3V0-21.23Free trialFree trial

By vmware
Aug, 2025

Verified

25Q per page

Question 1

Following a review of security requirements, an architect has confirmed the following requirements:
REQ001- A clustered firewall solution must be placed at the perimeter of the hosting platform, and all ingress and egress network traffic will route via this device.
REQ002- A distributed firewall solution must secure traffic for all virtualized workloads.
REQ003- All virtualized workload, hypervisor, firewall and any management component system events must be monitored by security administrators.
REQ004- The hosting platforms security information and event management (SIEM) system must be scalable to 20,000 events per second.
REQ005- The hosting platforms storage must be configured with data-at-rest encryption.
REQ006- The hosting platform limits access to authorized users.
Which three requirements would be classified as technical (formerly non-functional) requirements? (Choose three.)

  • A: A clustered firewall solution must be placed at the perimeter of the hosting platform, and all ingress and egress network traffic will route via this device.
  • B: A distributed firewall solution must secure traffic for all virtualized workloads.
  • C: The hosting platforms security information and event management (SIEM) system must be scalable to 20,000 events per second.
  • D: The hosting platforms storage must be configured with data-at-rest encryption.
  • E: The hosting platform limits access to authorized users.
  • F: All virtualized workload, hypervisor, firewall and any management component system events must be monitored by security administrators.

Question 2

An architect is reviewing the information provided by a customer for a new vSphere solution design. The customer has stated that some of the virtual machines (VMs) that will be hosted on the new solution handle credit card information from their users as part of an online payment application, and that some of the information will need to be stored temporarily to allow transactions to be completed. Therefore, the solution must be designed to be able to mask or hash the stored information as they will need to show compliance against common industry standards that contain references to the requirements for handling sensitive information.
Which design quality is being requested by the customer?

  • A: Manageability
  • B: Performance
  • C: Security
  • D: Recoverability

Question 3

Which four factors should an architect consider when calculating the number of hosts required for a new multi-site vSphere-based solution that utilizes external storage? (Choose four.)

  • A: The workload profile (CPU and memory) of each workload
  • B: The amount of resources required for virtual machine (VM) swap and VM snapshots
  • C: The number of existing workloads that will be decommissioned prior to the completion of project
  • D: The number of existing workloads that will be migrated onto the new solution
  • E: The number of network connections per physical host server
  • F: The future physical location of any workloads
  • G: The hardware specification of the underlying infrastructure

Question 4

An architect is designing a backup solution.
Which two statements should be included in the logical design for this solution? (Choose two.)

  • A: The database must be backed up every day during the maintenance window of 1:00AM and 3:00AM.
  • B: The network that will be used for backups will be configured to use VLAN ID 1511.
  • C: The bkp-nfs-01 datastore will be used for backups.
  • D: The company's existing backup solution will be unsupported by the third-party vendor in six months.
  • E: The database will be backed up using an API-based backup solution.

Question 5

An architect is tasked with helping a customer develop a design that meets the following requirements:
Must have no single point of failure
Must include thorough standard operating procedure documentation
Must use VMXNET3 virtual network interface card
Must have 99.9% uptime Service Level Agreement
Must use the latest version of VMware vSphere
Which two are considered constraints? (Choose two.)

  • A: Must use the latest version of VMware vSphere
  • B: Must have no single point of failure
  • C: Must use VMXNET3 virtual network interface card
  • D: Must include thorough standard operating procedure documentation
  • E: Must have 99.9% uptime Service Level Agreement

Question 6

A company has the requirement to ensure that business-critical applications have the necessary network bandwidth to function optimally and maintain a consistent quality of service (QoS).
Which statement would be included in the conceptual design to support this requirement?

  • A: A distributed switch will be created and Network I/O Control will be enabled.
  • B: The network infrastructure must ensure secure communications and efficiently use available bandwidth.
  • C: Network resource pool named "bca-pool-02" is given a reservation quota of 5 Gbit/sec.
  • D: The distributed switch will use a minimum of 25 Gbps Ethernet.

Question 7

An architect is designing the virtual networking components of a vSphere-based solution that will provide an environment for the development of a new latency sensitive stock trading application.
The following information was identified within the initial meeting with the customer:
The customer has vCenter Standard and vSphere Standard licenses left over from a previous project.
The customer's CFO has approved budget for additional purchases, if required.
The following requirements were also identified during the meeting:
The solution must support 500 development workloads concurrently running in the secondary site.
The solution must support the ability to complete all vSphere Operational Management centrally.
The solution must ensure business-critical applications are not impacted by vSphere system-level operations.
Given the requirements, the architect has decided on a single 20-node cluster for development.
Which three additional design decisions should the architect make to meet these requirements? (Choose three.)

  • A: The solution will configure Traffic Shaping policies to restrict network bandwidth on ingress and egress.
  • B: The solution will deploy VMware vSphere Enterprise Plus on all hosts within the cluster.
  • C: The solution will deploy VMware vSphere Standard on all hosts within the cluster.
  • D: The solution will deploy a single VMware Standard Switch that will be configured identically on each host.
  • E: The solution will deploy a single vSphere Distributed Switch with each host connected to it.
  • F: The solution will configure Network I/O control to ensure that system-level bandwidth does not impact workload network traffic.

Question 8

An architect is designing a new vSphere-based solution for a customer.
During a requirements gathering workshop, the following information is provided:
The solution must have a primary and secondary (isolated) environment
The solution must support orchestration to address application dependencies
The isolated environment must be able to scale on demand in case of a DR scenario
The solution is managed through a single interface
Which solution should the architect include in this design?

  • A: Site Recovery Manager with dedicated hardware
  • B: Disaster Recovery with VMware Cloud on AWS
  • C: vSAN stretched cluster
  • D: A dedicated fault domain

Question 9

An architect is holding a requirements workshop with a customer for a new vSphere solution design. The customer states that the solution should make it easy to identify and apply patches or updates to ESXi hosts, including the ability to pre-stage the files on the ESXi hosts.
Which design quality is being referenced by the customer?

  • A: Recoverability
  • B: Manageability
  • C: Performance
  • D: Availability

Question 10

An architect is designing a new vSphere-based solution for a customer.
During a requirements gathering workshop, the following information is provided:
The solutions must provide a recovery point objective (RPO) of 15 minutes.
The solution must have a primary and secondary site.
The solution must support orchestration to address application dependencies.
Which two solutions should the architect include in the design to meet these requirements? (Choose two.)

  • A: vSAN stretched cluster
  • B: vSphere HA
  • C: Site Recovery Manager
  • D: vSphere Fault Tolerance
  • E: vSphere Replication

Question 11

An architect is designing a vSphere-based private cloud solution to support the following customer requirements:
The solution should support running 5,000 concurrent production compute workloads across the primary and secondary sites.
The solution should support running 1,000 development compute workloads within the secondary site.
The solution should support up to 50 management workloads across the primary and secondary site.
The solution must ensure the isolation of virtual infrastructure management operations between management and compute workloads.
The solution must ensure that the hosting of any virtual infrastructure management workloads does not impact the amount of capacity available for compute workloads.
The solution must ensure that all production compute workloads are physically isolated from development compute workloads.
The solution must ensure that the operational management of compute workloads in the secondary site is possible in the event of a disaster affecting the primary site.
How many VMware vCenter instances will the architect need to include in the design to meet these requirements?

  • A: 5
  • B: 3
  • C: 2
  • D: 4

Question 12

An architect is designing a solution for a customer to meet the following business objectives:

Pass compliance audits -

Reuse compute hardware -

Grow by 10% per year -
Move to a subscription-based consumption model
Which business objective translates as a conceptual model constraint?

  • A: Pass compliance audits
  • B: Reuse compute hardware
  • C: Move to a subscription-based consumption model
  • D: Grow by 10% per year

Question 13

An architect is creating the design for a vSphere platform that will be used as the target for a migration from multiple legacy vSphere platforms that are being decommissioned. The customer has provided the following information:
Each legacy platform has its own set of virtual machine templates stored in OVF format.
All of the templates need to be migrated to the new platform.
After migration, the templates should be centralized into a single location.
The templates must be accessible to all clusters in the new platform vCenter instance.
Any new templates added to the central location must be automatically available to all clusters.
Administrators must be able to deploy new virtual machines directly from the template instances.
The customer also confirmed that after the migrations are complete, the new platform will be the only vSphere solution available.
Which design choice should the architect evaluate in the logical design for the storage and management of virtual machine templates?

  • A: Use a dedicated datastore on each vSphere cluster
  • B: Use a shared datastore on each vSphere cluster
  • C: Use a subscribed content library
  • D: Use a local content library

Question 14

A company is expanding an existing vSphere deployment to meet new demands from the business. The following requirements have been identified for the expanded infrastructure:
REQ001- It must support enhanced vMotion compatibility (EVC) mode for Intel "Nehalem" Generation (Intel Xeon Core i7) processors.
REQ002- It must be accessible via an API.
REQ003- It must support a variety of operating systems.
REQ004- It must notify administrators whenever a virtual machine is connected to more than one network.
Which requirement would be classified as a technical (formerly non-functional) requirement?

  • A: It must be accessible via an API.
  • B: It must notify administrators whenever a virtual machine is connected to more than one network.
  • C: It must support enhanced vMotion compatibility (EVC) mode for Intel "Nehalem" Generation (Intel Xeon Core i7) processors.
  • D: It must support a variety of operating systems.

Question 15

An architect is designing a new vSphere solution. The customer has provided the following information to describe how the solution will be used:
The solution will host development workloads
Administrators will utilize snapshots frequently, with snapshots sometimes retained for extended periods of time
Some of the workloads are sensitive to latency on the I/O of the storage
Storage for the workloads will be provided by a physical array
The physical array does not include a storage provider
All workloads must be hosted on the solution, there are no other vSphere environments available for use
Which design decision should the architect make to meet the needs of the customer?

  • A: Use a storage array which supports VMware vSphere APIs: Array Integration (VAAI) to configure VMFS datastores for the workloads
  • B: On workloads which will use snapshots, set the latency-sensitivity=high advanced setting
  • C: Use a storage array which supports vSphere Storage APIs - Storage Awareness (VASA) to configure Virtual Volumes (vVols) datastores for the workloads
  • D: On workloads which are sensitive to latency, set the latency-sensitivity=high advanced setting

Question 16

An architect has been tasked with designing a greenfield hosting platform.
As part of a workshop, it is identified that the new solution must support the following:
Provide a centralized way to enforce virtual network security policy
Provide network security for both virtual machines and containerized applications
Deny network access between all workloads by default
Linked services should be connected to the same virtual port groups by default
Support for the security teams network monitoring solution
Which elements should the architect include in the design to meet the identified requirements?

  • A: VMware Standard Switches, Access Lists and Promiscuous mode
  • B: Distributed Virtual Switches, Access Lists and Promiscuous mode
  • C: VMware Carbon Black, Distributed Virtual Switches and Traffic Filtering
  • D: VMware NSX, Distributed Firewalls and Port Mirroring

Question 17

An architect has made the following assumptions:
The customer will provide licensing for the vSphere platform.
The storage hardware has sufficient capacity for future workload scale.
The data center offers sufficient power, cooling and rack space for workload scale.
Which two risks must be documented in the design document in response to these assumptions? (Choose two.)

  • A: The assumptions must be approved by the customer, architect and the architect’s company.
  • B: The storage may not have capacity to accommodate 20% year over year virtual machine growth.
  • C: The licenses provided by the customer only have support entitlement for one year.
  • D: The customer may not have an existing licensing subscription that covers features the architect intends to use.
  • E: The customer may not have sufficient data center cooling, power, and physical rack space available.

Question 18

An architect is designing the datastore configuration of a new vSphere-based solution.
The following information was obtained during the initial meeting with the customer:
There is currently 500 production and DMZ virtual machine workloads spread evenly across the primary and secondary site.
The profile of the workloads (per site) is as follows:
DMZ:
75 x Small: 1 vCPU, 2GB RAM, 200 GB disk
Production:
50 x Small: 1 vCPU, 2 GB RAM, 200 GB disk
100 x Medium: 2 vCPU, 4 GB RAM, 200 GB disk
25 x Large: 4 vCPU, 8 GB RAM, 500 GB disk
The average IO Profile per workload is 70/30 read/write.
The solution should cater to 10% storage growth in the first year.
The solution should cater to 15% virtual machine snapshot overhead.
The storage team has confirmed:
A scalable external storage array has been deployed per site to support the storage requirements.
The storage array will connect to all hosts using a dedicated Fibre Channel storage area network fabric.
Usable storage capacity is available in 10 TB LUNs.
As many LUNs as required can be provided.
Every effort should be made to ensure the number of required LUNs is minimized.
The security team has stated that all DMZ and production workloads must remain logically isolated from each other.
Given the information provided, which three design decisions should the architect make to meet the requirements? (Choose three.)

  • A: Six 10TB VMFS datastores will be configured on each site for all production workloads.
  • B: Four 10TB VMFS datastores will be configured on each site for all production workloads.
  • C: Each 10TB LUN will be configured as a VMFS datastore.
  • D: Two 10TB VMFS datastores will be configured on each site for all DMZ workloads.
  • E: Each 10TB LUN will be configured as an NFS datastore.
  • F: Seven 10TB VMFS datastores will be configured on each site for all workloads.

Question 19

An architect is reviewing the security and compliance requirements for a new application that will be hosted on a vSphere 8 environment.
The following information has been noted about the new application:
The application stores and processes confidential data
The supporting virtual infrastructure is shared with other departments
No other application stores or processes confidential data
The application virtual machines must be able to run on any ESXi host in the cluster
The storage layer is a iSCSI attached SAN
Data at Rest Encryption is in place for each presented LUN validated to FIPS 140-2
No budget is available for additional infrastructure components or software
Application data must not be accessible outside of the application's virtual machines
The architect has been tasked with providing a secure virtual machine design to host the application.
Which three design elements must the architect include to meet the requirements? (Choose three.)

  • A: Virtual Machine Encryption
  • B: The vSphere Native Key Provider
  • C: A new encrypted iSCSI LUN
  • D: External Key Management Service (KMS) provider
  • E: A new local VMFS volume
  • F: VMware vSAN

That’s the end of your free questions

You’ve reached the preview limit for 3V0-21.23

Consider upgrading to gain full access!

Page 1 of 4 • Questions 1-25 of 91

Free preview mode

Enjoy the free questions and consider upgrading to gain full access!