Free 3V0-21.23 Exam Braindumps (page: 2)

Page 1 of 24

Following a review of security requirements, an architect has confirmed the following requirements:

REQ01- A clustered firewall solution must be placed at the perimeter of the hosting platform, and all ingress and egress network traffic will route via this device.

REQ02- A distributed firewall solution must secure traffic for all virtualized workloads.

REQ03- All virtualized workload, hypervisor, firewall and any management component system events must be monitored by security administrators.

REQ04- The hosting platforms security information and event management (SIEM) system must be scalable to 20,000 events per second.

REQ05- The hosting platforms storage must be configured with data-at-rest encryption.

REQ06- The hosting platform limits access to authorized users.

Which three requirements would be classified as technical (formerly non-functional) requirements? (Choose three.)

  1. A clustered firewall solution must be placed at the perimeter of the hosting platform, and all ingress and egress network traffic will route via this device.
  2. A distributed firewall solution must secure traffic for all virtualized workloads.
  3. The hosting platforms security information and event management (SIEM) system must be scalable to 20,000 events per second.
  4. The hosting platforms storage must be configured with data-at-rest encryption.
  5. The hosting platform limits access to authorized users.
  6. All virtualized workload, hypervisor, firewall and any management component system events must be monitored by security administrators.

Answer(s): A,C,D

Explanation:

A clustered firewall solution must be placed at the perimeter of the hosting platform, and all ingress and egress network traffic will route via this device:

This is a technical requirement because it specifies how network traffic is to be managed through a specific infrastructure element (the firewall). It outlines how the security device is implemented in the network architecture.

The hosting platform's security information and event management (SIEM) system must be scalable to 20,000 events per second:

This is a technical requirement because it deals with the scalability and performance of the SIEM system. It specifies how the system must handle a large volume of data, which is a technical characteristic of the infrastructure.

The hosting platform's storage must be configured with data-at-rest encryption:

This is also a technical requirement because it defines how the data should be stored securely, which is an implementation detail. It specifies that encryption needs to be applied to stored data, a feature related to storage infrastructure.



An architect is designing a solution for a customer to meet the following business objectives:

Pass compliance audits

Reuse compute hardware

Grow by 10% per year

Move to a subscription-based consumption model

Which business objective translates as a conceptual model constraint?

  1. Pass compliance audits
  2. Reuse compute hardware
  3. Move to a subscription-based consumption model
  4. Grow by 10% per year

Answer(s): A

Explanation:

This is the business objective that translates to a conceptual model constraint, as it is an external requirement that must be met by the system design, influencing how the architecture should be shaped. Compliance audits often dictate specific standards, security, and operational procedures that must be adhered to, which restricts the design choices in terms of governance and best practices.



A company is expanding and will be deploying new vSphere environments in multiple new locations. All environments use datastores backed by multiple storage technologies and vendors.

How can the architect create a design to efficiently and repeatedly distribute existing company virtual machine (VM) templates to multiple new locations?

  1. Use storage array replication tools to replicate the storage volume holding the company VM templates to each remote site.
  2. Upload company templates to a cloud provider and download to each new location.
  3. Create a published content library and have the new locations subscribe to it.
  4. Create a local content library at each site and manually copy only needed templates.

Answer(s): C

Explanation:

This option allows for a centralized repository of VM templates that can be efficiently and repeatedly distributed to multiple locations. By creating a published content library, you enable the new locations to subscribe to this library, ensuring that the templates are synchronized and easily accessible. This approach minimizes manual effort and ensures consistency across all sites.



An architect is documenting the design decisions for a new vSphere solution. The following design decision has been made:

Create a separate vSphere cluster for the management workloads

What could the architect include as justification for this design decision?

  1. This increases operational overhead as multiple clusters are required for management and compute workloads.
  2. This increases capital expenditure as hardware must be purchased for multiple clusters.
  3. This ensures that compute workloads have no impact on the management workloads.
  4. This ensures that compute workloads have no impact on the management workloads.

Answer(s): C

Explanation:

Creating a separate vSphere cluster for management workloads ensures that these workloads, which are critical for monitoring, managing, and orchestrating the environment, do not compete for resources with compute workloads. This separation enhances the stability and reliability of management functions, even during periods of high resource utilization by compute workloads.






Post your Comments and Discuss VMware 3V0-21.23 exam with other Community members:

3V0-21.23 Exam Discussions & Posts