2V0-21.23 Question 230
Select 3An organization requires enhanced security for its virtualized infrastructure and decides to implement vSphere Trust Authority. As part of the setup, you are tasked with configuring the Trusted Cluster. Which step is essential to establish a secure connection between the Trusted Hosts and the Trusted Cluster?
- A
Configure a Key Provider and establish a trust relationship with the Trusted Cluster.
- B
Enable vSphere High Availability (HA) on all hosts within the Trusted Cluster.
- C
Attest the Trusted Hosts using a Trusted Platform Module (TPM).
- D
Establish a connection between the Attestation Service and the Trusted Hosts.
- E
Enable Distributed Resource Scheduler (DRS) on the Trusted Cluster.
Show answer and explanation
Correct answers: A, C, D
Explanation
Configuring vSphere Trust Authority ensures that only verified and secure hosts are part of the Trusted Cluster. Key steps include setting up a Key Provider for encryption management, attesting Trusted Hosts to verify their security posture, and establishing communication between the Attestation Service and the Trusted Hosts to maintain trust. While features like HA and DRS are useful, they are not directly related to the Trust Authority configuration process.
- A. Correct.
Correct. A Key Provider is required to manage encryption keys, and the trust relationship ensures security between the Trusted Hosts and Trusted Cluster.
- B. Incorrect.
Incorrect. While vSphere HA is a useful feature for availability, it is not a requirement for configuring vSphere Trust Authority.
- C. Correct.
Correct. Attestation ensures that the Trusted Hosts meet the required security standards before being included in the Trusted Cluster.
- D. Correct.
Correct. The Attestation Service is critical for verifying the integrity of the Trusted Hosts during the configuration process.
- E. Incorrect.
Incorrect. While enabling DRS is beneficial for resource management, it is not a required step for setting up vSphere Trust Authority.