Nutanix Certified Services Core Infrastructure Professional Free Sample Questions

Covers Nutanix Enterprise Cloud Platform architecture, Foundation tool deployment, Prism Central cluster management, Nutanix Files storage, backup and recovery, and performance and security.

20 free sample questions233 in the full practice test

Try simulator

NCS-Core-6.8 Sample Questions

  1. Question 1

    A consultant is deploying a new four-node Nutanix cluster with AHV for a retail client. During the Foundation process, three nodes are successfully imaged, but the fourth node remains stuck in the discovery phase. The consultant confirms physical network connectivity and that the switch ports are configured identically. IPMI access to the problematic node via its web interface is successful from the consultant's laptop on the same VLAN. Which is the most likely reason Foundation cannot discover the node?

    Answer and explanation

    Correct answer: D

    While all options are potential issues, the scenario provides key clues. Direct IPMI web access (TCP) works, but Foundation discovery relies on IPMItool, which uses UDP port 623 for SOL (Serial over LAN) and other functions. A common oversight is a firewall rule that allows TCP traffic for web access but blocks the necessary UDP ports for automated management tools like Foundation. Incorrect credentials would cause an authentication error, not a discovery failure. STP issues usually resolve after a delay, they don't typically cause a node to be completely undiscoverable. If the Foundation VM had no route, it likely wouldn't discover any nodes.

  2. Question 2

    Multiple answers

    A financial services client requires a new Nutanix Files deployment for their analytics department. The solution must support both SMB shares for Windows-based data ingestion tools and NFSv4 exports for a Linux-based processing farm. A key requirement is that user permissions must be consistent regardless of the protocol used to access the data. Which configuration steps are necessary to meet these requirements? (Select TWO)

    Answer and explanation

    Correct answers: B, E

    To achieve consistent permissions across SMB (Windows) and NFS (Linux), Nutanix Files needs a way to map Windows SIDs to Linux UID/GIDs. This is accomplished by joining an AD domain and configuring an LDAP provider (often AD itself) that includes RFC2307 attributes (like uidNumber and gidNumber) for the users and groups.

    After setting up the user mapping source (AD/LDAP), you must explicitly enable multi-protocol access at the share or export level. This tells Nutanix Files to perform the SID-to-UID/GID translation and enforce permissions consistently for users accessing the same data from different protocols.

  3. Question 3

    True or False: When a Nutanix cluster with Data-at-Rest Encryption (DaRE) enabled is expanded with new nodes, the new nodes will automatically encrypt their local drives and join the encrypted cluster without requiring manual intervention, provided they are imaged with a compatible AOS version.

    Answer and explanation

    Correct answer: A

    This is true. The cluster expansion process is designed to be seamless with DaRE. When new nodes are added, the cluster's Key Management Server (KMS) distributes the necessary encryption keys to the new CVMs. The nodes then perform a background process to encrypt their drives and integrate into the storage pool, inheriting the cluster's security posture automatically.

  4. Question 4

    A hospital's IT department is running a critical EMR application on a Nutanix cluster. Administrators report that during nightly batch processing, which is read-intensive, the application performance degrades significantly. Analysis in Prism shows high read latency on the CVMs, but CPU and memory utilization remain normal. The cluster is configured with RF2 and consists of hybrid nodes (SSD and HDD). Which action should a consultant recommend to provide the most immediate and targeted improvement for this workload?

    Answer and explanation

    Correct answer: C

    The scenario describes a read-intensive workload on hybrid nodes experiencing high read latency. This strongly suggests that the application's hot data is not being consistently served from the SSD tier. Flash Mode (SSD pinning) is the feature designed specifically for this use case. It forces the selected vDisks' data to remain in the SSD tier, guaranteeing low-latency reads and providing the most direct solution to the described problem. Increasing CVM memory helps metadata, not necessarily data reads. EC-X improves capacity but can add latency, making it unsuitable here. Adding more nodes is a valid but much more costly and less targeted solution.

  5. Question 5

    A system administrator is configuring a Protection Domain for a group of VMs that host a multi-tier application. The business requires a Recovery Point Objective (RPO) of 15 minutes. To achieve this, the administrator plans to use NearSync replication. What is a primary prerequisite for configuring NearSync replication between two Nutanix clusters?

    Answer and explanation

    Correct answer: A

    NearSync replication schedules (1-15 minutes RPO) and the underlying lightweight snapshot (LWS) mechanism are managed and orchestrated by Prism Central. Therefore, both the source and destination clusters must be registered to and managed by the same Prism Central instance for NearSync to be configured and to function correctly. While network latency and hypervisor compatibility are important operational factors, the management dependency on a single Prism Central is a fundamental prerequisite.

  6. Question 6

    During a kick-off call for a new cluster installation, a customer states their security policy mandates that all infrastructure management traffic, including hypervisor and CVM communication, must be on a tagged VLAN. How does this requirement affect the configuration of the physical switch ports connected to the Nutanix nodes?

    Answer and explanation

    Correct answer: B

    To support tagged VLANs for CVM and hypervisor traffic, the physical switch ports must be configured as trunk ports (or the equivalent terminology for the switch vendor). A best practice is to set the native (untagged) VLAN to a dedicated, unused VLAN ID. This ensures that no untagged traffic inadvertently ends up on a production VLAN and forces all traffic, including management, to be explicitly tagged. The management VLAN ID will then be specified during the Foundation process or node configuration.

  7. Question 7

    A consultant is performing a Nutanix Cluster Check (NCC) health check after a deployment. The check cvm_memory_usage_check returns a FAIL status for multiple CVMs. The cluster is running only a few test VMs, and overall resource usage is low. What is the most appropriate first step to investigate this failure?

    Answer and explanation

    Correct answer: B

    The NCC output provides detailed information for each check, including the reason for failure and the thresholds used. Before taking any corrective action, the first and most logical step is to analyze this output. It will clarify if memory usage is slightly above a warning threshold or critically high, and it often provides links to relevant knowledge base articles. This information is crucial for determining the correct next action, which might range from adjusting CVM memory (if supported for the enabled features) to identifying a specific memory-consuming process.

  8. Question 8

    An administrator needs to perform a firmware upgrade on the SATADOMs in a Nutanix cluster. To minimize disruption, they plan to use the one-click upgrade process available in the LCM inventory. What is a key prerequisite for the LCM process to perform this type of firmware upgrade?

    Answer and explanation

    Correct answer: D

    Firmware upgrades for certain hardware components, like SATADOMs, cannot be performed while the main AOS is running. The automated LCM process handles this by rebooting the CVM into a special maintenance environment called Phoenix. From Phoenix, it can safely apply the low-level firmware update. The LCM process orchestrates this one node at a time to maintain cluster availability.

  9. Question 9

    A consultant is designing a networking solution for a new AHV cluster that will host a high-traffic e-commerce application. The customer wants to maximize network throughput for VMs and ensure redundancy. They have two 25GbE ports per node connected to a pair of top-of-rack switches. Which bond mode provides active-active load balancing based on the source and destination IP and port, and is recommended for this use case?

    Answer and explanation

    Correct answer: C

    The balance-tcp mode in AHV networking uses LACP (Link Aggregation Control Protocol) and load balances traffic based on a hash of Layer 4 information (source/destination IP and TCP/UDP port). This provides a more granular and effective distribution of traffic from multiple VMs and sessions across all active uplinks in the bond, making it the ideal choice for maximizing throughput in a high-traffic environment. balance-slb balances based on source MAC address, which can lead to uneven link utilization. active-backup only provides redundancy, not load balancing.

  10. Question 10

    Case Study

    A regional bank is deploying a new Nutanix environment to modernize its core banking application. The environment consists of two sites: a primary production site (Site A) and a disaster recovery site (Site B), connected by a 1 Gbps WAN link with an average latency of 25ms.

    The production cluster at Site A is an all-flash AF8 system. The DR cluster at Site B is a hybrid HY-6 system. The core banking application consists of 15 VMs with a total of 10 TB of data. The business has mandated a Recovery Point Objective (RPO) of 1 hour and a Recovery Time Objective (RTO) of 4 hours for the entire application.

    The bank's security team requires that all data replicated between sites must be encrypted in-transit. The network team has informed the consultant that there is significant network congestion on the WAN link during business hours (9 AM - 5 PM).

    Given these requirements and constraints, which data protection strategy should the consultant implement?

    Answer and explanation

    Correct answer: B

    This solution correctly addresses all constraints. An Asynchronous Protection Domain with a 60-minute schedule meets the 1-hour RPO. In-transit encryption can be enabled on the remote site configuration to satisfy the security requirement. Critically, a remote site throttling policy allows the consultant to limit the bandwidth used by replication during business hours (9-5) to avoid impacting other critical traffic, while allowing it to use more bandwidth overnight. Metro Availability is not feasible due to the 25ms latency. NearSync is unnecessary as the RPO is 60 minutes. Cloud Connect requires a cloud subscription, which was not mentioned.