2V0-32.24 exam dumps

2V0-32.24 practice question 179 of 249

VMware Certified Professional - Cloud Operations 2024. Associate level, VMware. Free question with the correct answer and a full explanation.

2V0-32.24 Question 179

Select 3

Your organization uses VMware Cloud Foundation and has implemented vSphere with vCenter Server. The security team has requested you to enforce strict access control policies for administrators and users by leveraging Role-Based Access Control (RBAC). You are also required to integrate authentication with your existing Active Directory (AD) infrastructure. Which of the following steps should you perform to meet these requirements?

  1. A

    Configure vCenter Server to use Active Directory as an Identity Source.

  2. B

    Create custom roles in vCenter Server and assign necessary permissions for specific tasks.

  3. C

    Assign administrator privileges to all users to simplify access management.

  4. D

    Enable vCenter Server's built-in user database for authentication.

  5. E

    Map Active Directory groups to roles with appropriate permissions in vCenter Server.

Show answer and explanation

Correct answers: A, B, E

Explanation

To enforce strict access control policies using RBAC and integrate authentication with Active Directory, you must configure vCenter Server to use AD as an Identity Source. Custom roles should then be created and mapped to AD groups to ensure users have the appropriate level of access. Assigning administrator privileges to all users or relying solely on vCenter's built-in user database does not meet the security requirements.

  • A. Correct.

    Configuring vCenter Server to use Active Directory as an Identity Source is necessary to integrate with the existing AD infrastructure for authentication and user management.

  • B. Correct.

    Creating custom roles ensures that users and administrators have the appropriate level of access for their tasks, aligning with the principle of least privilege.

  • C. Incorrect.

    Assigning administrator privileges to all users violates the principle of least privilege and poses significant security risks.

  • D. Incorrect.

    Enabling vCenter Server's built-in user database is unnecessary in this scenario, as the requirement is to use the existing Active Directory infrastructure for authentication.

  • E. Correct.

    Mapping Active Directory groups to roles allows you to assign permissions at the group level, simplifying access management and ensuring that roles are appropriately enforced.

Timed practice exam

Take a 2V0-32.24 practice test under exam conditions

60 questions in 130 minutes, drawn from this bank, with a score report and a per-question review when you finish.

Start timed exam