VCP-CMA 2024 Question 175
Single answerAn organization is using VMware Aria Automation to manage its cloud environment. The administrator has been asked to configure Identity and Access Management (IAM) to ensure role-based access control (RBAC) is properly implemented. The administrator needs to grant a specific group of users the ability to create and manage cloud templates but restrict them from performing administrative tasks on the VMware Aria Automation platform. Which role should the administrator assign to the group?
- A
Cloud Assembly Administrator
- B
Cloud Template Developer
- C
Organization Owner
- D
Service Broker Administrator
Show answer and explanation
Correct answer: B
Explanation
The Cloud Template Developer role is specifically designed for users who need to create and manage cloud templates in VMware Aria Automation without administrative privileges. This aligns perfectly with the organization's requirement to restrict the group from performing administrative tasks while allowing them to create and manage cloud templates.
- A. Incorrect.
Cloud Assembly Administrator grants permissions to manage infrastructure, integrations, and project configuration. This role exceeds the requirement as it includes administrative privileges not needed by the group.
- B. Correct.
Cloud Template Developer is the correct role, as it allows users to create and manage cloud templates without administrative privileges on the VMware Aria Automation platform.
- C. Incorrect.
Organization Owner provides the highest level of access, including full administrative rights for the organization, which is not appropriate for the group's limited scope of responsibilities.
- D. Incorrect.
Service Broker Administrator is focused on managing service catalogs and entitlements, which does not align with the requirement to create and manage cloud templates.