5V0-31-23 VMware Cloud Foundation Deployment Specialist Practice Questions
Prepare for 5V0-31-23 with more than an answer.
Unlock the full exam and previous versions
- v1Version 1 208 questions Current
- 5V0-31-22Legacy VMware Cloud Foundation Specialist (VCF v2) 173 questions Locked
- Exam fee
- $250 USD
- Level
- Specialist
- Valid for
- 2 years
Domains covered on the exam 5
- IT Architectures, Technologies, Standards
- VMware Solution
- Plan and Design the VMware Solution
- Install, Configure, Administrate the VMware Solution
- Troubleshoot and Optimize the VMware Solution
- 1
A hospital is implementing VCF+ for its new electronic health record (EHR) system to leverage cloud-based services and subscription licensing. The on-premises VCF instance needs to connect to VMware Cloud for key exchange and subscription validation. Which two components are essential for enabling this VCF+ connectivity? (Choose two.)
Show answer details
Correct answer: A, B
- 2
A VCF administrator notices that a critical out-of-band security patch has been released for NSX, but it is not yet available in the VCF bill of materials (BOM) and cannot be applied through a standard SDDC Manager upgrade. The security team requires the patch to be applied within 24 hours. What is the VMware-supported method to apply this patch?
Show answer details
Correct answer: B
The VCF Async Patch Tool is specifically designed for this scenario. It allows administrators to apply urgent, out-of-band patches to individual components (like NSX, vCenter, or ESXi) before they are officially included in a VCF release bundle. The tool applies the patch and, crucially, updates the SDDC Manager's inventory to reflect the new version. This prevents future lifecycle management operations from failing due to version mismatches and ensures the environment remains in a supported state.
- 3
Case Study: AeroDynamics Corp
AeroDynamics Corp is a defense contractor with stringent security requirements. They have a primary VCF 5.1 instance in their main data center (DC1) and are building a disaster recovery site in a secondary data center (DC2). They plan to deploy a second VCF instance in DC2. A key requirement is to have a single point of management for network and security policies that span both sites, allowing for seamless failover of applications with consistent security posture.
The VCF architecture team has decided to implement NSX Federation. They have successfully deployed the VCF Management Domain in DC1. Now, they are planning the deployment of the NSX Global Manager (GM) and the subsequent VCF bring-up in DC2. The diagram below shows the proposed architecture for the NSX management plane.
graph TD subgraph DC1 VCF1[VCF Instance 1] GM[NSX Global Manager] LM1[NSX Local Manager 1] VCF1 -- Manages --> LM1 end subgraph DC2 VCF2[VCF Instance 2] LM2[NSX Local Manager 2] VCF2 -- Manages --> LM2 end GM -- Controls --> LM1 GM -- Controls --> LM2
To ensure the solution is fully automated and managed by VCF, which statement describes the correct procedure for deploying the components?Show answer details
Correct answer: B
The entire lifecycle of NSX Federation in VCF is managed through SDDC Manager to maintain automation and consistency. The correct procedure is: 1. Use the SDDC Manager of the first VCF instance (DC1) to run the workflow that deploys the NSX Global Manager cluster into its Management Domain. 2. Perform the standard VCF bring-up in the second site (DC2) using its own Cloud Builder. 3. Return to the SDDC Manager in DC1 and use its federation workflow to 'add' or 'join' the second VCF instance, which registers the NSX Local Manager from DC2 with the Global Manager. This ensures VCF is aware of the entire federated topology for lifecycle management.
- 4
A cloud administrator for an e-commerce platform needs to create a new Supervisor Namespace in vSphere with Tanzu for the checkout services team. The team requires specific resource guarantees and limits to ensure performance. Which two actions can the administrator perform when configuring the Supervisor Namespace to control resource consumption? (Choose two.)
Show answer details
Correct answer: B, D
- 5
The SDDC Manager in a VCF environment has failed and must be restored from a file-based backup. The backup files are stored on an external SFTP server. What is the correct procedure to initiate the restore?
Show answer details
Correct answer: A
The restore process for a failed SDDC Manager involves deploying a completely new, clean SDDC Manager appliance from the original OVA. It's critical that this new appliance has the same build number, IP address, and FQDN as the failed one. During the initial power-on and setup wizard of this new appliance, there will be an option to restore from a backup. The administrator provides the SFTP server details and credentials, and the new appliance pulls the backup data to restore the configuration and operational state of the old manager.
- 6
A financial services company is deploying a new VMware Cloud Foundation (VCF) 5.1 instance. For compliance reasons, all management components must use certificates signed by their internal, multi-tier Public Key Infrastructure (PKI). The security team has provided the VCF administrator with a new subordinate CA certificate chain and private key specifically for the SDDC Manager. Which sequence of actions must the administrator perform within the SDDC Manager UI to replace the existing self-signed certificates with the new PKI-based certificates for all VCF components?
Show answer details
Correct answer: C
The correct process in SDDC Manager for using a private, multi-tier PKI involves first importing the entire certificate chain (root, intermediates) and the subordinate CA's private key into the SDDC Manager's certificate repository. Once the CA is established within SDDC Manager, the administrator can then use the UI to generate and install new certificates for all managed components (vCenter, NSX, etc.). This centralized approach avoids generating individual CSRs for each component and streamlines the process.
- 7
A VCF architect is designing a solution for a retail client with two geographically distinct data centers. The primary requirement is active-active workload mobility and centralized network policy management. The architect plans to use NSX Federation. To enable this, an NSX Global Manager cluster must be deployed. In a standard VCF deployment, where is the NSX Global Manager appliance typically deployed?
Show answer details
Correct answer: D
In a VMware Cloud Foundation environment, the deployment of NSX Federation components, including the NSX Global Manager, is an automated workflow orchestrated by the SDDC Manager. The Global Manager cluster is deployed into the Management Domain of the first VCF instance that will participate in the federation. This ensures it is managed and lifecycle-managed as part of the core VCF infrastructure.
- 8
A university is expanding its VCF environment by adding a new VI Workload Domain for a research project. The project requires Kubernetes capabilities. The administrator has enabled vSphere with Tanzu on the new workload domain's cluster. During namespace configuration, the administrator needs to define the network ranges for container workloads. Which three network CIDRs must be specified to successfully configure a Supervisor Namespace? (Choose three.)
Show answer details
Correct answer: A, B, D
- 9
True or False: When a new VI Workload Domain is created in a VCF environment, the vCenter Server appliance for that domain is deployed within the cluster of the newly created domain.
Show answer details
Correct answer: B
This statement is false. In a VMware Cloud Foundation architecture, all management components, including the vCenter Server appliances for any new VI Workload Domains, are deployed within the Management Domain's cluster. This centralizes the management plane and separates it from the workload infrastructure, which is a core architectural principle of VCF.
- 10
An administrator is tasked with performing a graceful shutdown of an entire VMware Cloud Foundation environment for scheduled data center power maintenance. What is the first major component that should be shut down after all customer workloads and virtual machines have been powered off?
Show answer details
Correct answer: D
The correct shutdown sequence for a VCF environment prioritizes shutting down workload-related components before management components. After ensuring all customer VMs are off, the first major step is to shut down the management components for the VI Workload Domains (their vCenter Servers and NSX Managers). Only after the workload domains are fully powered down should the administrator proceed to shut down the components in the Management Domain itself, such as its vCenter Server, NSX Managers, and finally the SDDC Manager VM.
