Which service helps enforce least privilege in VMware environments?
AVMware Identity Manager
BVMware Carbon Black
CVMware NSX
DVMware vCenter
Explanation
VMware Identity Manager provides centralized identity management to enforce least privilege, while the other options serve different purposes.
Q92
A company needs to limit access based on user roles. What should they implement?
ARole-Based Access Control
BNetwork Segmentation
CData Encryption
DBackup Policies
Explanation
Role-Based Access Control (RBAC) is designed to limit access based on user roles, unlike the other options.
Q93
What happens when a session timeout occurs in VMware PAM?
AUser is logged out immediately
BSession is automatically extended
CUser remains active indefinitely
DUser receives a warning message
Explanation
When a session timeout occurs, the user is logged out immediately, while the other options do not reflect the correct behavior.
Q94
Which service is used for managing privileged access in VMware?
AVMware Identity Manager
BVMware Cloud Director
CVMware vRealize Operations
DVMware SD-WAN
Explanation
VMware Identity Manager enables managing privileged access, while the others serve different functions.
Q95
A company needs to enforce multi-factor authentication for its admin users. What is the best approach?
AUse a password policy only
BEnable Secure Token Service
CImplement SSO with MFA
DRun access audits weekly
Explanation
Implementing SSO with MFA ensures stronger security for admin users compared to the other options.
Q96
You are configuring role-based access control for a team. What should be the primary consideration?
AMaximum number of roles created
BRole-to-user assignments
CAll users need admin roles
DLimit roles to technical staff only
Explanation
The role-to-user assignments determine who can access what, while the other options are not best practices.
Q97
Which component is essential for secure API access in VMware PAM?
AToken Manager
BAccess Control List
CData Encryption Layer
DUser Management List
Explanation
Token Manager is used for secure API access, while the others do not specifically handle API security.
Q98
A company needs to implement least privilege access for an administrative user. What is the best action to take?
AGrant all permissions temporarily
BAnalyze and assign minimum necessary rights
CRemove all existing rights immediately
DProvide full access to avoid conflict
Explanation
Assigning minimum necessary rights aligns with least privilege principles, unlike the other options that provide excessive access.
Q99
What happens when a privilege elevation request is denied in VMware PAM?
AUser retains normal access
BRequest is logged and notified
CPermissions are automatically revoked
DRequest can be appealed
Explanation
When a request is denied, the user retains normal access, while the others misrepresent the denial process.
Q100
Which service is essential for managing user authentication in VMware PAM?
AVMware Identity Manager
BVMware Cloud Director
CVMware NSX
DVMware Horizon
Explanation
VMware Identity Manager centralizes user authentication; the others focus on different areas.