VMware 2V0-621 Exam Practice Questions (P. 1)
- Full Access (243 questions)
- Six months of Premium Access
- Access to one million comments
- Seamless ChatGPT Integration
- Ability to download PDF files
- Anki Flashcard files for revision
- No Captcha & No AdSense
- Advanced Exam Configuration
Question #1
An administrator wants to provide users restricted access. The users should only be able to perform the following tasks:
✑ Create and consolidate virtual machine snapshots
✑ Add/Remove virtual disks
✑ Snapshot Management
Which default role in vCenter Server would meet the administrator's requirements for the users?
✑ Create and consolidate virtual machine snapshots
✑ Add/Remove virtual disks
✑ Snapshot Management
Which default role in vCenter Server would meet the administrator's requirements for the users?
- AVirtual machine user
- BVirtual machine power user
- CVirtual Datacenter administrator
- DVMware Consolidated Backup user
Correct Answer:
B
A sample role that grants a user access rights only to virtual machines; can alter the virtual hardware or create snapshots of the
Virtual Machine Power User:
VM -
Reference:
https://communities.vmware.com/thread/480179?start=0&tstart=0 https://www.pluralsight.com/blog/tutorials/vmware-access-control-101-roles-and-permissions
B
A sample role that grants a user access rights only to virtual machines; can alter the virtual hardware or create snapshots of the
Virtual Machine Power User:
VM -
Reference:
https://communities.vmware.com/thread/480179?start=0&tstart=0 https://www.pluralsight.com/blog/tutorials/vmware-access-control-101-roles-and-permissions
send
light_mode
delete
Question #2
Which two roles can be modified? (Choose two.)
- AAdministrator
- BNetwork Consumer
- CDatastore Consumer
- DRead-Only
Correct Answer:
BC
Three of the pre-established roles are permanent, meaning that the privileges associated with that role cannot be modified. These permanent roles are available to a stand-alone ESX or ESXi server, or to vCenter Server. The remaining eight are sample roles which can be modified as needed. These eight roles are exclusive to vCenter Server.
Below are the pre-established roles:
A permanent role that is assigned to new users and groups. Prevents a user or group from viewing or making changes to an object
✑ No Access:
A permanent role that allows users to check the state of an object or view its details, but not make changes to it
✑ Read-Only:
A permanent role that enables a user complete access to all of the objects on the server. The root user is assigned this role by default, as are
✑ Administrator:
all of the users who are part of the local Windows Administrators group associated with vCenter Server. At least one user must have administrative permissions in VMware.
A sample role that allows a user complete and total control of a virtual machine or a host, up to and including removing that
✑ Virtual Machine Administrator:
VM or host -
A sample role that grants a user access rights only to virtual machines; can alter the virtual hardware or create snapshots of the
✑ Virtual Machine Power User:
VM -
Grants user access rights exclusively to VMs. The user can power on, power off, and reset the virtual machine, as well as run media
✑ Virtual Machine User:
from the virtual discs.
Allows the user to create resource pools (RAM and CPU reserved for use) and assign these pools to virtual machines
✑ Resource Pool Administrator:
Permits a user to add new datacenter objects
✑ Datacenter Administrator:
Required to allow VMware Consolidated Backup to run
✑ VMware Consolidated Backup User:
Allows the user to consume space on a datastore
✑ Datastore Consumer:
Allows the user to assign a network to a virtual machine or a host
✑ Network Consumer:
Reference:
https://docs.vmware.com/en/VMware-vSphere/6.0/com.vmware.vsphere.security.doc/GUID-18071E9A-EED1-4968-8D51-E0B4F526FDA3.html
BC
Three of the pre-established roles are permanent, meaning that the privileges associated with that role cannot be modified. These permanent roles are available to a stand-alone ESX or ESXi server, or to vCenter Server. The remaining eight are sample roles which can be modified as needed. These eight roles are exclusive to vCenter Server.
Below are the pre-established roles:
A permanent role that is assigned to new users and groups. Prevents a user or group from viewing or making changes to an object
✑ No Access:
A permanent role that allows users to check the state of an object or view its details, but not make changes to it
✑ Read-Only:
A permanent role that enables a user complete access to all of the objects on the server. The root user is assigned this role by default, as are
✑ Administrator:
all of the users who are part of the local Windows Administrators group associated with vCenter Server. At least one user must have administrative permissions in VMware.
A sample role that allows a user complete and total control of a virtual machine or a host, up to and including removing that
✑ Virtual Machine Administrator:
VM or host -
A sample role that grants a user access rights only to virtual machines; can alter the virtual hardware or create snapshots of the
✑ Virtual Machine Power User:
VM -
Grants user access rights exclusively to VMs. The user can power on, power off, and reset the virtual machine, as well as run media
✑ Virtual Machine User:
from the virtual discs.
Allows the user to create resource pools (RAM and CPU reserved for use) and assign these pools to virtual machines
✑ Resource Pool Administrator:
Permits a user to add new datacenter objects
✑ Datacenter Administrator:
Required to allow VMware Consolidated Backup to run
✑ VMware Consolidated Backup User:
Allows the user to consume space on a datastore
✑ Datastore Consumer:
Allows the user to assign a network to a virtual machine or a host
✑ Network Consumer:
Reference:
https://docs.vmware.com/en/VMware-vSphere/6.0/com.vmware.vsphere.security.doc/GUID-18071E9A-EED1-4968-8D51-E0B4F526FDA3.html
send
light_mode
delete
Question #3
An administrator with global administrator privileges creates a custom role but fails to assign any privileges to it.
Which two privileges would the custom role have? (Choose two.)
Which two privileges would the custom role have? (Choose two.)
- ASystem.View
- BSystem.Anonymous
- CSystem.User
- DSystem.ReadOnly
Correct Answer:
AB
When you add a custom role and do not assign any privileges to it, the role is created as a Read Only role with three system-defined privileges:
System.Anonymous, System.View, and System.Read.
Reference:
https://docs.vmware.com/en/VMware-vSphere/6.0/com.vmware.vsphere.hostclient.doc/GUID-5ACE7CFA-75EC-4EF3-95E7-19962D76225E.html
)
AB
When you add a custom role and do not assign any privileges to it, the role is created as a Read Only role with three system-defined privileges:
System.Anonymous, System.View, and System.Read.
Reference:
https://docs.vmware.com/en/VMware-vSphere/6.0/com.vmware.vsphere.hostclient.doc/GUID-5ACE7CFA-75EC-4EF3-95E7-19962D76225E.html
)
send
light_mode
delete
Question #4
An administrator wishes to give a user the ability to manage snapshots for virtual machines.
Which privilege does the administrator need to assign to the user?
Which privilege does the administrator need to assign to the user?
- ADatastore.Allocate Space
- BVirtual machine.Configuration.create snapshot
- CVirtual machine.Configuration.manage snapshot
- DDatastore.Browse Datastore
Correct Answer:
A

Reference:
https://docs.vmware.com/en/VMware-vSphere/6.0/com.vmware.vsphere.security.doc/GUID-4D0F8E63-2961-4B71-B365-BBFA24673FDB.html
A

Reference:
https://docs.vmware.com/en/VMware-vSphere/6.0/com.vmware.vsphere.security.doc/GUID-4D0F8E63-2961-4B71-B365-BBFA24673FDB.html
send
light_mode
delete
Question #5
An object has inherited permissions from two parent objects.
What is true about the permissions on the object?
What is true about the permissions on the object?
- AThe common permissions between the two are applied and the rest are discarded.
- BThe permissions are combined from both parent objects.
- CNo permissions are applied from the parent objects.
- DThe permission is randomly selected from either of the two parent objects.
Correct Answer:
B
If an object inherits permissions from two parent objects, the permissions on one object are added to the permissions on the other object. For example, if a virtual machine is in a virtual machine folder and also belongs to a resource pool, that virtual machine inherits all permission settings from both the virtual machine folder and the resource pool.
Reference:
https://pubs.vmware.com/vsphere-55/index.jsp?topic=%2Fcom.vmware.vsphere.security.doc%2FGUID-72EE3449-79FD-4E7A-B164-26904958540F.html
B
If an object inherits permissions from two parent objects, the permissions on one object are added to the permissions on the other object. For example, if a virtual machine is in a virtual machine folder and also belongs to a resource pool, that virtual machine inherits all permission settings from both the virtual machine folder and the resource pool.
Reference:
https://pubs.vmware.com/vsphere-55/index.jsp?topic=%2Fcom.vmware.vsphere.security.doc%2FGUID-72EE3449-79FD-4E7A-B164-26904958540F.html
send
light_mode
delete
All Pages