5V0-3221 Sample Questions

5V0-3221 Sample Questions & Answers

Installing and configuring Cloud Director, including networking and catalog setup, carries the most weight, next to how its cells are architected, tying into Cloud Foundation, laying out organizations, upgrades, log analysis, and tenant and provider portal operations.

Launch the full 5V0-3221 simulator →

Showing 10 of 20 free samples.

  1. Question 1Intermediate

    Configure and Install VMware Cloud Director · VPN Configuration

    A cloud provider architect is designing a solution for a customer who needs to connect their on-premises data center to their VMware Cloud Director Organization VDC. The customer requires a secure, encrypted connection and wants to extend their local L2 network segment into the cloud to facilitate a seamless VM migration without re-IPing. Which VMware Cloud Director and NSX feature should be configured?

    Show answer & explanation

    Correct answer: C

    The requirement to extend a Layer 2 network segment specifically points to the need for an L2 VPN. This service, configured on the tenant's Edge Gateway (backed by NSX), allows for the stretching of a broadcast domain between the on-premises environment and the Cloud Director VDC. This facilitates VM migration without changing IP addresses. A standard IPsec VPN provides L3 connectivity but does not extend the L2 segment.

  2. Question 2Intermediate

    Planning and Designing · Multi-Site Catalog Management

    A service provider hosts two separate VMware Cloud Director instances, one in New York and one in London, to serve regional customers. They want to create a master catalog of curated OS templates in New York and make them available to tenants in the London instance. The connection between the sites has reliable but high-latency bandwidth. Which configuration should be used to achieve this with optimal performance for the London tenants?

    Show answer & explanation

    Correct answer: B

    The correct method for sharing catalogs between different VMware Cloud Director instances is the publish and subscribe model. The source catalog (New York) is published, creating a shareable URL. The destination instance (London) then creates a subscribed catalog pointing to that URL. This model periodically synchronizes the catalog content, storing a local copy in the London instance. This ensures that when London tenants deploy VMs from the catalog, the data is served locally, avoiding performance issues caused by the high-latency WAN link.

  3. Question 3Advanced

    Performance-tuning, Optimization, and Upgrades · Upgrade Procedures and Rollback

    An administrator is performing a planned upgrade of a three-cell VMware Cloud Director cluster from version 10.3 to 10.4. The primary cell has been successfully upgraded, but the upgrade fails on the second cell. The administrator has taken snapshots of all appliances and the database prior to starting. What is the immediate, recommended action?

    Show answer & explanation

    Correct answer: B

    The recommended procedure for a failed cell upgrade (when the primary has succeeded) is to not roll back the entire environment. The primary cell and database have already been modified. The correct action is to revert only the failed cell to its snapshot, review its specific upgrade logs (e.g., in /opt/vmware/vcloud-director/logs/) to diagnose the failure, resolve the underlying issue, and then try upgrading that cell again. Reverting the entire cluster is a last resort and not the immediate next step.

  4. Question 4Intermediate

    VMware Cloud Director Architecture · Provider VDC Storage Configuration

    A cloud provider is configuring a new Provider VDC. The underlying vSphere cluster has access to two datastores: one high-performance 'All-Flash-DS' and one standard 'Hybrid-DS'. The provider's goal is to ensure that by default, all VMs deployed in this Provider VDC land on the 'Hybrid-DS', but to allow tenants to explicitly choose the 'All-Flash-DS' if they purchase a premium offering. How should the storage policies be configured for the Provider VDC?

    Show answer & explanation

    Correct answer: C

    To achieve this, the administrator must make both underlying storage policies (one for each datastore) available to the Provider VDC. Then, by setting the policy corresponding to 'Hybrid-DS' as the default, any VM provisioned without an explicit storage policy selection will be placed on that datastore. The 'All-Flash-DS' policy is still available to be selected by tenants for specific VMs, fulfilling the premium offering requirement.

  5. Question 5BeginnerSelect 4

    Planning and Designing · Org VDC Allocation Models

    Which three of the following are valid Allocation Models for an Organization VDC? (Select THREE)

    Show answer & explanation

    Correct answers: A, B, D, F

    The valid allocation models for an Organization VDC are Pay-As-You-Go, Allocation Pool, Reservation Pool, and Flex. 'On-Demand' and 'Burstable' are not standard VCD allocation model names. Pay-As-You-Go allocates resources on demand, Reservation Pool guarantees resources, and Flex provides a hybrid approach.

  6. Question 6Intermediate

    Administration and Operations of VMware Cloud Director · Distributed Firewall Enablement

    A system administrator needs to enable tenants to manage their own east-west firewall rules for VMs within the same Organization VDC network. Which feature must be configured first at the provider level to expose this functionality in the Tenant Portal?

    graph LR Provider -- enables --> A[Feature] A -- is_configured_on --> B(Org VDC) subgraph Tenant_Portal B -- allows_management_of --> C{Distributed Firewall Rules} end
    Show answer & explanation

    Correct answer: B

    The ability for tenants to manage the Distributed Firewall (DFW) for east-west traffic is enabled through Data Center Groups. A provider administrator must create a Data Center Group, add one or more Organization VDCs to it, and then explicitly activate the Distributed Firewall service on that group. Once activated, tenants belonging to the member VDCs can define and manage DFW rules via the Tenant Portal.

  7. Question 7Beginner

    Configure and Install VMware Cloud Director · Appliance Configuration

    A new VMware Cloud Director appliance has been deployed. The administrator needs to configure the location for the shared NFS mount point used for transferring and storing files, such as OVF templates. In which location should this configuration be performed?

    Show answer & explanation

    Correct answer: C

    The configuration of the shared NFS mount point, which serves as the transfer server storage for VMware Cloud Director, is a core appliance setting. This is managed through the VMware Appliance Management Interface (VAMI), which is accessible via a web browser on port 5480 of any cell appliance. This is where the administrator specifies the NFS server's IP or hostname and the exported path.

  8. Question 8Intermediate

    Planning and Designing · Org VDC Allocation Models

    An organization is using the 'Pay-As-You-Go' allocation model for their VDC. They have several vApps that are currently powered off. How does VMware Cloud Director account for the CPU and Memory resources of these powered-off vApps?

    Show answer & explanation

    Correct answer: B

    In the Pay-As-You-Go allocation model, CPU and Memory resources are only consumed from the underlying Provider VDC when a VM is powered on. For powered-off VMs, there is no reservation or consumption of these compute resources. This model provides the highest consolidation ratio as it relies on overcommitment, but offers no performance guarantees. Storage is the only resource consumed by powered-off VMs in this model.

  9. Question 9Advanced

    Planning and Designing · Multi-Site Catalog Management and DR

    Case Study: Global Retail Corporation

    A global retail corporation, 'GlobeMart', is using a VMware Cloud Provider for its e-commerce platform. The platform is distributed across two sites: a primary site in Frankfurt and a disaster recovery (DR) site in Dublin. Both sites are managed by separate VMware Cloud Director instances. The provider has configured a single Organization for GlobeMart that spans both sites.

    Frankfurt hosts the production Organization VDC, which is backed by a high-performance Provider VDC. Dublin hosts the DR Organization VDC, backed by a standard Provider VDC. The company uses vApp templates extensively for deploying new application stacks. The application development team, based in Frankfurt, is responsible for creating and updating these vApp templates. They need to ensure that the latest versions of all templates are available in Dublin for DR testing and failover scenarios.

    The GlobeMart security team has mandated that all inter-site traffic must be encrypted. Furthermore, to optimize DR failover times, the vApp templates must be stored locally at the Dublin site, not transferred over the WAN during a recovery event. The provider needs a solution that automates the synchronization of these templates from Frankfurt to Dublin.

    Which solution should the cloud provider implement to meet all of GlobeMart's requirements?

    Show answer & explanation

    Correct answer: C

    This case study describes a classic use case for the VMware Cloud Director catalog publish and subscribe feature. Publishing the catalog in Frankfurt makes its contents available via a secure, encrypted URL. Subscribing to this catalog in Dublin creates a local copy of all vApp templates. This process can be scheduled to run automatically, ensuring the DR site always has the latest versions. Because the templates are stored locally in Dublin, they can be deployed quickly during a DR event without relying on the WAN link. This meets the requirements for automation, local storage for performance, and encrypted transport.

  10. Question 10Beginner

    Configure and Install VMware Cloud Director · Network Fence Modes

    The 'Fence Mode' for an Organization VDC network determines how it handles traffic and MAC addresses. The _________ fence mode allows a vApp network to communicate with the Organization VDC network directly, using the same IP subnet and gateway.

    Show answer & explanation

    Correct answer: D

    The 'Bridged' fence mode connects a vApp network directly to an Organization VDC network, effectively acting as a Layer 2 bridge. VMs in the vApp network are on the same subnet as the Org VDC network and can communicate without routing. This is distinct from 'Direct' which connects to an External Network, 'Isolated' which has no external connectivity, and 'NAT-Routed' which places the vApp behind its own routing and NAT service.

Ready for the real thing?

The full 5V0-3221 simulator has every exam-style question, timed mode, and instant scoring.