Summer Sale Special Limited Time 65% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: s2p65

Easiest Solution 2 Pass Your Certification Exams

3V0-21.21 VMware Advanced Design VMware vSphere 7.x Free Practice Exam Questions (2025 Updated)

Prepare effectively for your VMware 3V0-21.21 Advanced Design VMware vSphere 7.x certification with our extensive collection of free, high-quality practice questions. Each question is designed to mirror the actual exam format and objectives, complete with comprehensive answers and detailed explanations. Our materials are regularly updated for 2025, ensuring you have the most current resources to build confidence and succeed on your first attempt.

Page: 1 / 2
Total 88 questions

Following a recent acquisition, an architect needs to merge IT assets into its current data center. The combined vSphere environment will need to run the newly acquired company’s virtual machines.

Network integration work has already been completed and the current environment has capacity to host all virtual machines. The Operations team needs to identify which virtual machines belong to the acquired company and report on their usage.

How should the architect merge the company’s assets and virtual machines?

A.

Leave the newly acquired company’s assets in its current place

B.

Lift and shift the acquired assets into the data center

C.

Migrate the acquired company’s virtual machines into the existing vSphere environment

D.

Migrate and apply vSphere tags to the acquired company’s virtual machines

Following a company merger, there are two data centers running vSphere environments. Both data centers are leveraging separate Layer 3 vMotion networks.

Which requirement must be met in order to enable vMotion migration between these locations?

A.

The vMotion service must be configured on the Management VMkernel adapter

B.

A dedicated TCP/IP stack for vMotion with a dedicated gateway must be configured

C.

A stretched vMotion network must be configured between data centers

D.

Virtual machines must be powered off in order to migrate them between data centers

During a requirements gathering workshop, the customer provides the following requirement:

    A new vSphere platform must be designed securely and all interfaces must be protected against potential snooping.

How should this non-functional security requirement be documented?

A.

Interfaces must be audited.

B.

Encrypted channels must be used for all communications.

C.

Unauthorized access to interfaces must be reported within 15 minutes.

D.

Communications must be through Private VLANs (PVLAN).

An architect is designing a new vSphere platform for a customer to meet the following requirements:

    The platform must be deployed into five physically separate sites.

    The sites are spread across multiple regions.

    Some sites require more than one vCenter Server.

    The platform must provide an administrator with the ability to access virtual infrastructure components across all sites from a single management tool instance.

Which single sign-on (SSO) design recommendation will meet these requirements?

A.

Use an SSO domain across all vCenter Server instances

B.

Use an SSO domain per region

C.

Use an SSO domain per vCenter Server instance

D.

Use an SSO domain per site

During a requirements gathering workshop, the customer’s Chief Information Security Office (CISO) provides the following requirements that are pertinent to the design of a new vSphere environment:

    All operating system critical patches must be installed within 24 hours of release.

    All virtual machine templates must be updated every three months in line with company policy.

Which requirement classification is being gathered for the design documentation?

A.

Security

B.

Manageability

C.

Recoverability

D.

Availability

A customer requests a review of its current vSphere platform design.

The following information is noted:

    There are three different workload profiles for the virtual machines:

      Tier-1 virtual machines operate resource-intensive applications and require dedicated allocations for CPU and RAM.

      Tier-2 virtual machines operate internet-facing applications and require access to externally facing networks.

      Tier-3 virtual machines operate platform management tools such as vCenter Server and have different lifecycle management requirements.

    Tier-1, Tier-2 and Tier-3 virtual machines are all hosted on a single large vSphere cluster.

    The Chief Information Security Officer (CISO) has raised concerns that hosting externally facing applications alongside management tools does not meet internal compliance standards.

    The Operations team has raised concerns about Tier-1 virtual machines negatively impacting the performance of vCenter Server.

    The Operations lead has stated that management changes have consistently been rejected by application teams.

As a result of the review, which recommendation should the architect make regarding the design of this platform?

A.

Separate Tier-1, Tier-2 and Tier-3 virtual machines using dedicated distributed virtual switches (DVS)

B.

Separate Tier-2 virtual machines onto a dedicated cluster

C.

Separate Tier-1, Tier-2 and Tier-3 virtual machines onto dedicated clusters

D.

Separate Tier-1, Tier-2 and Tier-3 virtual machines using resource pools and shares

A architect is designing a new VMware software-designed data center (SDDC) using vSphere 7 to meet the following requirements:

    The SDDC must be deployed at two locations: primary and secondary.

    vSphere Replication must be used to replicate virtual machines between the two locations.

    Site Recovery Manager must be used to orchestrate disaster recovery (DR) activities.

    One single-sign on (SSO) domain must be used to authenticate access at both locations.

Which design decision should the architect make to meet these requirements?

A.

A vCenter Server Appliance will be deployed to each site. Unique SSO domains will be created per site.

B.

A vCenter Server will be installed on Windows virtual machines deployed to both sites.

C.

A vCenter Server Appliance will be deployed to each site.

D.

A vCenter Server Appliance will be deployed to the primary site only.

The Chief Operating Officer (COO) at an organization raises concerns that their virtual infrastructure environment is vulnerable. Recently, a security-related issue with a virtual machine caused all management services to become unavailable. No budget is available in the short term for additional platform investment. An architect is asked to review the current environment and make recommendations to mitigate concerns.

A virtualization administrator has provided the following details:

    There is a single four node cluster of ESXi servers

    There are two, Layer 2, physical network switches connecting resources

    The data center network is presented as a single /16 subnet

Given the information provided, which functional requirement should the architect include in the design to mitigate the COOs concerns?

A.

The virtual infrastructure environment must connect application virtual machines and management services to new physical network switches

B.

The virtual infrastructure environment must connect application virtual machines and management services to separate distributed virtual switches (DVS)

C.

The virtual infrastructure environment must connect application virtual machines and management services to separate VLANs

D.

The virtual infrastructure environment must connect management services to a vSphere standard switch (VSS)

An architect is finalizing the design for a new vSphere platform based on the following information:

    All Windows virtual machines will be hosted on a dedicated cluster for licensing purposes.

    All Linux virtual machines will be hosted on a dedicated cluster for licensing purposes. All management virtual machines will be hosted on a dedicated cluster.

    A total of ten physical sites will be used to host virtual machines.

    In the event of one physical datacenter becoming unavailable, the manageability of the virtual infrastructure in the remaining data centers should not be impacted.

    Access to configure the management virtual machines via vCenter Server must be controlled through the management Active Directory domain.

    Access to configure the Windows and Linux virtual machines must be controlled through the resource Active Directory domain.

    The management and resource Active Directory domains are part of separate Active Directory forests and do not have any trusts between them.

    The design will use Active Directory with Integrated Windows Authentication.

How should the architect document the vCenter Server configuration for this design?

A.

Deploy a vCenter server for the management cluster.

Deploy a vCenter Server for all remaining clusters. Create a shared SSO domain for each physical site.

B.

Deploy a vCenter Server for the management cluster.

Deploy a vCenter Server for all remaining clusters.

Create a shared SSO domain across all physical sites.

C.

Deploy a vCenter Server for the management cluster with a dedicated SSO domain.

Deploy a vCenter Server for all remaining clusters and use a dedicated SSO domain for each physical site.

D.

Deploy a vCenter Server for the management cluster with a dedicated SSO domain.

Deploy a vCenter Server for all remaining clusters and use a dedicated SSO domain into a single physical site.

An architect is designing a new greenfield environment that will install ESXi on local disks. There is a requirement to streamline initial and future installations of ESXi hosts.

Which configuration option should the architect recommend for installing ESXi hosts to meet these requirements?

A.

Installation with kick start script

B.

Auto Deploy with stateless caching mode

C.

Manual installation using boot from SAN

D.

Auto Deploy with stateful install mode

An architect is designing a new VMware software-defined data center (SDDC) that will consist of 100 branch sites connected to a single VMware vCenter Server within the primary data center. To allow for the use of existing automation scripts, there is a requirement to replicate the names of the virtual distributed port groups across all sites. The procurement team purchases licensing and there is no further budget allocated.

Which design decision should the architect make to meet this requirement?

A.

A new vCenter Server will be deployed for each branch site

B.

A new host and cluster folder will be created for each branch site

C.

The automation script will be updated to reflect unique naming for each site

D.

A new virtual data center will be created for each branch site

A customer requires the use of data encryption to ensure data is not accessible when a drive is removed from the primary storage platform. However, there is also a requirement to use deduplication and compression against all workloads in order to conserve space.

Which solution meets the customer requirements?

A.

Data-in-transit encryption

B.

OS-level encryption

C.

Encrypted backups

D.

Array-based encryption

A new vSphere platform is being created. The platform will host virtual machines that will run management services and line-of-business applications.

What should the architect consider when designing the number and type of clusters required?

A.

Maximum tolerable downtime

B.

Predicted platform growth

C.

Auditing requirements for the virtual machines

D.

The level of isolation required between virtual machine classifications

An architect is tasked with designing a new VMware software-defined data center (SDDC) using VMware vSAN. The architect uses a storage assessment tool to determine the storage requirements for the new vSAN cluster. The new SDDC is going to be deployed into the existing data center and must be connected to a shared core network switch.

The architect decides to use vSAN ReadyNodes with the following configuration:

    Two disk groups with:

      Write Intensive NVMe 800 GB drive for cache

      Four 3.84 TB Mixed Use NVMe for capacity

    Four 10 GbE ports

Which element represents a risk that should be included in this design?

A.

The number of 10 GbE capable ports in the vSAN ReadyNode

B.

The use of vSAN ReadyNodes

C.

The existing network is 10 GbE capable

D.

The use of NVMe drives for cache and capacity

An architect is designing a new greenfield environment with 600 ESXi hosts in an automated fashion. The engineering department already has a PXE Boot server, TFTP server, and DHCP server set up with an NFS mount for their current Linux servers.

The architect must be able to demonstrate and meet a security requirement to have all infrastructure processes separated.

Which recommendation should the architect make for the ESXi host deployment?

A.

Request an isolated network segment to use and dedicate it to Auto Deploy functions

B.

Ask the business to expand the engineering environment to service the virtual environment as well

C.

Request a common shared network with flexible security measures to accommodate different auto deployment options

D.

Deploy each ESXi host individually and document it to satisfy security requirements

The Chief Information Security Officer (CISO) for an organization is concerned about the security posture of the operating system images that are used for the provisioning of their Software-as-a-Service (SaaS) applications. The organization is in a growth period. The organization is opening a new data center to launch its next phase of new SaaS-based solutions.

The DevOps team currently creates encrypted virtual machine (VM) templates that are used for various operating systems and adds these to the vSphere inventory. The DevOps team already uses a published content library and has been granted a role with the ability to add and delete library items.

The following requirements have been noted:

    Impacts to the DevOps team’s operational processes must be kept to a minimum.

    The DevOps team must be able to regularly check out a copy of the image for updates and check in a new version of the image.

    Images must be synchronized from the primary data center to the new data center.

Which three recommendations should the architect make to design a content library solution that will meet these requirements? (Choose three.)

A.

Clone virtual machines as VM templates to the published content library

B.

Create a subscribed library from the published library and synchronize Open Virtualization Format (OVF) templates on-demand

C.

Create a subscription and publish VM templates to a subscribed content library

D.

Create a subscribed library from the published library and synchronize Open Virtualization Format (OVF) templates automatically

E.

Clone virtual machines as Open Virtualization Format (OVF) templates to the published content library

F.

Update the role for the DevOps team with new privileges

Which design decision must be included in a design to allow for the deployment of a minimum supported configuration of vCenter High Availability (HA)?

A.

A new subnet will be provisioned for vCenter HA services

B.

A vSphere cluster will consist of more than three nodes

C.

The deployed vCenter Server will be Tiny

D.

The vCenter HA network will support a latency of less than 50 ms

A customer has a database cluster with 40/60 read/write ratio and a high IOPs requirement with no contention on an all-flash vSAN cluster.

Which two storage settings should be configured for best performance? (Choose two.)

A.

IOPs limits enabled

B.

RAID 1

C.

Deduplication and Compression disabled

D.

RAID 5/6

E.

Deduplication and Compression enabled

As part of a requirements gathering workshop, the customer provides the following requirements for the design of a new greenfield virtual infrastructure:

    Some applications have a latency that must be less than 5 minutes.

    The solution must be able to support a workload growth rate of 10% per year.

Which requirement classification is being gathered for the design documentation?

A.

Performance

B.

Manageability

C.

Recoverability

D.

Availability

A new real-time financial service application is being developed by the engineering team at a financial firm and will be released as a public Software-as-a-Service (SaaS) offering. The solutions architect has designed and deployed a new vSphere environment and the supporting network infrastructure for hosting all public services. ESXi hosts are configured to use Precision Time Proalhazi@1tocol (PTP) and a local stratum-1 network time server.

Application provisioning and scaling will be managed by VMware vRealize Automation and can be run on Microsoft Windows or multiple distributions of Linux.

Which three recommendations should the architect include in the design to ensure that the service maintain timekeeping within an accuracy of one second? (Choose three.)

A.

Use Microsoft Windows Server as the guest operating system.

B.

Configure the chrony time-sync agent on each virtual machine guest operating system.

C.

Set the virtual hardware device to use Host System Time (NTP) for each virtual machine running the application.

D.

Add a precision clock virtual device to each virtual machine running the application.

E.

Use a Linux distribution as the guest operating system.

F.

Add a virtual watchdog timer (VWDT) device to each virtual machine running the application.

Page: 1 / 2
Total 88 questions
Copyright © 2014-2025 Solution2Pass. All Rights Reserved