabled on an ESXi 6.x host and users are restricted from logging into the Direct Console User Interface (DCUI). Which two statements are true given this configuration? (Choose two.)
A. A user granted administrative privileges in the Exception User list can login.
B. A user defined in the DCUI.Access without administrative privileges can login.
C. A user defined in the ESXi Admins domain group can login.
D. A user set to the vCenter Administrator role can login.
Answer: AB
Strict Lockdown Mode has been enabled on an ESXi host. Which action should an administrator perform to allow ESXi Shell or SSH access for users with administrator privileges?
A. Grant the users the administrator role and enable the service.
B. Add the users to Exception Users and enable the service.
C. No action can be taken, Strict Lockdown Mode prevents direct access.
D. Add the users to vsphere.local and enable the service.
Answer: B
A. A user granted administrative privileges in the Exception User list can login.
B. A user defined in the DCUI.Access without administrative privileges can login.
C. A user defined in the ESXi Admins domain group can login.
D. A user set to the vCenter Administrator role can login.
Answer: AB
Strict Lockdown Mode has been enabled on an ESXi host. Which action should an administrator perform to allow ESXi Shell or SSH access for users with administrator privileges?
A. Grant the users the administrator role and enable the service.
B. Add the users to Exception Users and enable the service.
C. No action can be taken, Strict Lockdown Mode prevents direct access.
D. Add the users to vsphere.local and enable the service.
Answer: B
Tuesday, 12 July 2016
Pass4sure 2V0-621D Question Answer
Which three options are available for ESXi Certificate Replacement? (Choose three.)
A. VMware Certificate Authority mode
B. Custom Certificate Authority mode
C. Thumbprint mode
D. Hybrid Deployment
E. VMware Certificate Endpoint Authority Mode
Answer: ABC
A. VMware Certificate Authority mode
B. Custom Certificate Authority mode
C. Thumbprint mode
D. Hybrid Deployment
E. VMware Certificate Endpoint Authority Mode
Answer: ABC
Subscribe to:
Posts (Atom)