最適な練習法にはNutanix NCP-CI-Azure問題集で素晴らしいNCP-CI-Azure試験問題PDF
更新された検証済みの合格させるNCP-CI-Azure試験リアル問題と解答
質問 # 36
An administrator has been asked to create a cluster to support new workloads.
What are the maximum number of nodes supported in an NC2 on Azure environment?
- A. 24 nodes
- B. 14 nodes
- C. 18 nodes
- D. 28 nodes
正解:C
解説:
* NC2 Cluster Node Limit: NC2 on Azure has specific limitations regarding the maximum number of nodes supported in a single cluster.
* Maximum Nodes: According to the current NC2 on Azure guidelines, a single cluster can support up to
18 nodes.
* Workload Support: This limitation ensures optimal performance and management of resources within the Azure environment.
* Comparison of Options:
* 14 nodes: Less than the maximum supported.
* 24 nodes and 28 nodes: Exceed the maximum supported, potentially leading to performance and management issues.
* Conclusion: For supporting new workloads, the maximum number of nodes in an NC2 on Azure environment is 18.
References:
* Nutanix Clusters on Azure Technical Specifications
* Azure Virtual Machine Scale Sets Documentation
質問 # 37
An administrator needs to configure the correct outbound requirement for a successful cluster deployment in Azure.
Which destination must have an outbound rule to meet this requirement?
- A. Https://support.nutanix.com/*
- B. https://nutanix.dev/*
- C. Https://downloads.cloud.nutanix.com/*
- D. Https://portal.nutanix.com/*
正解:C
解説:
* Outbound Rule Necessity: For successful cluster deployment, certain outbound connections must be allowed to ensure proper download and configuration of resources.
* Critical Destination: "Https://downloads.cloud.nutanix.com/*" is a critical endpoint from which the Nutanix software and updates are downloaded during the cluster deployment process.
* Functionality: Ensuring an outbound rule for this destination allows the deployment to fetch necessary files and updates, enabling smooth cluster setup and operation.
* Other Destinations:
* Https://portal.nutanix.com/: Used for accessing the Nutanix portal, not directly related to deployment downloads.
* Https://support.nutanix.com/: Used for support-related tasks, not for deployment-specific downloads.
* https://nutanix.dev/: Related to development and API documentation, not necessary for initial deployment.
* Conclusion: Outbound connectivity to "Https://downloads.cloud.nutanix.com/*" is essential for downloading deployment resources.
References:
* Nutanix NC2 on Azure Network Configuration Guide
* Azure Network Security Documentation
質問 # 38
An administrator has setup a routed external network (No NAT) to use for workload running in NC2 clusters on Azure.
The applications are network intensive, so four gateways VMs have been deployed to meet the high demands.
One application server on the NC2 clusters is sending traffic to an outside Azure service.
How many flow gateway VMs will be used to distribute the traffic?
- A. Only one Flow Gateway instance will be used per source application running on NC2.
- B. All four Flow Gateway instances will be used based on the ECMP default route that points 3 the external subnets in the Nutanix Transit VPC, but only for sending traffic. Return traffic by use one Flow Gateway VM.
- C. All four Flow Gateway instances will be used based on the ECMP default route that points to the external subnets in the Nutanix Transit VPC for sending and receiving traffic.
- D. two flow gateway instances will be used based on limitations from using MAC addresses to redistribute traffic.
正解:C
解説:
* Equal-Cost Multi-Path (ECMP) Routing:ECMP allows multiple gateways to be used simultaneously for load balancing traffic across multiple paths. In this scenario, ECMP is configured to point to the external subnets in the Nutanix Transit VPC.
* Traffic Distribution:All four Flow Gateway instances will be used to distribute the outgoing traffic from the application server based on the ECMP default route configuration. This ensures efficient load balancing and utilization of all available gateway resources.
* Bidirectional Traffic:Both sending and receiving traffic will utilize all four Flow Gateway instances, ensuring high availability and performance for network-intensive applications.
References:
* Nutanix NC2 Networking Guide
* Azure Networking Documentation on ECMP
質問 # 39
What will be observed in the NC2 cluster when terminating a node from the Azure portal?
- A. NC2 will mark the node as degraded.
- B. NC2 will continue re-provisioning the node.
- C. NC2 will shutdown the node.
- D. NC2 will terminate the node from the cluster.
正解:A
解説:
* Node Termination Observation:When a node is terminated from the Azure portal, the NC2 cluster will detect that the node is no longer operational.
* Marking as Degraded:NC2 will mark the node as degraded, indicating that the node is not functioning as expected. This status allows administrators to take necessary actions to resolve the issue, such as provisioning a new node or addressing the degradation cause.
References:
* Nutanix NC2 Cluster Management Guide
* Azure Instance Termination Documentation
質問 # 40
When selecting the NC2 subscription plan from the Nutanix billing portal, which options are available?
- A. Pay-as-you-Go (payG), Bring your own License (BYOL)
- B. Reserved instances, Bring your own License (BYOL)
- C. Pay-as-you-Go (PayG), Cloud Provider Credits, Bring you own License (BYOL)
- D. Reserved instances, Cloud Provider Credits, Bring your own License (BYOL)
正解:A
解説:
When selecting the NC2 subscription plan from the Nutanix billing portal, the available options are:
* Pay-as-you-Go (PayG):Allows you to pay for the services as you use them, providing flexibility and avoiding upfront costs.
* Bring your own License (BYOL):Enables you to use your existing Nutanix licenses within the cloud environment, offering cost savings if you already have licenses.
These options provide flexibility in how you can manage and pay for your Nutanix cloud clusters.References
* Nutanix Cloud Clusters Pricing and Plans
質問 # 41
A company wants to start using Nutanix Cloud Clusters (NC2) in Azure. The company has large spend commitments as part of a Microsoft Azure Consumption Commitment (MACC) totaling $15 million.
What approach should the administrator take to ensure the Nutanix licensing costs apply to the MACC?
- A. Request a trial directly from Nutanix.
- B. Purchase Nutanix licenses through the Azure Marketplace.
- C. Leverage existing Nutanix licenses
- D. Purchase Nutanix licenses directly from Nutanix and contact Microsoft support.
正解:B
質問 # 42
Which statement best describes south bound traffic to a Nutanix User VPC originating outside the BC2 cluster when using a no-NAT (routed path) having two or more Flow Gateways (FGW)?
- A. A BGP gateway is deployed as Azure native VMs in the Prism Central VNet. The BGP gateway advertises externally routable IP addresses to the Azure Route Server, with each active FGW external IP address as the next hop.
- B. A BGP gateway runs inside of Prism Central. The BGP gateway advertises externally mutable IP addresses to the Azure Route Server, with each active FGW external IP address as the next hop.
- C. A BGP gateway is deployed as Azure native VMs in the Prism Central VNet. The BGP gateway advertises externally routable IP addresses to the Prism Central, with each active FGW external IP address as the next hop.
- D. A BGP gateway runs on the CVM of the bare-metal hosts. The BGP gateway advertises externally routable IP addresses to the Azure Route Server, with each active FGW external IP address the next hop.
正解:A
解説:
* BGP Gateway Deployment:The BGP gateway is deployed as Azure native VMs within the Prism Central VNet. This deployment ensures seamless integration with Azure's networking infrastructure.
* Route Advertisement:The BGP gateway advertises the externally routable IP addresses to the Azure Route Server. This setup allows for dynamic routing and efficient traffic management.
* Flow Gateways (FGW) as Next Hops:Each active Flow Gateway's external IP address is used as the next hop. This configuration ensures that southbound traffic is correctly routed to the appropriate Flow
* Gateway, providing efficient and reliable connectivity.
References:
* Nutanix NC2 Networking Guide
* Azure Route Server and BGP Documentation
質問 # 43
An administrator is tasked with adding an Azure account to the NC2 console. A requirement is to configure an Azure user that can open, close or extend a support tunnel for the Nutanix Support team.
Which permission must be assigned to the user?
- A. Customer Auditor
- B. Account Administrator
- C. Cluster Administrator
- D. Cluster Auditor
正解:B
解説:
* Account Administrator Role:This role grants the necessary permissions for managing the Azure account, including the ability to open, close, or extend a support tunnel. These capabilities are crucial for the Nutanix Support team to perform diagnostics and troubleshooting efficiently.
* Permissions Included:The Account Administrator role encompasses broader account management rights, ensuring that the user can interact with various support and operational aspects of the NC2 environment within Azure.
References:
* Azure Role-Based Access Control (RBAC) Documentation
* Nutanix NC2 Support Tunnel Requirements
質問 # 44
An administrator is planning on building the network prior to deploying a Nutanix cluster into Azure.
Which two components require their own vNets for NC2 in Azure? (Choose two.)
- A. Prism Central
- B. Bare-metal instance
- C. Azure Load Balancer
- D. Virtual Network Gateway
正解:A、B
解説:
* NC2 on Azure Deployment: Deploying Nutanix clusters in Azure involves configuring various components, each needing appropriate network isolation and configuration.
* Components and vNets:
* Bare-metal instance: Requires its own vNet to ensure proper network isolation and performance.
* Prism Central: Needs a dedicated vNet to manage and monitor the Nutanix environment, ensuring it has the required network access and isolation.
* Azure Load Balancer: Does not require its own vNet but needs to be associated with the appropriate vNet where services are deployed.
* Virtual Network Gateway: Is used for VPN connections but does not necessitate a separate vNet; it operates within an existing vNet.
* Network Isolation: Providing separate vNets for Bare-metal instances and Prism Central ensures optimal performance and management capabilities.
* Conclusion: Both Bare-metal instances and Prism Central require their own vNets in the NC2 on Azure deployment.
References:
* Nutanix Clusters on Azure Deployment Guide
* Azure Virtual Network Documentation
質問 # 45
Exhibit.
An administrator is trying to create an NC2 cluster in Azure, but does not see the required region in the drop-down list.
Which two steps could the administrator take to resolve this issue? (Choose two.)
- A. Ensure that the Azure region is whitelisted for use by Microsoft in the subscription.
- B. Check the NC2 Billingconsole to ensure the region is listed.
- C. Check the Azure subscription is created in the correct region.
- D. Check the list of regions specified under the NC2 organization cloud account.
正解:A、D
解説:
* Check the list of regions specified under the NC2 organization cloud account:The list of available regions in the NC2 console might be restricted based on the configuration of the cloud account associated with the NC2 organization. Verifying this list ensures that the desired region is included and available for cluster creation.
* Ensure that the Azure region is whitelisted for use by Microsoft in the subscription:Sometimes, specific regions need to be explicitly enabled or whitelisted in the Azure subscription for certain services. This step ensures that the required region is permitted for use within the Azure subscription, allowing the NC2 cluster to be created in that region.
References:
* Azure Subscription and Service Limits Documentation
* Nutanix NC2 Configuration and Setup Guide
質問 # 46
Which interface must be used to deploy NC2?
- A. NC2 Tile within the my.nutanix.com portal
- B. Foundation running in a Cloud Virtual Machine
- C. Prism Central Dashboard
- D. Cloud Provider portal
正解:A
解説:
* my.nutanix.com Portal:This portal provides access to various Nutanix services and features, including the NC2 deployment interface.
* NC2 Tile:The NC2 tile within the portal is specifically designed for deploying and managing Nutanix Cloud Clusters. It provides the necessary tools and settings to initiate and configure NC2 clusters on Azure or other cloud environments.
References:
* Nutanix NC2 Deployment Guide
* my.nutanix.com Portal Documentation
質問 # 47
What is an available log module when configuring a syslog server in the Prism Central Admin Center?
- A. Acropolis
- B. Zookeeper
- C. Prism
- D. API Audit
正解:A
解説:
* Log Modules in Prism Central:When configuring a syslog server, different log modules can be selected to send logs to an external syslog server for centralized logging and analysis.
* Acropolis Logs:The Acropolis module captures logs related to the Acropolis Hypervisor (AHV), including virtual machine operations, storage operations, and other critical functions within the Nutanix environment.
References:
* Nutanix Prism Central Administration Guide
* Nutanix Acropolis Documentation
質問 # 48
An organization wants to use a Jump Host to access Prism Element and Prism Central within an NC2 cluster on Azure.
Which statement is true?
- A. Jump Host must not be used. Only VPN or ExpressRoute should be use.
- B. Jump Host instance can only be deployed in the Prism Central VNet.
- C. Jump Host instance must be deployed in the cluster VNet.
- D. Jump Host instance can be deployed in the Prism Central VNet or an external VNet.
正解:D
解説:
* Jump Host Deployment:A Jump Host is a secure server used to access other systems in a network. In the context of an NC2 cluster on Azure, it serves as an intermediary for accessing Prism Element and Prism Central.
* Flexible Deployment Options:The Jump Host can be deployed in either the Prism Central VNet or an external VNet, providing flexibility in network design and access strategies. This allows the organization to choose the most suitable network for deploying the Jump Host based on their security and connectivity requirements.
References:
* Nutanix NC2 on Azure Deployment Guide
* Azure Virtual Network Configuration Documentation
質問 # 49
An administrator is tasked with configuring connectivity between an on-premises datacenter and Azure.
Which two connectivity options are supported? (Choose two.)
- A. Leased Line
- B. ExpressRoute
- C. Direct Connect
- D. VPN
正解:B、D
解説:
For configuring connectivity between an on-premises datacenter and Azure, the two supported options are:
* VPN (Virtual Private Network):Site-to-Site VPN allows you to create a secure connection from your on-premises network to Azure over the public internet using IPsec/IKE protocols.
* ExpressRoute:Provides a private connection between your on-premises infrastructure and Azure, ensuring traffic does not traverse the public internet.
Both options provide secure and reliable connectivity, with ExpressRoute offering enhanced performance and security due to its private connection.References
* Azure VPN Gateway
* Azure ExpressRoute Overview
質問 # 50
An administrator has been tasked with deploying a new production NC2 cluster on Azure and is studying the deployment requirements.
How many Azure Ready Nodes, at a minimum, must the administrator ensure are deployed withinthe cluster?
- A. 0
- B. 1
- C. 2
- D. 3
正解:A
解説:
* Minimum Node Requirement:For production deployments, Nutanix typically requires a minimum of three nodes to ensure high availability and fault tolerance within the cluster.
* Azure Ready Nodes:Deploying at least three Azure Ready Nodes allows the cluster to provide redundancy, ensuring that the failure of a single node does not affect the overall availability and performance of the cluster.
References:
* Nutanix NC2 on Azure Deployment Guide
* High Availability and Redundancy Best Practices
質問 # 51
An organization uses a Pay As. You Go subscription plan and wants to pay directly to Nutanix.
What is a valid payment method available to pay directly to Nutanix?
- A. Via Credit Card
- B. Via Online Payment Platform
- C. Via Physical Check
- D. Via Wire Transfer
正解:D
解説:
* Payment Method Options:When using a Pay As You Go subscription plan and opting to pay directly to Nutanix, wire transfer is a valid and secure payment method.
* Direct Payment:Wire transfers allow for the direct transfer of funds from the organization's bank account to Nutanix, ensuring a straightforward and efficient payment process.
References:
* Nutanix Billing and Payment Documentation
* Pay As You Go Subscription Payment Methods Guide
質問 # 52
An administrator needs to ensure API calls are executing successfully from NC2 to manage Azure resources.
Which cluster outbound to Azure connections are required to satisfy this task?
- A. apikeys.nutanix.com
- B. managementazure.com
- C. azure-support.nutan/x.com
- D. portal.azure.com
正解:A
解説:
* API Key Management:For NC2 to manage Azure resources successfully, it needs to authenticate and authorize API calls. This is typically handled through API keys, which are managed via specific endpoints.
* Required Connection:The endpointapikeys.nutanix.comis crucial for managing these API keys.
Ensuring connectivity to this endpoint allows NC2 to verify and utilize the API keys needed for interacting with Azure services.
References:
* Nutanix NC2 API Configuration Guide
* Azure API Management Documentation
質問 # 53
The cluster has the following configuration:
A Transit VPC exists as Default, but is additionally configured with a overlay-external-subnet-nonat overlay subnet The ERP for the Transit VPC is 10.1.1.0/25 A User VPC exists named User_VPC_Prod The ERP for the User VPC is 10.1.1.0/24 Outbound and inbound routes have been configured A User VM NO-NAT subnet has been configured in the User VPC The administrator has successfully created a VM and added the NIC associated with the NO-NAT subnet, but is not able to communication with other resources.
Which option will resolve this issue?
- A. Ensure that the security groups associated with the VM allow traffic to and from the desired resources.
- B. Check that the network ACLs for the NO-NAT subnet are not blocking the necessary traffic.
- C. Verify that the route table associated with the User VPC has appropriate routes to the Transit VPC.
- D. The ERP in the User VPC must be from a different CIDR range than the ERP in the transit VPC.
正解:D
解説:
In this scenario, the issue arises from overlapping IP address ranges between the Transit VPC and the User VPC. Here's a detailed breakdown:
* Understanding ERPs (Elastic Routing Prefixes):
* The ERP for the Transit VPC is 10.1.1.0/25, which covers IP addresses from 10.1.1.0 to
10.1.1.127.
* The ERP for the User VPC is 10.1.1.0/24, which covers IP addresses from 10.1.1.0 to 10.1.1.255.
* IP Address Overlap:
* Since 10.1.1.0/25 is a subset of 10.1.1.0/24, there is a significant overlap in the IP address ranges of these two ERPs.
* This overlap can cause routing issues because the same IP address range is being used in both VPCs, leading to ambiguity in routing and communication.
* Communication Issue:
* When a VM in the User VPC tries to communicate with other resources, the network cannot accurately determine the correct route due to the overlapping IP address ranges.
* This overlap prevents proper routing and results in the VM being unable to communicate with other resources as intended.
* Resolution:
* To resolve this issue, the ERPs must be in different CIDR ranges. This means the IP address ranges for the Transit VPC and the User VPC should not overlap.
* For example, if the Transit VPC uses 10.1.1.0/25, the User VPC could use a different range such as 10.1.2.0/24 or any other range that does not overlap with 10.1.1.0/25.
By ensuring that the ERPs are in different CIDR ranges, the network can properly route traffic between the VPCs without any conflicts or ambiguities, thereby enabling the VM in the User VPC to communicate with other resources effectively.
質問 # 54
An on-premises network has been extended to azure with a VPN/ExpressRoute. The routing and peering of VNets is setup and has been confirmed to be correct.
Which statement best describes the state of the traffic flow between the on-prem CVMs and the NC2 CVMs in Azure?
- A. The Network Security Group of the Flow Gateway VM on the Externa! NICs will need to be edited to enable the traffic flow.
- B. A ticket will need to be put in with Microsoft support to open the subnet ranges from on-premises.
- C. Traffic will flow directly to the NC2 CVMs. Nothing will block the path by default.
- D. The Network Security Group of the Flow Gateway VM on the Internal NICs will need to be edited to enable the traffic flow.
正解:D
解説:
* Network Security Groups (NSGs):NSGs control the inbound and outbound traffic to and from Azure resources. For traffic between on-premises CVMs and NC2 CVMs in Azure, the NSGs associated with the Flow Gateway VM's Internal NICs must be configured to allow the required traffic.
* Editing NSGs:To enable traffic flow, specific rules must be added to the NSGs to permit traffic from the on-premises network to the NC2 environment. Thisincludes specifying the appropriate source and destination IP ranges and the necessary ports and protocols.
References:
* Azure Network Security Groups Documentation
* Nutanix NC2 Networking Configuration Guide
質問 # 55
An administrator is trying to determine which type of DNS server to deploy for a networking infrastructure in Azure.
Which DNS server option would require either VPN or ExpressRoute connectivity?
- A. Cloudflare
- B. Azure
- C. On-premises
- D. Google
正解:C
解説:
* DNS Server Options:
* Cloudflare: A public DNS service that operates over the internet.
* Azure: Azure DNS operates within the Azure cloud and does not require VPN or ExpressRoute for connectivity within Azure.
* On-premises: Requires a secure connection, such as VPN or ExpressRoute, to be accessible from Azure, as it resides outside the Azure cloud.
* Google: Another public DNS service accessible over the internet.
* Connectivity Requirements:
* On-premises DNS: To integrate on-premises DNS with Azure, secure connectivity (VPN or ExpressRoute) is necessary to ensure seamless and secure communication between the on-premises infrastructure and Azure resources.
* Conclusion: An on-premises DNS server would require VPN or ExpressRoute connectivity to be accessible and integrated with the Azure environment.
References:
* Azure DNS Overview
* VPN Gateway Configuration
* ExpressRoute Overview
質問 # 56
Native Azure VMs exist in a subnet (10.20.80.0/20) in the Prism Central VNet that need access to the workload running on the Nutanix User.
What needs to be modified to allow access from the native Azure VMs to the workloads running in the Nutanix User VPC?
- A. Adjust the Inbound Network Security Group on the Flow Gateway VM External NIC to allow traffic
102030.0/20. - B. Remove the ERP value on the transit VPC and Nutanix User VPC.
- C. Adjust the Inbound Network Security Group on the Flow Gateway VM Internal NIC to allow traffic
102030,0/20. - D. Change the ERP value to the the subnet range of the native Azure VMs (10.20.80.0/20) on the Transit VPC and the Nutanix User VPC.
正解:C
解説:
To allow access from the native Azure VMs to the workloads running in the Nutanix User VPC, the administrator needs to:
* Adjust the Inbound Network Security Group (NSG) on the Flow Gateway VM's Internal NIC.
* Specifically, allow traffic from the subnet range of the native Azure VMs (10.20.80.0/20) in the Inbound rules of the NSG associated with the Internal NIC of the Flow Gateway VM.
This configuration change permits the desired network traffic, ensuring that the native Azure VMs can communicate with the workloads in the Nutanix User VPC.References
* Azure Network Security Groups Overview
* Nutanix Networking and Security Best Practices
質問 # 57
......
更新されたPDF(2024年最新)実際にあるNutanix NCP-CI-Azure試験問題:https://www.passtest.jp/Nutanix/NCP-CI-Azure-shiken.html
問題集返金保証付きのNCP-CI-Azure問題集公式問題集:https://drive.google.com/open?id=10uqsBGnaaWWo7oTbLToc46hUsGVEySRk