Summer Sale Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: 70track

Free HashiCorp HCVA0-003 Practice Exam with Questions & Answers

Questions 1

Which of these is not a benefit of dynamic secrets?

Options:
A.

Supports systems which do not natively provide a method of expiring credentials

B.

Minimizes damage of credentials leaking

C.

Ensures that administrators can see every password used

D.

Replaces cumbersome password rotation tools and practices

HashiCorp HCVA0-003 Premium Access
Questions 2

Which is a benefit of Vault’s path-based system for policies?

Options:
A.

Every path is assigned a unique set of permissions.

B.

Granular control, which separates configuration functions from access while allowing simple policies and wildcard rules.

C.

Allows Vault to be mounted as a file system and accessed using native system commands like cd and mkdir.

D.

All of these are benefits of Vault’s path-based system for policies.

Questions 3

An organization wants to authenticate an AWS EC2 virtual machine with Vault to access a dynamic database secret. The only authentication method which they can use in this case is AWS.

Options:
A.

True

B.

False

Questions 4

Which of the following are benefits of Vault Agent Caching?

Pick the 2 correct responses below.

Options:
A.

Reduces the number of Vault secrets engines which must be mounted.

B.

Renders secrets using the Consul Template markup.

C.

Reduces the latency to retrieve secrets from Vault.

D.

Secret requests may be handled by the local cache, reducing load on the Vault servers.

E.

Eliminates the need for disaster recovery clusters.

Questions 5

You are performing a high number of authentications in a short amount of time. You ' re experiencing slow throughput for token generation. How would you solve this problem?

Options:
A.

Increase the time-to-live on service tokens

B.

Implement batch tokens

C.

Establish a rate limit quota

D.

Reduce the number of policies attached to the tokens

Questions 6

The base namespace for HCP Vault Dedicated clusters is admin.

Options:
A.

True

B.

False

Questions 7

The key/value v2 secrets engine is enabled at secret/ See the following policy:

HCVA0-003 Question 7

Which of the following operations are permitted by this policy? Choose two correct answers.

Options:
A.

vault kv get secret/webapp1

B.

vault kv put secret/webapp1 apikey- " ABCDEFGHI] K123M "

C.

vault kv metadata get secret/webapp1

D.

vault kv delete secret/super-secret

E.

vault kv list secret/super-secret

Questions 8

Your DevOps team would like to provision VMs in GCP via a CICD pipeline. They would like to integrate Vault to protect the credentials used by the tool. Which secrets engine would you recommend?

Options:
A.

Google Cloud Secrets Engine

B.

Identity secrets engine

C.

Key/Value secrets engine version 2

D.

SSH secrets engine

Questions 9

The Vault CLI can output to formats such as JSON, YAML, and Table.

Options:
A.

True

B.

False

Questions 10

What artifacts allow you to regenerate a root token after you have revoked it?

Pick the 2 correct responses below.

Options:
A.

Access to the OS root user.

B.

Policy with sudo access.

C.

Initial root token.

D.

Unseal keys.

E.

Recovery keys.

HashiCorp Free Exams

HashiCorp Free Exams
Unlock free HashiCorp exam resources and practice tests at Examstrack. Boost your HashiCorp exam readiness with top-notch materials.