Quiz NCM-MCI: Nutanix Certified Master - Multicloud Infrastructure v6.5
Quiz
Environment
You have been provisioned a dedicated environment for your assessment which includes the
following:
Initial Steps
When you first log into Prism Central or Prism Element you may see the EULA screen. Accept the
EULA with any name and then disable Pulse.
To access Prism Element, the pass-through from Prism Central
(Infrastructure\Hardware\Clusters\cluster-x\Launch Prism Element) works better than directly using
the external IP:9440.
Workstation
Windows Server 2019
All software/tools/etc to perform the required tasks
Nutanix Documentation and whitepapers can be found in Desktop\Files\Documentation and
Desktop\Files\Documentation 6.10
Note that the Workstation is the system you are currently logged into
Windows Server 2019
All software/tools/etc to perform the required tasks
Nutanix Documentation and whitepapers can be found in Desktop\Files\Documentation and
Desktop\Files\Documentation 6.10
Note that the Workstation is the system you are currently logged into
Nutanix Cluster
There are two clusters provided, connected to one Prism Central. The connection information for the
relevant cluster will be displayed to the right of the question. Please make sure you are working on
the correct cluster for each item. Please ignore any licensing violations.
Important Notes
If the text is too small and hard to read, or you cannot see all of the GUI, you can increase/decrease
the zoom of the browser with CTRL + and CTRL – (the plus and minus keys).

Prism Central Web Console
admin / ykZUCJMER7V*
nutanix / UJ2xE!DEXGY
Cluster 1
CVM external IP: 34.53.118.63
CVM DR IP: 172.30.0.6
admin / 9Fw0B!3QH4X)
nutanix / GNP*FE2504XWZ
root / KR*6HY0z5E8
Cluster 2
CVM external IP: 34.82.155.5
CVM DR IP: 172.30.0.4
admin / 5*K30fA76X
nutanix / N*3F%1ME!Z7T9

An administrator regularly sees a WARN for backup_schedule_check and also receives alerts for
Pulse not being enabled on Cluster 1.
Detailed information for backup_schedule_check:
Node xx.xx.xx.xx:
WARN: Backup schedule(s) exist for protection domain NoVMs; however, there are no entities in the
protection domain.
Refer to KB 1910 ([http://portal.nutanix.com/kb/1910)](http://portal.nutanix.com/kb/1910)) for details on backup_schedule_check or
Recheck with: ncc health_checks data_protection_checks protection_domain_checks
backup_schedule_check.
This shows up in NCC, however, it is something set up by the company and they do not want the NCC
check to be run.
Configure Cluster 1 to no longer have messages in NCC about the backup_schedule_check.
Turn off the alert for Pulse not being enabled, and resolve the alert. They would like messages about
Pulse to be recorded, but do not want an alert.
Note: You may need to run the “Pulse is not enabled” check in order to have one to resolve.
Quiz
Environment
You have been provisioned a dedicated environment for your assessment which includes the
following:
Initial Steps
When you first log into Prism Central or Prism Element you may see the EULA screen. Accept the
EULA with any name and then disable Pulse.
To access Prism Element, the pass-through from Prism Central
(Infrastructure\Hardware\Clusters\cluster-x\Launch Prism Element) works better than directly using
the external IP:9440.
Workstation
Windows Server 2019
All software/tools/etc to perform the required tasks
Nutanix Documentation and whitepapers can be found in Desktop\Files\Documentation and
Desktop\Files\Documentation 6.10
Note that the Workstation is the system you are currently logged into
Windows Server 2019
All software/tools/etc to perform the required tasks
Nutanix Documentation and whitepapers can be found in Desktop\Files\Documentation and
Desktop\Files\Documentation 6.10
Note that the Workstation is the system you are currently logged into
Nutanix Cluster
There are two clusters provided, connected to one Prism Central. The connection information for the
relevant cluster will be displayed to the right of the question. Please make sure you are working on
the correct cluster for each item. Please ignore any licensing violations.
Important Notes
If the text is too small and hard to read, or you cannot see all of the GUI, you can increase/decrease
the zoom of the browser with CTRL + and CTRL – (the plus and minus keys).

Prism Central Web Console
admin / ykZUCJMER7V*
nutanix / UJ2xE!DEXGY
Cluster 1
CVM external IP: 34.53.118.63
CVM DR IP: 172.30.0.6
admin / 9Fw0B!3QH4X)
nutanix / GNP*FE2504XWZ
root / KR*6HY0z5E8
Cluster 2
CVM external IP: 34.82.155.5
CVM DR IP: 172.30.0.4
admin / 5*K30fA76X
nutanix / N*3F%1ME!Z7T9

TASK 1
A newly created Windows VM “SQL02” is experiencing poor storage performance when compared to
“SQL01” running within the same cluster, on the same storage container.
The cluster is in a healthy state.
Create a new session named Monitor SQL02 with meaningful metrics. Right click on the session page
and click Select All then paste this into Notepad and save it as Task 1.txt on the desktop.
Also, save the analysis as a report named MonitorSQL02 and send the report as a PDF on a daily basis
to [email protected]. Reports should not be retained. If any new objects need to be created,
use monitovm2 in the name.
Finally, correct the issue within “SQL02”.
Notes:
Do not power on the VMs.
While you will be creating a session, you will need to examine the VM configurations to determine
the issue.
Do not delete the VM to resolve the issue, any other destructive change is acceptable.
Task 1: Create Monitoring Session & Save Metrics
From the Prism Central dashboard, navigate to Operations > Analysis.
Click the + New Session button.
Name the session Monitor SQL02.
In the "Entities" search box, type SQL01 and select VM: SQL01.
In the "Entities" search box, type SQL02 and select VM: SQL02.
Click Add Charts > New Chart.
Title: Storage IOPS
Metric: Storage Controller IOPS
Click Add.
Click Add Charts > New Chart.
Title: Storage Latency
Metric: Storage Controller Latency
Click Add.
Click Add Charts > New Chart.
Title: Storage Bandwidth
Metric: Storage Controller Bandwidth
Click Add.
Click Save Session.
With the "Monitor SQL02" session open, right-click anywhere on the page and click Select All.
Right-click again and select Copy.
Open Notepad, paste the content, and save the file to the desktop as Task 1.txt.
(The content pasted into Task 1.txt would be the session's chart configurations, showing metrics for
SQL01 and SQL02.)
Task 2: Create and Schedule the Report
While still in the "Monitor SQL02" analysis session, click the Save as Report button (it looks like a
bookmark icon).
Name the report MonitorSQL02 and click Save.
Navigate to Operations > Reports.
Find the MonitorSQL02 report in the list. Select its checkbox.
Click the Actions dropdown and select Schedule.
Configure the schedule with the following settings:
Schedule Name: monitovm2_daily_report
Recurrence: Daily
Start Time: (Set to a time, e.g., 8:00 AM)
Repeat every: 1 day(s)
Retention Policy: Uncheck the "Retain a copy of the report" box. (This ensures reports are not
retained).
Email Report: Check this box.
Format: PDF
Recipients: [email protected]
Click Save.
Task 3: Identify and Correct the Performance Issue
This task is performed without powering on the VMs, indicating a configuration error.
Investigation
Navigate to VMs > Table view.
Click on the SQL01 (the good VM) and select the Configuration tab.
Expand the Disks section. Observe that the primary disk is attached to a SCSI bus (e.g., scsi.0). This is
the high-performance standard.
Return to the VM list and click on SQL02 (the problem VM).
Expand the Disks section.
Root Cause
You discover that the primary disk for SQL02 is attached to an IDE bus. The IDE bus has significant
performance limitations and is not suitable for a database server, causing the poor storage
performance.
Correction
With the SQL02 VM selected, click the Update button.
In the "Update VM" dialog, scroll down to the Disks section.
Find the disk attached to the IDE bus. Click the Edit (pencil) icon for that disk.
Change the Bus Type dropdown from IDE to SCSI.
The Device Index will automatically populate (e.g., scsi.0).
Click Save in the "Update Disk" dialog.
(Note: A "VirtIO SCSI Controller" will be automatically added to the VM configuration if one was not
already present.)
Click Save in the "Update VM" dialog.
The VM SQL02 is now configured to use the high-performance VirtIO-SCSI controller, which will
resolve the storage performance discrepancy once the VM is powered on.
Quiz
Environment
You have been provisioned a dedicated environment for your assessment which includes the
following:
Initial Steps
When you first log into Prism Central or Prism Element you may see the EULA screen. Accept the
EULA with any name and then disable Pulse.
To access Prism Element, the pass-through from Prism Central
(Infrastructure\Hardware\Clusters\cluster-x\Launch Prism Element) works better than directly using
the external IP:9440.
Workstation
Windows Server 2019
All software/tools/etc to perform the required tasks
Nutanix Documentation and whitepapers can be found in Desktop\Files\Documentation and
Desktop\Files\Documentation 6.10
Note that the Workstation is the system you are currently logged into
Windows Server 2019
All software/tools/etc to perform the required tasks
Nutanix Documentation and whitepapers can be found in Desktop\Files\Documentation and
Desktop\Files\Documentation 6.10
Note that the Workstation is the system you are currently logged into
Nutanix Cluster
There are two clusters provided, connected to one Prism Central. The connection information for the
relevant cluster will be displayed to the right of the question. Please make sure you are working on
the correct cluster for each item. Please ignore any licensing violations.
Important Notes
If the text is too small and hard to read, or you cannot see all of the GUI, you can increase/decrease
the zoom of the browser with CTRL + and CTRL – (the plus and minus keys).

Prism Central Web Console
admin / ykZUCJMER7V*
nutanix / UJ2xE!DEXGY
Cluster 1
CVM external IP: 34.53.118.63
CVM DR IP: 172.30.0.6
admin / 9Fw0B!3QH4X)
nutanix / GNP*FE2504XWZ
root / KR*6HY0z5E8
Cluster 2
CVM external IP: 34.82.155.5
CVM DR IP: 172.30.0.4
admin / 5*K30fA76X
nutanix / N*3F%1ME!Z7T9

The security team has provided some new security requirements for cluster level security on Cluster
2.
Security requirements:
Update the password for the root user on the Cluster 2 node to match the admin user password.
Note: The 192.168.x.x network is not available. To access a node use the host IP (172.30.0.x) from the
CVM.
Output the cluster-wide configuration of the SCMA policy to desktop\output.txt before changes are
made.
Enable the Advanced Intrusion Detection Environment (AIDE) to run on a weekly basis for the
hypervisor and cvms for Cluster 2.
Enable high-strength password policies for the hypervisor and cluster.
Ensure CVMs require SSH keys for login instead of passwords. (SSH keys are located in the
desktop\Files\SSH folder.)
Ensure the cluster meets these requirements. Do not reboot any cluster components.
Note: Please ensure you are modifying the correct components.
1. Access Cluster 2 Prism Element
First, we must access the Prism Element (PE) interface for Cluster 2, as most security settings are
cluster-specific.
From the Prism Central dashboard, navigate to Hardware > Clusters.
Find Cluster 2 in the list and click its name. This will open the Prism Element login page for that
specific cluster in a new tab.
Log in to Cluster 2's Prism Element using the admin credentials.
2. Requirement: Update Node Root Password
This task syncs the root password for all AHV hypervisor nodes with the cluster's admin user
password.
In the Cluster 2 PE interface, click the gear icon (Settings) in the top right corner.
Select Cluster Lockdown from the left-hand menu.
Click the Set Root Password on All Hosts button.
A dialog box will appear. Enter the current admin password (the one you just used to log in) into both
the New Password and Confirm New Password fields.
Click Save. This will propagate the admin password to the root user on all nodes in Cluster 2.
3. Requirement: Add CVM SSH Key
This task adds the security team's public key to the admin user, which is required before we can
disable password-based login.
On the desktop, navigate to the Files > SSH folder.
Open the id_rsa.pub file (or equivalent public key file) with Notepad.
Copy the entire string of text (e.g., ssh-rsa AAAA...).
In the Cluster 2 PE interface, go to Settings (gear icon) > User Management.
Select the admin user and click Modify User.
Paste the copied public key into the Public Keys text box.
Click Save.
4. Requirement: Apply SCMA Policies (All other requirements)
The remaining requirements are all applied via the command line on a CVM using Nutanix's Security
Configuration Management Automation (SCMA).
Access the CVM:
Find a CVM IP for Cluster 2 by going to Hardware > CVMs in the PE interface.
Open an SSH client (like PuTTY) and connect to that CVM's IP address.
Log in with the username admin and the corresponding password.
Output Current Policy (Req 2):
Before making changes, run the following command to see the current policy:
ncli scma status
Copy the entire output from your SSH terminal.
Open Notepad on the desktop, paste the copied text, and Save the file to the desktop as output.txt.
Apply New Policies (Req 3, 4, 5):
Run the following commands one by one. The cluster will apply them immediately without a reboot.
Enable AIDE (Req 3):
ncli scma update aide-status=enabled aide-schedule=weekly
Enable High-Strength Passwords (Req 4):
ncli scma update password-policy=high
Require SSH Keys for CVMs (Req 5):
ncli scma update ssh-login=keys-only
Verification
You can verify all changes by running the status command again. The output should now reflect the
new, hardened security posture.
ncli scma status
AIDE Status: should show Enabled
AIDE Schedule: should show Weekly
Password Policy: should show High
SSH Login: should show keys-only
Quiz
Environment
You have been provisioned a dedicated environment for your assessment which includes the
following:
Initial Steps
When you first log into Prism Central or Prism Element you may see the EULA screen. Accept the
EULA with any name and then disable Pulse.
To access Prism Element, the pass-through from Prism Central
(Infrastructure\Hardware\Clusters\cluster-x\Launch Prism Element) works better than directly using
the external IP:9440.
Workstation
Windows Server 2019
All software/tools/etc to perform the required tasks
Nutanix Documentation and whitepapers can be found in Desktop\Files\Documentation and
Desktop\Files\Documentation 6.10
Note that the Workstation is the system you are currently logged into
Windows Server 2019
All software/tools/etc to perform the required tasks
Nutanix Documentation and whitepapers can be found in Desktop\Files\Documentation and
Desktop\Files\Documentation 6.10
Note that the Workstation is the system you are currently logged into
Nutanix Cluster
There are two clusters provided, connected to one Prism Central. The connection information for the
relevant cluster will be displayed to the right of the question. Please make sure you are working on
the correct cluster for each item. Please ignore any licensing violations.
Important Notes
If the text is too small and hard to read, or you cannot see all of the GUI, you can increase/decrease
the zoom of the browser with CTRL + and CTRL – (the plus and minus keys).

Prism Central Web Console
admin / ykZUCJMER7V*
nutanix / UJ2xE!DEXGY
Cluster 1
CVM external IP: 34.53.118.63
CVM DR IP: 172.30.0.6
admin / 9Fw0B!3QH4X)
nutanix / GNP*FE2504XWZ
root / KR*6HY0z5E8
Cluster 2
CVM external IP: 34.82.155.5
CVM DR IP: 172.30.0.4
admin / 5*K30fA76X
nutanix / N*3F%1ME!Z7T9

Your security team is working on automation to manage Security Policies.
They have exported some of the existing rules to the file "Security Policy.txt" located on the desktop.
This file needs to be modified for the test environment.
All rules except the quarantine rule should be logged.
Only the Quarantine rule should be enforced, the other rules will only be logged.
The quarantine rule should affect the SecOps environment.
The SMB rule should only affect VMs with the “smbhost” and “smbclient” tags.
The “DN test” policy should allow ipv6 and should not restrict any protocols between the included
tiers.
There are three rules in the file, do not delete, add or copy lines. Only replace xxxx with the correct
value as appropriate. It is possible that not all “xxxxx” will be replaced.
Save the file with the same name.
Possible values to replace the “xxxxx”:
8080
ALL
APPLY
false
MONITOR
Non-Prod
SecOps
smbhost
smbclient
TCP
True
Navigate to the desktop and open the file Security Policy.txt (which corresponds to the provided
Security Policy.bak content) using a text editor like Notepad.
Modify the file content by replacing the xxxxx and xxxx placeholders according to the security
requirements.
Modifications by Rule
Here are the specific changes to make within the file:
1. Quarantine Rule
Requirement 1 (No Logging): The quarantine rule should not be logged.
Change "is_policy_hitlog_enabled": "xxxxx" to "is_policy_hitlog_enabled": "false"
Requirement 2 (Enforce): This rule must be enforced.
Change "action": "xxxxx" (under quarantine_rule) to "action": "APPLY"
Requirement 3 (Environment): The rule must affect the "SecOps" environment.
Change "Environment": ["xxxxx"] to "Environment": ["SecOps"]
2. SMB-block Rule
Requirement 1 (Logging): This rule must be logged.
Change "is_policy_hitlog_enabled": "xxxxx" to "is_policy_hitlog_enabled": "True"
Requirement 2 (Monitor): This rule must not be enforced, only logged.
Change "action": "xxxxx" (under isolation_rule) to "action": "MONITOR"
Requirement 4 (Tags): The rule must affect the "smbhost" and "smbclient" tags.
Change "SMBv1": ["xxxxx"] to "SMBv1": ["smbhost"]
Change "SMRv1": ["xxxxx"] to "SMRv1": ["smbclient"]
3. DN test (dn-policy1) Rule
Requirement 2 (Monitor): This rule must not be enforced, only logged.
Change "action": "xxxx" (under app_rule) to "action": "MONITOR"
Requirement 5 (Allow IPv6): This policy must allow IPv6 traffic.
Change "allow_ipv6_traffic": "xxxx" to "allow_ipv6_traffic": "True"
Final Step
After making all the replacements, Save the file, overwriting the original Security Policy.txt on the
desktop.
Example of completed rules (replace xxxxx accordingly):
Rule Name: Quarantine Rule
Logged: false
Action: APPLY
Environment: SecOps
Protocols: TCP
Ports: 8080
Rule Name: SMB Rule
Logged: True
Action: MONITOR
Tags: smbhost, smbclient
Protocols: TCP
Ports: 8080
Rule Name: DN Test Policy
Logged: True
Action: MONITOR
Environment: Non-Prod
Protocols: ALL
Ports: 8080
Quiz
Environment
You have been provisioned a dedicated environment for your assessment which includes the
following:
Initial Steps
When you first log into Prism Central or Prism Element you may see the EULA screen. Accept the
EULA with any name and then disable Pulse.
To access Prism Element, the pass-through from Prism Central
(Infrastructure\Hardware\Clusters\cluster-x\Launch Prism Element) works better than directly using
the external IP:9440.
Workstation
Windows Server 2019
All software/tools/etc to perform the required tasks
Nutanix Documentation and whitepapers can be found in Desktop\Files\Documentation and
Desktop\Files\Documentation 6.10
Note that the Workstation is the system you are currently logged into
Windows Server 2019
All software/tools/etc to perform the required tasks
Nutanix Documentation and whitepapers can be found in Desktop\Files\Documentation and
Desktop\Files\Documentation 6.10
Note that the Workstation is the system you are currently logged into
Nutanix Cluster
There are two clusters provided, connected to one Prism Central. The connection information for the
relevant cluster will be displayed to the right of the question. Please make sure you are working on
the correct cluster for each item. Please ignore any licensing violations.
Important Notes
If the text is too small and hard to read, or you cannot see all of the GUI, you can increase/decrease
the zoom of the browser with CTRL + and CTRL – (the plus and minus keys).

Prism Central Web Console
admin / ykZUCJMER7V*
nutanix / UJ2xE!DEXGY
Cluster 1
CVM external IP: 34.53.118.63
CVM DR IP: 172.30.0.6
admin / 9Fw0B!3QH4X)
nutanix / GNP*FE2504XWZ
root / KR*6HY0z5E8
Cluster 2
CVM external IP: 34.82.155.5
CVM DR IP: 172.30.0.4
admin / 5*K30fA76X
nutanix / N*3F%1ME!Z7T9

The Infosec team has requested that all operational tasks performed within Cluster 1 be properly
logged to include the top 4 severity levels and pushed to their syslog system using highest reliability
possible for analysis. This is to include any Virtual Machine changes only.
The Infosec team has also requested that monitor logs for the given RSyslog Server Module be
included for now. No extra logs should be included.
No other clusters should connect to this syslog server.
Syslog configuration:
Syslog Name: Corp_Syslog
Syslog IP: 34.142.155.231
Port: TCP/514
Ensure only Cluster 1 is configured to meet these requirements.
1. Access Cluster 1 Prism Element
Since the requirement is to only configure Cluster 1 and not other clusters, this task must be
performed in the Prism Element (PE) interface for Cluster 1.
From the main Prism Central dashboard, navigate to Hardware > Clusters.
Find Cluster 1 in the list and click its name. This will open the specific Prism Element login page for
that cluster.
Log in to Cluster 1's Prism Element interface.
2. Add the Syslog Server
In the Cluster 1 PE interface, click the gear icon (Settings) in the top-right corner.
From the left-hand menu, select Syslog.
In the "Remote Syslog Server" section, click the + Add Syslog Server button.
Fill in the server details as required:
Name: Corp_Syslog
IP Address: 34.142.155.231
Port: 514
Protocol: TCP (This provides the highest reliability, as requested).
Click Save.
3. Configure Log Modules and Severities
Now, we must specify which logs to send to the new server.
On the same Syslog settings page, find the "Syslog Configuration" section and click the Configure
button (or Modify if a default is present).
A dialog box "Select Modules and Levels" will appear.
Uncheck all modules to ensure no extra logs are sent.
Check the box for the RSyslog Server Module (or rsyslog_forwarder).
For this module, check the boxes for the severities: Critical, Warning, and Info.
Check the box for the ApiServer module.
This module logs all operational tasks and audit trails, which includes all Virtual Machine changes.
For this module, check the boxes for the top severity levels: Critical, Warning, and Info.
Ensure no other modules (like Stargate, Cerebro, Zookeeper, etc.) are checked.
Click Save.
Cluster 1 is now configured to send its audit logs (including VM changes) and its own syslog
monitoring logs to the Corp_Syslog server via TCP, fulfilling all security requirements.
Quiz
Environment
You have been provisioned a dedicated environment for your assessment which includes the
following:
Initial Steps
When you first log into Prism Central or Prism Element you may see the EULA screen. Accept the
EULA with any name and then disable Pulse.
To access Prism Element, the pass-through from Prism Central
(Infrastructure\Hardware\Clusters\cluster-x\Launch Prism Element) works better than directly using
the external IP:9440.
Workstation
Windows Server 2019
All software/tools/etc to perform the required tasks
Nutanix Documentation and whitepapers can be found in Desktop\Files\Documentation and
Desktop\Files\Documentation 6.10
Note that the Workstation is the system you are currently logged into
Windows Server 2019
All software/tools/etc to perform the required tasks
Nutanix Documentation and whitepapers can be found in Desktop\Files\Documentation and
Desktop\Files\Documentation 6.10
Note that the Workstation is the system you are currently logged into
Nutanix Cluster
There are two clusters provided, connected to one Prism Central. The connection information for the
relevant cluster will be displayed to the right of the question. Please make sure you are working on
the correct cluster for each item. Please ignore any licensing violations.
Important Notes
If the text is too small and hard to read, or you cannot see all of the GUI, you can increase/decrease
the zoom of the browser with CTRL + and CTRL – (the plus and minus keys).

Prism Central Web Console
admin / ykZUCJMER7V*
nutanix / UJ2xE!DEXGY
Cluster 1
CVM external IP: 34.53.118.63
CVM DR IP: 172.30.0.6
admin / 9Fw0B!3QH4X)
nutanix / GNP*FE2504XWZ
root / KR*6HY0z5E8
Cluster 2
CVM external IP: 34.82.155.5
CVM DR IP: 172.30.0.4
admin / 5*K30fA76X
nutanix / N*3F%1ME!Z7T9

Due to new security requirements, an administrator has been tasked with updating the security
settings for user accounts within Prism Element on Cluster 1.
An SSL Certificate Signing Request with Subject Alternative Name should be generated for
submission to the security team’s Certificate Authority with the following details:
countryName = US
stateOrProvinceName = North Carolina
localityName = Durham
organizationName = ACME
organizationalUnitName = Infrastructure
commonName = prism_element.ACME.org
emailAddress = [email protected]
Alternate names = cvm1.ACME.org, cvm2.ACME.org, cvm3.ACME.org
Encryption: RSA 2048, sha256
When the Certificate Signing Request is generated, place a copy of both the .cnf file and the .csr file
on the desktop named ‘prism_element_acme.cnf’ and ‘prism_element_acme.csr’
Save a copy of the command(s) used for this scenario to a new file on the desktop named “Task
5.txt”.
Note: You must copy and paste the command(s) and output from SSH to the “Task 5.txt” file to
achieve all points available.
This entire process is performed from an SSH session connected to a CVM (Controller VM) on Cluster
1.
1. Access Cluster 1 CVM
From Prism Central, navigate to Hardware > Clusters and click on Cluster 1 to open its Prism Element
(PE) interface.
In the Cluster 1 PE, navigate to Hardware > CVMs to find the IP address of any CVM in the cluster.
Use an SSH client (like PuTTY) to connect to the CVM's IP address.
Log in with the admin user and password.
2. Create the Configuration File (.cnf)
To include the Subject Alternative Names (SANs), you must first create a configuration file.
In the CVM's command line, create the .cnf file using a text editor:
vi prism_element_acme.cnf
Press i to enter "Insert" mode.
Paste the following text exactly into the editor:
Ini, TOML
[ req ]
default_bits = 2048
distinguished_name = req_distinguished_name
req_extensions = v3_req
prompt = no
[ req_distinguished_name ]
C = US
ST = North Carolina
L = Durham
O = ACME
OU = Infrastructure
CN = prism_element.ACME.org
emailAddress = [email protected]
[ v3_req ]
subjectAltName = @alt_names
[ alt_names ]
DNS.1 = cvm1.ACME.org
DNS.2 = cvm2.ACME.org
DNS.3 = cvm3.ACME.org
Press Esc to exit "Insert" mode, then type :wq and press Enter to save and quit vi.
3. Generate the CSR and Key
Run the following openssl command. This command uses the .cnf file to generate the new CSR (.csr)
and a corresponding private key (.key), applying the sha256 encryption as requested.
Bash
openssl req -new -nodes -out prism_element_acme.csr -keyout prism_element_acme.key -config
prism_element_acme.cnf -sha256
The command will output the following, confirming the key generation:
Generating a 2048 bit RSA private key
. ................ +++++
. .............................. +++++
writing new private key to 'prism_element_acme.key'
4. Save Files to the Desktop
You will now copy the contents of the generated files from the CVM to your desktop.
For Task 5.txt (Commands and Output):
Open a new Notepad file on the desktop.
Copy and paste all the commands you ran in the SSH session and their full output (as shown in steps
2 and 3) into this file.
Save the file on the desktop as Task 5.txt.
For prism_element_acme.cnf:
In the CVM SSH session, display the file's content:
cat prism_element_acme.cnf
Copy the entire text output (starting from [ req ]).
Open a new Notepad file on the desktop.
Paste the content and save the file as prism_element_acme.cnf.
For prism_element_acme.csr:
In the CVM SSH session, display the file's content:
cat prism_element_acme.csr
Copy the entire text output, including the -----BEGIN CERTIFICATE REQUEST----- and -----END
CERTIFICATE REQUEST --- lines.
Open a new C:\Users\admin\Desktop\Notepad file on the desktop.
Paste the content and save the file as prism_element_acme.csr.
Quiz
Environment
You have been provisioned a dedicated environment for your assessment which includes the
following:
Initial Steps
When you first log into Prism Central or Prism Element you may see the EULA screen. Accept the
EULA with any name and then disable Pulse.
To access Prism Element, the pass-through from Prism Central
(Infrastructure\Hardware\Clusters\cluster-x\Launch Prism Element) works better than directly using
the external IP:9440.
Workstation
Windows Server 2019
All software/tools/etc to perform the required tasks
Nutanix Documentation and whitepapers can be found in Desktop\Files\Documentation and
Desktop\Files\Documentation 6.10
Note that the Workstation is the system you are currently logged into
Windows Server 2019
All software/tools/etc to perform the required tasks
Nutanix Documentation and whitepapers can be found in Desktop\Files\Documentation and
Desktop\Files\Documentation 6.10
Note that the Workstation is the system you are currently logged into
Nutanix Cluster
There are two clusters provided, connected to one Prism Central. The connection information for the
relevant cluster will be displayed to the right of the question. Please make sure you are working on
the correct cluster for each item. Please ignore any licensing violations.
Important Notes
If the text is too small and hard to read, or you cannot see all of the GUI, you can increase/decrease
the zoom of the browser with CTRL + and CTRL – (the plus and minus keys).

Prism Central Web Console
admin / ykZUCJMER7V*
nutanix / UJ2xE!DEXGY
Cluster 1
CVM external IP: 34.53.118.63
CVM DR IP: 172.30.0.6
admin / 9Fw0B!3QH4X)
nutanix / GNP*FE2504XWZ
root / KR*6HY0z5E8
Cluster 2
CVM external IP: 34.82.155.5
CVM DR IP: 172.30.0.4
admin / 5*K30fA76X
nutanix / N*3F%1ME!Z7T9

Following new security guidelines, it must be ensured that the storage of critical virtual machines will
be encrypted in future.
The assignment is to be made by a new category called VM-Storage with a value of
softwareencrypted in Prism Central. Make sure a second value of SEDencrypted is also created for
future use.
Create the above-mentioned category and perform further configurations in Prism Central for VM-
based storage encryption.
Assign the name Encrypted-Storage to the newly created policy.
policy within Prism Central.
1. Create the Category
First, you must create the category and the two values requested.
In Prism Central, navigate to Administration > Categories.
Click New Category.
In the Name field, enter VM-Storage.
In the Add a Value field, type softwareencrypted and click the Add (plus) button.
In the Add a Value field again, type SEDencrypted and click the Add (plus) button.
Click Save.
2. Create the Encryption Policy
Next, you will create the security policy that uses the new category.
In Prism Central, navigate to Security > Data-at-Rest Encryption.
Click the + Create Security Policy button.
In the Policy Name field, enter Encrypted-Storage.
Ensure the Encryption Type is set to Software-based.
For Target VMs, select the radio button for VMs matching a category.
In the Select Category dropdown, choose the VM-Storage category you just created.
In the Select Value dropdown, choose softwareencrypted.
Click Save.
This policy will now automatically apply software-based encryption to any new or existing VMs that
are assigned the VM-Storage: softwareencrypted category.
Quiz
Environment
You have been provisioned a dedicated environment for your assessment which includes the
following:
Initial Steps
When you first log into Prism Central or Prism Element you may see the EULA screen. Accept the
EULA with any name and then disable Pulse.
To access Prism Element, the pass-through from Prism Central
(Infrastructure\Hardware\Clusters\cluster-x\Launch Prism Element) works better than directly using
the external IP:9440.
Workstation
Windows Server 2019
All software/tools/etc to perform the required tasks
Nutanix Documentation and whitepapers can be found in Desktop\Files\Documentation and
Desktop\Files\Documentation 6.10
Note that the Workstation is the system you are currently logged into
Windows Server 2019
All software/tools/etc to perform the required tasks
Nutanix Documentation and whitepapers can be found in Desktop\Files\Documentation and
Desktop\Files\Documentation 6.10
Note that the Workstation is the system you are currently logged into
Nutanix Cluster
There are two clusters provided, connected to one Prism Central. The connection information for the
relevant cluster will be displayed to the right of the question. Please make sure you are working on
the correct cluster for each item. Please ignore any licensing violations.
Important Notes
If the text is too small and hard to read, or you cannot see all of the GUI, you can increase/decrease
the zoom of the browser with CTRL + and CTRL – (the plus and minus keys).

Prism Central Web Console
admin / ykZUCJMER7V*
nutanix / UJ2xE!DEXGY
Cluster 1
CVM external IP: 34.53.118.63
CVM DR IP: 172.30.0.6
admin / 9Fw0B!3QH4X)
nutanix / GNP*FE2504XWZ
root / KR*6HY0z5E8
Cluster 2
CVM external IP: 34.82.155.5
CVM DR IP: 172.30.0.4
admin / 5*K30fA76X
nutanix / N*3F%1ME!Z7T9

An administrator wants to increase the performance of their Database virtual machine.
Database_VM has a database that is spread across three vDisks in the volume group Database_VM.
The volume group is directly attached to the virtual machine. Previous performance analysis has
indicated all storage requests are going to the same node. While this test environment has 1 node,
the production environment has 3 nodes.
Configure the Volume Group Database_VM so that it’s optimized for the user’s VM and the
production environment. The virtual machine has been powered off and moved to this test cluster
for the maintenance work.
Note: Do not power on the VM.
production environment.
This task is performed in Prism Central.
From the main dashboard, navigate to Compute & Storage > Volume Groups.
Find the Volume Group named Database_VM in the list.
Select the checkbox next to Database_VM.
Click the Actions dropdown menu and select Update.
In the "Update Volume Group" dialog, scroll to the bottom of the "Basic Configuration" section.
Find the checkbox labeled Enable Client Side Load Balancing and check it.
Note: This setting allows the iSCSI initiator within the guest VM to connect to all CVMs in the cluster,
distributing the storage load from the three vDisks across all three nodes in the production
environment instead of focusing all I/O on just one.
Click Save.
Quiz
Environment
You have been provisioned a dedicated environment for your assessment which includes the
following:
Initial Steps
When you first log into Prism Central or Prism Element you may see the EULA screen. Accept the
EULA with any name and then disable Pulse.
To access Prism Element, the pass-through from Prism Central
(Infrastructure\Hardware\Clusters\cluster-x\Launch Prism Element) works better than directly using
the external IP:9440.
Workstation
Windows Server 2019
All software/tools/etc to perform the required tasks
Nutanix Documentation and whitepapers can be found in Desktop\Files\Documentation and
Desktop\Files\Documentation 6.10
Note that the Workstation is the system you are currently logged into
Windows Server 2019
All software/tools/etc to perform the required tasks
Nutanix Documentation and whitepapers can be found in Desktop\Files\Documentation and
Desktop\Files\Documentation 6.10
Note that the Workstation is the system you are currently logged into
Nutanix Cluster
There are two clusters provided, connected to one Prism Central. The connection information for the
relevant cluster will be displayed to the right of the question. Please make sure you are working on
the correct cluster for each item. Please ignore any licensing violations.
Important Notes
If the text is too small and hard to read, or you cannot see all of the GUI, you can increase/decrease
the zoom of the browser with CTRL + and CTRL – (the plus and minus keys).

Prism Central Web Console
admin / ykZUCJMER7V*
nutanix / UJ2xE!DEXGY
Cluster 1
CVM external IP: 34.53.118.63
CVM DR IP: 172.30.0.6
admin / 9Fw0B!3QH4X)
nutanix / GNP*FE2504XWZ
root / KR*6HY0z5E8
Cluster 2
CVM external IP: 34.82.155.5
CVM DR IP: 172.30.0.4
admin / 5*K30fA76X
nutanix / N*3F%1ME!Z7T9

Create a VM template on Cluster 1 named Small Template that matches the small VM Configuration
in NVD-2031 (see the Files\Documentation 6.10 folder) however, you will use default storage
container.
Configure SMTP Alerting and NCC reports per NVD-2031 for Cluster 1.
Settings:
SMTP: Use Cluster 2 IP address
Cluster email: [email protected]
Alert emails: [email protected], [email protected]
This solution requires you to first find the IP of Cluster 2 (for the SMTP server) and then perform all
configurations within the Prism Element interface for Cluster 1.
Prerequisite: Find Cluster 2 IP
In Prism Central, navigate to Hardware > Clusters.
Find Cluster 2 in the list and note its IP Address. You will use this in the steps below.
Task 1: Create the VM Template
Log in to the Prism Element (PE) interface for Cluster 1. (From PC, go to Hardware > Clusters > click
the name "Cluster 1").
Navigate to the VM view from the main dashboard.
Click the + Create VM button.
Fill in the VM details based on the NVD-2031 "Small VM" configuration (e.g., 2 vCPUs, 1 Core per
vCPU, 4 GB RAM).
Name: Small Template
Compute Details:
vCPUs: 2
Number of Cores per vCPU: 1
Memory: 4 GB
Scroll down to Storage and click + Add New Disk.
Operation: Select Clone from Image Service.
Image: Select any available guest OS image (e.g., a Windows or CentOS image).
Storage Container: Ensure the default container is selected (as required by the task).
Click Add.
Scroll down to Network Adapters (NIC) and click + Add NIC.
Select any available VLAN/Subnet (e.g., Primary).
Click Add.
Click Save. The VM will be created (and remain powered off).
Find the new Small Template VM in the list. Select its checkbox.
Click the Actions dropdown and select Convert to Template.
Confirm the action by clicking OK.
Task 2: Configure SMTP and NCC Reports
While still in the Cluster 1 Prism Element interface, click the gear icon (Settings) in the top-right
corner.
Select SMTP Server from the left-hand menu.
Click the Configure button.
In the "Server Settings" tab, fill in the following:
Server Address: Enter the Cluster 2 IP Address (which you found in the prerequisite step).
Port: 25 (leave as default).
From Email Address: [email protected]
Click Next.
In the "Email Recipients" tab, click + Add Email Recipient.
Address: [email protected]
Ensure all severities (Critical, Warning, Info) are checked.
Click Save.
Click + Add Email Recipient again.
Address: [email protected]
Ensure all severities are checked.
Click Save.
Click Done. A test email will be sent.
In the main Settings menu, select Alerts and Notifications.
Scroll to the NCC Health Checks section.
Check the box labeled Email Nutanix Cluster Check reports to recipients. (This will use the SMTP
settings and recipients you just configured).
Click Save.
Quiz
Environment
You have been provisioned a dedicated environment for your assessment which includes the
following:
Initial Steps
When you first log into Prism Central or Prism Element you may see the EULA screen. Accept the
EULA with any name and then disable Pulse.
To access Prism Element, the pass-through from Prism Central
(Infrastructure\Hardware\Clusters\cluster-x\Launch Prism Element) works better than directly using
the external IP:9440.
Workstation
Windows Server 2019
All software/tools/etc to perform the required tasks
Nutanix Documentation and whitepapers can be found in Desktop\Files\Documentation and
Desktop\Files\Documentation 6.10
Note that the Workstation is the system you are currently logged into
Windows Server 2019
All software/tools/etc to perform the required tasks
Nutanix Documentation and whitepapers can be found in Desktop\Files\Documentation and
Desktop\Files\Documentation 6.10
Note that the Workstation is the system you are currently logged into
Nutanix Cluster
There are two clusters provided, connected to one Prism Central. The connection information for the
relevant cluster will be displayed to the right of the question. Please make sure you are working on
the correct cluster for each item. Please ignore any licensing violations.
Important Notes
If the text is too small and hard to read, or you cannot see all of the GUI, you can increase/decrease
the zoom of the browser with CTRL + and CTRL – (the plus and minus keys).

Prism Central Web Console
admin / ykZUCJMER7V*
nutanix / UJ2xE!DEXGY
Cluster 1
CVM external IP: 34.53.118.63
CVM DR IP: 172.30.0.6
admin / 9Fw0B!3QH4X)
nutanix / GNP*FE2504XWZ
root / KR*6HY0z5E8
Cluster 2
CVM external IP: 34.82.155.5
CVM DR IP: 172.30.0.4
admin / 5*K30fA76X
nutanix / N*3F%1ME!Z7T9

Use Prism Element for this question.
The Application team has a 3 tier application (App Server, Web Server, and Database Server) that is
mission critical and requires as close to 0 RPO and RTO as possible with their current license level.
The organization has 2 clusters, with one cluster (Cluster 1) being production and the other cluster
(Cluster 2) being remote/DR. Cluster 2 should be able to fail back to Cluster 1.
The connectivity between the two sites is >5ms and replication traffic should not use more than
10Mbps of bandwidth. The Application team requests a plan that includes the ability to go back 2
days locally, and 2 days remotely.
The team also requests that all 3 VMs be treated as a single group and backed up collectively in a
snapshot.
The three VMs are:
Web-Prod
App-Prod
DB-Prod
Use Task3 as part of the name for any objects created for this task.
Note: VMs do NOT need to be powered on. You will need to use the 172.30.0.x IP addresses when
configuring DR.
interface.
1. Add Cluster 2 as a Remote Site
First, you must register Cluster 2 as a DR target for Cluster 1.
From the Cluster 1 Prism Element dashboard, navigate to Data Protection from the main dropdown
menu.
Click the Remote Site tab.
Click the + Remote Site button and select Physical Cluster.
In the "Name" field, enter Cluster2_DR_Task3.
In the "Address" field, enter the 172.30.0.x Virtual IP address of Cluster 2.
Click Save. The clusters will exchange credentials and connect.
2. Throttle Replication Bandwidth
Next, apply the 10 Mbps bandwidth limit for traffic going to Cluster 2.
On the same Remote Site tab, select the newly created Cluster2_DR_Task3.
Click the Update button.
In the dialog, set the Bandwidth Limit to 10 Mbps.
Click Save.
3. Create the Protection Domain
A Protection Domain (PD) is the top-level object that will manage the VMs and replication schedules.
In the Data Protection dashboard, click the Table tab.
Click the + Protection Domain button and select Async DR.
For the Name, enter App_PD_Task3.
Click Create.
4. Protect VMs in a Consistency Group
Now you will add the three application VMs to the new Protection Domain as a single Consistency
Group (CG).
You will be taken to the dashboard for the new App_PD_Task3. In the Entities panel, click the Protect
Entities button.
In the "Protect Entities" dialog, search for and select the three VMs:
Web-Prod
App-Prod
DB-Prod
Click Next.
Select Create new consistency group and name it App_CG_Task3.
Click Protect.
5. Create the Replication Schedule
Finally, configure the schedule to meet the RPO and retention requirements.
In the App_PD_Task3 dashboard, click the Schedules tab.
Click the + New Schedule button.
Remote Site: Select Cluster2_DR_Task3.
RPO (Repeat every): Select NearSync. Set the RPO to 1 minute.
Note: This is the lowest possible RPO for an Async (>5ms latency) connection, fulfilling the "as close
to 0" requirement.
Local Retention: Set to 2 Days.
Remote Retention: Set to 2 Days.
Ensure the "Store snapshots for 2-way replication" checkbox is enabled to allow failback from Cluster
2.
Click Create Schedule.
NCM-MCI: Nutanix Certified Master - Multicloud Infrastructure v6.5 Practice test unlocks all online simulator questions
Thank you for choosing the free version of the NCM-MCI: Nutanix Certified Master - Multicloud Infrastructure v6.5 practice test! Further deepen your knowledge on Nutanix Simulator; by unlocking the full version of our NCM-MCI: Nutanix Certified Master - Multicloud Infrastructure v6.5 Simulator you will be able to take tests with over 33 constantly updated questions and easily pass your exam. 98% of people pass the exam in the first attempt after preparing with our 33 questions.
BUY NOWWhat to expect from our NCM-MCI: Nutanix Certified Master - Multicloud Infrastructure v6.5 practice tests and how to prepare for any exam?
The NCM-MCI: Nutanix Certified Master - Multicloud Infrastructure v6.5 Simulator Practice Tests are part of the Nutanix Database and are the best way to prepare for any NCM-MCI: Nutanix Certified Master - Multicloud Infrastructure v6.5 exam. The NCM-MCI: Nutanix Certified Master - Multicloud Infrastructure v6.5 practice tests consist of 33 questions and are written by experts to help you and prepare you to pass the exam on the first attempt. The NCM-MCI: Nutanix Certified Master - Multicloud Infrastructure v6.5 database includes questions from previous and other exams, which means you will be able to practice simulating past and future questions. Preparation with NCM-MCI: Nutanix Certified Master - Multicloud Infrastructure v6.5 Simulator will also give you an idea of the time it will take to complete each section of the NCM-MCI: Nutanix Certified Master - Multicloud Infrastructure v6.5 practice test . It is important to note that the NCM-MCI: Nutanix Certified Master - Multicloud Infrastructure v6.5 Simulator does not replace the classic NCM-MCI: Nutanix Certified Master - Multicloud Infrastructure v6.5 study guides; however, the Simulator provides valuable insights into what to expect and how much work needs to be done to prepare for the NCM-MCI: Nutanix Certified Master - Multicloud Infrastructure v6.5 exam.
BUY NOWNCM-MCI: Nutanix Certified Master - Multicloud Infrastructure v6.5 Practice test therefore represents an excellent tool to prepare for the actual exam together with our Nutanix practice test . Our NCM-MCI: Nutanix Certified Master - Multicloud Infrastructure v6.5 Simulator will help you assess your level of preparation and understand your strengths and weaknesses. Below you can read all the quizzes you will find in our NCM-MCI: Nutanix Certified Master - Multicloud Infrastructure v6.5 Simulator and how our unique NCM-MCI: Nutanix Certified Master - Multicloud Infrastructure v6.5 Database made up of real questions:
Info quiz:
- Quiz name:NCM-MCI: Nutanix Certified Master - Multicloud Infrastructure v6.5
- Total number of questions:33
- Number of questions for the test:50
- Pass score:80%
You can prepare for the NCM-MCI: Nutanix Certified Master - Multicloud Infrastructure v6.5 exams with our mobile app. It is very easy to use and even works offline in case of network failure, with all the functions you need to study and practice with our NCM-MCI: Nutanix Certified Master - Multicloud Infrastructure v6.5 Simulator.
Use our Mobile App, available for both Android and iOS devices, with our NCM-MCI: Nutanix Certified Master - Multicloud Infrastructure v6.5 Simulator . You can use it anywhere and always remember that our mobile app is free and available on all stores.
Our Mobile App contains all NCM-MCI: Nutanix Certified Master - Multicloud Infrastructure v6.5 practice tests which consist of 33 questions and also provide study material to pass the final NCM-MCI: Nutanix Certified Master - Multicloud Infrastructure v6.5 exam with guaranteed success. Our NCM-MCI: Nutanix Certified Master - Multicloud Infrastructure v6.5 database contain hundreds of questions and Nutanix Tests related to NCM-MCI: Nutanix Certified Master - Multicloud Infrastructure v6.5 Exam. This way you can practice anywhere you want, even offline without the internet.
BUY NOW