Question 16
An administrator creates a custom alert in VCF Operations with CPU utilization greater than 99 percent and a recommendation to reboot the guest operating system. The alert triggers correctly, but the guest operating system is not restarted automatically. Why is the guest operating system not restarted automatically, as requested by the recommendation in the alert definition?
Question 17
A Security Administrator is defining the Role-Based Access Control (RBAC) requirements for the service account used by VCF Operations to integrate with vCenter Server.
# Integration: vCenter Adapter
# Goal: Principle of Least Privilege
# Functionality Required:
- Collection of Metrics/Properties
- Analysis of Capacity
- Execution of "Reclaim Resources" actions (Delete Unused Snapshots, Power Off Idle VMs) Which set of permissions must be assigned to the service account?
# Integration: vCenter Adapter
# Goal: Principle of Least Privilege
# Functionality Required:
- Collection of Metrics/Properties
- Analysis of Capacity
- Execution of "Reclaim Resources" actions (Delete Unused Snapshots, Power Off Idle VMs) Which set of permissions must be assigned to the service account?
Question 18
An administrator uses the Rightsize feature within VCF Operations which identifies an oversized VM and provides a default recommendation of a 4 vCPU reduction. After speaking to the VM owner, the administrator agrees to limit the downsizing amount to 50% of the default recommendation and to schedule the reduction during the upcoming maintenance window. Which action does the administrator take to perform the vCPU reduction automatically during the maintenance window?
Question 19
When creating an alert for "User Lockout", the administrator wants the email subject line to dynamically include the specific Username that was locked out, rather than a generic "Lockout Detected" message.
How can this be achieved in the Alert Definition?
How can this be achieved in the Alert Definition?
Question 20
A Cloud Admin needs to deploy Application Monitoring (using Telegraf agents) for a set of VMs in an isolated "PCI-Compliance" network zone. This zone has no direct internet access and strict firewall rules.
# Network Constraints
PCI Zone -> Internet: DENIED
PCI Zone -> Management LAN: DENIED
PCI Zone -> Cloud Proxy (in DMZ): ALLOWED (Port 443)
# Configuration
Agent Type: Managed Telegraf Agent
Deployment Method: Bootstrap Script
How does the Cloud Proxy facilitate Application Monitoring in this restricted architecture? (Choose 2.)
# Network Constraints
PCI Zone -> Internet: DENIED
PCI Zone -> Management LAN: DENIED
PCI Zone -> Cloud Proxy (in DMZ): ALLOWED (Port 443)
# Configuration
Agent Type: Managed Telegraf Agent
Deployment Method: Bootstrap Script
How does the Cloud Proxy facilitate Application Monitoring in this restricted architecture? (Choose 2.)
