A user cannot consume SaaS services while working remotely. IP whitelisting is implemented to connect to a SaaS provider as a security mechanism. Which of the following describes the MOST likely reason why the user cannot access the SaaS resources?
A. The user account has consumed all of the available subscriptions.
B. The user is not utilizing VPN to connect to the home office.
C. The user account is not assigned the correct role in RBAC policy.
D. The user account does not exist in the SaaS provider.
正解:C
質問 2:
A private cloud is using the iSCSI protocol for connection from storage to hypervisors. This connection is not encrypted currently, and the systems administrator is tasked with enabling on-the-fly encryption.
Which of the following technologies should the administrator use?
A. HTTPS
B. PKI
C. LUN encryption
D. IPSec
正解:B
質問 3:
A company is seeking a new backup solution for its virtualized file servers that fits the following characteristics:
The files stored on the servers are extremely large.
Existing files receive multiple small changes per day.
New files are only created once per month.
All backups are being sent to a cloud repository.
Which of the following would BEST minimize backup size?
A. Local snapshots
B. Change block tracking
C. Real-time backups
D. File-based replication
正解:B
質問 4:
After deploying multiple copies of database servers, data scrambling is started on them to anonymize user dat a. A few minutes later, the systems administrator receives multiple complaints regarding the performance of other VMs. CPU and memory have been eliminated as possible bottlenecks. Which of the following should be verified NEXT as a possible bottleneck?
A. Hardware load balancer
B. Internet connection speed
C. Database drivers
D. Storage array
正解:C
質問 5:
Government agencies currently operate their own websites, each with its own directory services. There is a mandate to minimize IT administration.
Which of the following should the cloud services architect choose to BEST meet this mandate?
A. Upgrade the operating systems on all of the web servers.
B. Set up a direct VPN tunnel between the government sites.
C. Reengineer the identification and authorization process.
D. Upgrade all stand-alone systems to use mobile technologies.
正解:C
質問 6:
A company has deployed a four-node cluster in a COLO environment with server configurations listed below. The company wants to ensure there is 50% overhead for failover and redundancy. There are currently eight VMs running within the cluster with four vCPUs x32GB each. The company wants to better utilize its resources within the cluster without compromising failover and redundancy.

Given the information above, which of the following should a cloud administrator do to BEST accommodate failover and redundancy requirements?
A. Ensure hyperthreading is being utilized with physical server CPUs.
B. Overcommit memory, and the systems will allocate resources as required.
C. Set hard limits for VM resources and turn on hyperthreading.
D. Ensure dynamic resource allocation is being utilized.
正解:D
質問 7:
Recent feedback from an employee engagement survey stated that users are frustrated with multiple logins to different SaaS providers, and the cloud engineering teams is directed to address this issue and implement a solution. The security policy states that users must access the SaaS from approved IP addresses.
Which of the following is the BEST and most efficient solution to deploy?
A. Deploy a smart card login and change passwords to each SaaS vendor every 30 days.
B. Deploy an IPSec tunnel to each SaaS provider and enable biometric login.
C. Deploy SSO and enforce VPN access to the corporate domain.
D. Deploy a CASB solution and whitelist the approved SaaS applications.
正解:C
Nakamura -
かなり使い安い参考書です。この一冊でCV0-002の試験はなんとかなると思います。
設問と正解はちゃんと暗記すればokです。思い立ったら買いましょう。