Use Real Nutanix Achieve the NCP-CI-Azure Dumps - 100% Exam Passing Guarantee
Verified NCP-CI-Azure Q&As - Pass Guarantee NCP-CI-Azure Exam Dumps
NEW QUESTION # 19
An administrator has been tasked with ensuring NC2 VMs are able to access Azure and on-premises resources.
The NC2 VM traffic must not traverse the internet.
How can the administrator achieve this?
- A. By using an SSH connection
- B. By using an Interface Endpoint
- C. By using ExpressRoute
- D. By using a Site-to-Site VPN
Answer: C
Explanation:
* Requirement Analysis: The NC2 VMs need to access Azure and on-premises resources without traversing the internet, ensuring secure and direct connectivity.
* Solution Options:
* SSH Connection: Suitable for individual remote access, not for full VM connectivity to Azure and on-premises resources.
* Interface Endpoint: Facilitates private connectivity to specific Azure services, but not comprehensive for all resources.
* ExpressRoute: Provides private, dedicated connectivity between Azure and on-premises environments. This ensures that traffic does not traverse the public internet, meeting the security and performance requirements.
* Site-to-Site VPN: Provides secure connectivity but can involve traversing the internet, which is against the requirements.
* Conclusion: ExpressRoute is the optimal solution as it offers a private connection that does not involve internet traversal, ensuring secure and efficient access to both Azure and on-premises resources.
References:
* Azure ExpressRoute Documentation
* Nutanix Clusters on Azure Networking Guide
NEW QUESTION # 20
An administrator needs to configure the correct outbound requirement for a successful cluster deployment in Azure.
Which destination must have an outbound rule to meet this requirement?
- A. Https://support.nutanix.com/*
- B. Https://portal.nutanix.com/*
- C. https://nutanix.dev/*
- D. Https://downloads.cloud.nutanix.com/*
Answer: D
Explanation:
* Outbound Rule Necessity: For successful cluster deployment, certain outbound connections must be allowed to ensure proper download and configuration of resources.
* Critical Destination: "Https://downloads.cloud.nutanix.com/*" is a critical endpoint from which the Nutanix software and updates are downloaded during the cluster deployment process.
* Functionality: Ensuring an outbound rule for this destination allows the deployment to fetch necessary files and updates, enabling smooth cluster setup and operation.
* Other Destinations:
* Https://portal.nutanix.com/: Used for accessing the Nutanix portal, not directly related to deployment downloads.
* Https://support.nutanix.com/: Used for support-related tasks, not for deployment-specific downloads.
* https://nutanix.dev/: Related to development and API documentation, not necessary for initial deployment.
* Conclusion: Outbound connectivity to "Https://downloads.cloud.nutanix.com/*" is essential for downloading deployment resources.
References:
* Nutanix NC2 on Azure Network Configuration Guide
* Azure Network Security Documentation
NEW QUESTION # 21
An administrator needs the permission to create and manage multipleorganizations and clusters in NC2, as well as manage user access for the entire company.
What role should be assigned to meet the minimum requirements of this task?
- A. Organization Administrator
- B. Customer Security Administrator
- C. Cluster Administrator
- D. Customer Administrator
Answer: D
Explanation:
* Role Requirements: The task involves creating and managing multiple organizations and clusters, along with managing user access across the company.
* Role Capabilities: The "Customer Administrator" role is designed to provide extensive administrative capabilities, including:
* Creating and managing organizations.
* Managing clusters.
* Handling user access and permissions.
* Comparison of Roles:
* Cluster Administrator: Primarily focuses on managing individual clusters but does not encompass organization-wide administrative tasks.
* Customer Security Administrator: Focuses on security-related tasks and does not have broad administrative capabilities across organizations and clusters.
* Organization Administrator: Manages organizational settings but might not cover all aspects needed for multiple clusters and user access management.
* Conclusion: The "Customer Administrator" role meets all the requirements for managing organizations, clusters, and user access comprehensively.
References:
* Nutanix Role-Based Access Control Documentation
* NC2 on Azure User Roles Guide
NEW QUESTION # 22
An administrator is tasked with allowing inbound connectivity for a user VM that resides on a NAT network.
The ...... communicating successfully with other VMs in the NAT network.
The cluster has the following characteristics
A Transit VPC exists
* A User VPC exists
* A NAT subnet has been created
* 25 floating IP addresses are in use by other VMs
* Routes have been configured
When the administrator attempts to assign a floating IP address to the VM, none are available.
What is the reason for this?
- A. An additional Flow Gateway instance is required.
- B. An external DHCP server needs to be deployed into the cluster.
- C. Additional floating IP addresses need to be requested.
- D. Geneve encapsulation only supports 25 Floating IP addresses.
Answer: C
Explanation:
* Floating IP Address Limitation:The cluster already has 25 floating IP addresses in use by other VMs.
If the administrator cannot assign a floating IP address to the new VM, it is because the pool of available floating IPs is exhausted.
* Requesting Additional Floating IPs:To resolve this issue, the administrator needs to request additional floating IP addresses to be allocated to the NAT subnet. This will ensure that there are enough IP addresses available for all VMs requiring inbound connectivity.
References:
* Nutanix Networking Configuration Guide
* Azure IP Address Management Documentation
NEW QUESTION # 23
Which entity should be contacted for cloud hardware support (EC2 instances, VPC, etc) related to NC2?
- A. Public Cloud Vendor
- B. Partner
- C. Internal IT Operations team
- D. Nutanix
Answer: A
Explanation:
* Cloud Hardware Support: For issues related to cloud hardware, such as EC2 instances or VPC configurations, the responsible entity is typically the public cloud vendor.
* Nutanix Responsibility: Nutanix manages the software layer and integration aspects of the NC2 service, but the underlying hardware support is managed by the cloud provider (e.g., AWS, Azure).
* Support Process:
* Public Cloud Vendor: Contact the public cloud vendor for issues directly related to the hardware, as they own and manage the physical infrastructure.
* Nutanix: For software and configuration issues specific to the NC2 service, contact Nutanix support.
* Conclusion: For cloud hardware-related support, the appropriate contact is the public cloud vendor.
References:
* Nutanix Support Guide
* Azure Support Documentation
NEW QUESTION # 24
Which address must Azure Directory Service be able to resolve when deploying a new NC2 cluster?
- A. Gateway-external-api.cloud.nutanix.com
- B. Apikeys.nutanix.com
- C. Gateway-internal-api-cloud.nutanix.com
- D. Download.cloud.nutanix.com
Answer: A
Explanation:
* Azure Directory Service Role: Azure Directory Service must be able to resolve specific Nutanix URLs to ensure proper communication and functionality during the deployment of an NC2 cluster.
* Critical Endpoint: The address "Gateway-external-api.cloud.nutanix.com" is critical for establishing external API communications required for the deployment and management of the NC2 cluster.
* DNS Resolution: Proper DNS resolution of this address ensures that the Azure Directory Service can interact with Nutanix services and APIs necessary for cluster operations.
* Verification Process:
* Ensure that DNS settings allow resolution of "Gateway-external-api.cloud.nutanix.com".
* Test connectivity and resolution prior to deployment to avoid issues.
* Importance: Without resolving this address, the deployment process might face connectivity issues, leading to potential deployment failures.
References:
* Nutanix NC2 on Azure Setup Guide
* Azure Active Directory Integration
NEW QUESTION # 25
An organization want to use existing Azure resources to deploy NC2.
What is a valid requirement to use existing Azure resources for this task?
- A. More than two DNS servers must be used.
- B. The fastpathenabled tag must be added after creating a NAT gateway.
- C. Azure NAT gateway must be attached to the cluster management Prism Central, and external Flow Gateway subnets.
- D. A new Azure resource group must be created where all resources, such as VNets must be created.
Answer: D
Explanation:
* Resource Group Requirement:When deploying NC2 on Azure, it is essential to organize resources such as VNets, subnets, and other components in a dedicated resource group. This helps in managing and maintaining the resources efficiently.
* New Resource Group:Creating a new Azure resource group ensures that all the necessary NC2 resources are isolated and managed together, avoiding conflicts with existing resources and providing a clear separation for administration and billing purposes.
References:
* Azure Resource Group Documentation
* Nutanix NC2 Deployment Guide
NEW QUESTION # 26
An on-premises network has been extended to azure with a VPN/ExpressRoute. The routing and peering of VNets is setup and has been confirmed to be correct.
Which statement best describes the state of the traffic flow between the on-prem CVMs and the NC2 CVMs in Azure?
- A. The Network Security Group of the Flow Gateway VM on the Internal NICs will need to be edited to enable the traffic flow.
- B. The Network Security Group of the Flow Gateway VM on the Externa! NICs will need to be edited to enable the traffic flow.
- C. A ticket will need to be put in with Microsoft support to open the subnet ranges from on-premises.
- D. Traffic will flow directly to the NC2 CVMs. Nothing will block the path by default.
Answer: A
Explanation:
* Network Security Groups (NSGs):NSGs control the inbound and outbound traffic to and from Azure resources. For traffic between on-premises CVMs and NC2 CVMs in Azure, the NSGs associated with the Flow Gateway VM's Internal NICs must be configured to allow the required traffic.
* Editing NSGs:To enable traffic flow, specific rules must be added to the NSGs to permit traffic from the on-premises network to the NC2 environment. Thisincludes specifying the appropriate source and destination IP ranges and the necessary ports and protocols.
References:
* Azure Network Security Groups Documentation
* Nutanix NC2 Networking Configuration Guide
NEW QUESTION # 27
An administrator is tasked with configuring connectivity between an on-premises datacenter and Azure.
Which two connectivity options are supported? (Choose two.)
- A. Direct Connect
- B. Leased Line
- C. ExpressRoute
- D. VPN
Answer: C,D
Explanation:
For configuring connectivity between an on-premises datacenter and Azure, the two supported options are:
* VPN (Virtual Private Network):Site-to-Site VPN allows you to create a secure connection from your on-premises network to Azure over the public internet using IPsec/IKE protocols.
* ExpressRoute:Provides a private connection between your on-premises infrastructure and Azure, ensuring traffic does not traverse the public internet.
Both options provide secure and reliable connectivity, with ExpressRoute offering enhanced performance and security due to its private connection.References
* Azure VPN Gateway
* Azure ExpressRoute Overview
NEW QUESTION # 28
An administrator needs to ensure API calls are executing successfully from NC2 to manage Azure resources.
Which cluster outbound to Azure connections are required to satisfy this task?
- A. azure-support.nutan/x.com
- B. managementazure.com
- C. portal.azure.com
- D. apikeys.nutanix.com
Answer: D
Explanation:
* API Key Management:For NC2 to manage Azure resources successfully, it needs to authenticate and authorize API calls. This is typically handled through API keys, which are managed via specific endpoints.
* Required Connection:The endpointapikeys.nutanix.comis crucial for managing these API keys.
Ensuring connectivity to this endpoint allows NC2 to verify and utilize the API keys needed for interacting with Azure services.
References:
* Nutanix NC2 API Configuration Guide
* Azure API Management Documentation
NEW QUESTION # 29
An administrator has setup a routed external network (No NAT) to use for workload running in NC2 clusters on Azure.
The applications are network intensive, so four gateways VMs have been deployed to meet the high demands.
One application server on the NC2 clusters is sending traffic to an outside Azure service.
How many flow gateway VMs will be used to distribute the traffic?
- A. two flow gateway instances will be used based on limitations from using MAC addresses to redistribute traffic.
- B. All four Flow Gateway instances will be used based on the ECMP default route that points 3 the external subnets in the Nutanix Transit VPC, but only for sending traffic. Return traffic by use one Flow Gateway VM.
- C. Only one Flow Gateway instance will be used per source application running on NC2.
- D. All four Flow Gateway instances will be used based on the ECMP default route that points to the external subnets in the Nutanix Transit VPC for sending and receiving traffic.
Answer: D
Explanation:
* Equal-Cost Multi-Path (ECMP) Routing:ECMP allows multiple gateways to be used simultaneously for load balancing traffic across multiple paths. In this scenario, ECMP is configured to point to the external subnets in the Nutanix Transit VPC.
* Traffic Distribution:All four Flow Gateway instances will be used to distribute the outgoing traffic from the application server based on the ECMP default route configuration. This ensures efficient load balancing and utilization of all available gateway resources.
* Bidirectional Traffic:Both sending and receiving traffic will utilize all four Flow Gateway instances, ensuring high availability and performance for network-intensive applications.
References:
* Nutanix NC2 Networking Guide
* Azure Networking Documentation on ECMP
NEW QUESTION # 30
An administrator is planning an NC2 deployment in Azure and wants to connect the company's on-premises datacenter to the cloud environment.
What connectivity solution should the administrator use to avoid traffic between the locations flowing over the public internet?
- A. Site-to-Site VPN
- B. Point-to-Site VPN
- C. VTEP Gateways
- D. ExpressRoute
Answer: D
Explanation:
To connect the company's on-premises datacenter to the Azure cloud environment while avoiding traffic over the public internet, the administrator should use Azure ExpressRoute. ExpressRoute provides a private connection to Azure, offering more reliability, faster speeds, and lower latencies compared to typical internet connections. This service ensures that data traffic does not traverse the public internet, enhancing security and performance.References
* Azure ExpressRoute Overview
NEW QUESTION # 31
A new subnet needs to be created within Flow Virtual Networking to accommodate a new type of workload in the company's NC2 Azure instance.
Which type of network will satisfy this task?
- A. VPC
- B. Underlay
- C. Overlay
- D. VNET
Answer: C
Explanation:
* Flow Virtual Networking: Nutanix Flow Virtual Networking allows for the creation of overlay networks to segment and manage network traffic.
* Network Types:
* Underlay: Refers to the physical network infrastructure.
* Overlay: Logical network built on top of the physical infrastructure, providing flexibility for creating isolated subnets and accommodating different workloads.
* VPC: Virtual Private Cloud, a network within a public cloud provider.
* VNET: Azure-specific virtual network.
* Requirement: Creating a subnet for new workloads within Flow Virtual Networking suggests using an overlay network for logical separation and management.
* Conclusion: An overlay network within Flow Virtual Networking will satisfy the task of accommodating a new type of workload in the NC2 Azure instance.
References:
* Nutanix Flow Networking Guide
* Azure Virtual Network Documentation
NEW QUESTION # 32
An administrator has been tasked with scoping an NC2 on Azure deployment. One of the requirements is to ensure that the bare metal instance will support up to 20 TB of storage capacity.
Which bare metal instance should the administrator choose?
- A. HB176rs
- B. ND96asr
- C. AN36
- D. AN36P
Answer: D
Explanation:
* Storage Capacity Requirement: The requirement specifies that the bare metal instance must support up to 20 TB of storage capacity.
* Instance Selection: Among the provided options, the AN36P instance is designed to support higher storage capacities and performance needs.
* AN36P Capabilities: The AN36P instance is optimized for storage-intensive applications and provides the necessary hardware specifications to handle up to 20 TB of storage.
* Comparison with Other Instances:
* ND96asr: Typically optimized for GPU workloads rather than storage.
* AN36: May not meet the 20 TB storage requirement.
* HB176rs: Geared towards high-performance computing rather than large storage capacities.
* Conclusion: Based on the requirements and instance specifications, AN36P is the most suitable choice for supporting up to 20 TB of storage.
References:
* Nutanix NC2 Instance Types
* Azure Virtual Machine Sizes
NEW QUESTION # 33
An administrator is planning to expand an NC2 on Azure cluster.
Which statement is true regarding prerequisites for expanding the cluster?
- A. Cluster must have at least five nodes.
- B. Cluster must be in a Cluster Stopped state.
- C. Cluster must be in a Cluster Connected state.
- D. Cluster must have at least three nodes.
Answer: C
Explanation:
* Cluster State Requirement: To expand a cluster, it must be operational and in a connected state to ensure seamless integration of additional nodes.
* Cluster Stopped State: If the cluster is stopped, it cannot perform expansion operations.
* Minimum Nodes Requirement: There is no minimum node count prerequisite for expanding the cluster as long as the cluster is connected.
* Cluster Connected State: Ensuring the cluster is connected verifies that it is operational and can communicate with additional nodes being added.
* Conclusion: The cluster must be in a Cluster Connected state to expand successfully.
References:
* Nutanix Clusters Expansion Guide
* Azure NC2 Configuration Documentation
NEW QUESTION # 34
Exhibit
An NC2 on Azure cluster was deployed with two Flow Gateway in HA (FHW1 and FGW2). After a week of use, four bare-metal nodes were added to the NC2 cluster and additional workloads were added. The existing workloads were using floating IPs to allow inbound traffic to communicate with the running workloads on the NC2 cluster.
It was determined that additional bandwidth for north/south traffic would be needed. Two additional Flow Gateways were added (FGW3 and FGW4) from the NC2 portal configuration menu.
The existing workloads prior to expansion on the NC2 cluster will be able to use which Flow Gateways using the NAT traffic path after the expansion?
- A. All four Flow Gateways.
- B. All four Flow Gateways using a MAC/Hash algorithm.
- C. Only the Flow Gateway each workload was using prior to expansion.
- D. They will be able to use FGW3 and FGW4 once the NC2 workloads reboots.
Answer: C
Explanation:
In the NC2 on Azure cluster scenario, the existing workloads were using floating IPs for inbound traffic before the addition of new Flow Gateways (FGW3 and FGW4). The NAT traffic path established initially will continue to direct traffic through the originally assigned Flow Gateways (FGW1 and FGW2). The existing workloads will not automatically utilize the new Flow Gateways (FGW3 and FGW4) without a reconfiguration or reboot, which reassigns the NAT paths.
References
* Nutanix Flow Networking and Configuration Guide
NEW QUESTION # 35
......
Check the Free demo of our NCP-CI-Azure Exam Dumps with 77 Questions: https://certkingdom.pass4surequiz.com/NCP-CI-Azure-exam-quiz.html