A VMware Cloud Foundation design is focused on IaaS control plane security, where the following requirements are present:
Support for Kubernetes Network Policies.
Cluster-wide network policy support.
Multiple Kubernetes distribution(s) support.
What would be the design decision that meets the requirements for VMware Container Networking?
A company will be expanding their existing VCF environment for a new application. The existing VCF environment currently has a management domain and two separate VI workload domains with different hardware profiles. The new application has the following requirements:
• The application will use significantly more memory than current workloads today.
• The application will have a limited number of licenses to run on hosts.
• Additional VCF and hardware costs have been approved for the application.
• The application will contain confidential customer information that requires isolation from other workloads.
What design recommendation should the administrator document?
The following requirements were identified in an architecture workshop for a VMware Cloud Foundation (VCF) design project utilizing vSAN for its primary storage solution:
REQ001: Application must maintain a minimum of 1,000 transactions per second (TPS) during business hours excluding disaster recovery (DR) scenarios.
REQ002: Automatic DRS and HA must be utilized.
REQ003: Planned maintenance must be executed outside of business hours.
Which of the following test scenarios should be added and performed to validate these requirements?
A design requirement has been specified for a new VMware Cloud Foundation (VCF) instance. All managed workload resources must be lifecycle managed with the following criteria:
• Development resources must be automatically reclaimed after two weeks
• Production resources will be reviewed yearly for reclamation
• Resources identified for reclamation must allow time for review and possible extension
What capability will satisfy the requirements?
During a requirements gathering workshop, several Business and Technical requirements were captured from the customer. Which requirement will be classified as a Business Requirement?
During a requirements gathering workshop, several Business and Technical requirements were captured from the customer. Which requirement is classified as a Technical Requirement?
The following are a set of design decisions related to networking:
DD01: Set NSX Distributed Firewall (DFW) to block all traffic by default.
DD02: Use VLANs to separate physical network functions.
DD03: Connect the management interface eth0 of each NSX Edge node to VLAN 100.
DD04: Deploy 2x 64-port Cisco Nexus 9300 switches for top-of-rack ESXi host connectivity.
Which design decision would an architect include in the logical design?
The following design decisions were made relating to storage design:
• A storage policy that would support failure of a single fault domain being the server rack
• Two vSAN OSA disk groups per host each consisting of four 4TB Samsung SSD capacity drives
• Two vSAN OSA disk groups per host each consisting of a single 300GB Intel NVMe cache drive
• Encryption at rest capable disk drives
• Dual 10Gb or faster storage network adapters
Which two design decisions would an architect include within the physical design? (Choose two.)
A customer is designing a new VMware Cloud Foundation stretched cluster using L2 non-uniform connectivity, where due to a past incident an attacker was able to inject some false routes into their dynamic global routing table. What design decision can be taken to prevent this when configuring the Tier-0 gateway?
An architect is documenting the design for a new VMware Cloud Foundation solution. During workshops with key stakeholders, the architect discovered that some of the workloads that will be hosted within the Workload Domains will need to be connected to an existing Fibre Channel storage array. How should the architect document this information within the design?
An architect is designing a new VMware Cloud Foundation (VCF) solution. During the discovery workshops, the customer explained that the solution will initially be used to host a single business application and some internal management tooling. The customer provided the following background information:
The business application consists of two virtual machines.
The business application is sensitive to changes in its storage I/O.
The business application must be available during the company’s business hours of 9 AM - 5 PM on weekdays.
The architect has made the following design decisions in response to the customer’s requirements and the additional information provided during discovery:
The solution will use the VCF consolidated architecture model.
A single cluster will be created, consisting of six ESXi hosts.
Which design decision should the architect include in the design to mitigate the risk of impacting the business application?
An administrator is designing a new VMware Cloud Foundation instance that has to support management, VDI, DB, and general workloads. The DB workloads will stay the same in terms of resources over time. However, the general workloads and VDI environments are expected to grow over the next 3 years. What should the architect include in the documentation?
An architect is working on higher-scale NSX Grouping and security design requirements for Management and VI Workload Domains in VMware Cloud Foundation. Which NSX Manager appliance size will be considered for use?
During a security-focused design workshop for a new VMware Cloud Foundation (VCF) solution, a key stakeholder described the current and potential future approach to user authentication within their organization. The following information was captured by an architect:
All users within the organization currently have Active Directory-backed user accounts.
A separate project is planned to evaluate the use of different 3rd-party identity solutions to enforce Multi-Factor Authentication (MFA) on all user accounts.
The MFA project will only provide a recommendation on which identity solution the organization should implement.
The MFA project will need to request budget for any licenses that need to be procured for the recommended identity solution.
The new VCF environment may be deployed before the MFA project has completed and therefore must be able to integrate with both the current and any proposed future identity solutions.
Which TWO items should the architect include in their design documentation? (Choose TWO.)
An Architect is responsible for designing a VMware Cloud Foundation (VCF)-based solution for a customer. During the discovery workshop, the following requirements were stated by the customer:
All applications/workloads designated as business critical have a Recovery Point Objective (RPO) of 1 business hour.
The infrastructure components of the VCF solution must have a Recovery Time Objective (RTO) of 4 business hours.
In the context provided, what does the RTO measure?
During a requirement capture workshop, the customer expressed a plan to use Aria Operations Continuous Availability. The customer identified two datacenters that meet the network requirements to support Continuous Availability; however, they are unsure which of the following datacenters would be suitable for the Witness Node.
Which datacenter meets the minimum network requirements for the Witness Node?
An architect is designing a VMware Cloud Foundation (VCF)-based solution for a customer with the following requirement:
The solution must not have any single points of failure.
To meet this requirement, the architect has decided to incorporate physical NIC teaming for all vSphere host servers. When documenting this design decision, which consideration should the architect make?
An architect is working on a leaf-spine design requirement for NSX Federation in VMware Cloud Foundation. Which recommendation should the architect document?
An Architect has been tasked with reviewing a VMware Cloud Foundation design document. Observe the following requirements:
REQ01: The solution must support the private cloud cybersecurity industry and local standards and controls.
REQ02: The solution must ensure that the cloud services are transitioned to operation teams.
REQ03: The solution must provide a self-service portal.
REQ04: The solution must provide the ability to consume storage based on policies.
REQ05: The solution should provide the ability to extend networks between different availability zones.
REQ06: The solution should allow only supported versions of management solutions to be deployed.
Observe the following design decisions:
DD01: There will be a clustered deployment of Aria Automation.
DD02: There will be an integration between Aria Automation and multiple geo-located vCenter Servers.
DD03: Aria Suite Lifecycle will be deployed to provide lifecycle management of Aria Suite components.
Based on the stated requirements, what are the three implications for taking the stated design decisions? (Choose three.)
During the requirements gathering workshop for a new VMware Cloud Foundation (VCF)-based Private Cloud solution, the customer states that the solution must:
• Provide a single interface for monitoring all components of the solution.
• Minimize the effort required to maintain the solution to N-1 software versions.
When creating the design document, under which design quality should the architect classify these stated requirements?
During a requirement gathering workshop, various Business and Technical requirements were collected from the customer. Which requirement would be categorized as a Business Requirement?
An architect is designing a VMware Cloud Foundation (VCF)-based private cloud solution for a customer. The customer has stated the following requirement:
All components within the solution must be resilient to N+1.
During discovery, the following information has also been provided:
Over the next 3 years, due to various applications being retired, no overall growth in resource consumption is expected.
Following a review of a demand-based capacity report from Aria Operations, the architect has calculated that all of the existing workloads should fit into a 4-node cluster. Once all workloads are migrated, the resources of the cluster will be 90% utilized.
Given the information provided, a combination of which three design decisions satisfy the requirement? (Choose three.)