Deal of The Day! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

VMware 3V0-22.21 Exam - Topic 11 Question 5 Discussion

The security team has decided to follow the VMware-recommended best practices in the vSphere hardening guide.esxi02b:Your first task is to create a local user in esxi02b:* Name: SpecialUser* Role: AdministratorYour second task is to ensure that SpecialUser is the ONLY user who is able to SSH into esxi02b via Putty.Your final task is to enforce a strict lockdown on esxi02b.Your second task is to ensure that SpecialUser is the ONLY user who is able to SSH into esxi02b via Putty.Your final task is to enforce a strict lockdown on esxi02b.
A) Explanation: Authentication and authorization govern access.vCenter Single Sign-Onsupports authentication, which means it determines whether a user can access vSphere components at all. Each user must also be authorized to view or manipulate vSphere objects. vSphere supports several different authorization mechanisms, discussed inUnderstanding Authorization in vSphere. The focus of the information in this section is how thevCenter Serverpermission model works and how to perform user management tasks. vCenter Serverallows fine-grained control over authorization with permissions and roles. When you assign a permission to an object in thevCenter Serverobject hierarchy, you specify which user or group has which privileges on that object. To specify the privileges, you use roles, which are sets of privileges. Initially, only the administrator user for the vCenter Single Sign-On domain, administrator@vsphere.local by default, is authorized to log in to thevCenter Serversystem. That user can then proceed as follows: Add an identity source in which users and groups are defined tovCenter Single Sign-On. See thePlatform Services Controller Administrationdocumentation. Give privileges to a user or group by selecting an object such as a virtual machine or avCenter Serversystem and assigning a role on that object for the user or group.

VMware 3V0-22.21 Exam - Topic 11 Question 5 Discussion

Actual exam question for VMware's 3V0-22.21 exam
Question #: 5
Topic #: 11
[All 3V0-22.21 Questions]

The security team has decided to follow the VMware-recommended best practices in the vSphere hardening guide.

esxi02b:

Your first task is to create a local user in esxi02b:

* Name: SpecialUser

* Role: Administrator

Your second task is to ensure that SpecialUser is the ONLY user who is able to SSH into esxi02b via Putty.

Your final task is to enforce a strict lockdown on esxi02b.

Your second task is to ensure that SpecialUser is the ONLY user who is able to SSH into esxi02b via Putty.

Your final task is to enforce a strict lockdown on esxi02b.

Show Suggested Answer Hide Answer
Suggested Answer: A

Contribute your Thoughts:

0/2000 characters
Glendora
7 months ago
I’m surprised they’re not allowing more flexibility with user access.
upvoted 0 times
...
Cherelle
7 months ago
Is it really safe to have just one admin user?
upvoted 0 times
...
Frederick
8 months ago
Totally agree, lockdowns are essential for security!
upvoted 0 times
...
Trinidad
8 months ago
Wait, only one user for SSH? That seems risky.
upvoted 0 times
...
Louvenia
8 months ago
Sounds like a solid plan, following best practices is key!
upvoted 0 times
...
Peter
8 months ago
I feel confident about creating the user, but I’m a bit uncertain about the SSH configuration part. I hope I remember the right commands!
upvoted 0 times
...
Lacey
8 months ago
Lockdown mode is something I need to double-check. I recall it restricts access, but I’m not clear on the steps to enforce it properly.
upvoted 0 times
...
Gilma
8 months ago
I think we had a similar question about user roles and permissions in our last mock exam. It’s all about assigning the right role to SpecialUser, right?
upvoted 0 times
...
Sherell
8 months ago
I remember we practiced creating local users in ESXi, but I’m not entirely sure how to set the SSH permissions correctly for just one user.
upvoted 0 times
...
Ora
9 months ago
Okay, let me think this through. I think the key here is to make sure the changes are activated automatically during non-business hours. The 'On Time' setting in the page properties might be the way to go.
upvoted 0 times
...
Monte
9 months ago
This looks straightforward, but I want to double-check my understanding of the property category concepts before selecting the answers.
upvoted 0 times
...

Save Cancel