Cloud, Associate (JNCIA-CLOUD) Practice Questions
Prepare for JN0-214 with more than an answer.
- Exam fee
- $200 USD
- Time limit
- 90 minutes
- Questions on the exam
- 65
- Passing score
- 60-70% (scale Unknown)
- Level
- Associate
- Valid for
- 3 years
Domains covered on the exam 7
- Cloud Fundamentals15%
- Cloud Infrastructure (NFV and SDN)20%
- Network Virtualization15%
- Cloud Virtualization15%
- Cloud Orchestration - OpenStack15%
- Cloud Orchestration - Kubernetes12%
- Cloud Orchestration - OpenShift8%
- 1
A telecommunications provider is implementing an NFV strategy based on the ETSI MANO framework. They are deploying a service chain that includes a Juniper vSRX as a Virtual Network Function (VNF). During operations, the system needs to automatically scale out the number of vSRX instances based on traffic load. Which component of the ETSI MANO architecture is directly responsible for the lifecycle management of an individual VNF, including instantiation, scaling, and termination?
Show answer details
Correct answer: B
Within the ETSI MANO framework, the VNF Manager (VNFM) is specifically tasked with managing the lifecycle of one or more VNFs. This includes instantiation, configuration, scaling (in/out and up/down), and termination. While the NFV Orchestrator (NFVO) manages the overall network service lifecycle and the VIM manages the infrastructure resources, the VNFM is the component that directly controls the state of the individual VNF instances like the vSRX.
graph TD subgraph ETSI MANO NFVO(NFV Orchestrator) -->|manages| VNFM(VNF Manager) NFVO -->|allocates| VIM(Virtualised Infrastructure Manager) VNFM -->|controls| VIM end VIM -->|manages| NFVI[NFV Infrastructure] subgraph NFVI VNF1(vSRX) VNF2(...) end VNFM -->|Lifecycle Mgmt| VNF1 - 2
A technology startup utilizes a multi-faceted cloud strategy to support its operations. Their infrastructure team provisions raw virtual machines from a public cloud provider to build and manage their custom monitoring tools from the ground up. Their development team deploys containerized applications onto a managed Kubernetes offering from the same provider, where the underlying infrastructure is fully managed. For daily operations, the entire company uses a subscription-based, third-party application for customer relationship management that is accessed via a web browser. Which cloud service models correspond to these three use cases? (Select THREE).
Show answer details
Correct answer: B, C, E
Renting raw virtual machines where you manage the OS and applications is a classic example of IaaS. You are responsible for everything from the operating system upwards.
A managed Kubernetes service abstracts away the underlying infrastructure (control plane, nodes, OS patching), providing a platform for developers to deploy and manage applications. This is a prime example of PaaS.
A subscription-based application accessed over the web, where the vendor manages the entire stack (application, data, infrastructure), is the definition of SaaS.
- 3
An OpenStack administrator is investigating a user's report that their request to launch a new virtual machine instance failed with the error message:
No valid host was found. There are not enough hosts available.The administrator needs to determine why the scheduling process failed. Which OpenStack service is primarily responsible for making the scheduling decision to place VMs on compute hosts, and therefore its logs should be examined first for detailed information about this failure?Show answer details
Correct answer: D
The OpenStack Compute service, Nova, is responsible for the entire lifecycle of virtual machines. Specifically, the
nova-schedulercomponent within Nova is responsible for determining which compute host (runningnova-compute) is best suited to run a new instance based on resource availability and filtering rules. The error 'No valid host was found' directly indicates a scheduling failure, making the nova-scheduler logs the primary source for troubleshooting. - 4
Which two statements are correct about cloud computing? (Choose two.) A.Cloud computing eliminates operating expenses.B.Cloud computing has the ability to scale elastically.C.Cloud computing increases the physical control of the data resources.D.Cloud computing allows access to data any time from any location through the Internet.
Show answer details
Correct answer: B, D
- 5
A developer is creating a new application to automate network policy updates using an SDN controller like Juniper Contrail. The application needs to programmatically define and push new security policies to the controller. Which type of API would the application use to communicate its intent to the SDN controller?
graph TD subgraph SDN Architecture App[Network Automation App] -- Northbound_API --> Controller[SDN Controller] Controller -- Southbound_API --> Switch1[Switch 1] Controller -- Southbound_API --> Switch2[Switch 2] endShow answer details
Correct answer: B
The Northbound API in an SDN architecture is used for communication between the SDN controller and the applications or orchestration systems running 'above' it. It allows these applications to express their requirements (e.g., 'create a new security policy') to the controller. The controller then translates this intent into specific rules and pushes them to the network devices using the Southbound API.
- 6
A financial services company is deploying a private cloud using OpenStack Zed. The security policy mandates that all administrative actions performed via the OpenStack APIs must be auditable and tied to a specific user identity. Which OpenStack component is primarily responsible for enforcing this policy by managing user authentication and service catalogs?
Show answer details
Correct answer: C
Keystone is the identity service for OpenStack. It provides API client authentication, service discovery, and distributed multi-tenant authorization by implementing OpenStack's Identity API. All other OpenStack services use Keystone to validate user requests and locate other services, making it central to security and auditability. Nova is the compute service, Neutron is the networking service, and Cinder is the block storage service.
- 7
A cloud administrator is configuring an overlay network for a multi-tenant environment and requires the ability to carry both Layer 2 MAC and Layer 3 IP information within the control plane. The solution must be highly scalable and use a standards-based protocol for advertising network reachability. Which technology combination best fulfills these requirements?
Show answer details
Correct answer: C
EVPN (Ethernet VPN) uses BGP as a control plane to distribute Layer 2 MAC address and Layer 3 IP reachability information, which is ideal for large-scale overlay networks. When used with a VXLAN data plane, it provides a highly scalable and standards-based solution that avoids the need for flood-and-learn mechanisms. VLANs with STP are not an overlay technology and have scaling limitations. VXLAN with multicast relies on flooding, which is less scalable than a BGP control plane. GENEVE is a flexible encapsulation but does not define its own control plane.
- 8
A DevOps team is using an OpenShift 4.10 cluster for their CI/CD pipeline. They need to run specialized build tools that have high resource requirements and should not compete for resources with regular application workloads. Additionally, these build pods need to be scheduled on specific nodes that have been provisioned with extra CPU and memory. Which two OpenShift node types should be used to achieve this separation? (Select TWO).
Show answer details
Correct answer: B, D
Worker nodes (or compute nodes) are where standard application workloads run. The specially provisioned nodes for the builds would be a subset of worker nodes, often with specific labels.
Infrastructure nodes are designated to run parts of the OpenShift platform stack, like the registry, router, and monitoring components. By moving these services to dedicated infrastructure nodes, and scheduling heavy build pods there as well (via taints and tolerations), you can effectively isolate them from the general application workloads running on standard worker nodes.
- 9
True or False: In a Software-Defined Networking (SDN) architecture, the control plane is distributed across all networking devices, and each device makes independent forwarding decisions based on its local configuration.
Show answer details
Correct answer: B
The statement describes a traditional networking architecture. The fundamental principle of SDN is the separation of the control plane from the data plane. In SDN, the control plane is centralized in an SDN controller, which makes intelligent forwarding decisions for the entire network. The networking devices (data plane) simply execute the forwarding instructions received from the controller.
- 10
A developer is writing a YAML manifest for an application deployment on a Kubernetes 1.24 cluster. The application needs a persistent storage volume that survives pod restarts. The cluster administrator has already provisioned several backend storage options via the StorageClass API. Which Kubernetes API object must the developer define in their manifest to request storage from a pre-defined StorageClass?
Show answer details
Correct answer: C
A PersistentVolumeClaim (PVC) is a request for storage by a user. The developer's pod manifest will reference a PVC. The PVC, in turn, specifies requirements like size and access mode, and can name a StorageClass to dynamically provision a PersistentVolume (PV) that satisfies the claim. The PV is the actual storage resource, typically managed by the administrator, while the PVC is the developer's request for that resource.
