
Veeam VMCA2022 Real Exam Questions Guaranteed Updated Dump from PrepAwayTest
Verified Pass VMCA2022 Exam in First Attempt Guaranteed
Veeam VMCA2022 (VMCA 2022) Certification Exam is an industry-recognized certification for IT professionals who specialize in Veeam Backup & Replication solutions. VMCA 2022 certification exam has been designed to test the knowledge and skills of candidates in implementing and managing Veeam backup and replication solutions in a virtualized environment. The VMCA 2022 certification is a validation of an individual's expertise in backup and replication solutions and confirms that they have the necessary skills required to manage and maintain Veeam solutions.
NEW QUESTION # 51
Which type of backup job will you need more informacion on to properly plan backup copy job settings later to make sure you are creating the required number of restore point per day offsite?
- A. Laptop backup jobs
- B. Silver tier backup jobs
- C. Bronze tier backup jobs
- D. Gold tier backup jobs
Answer: D
Explanation:
Explanation
The gold tier backup jobs have the most stringent recovery point objective (RPO) of one hour for image backup and 15 minutes for transaction log backup. This means that they need to run more frequently than the other backup jobs and create more restore points per day. Therefore, to properly plan the backup copy job settings, you will need more information on the gold tier backup jobs, such as the number of VMs, the size of backups, the change rate, the retention policy, and the bandwidth available for copying backups to the offsite location.
References: [Backup Copy], [Backup Methods], [Continuous Data Protection]
NEW QUESTION # 52
Gold tier virtual machines have a recovery point objective of one hour for image backup. Which transport mode could you use during the redesign? (Choose 2)
- A. Network mode (NBDSSL)
- B. Virtual Appliance (HotAdd)
- C. Backup from Storage Snapshots
- D. Direct NFS Access
- E. Direct SAN Access
Answer: B,C
Explanation:
Explanation
The transport modes that could be used during the redesign for gold tier virtual machines with a one-hour RPO are Virtual Appliance (HotAdd) and Backup from Storage Snapshots. A transport mode is a method of retrieving VM data from the source storage during backup or replication. Virtual Appliance (HotAdd) is a transport mode that allows a proxy server running on a VM to attach disks of another VM to itself via hot-add SCSI commands and read data directly from these disks. Backup from Storage Snapshots is a transport mode that allows a proxy server to retrieve data from storage snapshots created by supported storage systems without affecting the production VMs or hosts. Both transport modes can improve backup performance, reduce backup window, and minimize impact on the production environment.
NEW QUESTION # 53
Based on customer recovery requirements, which component will help them meet their stated objectives?
- A. Deploy the Backup & Replication console and set RBAC policies to Administrator Role.
- B. Add a Windows and Linux server, enable indexing of backups and ensure authenticated users are configured to appropriate RBAC polices.
- C. Allow Oracle administrators to do restores with RMAN.
- D. Leverage Backup Enterprise Manager to allow end-users to restore files within their scope
Answer: D
Explanation:
The component that will help the customer meet their stated objectives is to leverage Backup Enterprise Manager to allow end-users to restore files within their scope. Backup Enterprise Manager is a web-based interface that provides access to Veeam Backup & Replication functionality, such as backup, replication, and restore1. One of the customer's business requirements is to develop a self-service portal and integrate it with the new backup solution. Backup Enterprise Manager can fulfill this requirement by enabling self-service file-level restores for end-users, as well as integration with help desk systems2. The other options are not related to the customer's recovery requirements, as they are either not necessary (option A, as indexing and RBAC policies are optional features), not sufficient (option B, as deploying the console and setting RBAC policies do not enable self-service restores), or not native to Veeam software (option C, as the technical requirements state that Oracle backups must be managed by Veeam, not RMAN). References: Backup Enterprise Manager, Self-Service File Restore.
NEW QUESTION # 54
In order to improve the likelihood that a ransomware attack on the Veeam infrastructure will not be successful, which of the following should Veeam Life and Indemnity do?
- A. Ensure that none of then Veeam components are on the production Active Directory domain
- B. Implement a strong password security policy on shared administrative accounts
- C. Remove all remote access from Veeam administrators.
- D. Protect the Veeam components on the production Active Directory Forest with multi-factor authentication
Answer: D
Explanation:
The action that Veeam Life and Indemnity should take to improve the likelihood that a ransomware attack on the Veeam infrastructure will not be successful is to protect the Veeam components on the production Active Directory Forest with multi-factor authentication. Multi-factor authentication (MFA) is a security mechanism that requires users to provide two or more pieces of evidence to prove their identity before accessing a system or resource. MFA can prevent unauthorized access to the Veeam components even if the user credentials are compromised by ransomware or other means.
NEW QUESTION # 55
What information is necessary to design the disaster recovery solution and must be identified during discovery? (Choose 3)
- A. The number of vLANs per site.
- B. The number of virtual machines to be replicated.
- C. The required amount of backups to be storage off site.
- D. Which sites will be the source of replication and which sites will be the targets for recovery.
- E. The available bandwidth between locations.
Answer: B,D,E
Explanation:
Explanation
To design a disaster recovery solution that meets the needs and requirements of Veeam University Hospital, you need to identify some information during the discovery phase. This information will help you to understand the scope and scale of the replication and failover processes, the network andstorage resources and limitations, and the recovery time objectives and recovery point objectives.
According to the Veeam Backup & Replication Best Practice Guide, some of the information that is necessary to design the disaster recovery solution and must be identified during discovery are:
*The number of virtual machines to be replicated. This information will help you to determine the number and size of the replication jobs, as well as the replication performance and scalability, based on the number and type of virtual machines.
*The available bandwidth between locations. This information will help you to estimate the network bandwidth and throughput that are available for replication traffic, as well as the impact of replication activities on the network performance and latency.
*Which sites will be the source of replication and which sites will be the targets for recovery. This information will help you to plan and configure the replication infrastructure, such as the proxy servers, repository servers, WAN accelerators, and failover plans, based on the source and target locations.
NEW QUESTION # 56
What information is missing form discovery?
- A. What backup transport mode is currently used.
- B. What the available bandwidth is between Fresno and Carson City.
- C. What type of backup storage is currently used.
- D. What the current LAN bandwidth is at Fresno.
Answer: B
Explanation:
The information that is missing from discovery is what the available bandwidth is between Fresno and Carson City. This information is important for designing and sizing the backup copy jobs that need to run daily between the two sites. The available bandwidth can affect the backup copy performance, duration, and size.
For example, you can use the available bandwidth to estimate how much data can be transferred between the sites within the backup copy window. You can also use theavailable bandwidth to determine whether you need to use compression, deduplication, or WAN acceleration to optimize the backup copy traffic.
NEW QUESTION # 57
During the deployment, Veeam University Hospital management has asked that the backup window be shortened to eight hours. What is a possible ramification of this change?
- A. The CPU and memory requirements of the mount server(s) will be increased.
- B. The amount of storage required in the repositories will be increased.
- C. The size of the Veeam Backup & Replication database will increase.
- D. The CPU and memory requirements of the proxies will be increased.
Answer: D
Explanation:
Explanation
According to the Veeam Backup & Replication Best Practice Guide1, one of the possible ramifications of shortening the backup window to eight hours is that the CPU and memory requirements of the proxies will be increased. This is because:
*The proxies are responsible for retrieving data from the source and sending it to the target. They perform data compression, deduplication, encryption, and other tasks that consume CPU and memory resources.
*To shorten the backup window, the proxies need to process more data in less time, which means they need more CPU cores and memory to handle concurrent tasks and avoid bottlenecks.
*The backup window can also be affected by other factors, such as the network bandwidth, the storage throughput, the backup methods, and the backup settings. Therefore, it is important to consider all these aspects when designing a backup solution.
References: 1: Proxy - Veeam Backup & Replication Best Practice Guide
NEW QUESTION # 58
While examining the requirements for offsite copies and archives, you notice that it might be assumed that the offsite copies should only go to a cloud provider that supports immutability. Which of the stated requirements needs additional information to help clarity the customer expectation?
- A. Due to the threat of ransomware, at least one immutable or air gapped copy of protected data must reside off site.
- B. For archival purposes, 12 monthly backups and three yearly backups must be storage off site.
- C. Backups must take advantage of public cloud storage for long term archival purposes.
- D. For quick restores and recovery, at least one copy of protected data must reside on-premise.
Answer: C
Explanation:
Explanation
To design a solution that meets the offsite copies and archives requirements for Veeam University Hospital, you need to clarify some of the assumptions and expectations of the customer. This will help you to avoid any misunderstandings or conflicts that may arise during the implementation or operation of the solution.
According to the Veeam Backup & Replication Best Practice Guide, offsite copies and archives are two different concepts that serve different purposes. Offsite copies are backups that are stored in a different location than the primary backup storage, and are used for disaster recovery purposes. Archives are backups that are stored for a longer retention period than the regular backups, and are used for compliance or historical purposes.
Based on these definitions, the requirement that needs additional information to help clarify the customer expectation is C. Backups must take advantage of public cloud storage for long term archival purposes.
NEW QUESTION # 59
In order to satisfy the customer's data scrubbing requirement, what Veeam components will be required?
- A. SureBackup job, virtual lab and application group.
- B. SureReplica job and application group.
- C. Virtual lab, application group and script.
- D. Virtual lab, proxy appliance and SureBackup job.
Answer: C
Explanation:
Data scrubbing is the process of removing sensitive or confidential data from backups before restoring them, to comply with regulatory or legal requirements1. Veeam Backup & Replication supports data scrubbing for VMware VMs by using a custom script that runs inside the virtual lab2.
To perform data scrubbing, you need to create a virtual lab, an application group, and a SureBackup job. The virtual lab is a fenced-off environment where you can test and verify your backups without affecting the production network3. The application group is a collection of VMs that you want to restore and scrub. The SureBackup job is a task that automates the verification and restoration of VMs in the virtual lab.
The custom script is a PowerShell script that you need to write and configure to run on the VMs in the application group. The script should perform the necessary actions to delete or modify the data that you want to scrub, such as files, folders, registry keys, database records, etc2. You can use the Veeam PowerShell snap-in to access the Veeam functionality and objects from the script.
You can find more information about data scrubbing and how to configure it in the Veeam Backup & Replication User Guide for VMware vSphere2.
NEW QUESTION # 60
When talking to someone who works for the customer, they mention they are working on a different project with a major cloud provider that does not currently support immutability. Which of the following is the best option to still satisfy the requirement for offsite, immutable or air gapped backups if that cloud provider is selected for archive storage?
- A. Set up capacity tier to local on-premises object storage that supports immutability.
- B. Set up Scale-out Backup Repository capacity tier to a different cloud provider than the archive tier.
- C. Backup copy to a hardened repository at a different site.
- D. Backup copy to a Windows repository in the cloud that is scheduled to turn off outside the backup window.
Answer: B
Explanation:
The best option to still satisfy the requirement for offsite, immutable or air gapped backups if the cloud provider selected for archive storage does not support immutability is to set up Scale-out Backup Repository capacity tier to a different cloud provider than the archive tier. Scale-out Backup Repository is a logical entity that groups several backup repositories into a single pool of storage, and allows to move backup files between performance and capacity tiers1. The capacity tier can be configured to use Amazon S3 or Microsoft Azure Blob Storage, which support Object Lock feature for immutability2. By using a different cloud provider for the capacity tier than the archive tier, the backup data can be stored in two separate locations, with one copy being immutable or air gapped. The other options are either not feasible (option A, as the scenario does not mention another site), not secure (option C, as the backup data can still be accessed or modified when the repository is online), or not offsite (option D, as the scenario requires a copy of backup data in a public cloud). References: Scale-out Backup Repository, Object Storage Immutability.
NEW QUESTION # 61
while going through the discovery data for the NAS environment, you determine several key metrics are missing for later design and sizing. Which of the following should you collect from the customer about the data stored on the NAS per site? (Choose 2)
- A. Total number of files (in millions) to be backed up.
- B. Which version of SMB protocol the NAS supports.
- C. Amount of source data after dedupe and compression.
- D. Largest file size.
- E. Amount of source data before dedupe and compression.
Answer: A,D
Explanation:
To design a solution that meets the NAS environment requirements for Veeam University Hospital, you need to collect some information during the discovery phase. This information will help you to understand the characteristics and performance of the NAS systems, the size and type of the data, and the backup and recovery objectives.
According to the Veeam Backup & Replication Best Practice Guide, some of the information that you should collect from the customer about the data stored on the NAS per site are:
*Total number of files (in millions) to be backed up. This information will help you to estimate the backup storage requirements, as well as the backup performance and scalability, based on the number and distribution of files.
*Largest file size. This information will help you to determine the optimal backup block size and alignment, as well as the backup compression and deduplication ratios, based on the size and type of files.
NEW QUESTION # 62
When talking to someone who works for the hospital, they mention they are working on a projectwith a major cloud provider that does not currently support immutability. After further conversations, the customer has decided that they would like daily immutable backups to be sent off-site. Which of the following is the best option to still satisfy the requirements for off-site immutable backups?
- A. Backup copy to a hardened repository.
- B. Set up capacity tier with object that supports immutability at the primary site.
- C. Backup copy to repository on a Cloud-based Windows Instance that scheduled to power off outside the backup window.
- D. Back up to tape and leverage a service to rotate tapes off-site weekly.
Answer: A
Explanation:
To design a solution that meets the requirements for off-site immutable backups for Veeam University Hospital, you need to consider some of the options and features that Veeam products and features offer. This will help you to ensure the security and integrity of your backup data, as well as the compatibility and supportability of the cloud provider that does not currently support immutability.
According to the Veeam Backup & Replication Best Practice Guide, immutability is a feature that prevents backup files from being deleted or modified by anyone until the specified retention period expires.
Immutability can be achieved by using S3 Object Lock or Hardened Repository, which are two different solutions that Veeam Backup & Replication supports.
Based on this definition, the best option to still satisfy the requirements for off-site immutable backups is A.
Backup copy to a hardened repository.
This option means that:
*The backup copy is a type of job that allows you to create and maintain copies of your backup data on a secondary backup repository. You can use backup copy jobs to send your backup data off-site, as well as to apply different retention settings and policies.
*The hardened repository is a solution that allows you to add a hardened repository based on a Linux server to your backup infrastructure. You can use hardened repository with Veeam Backup & Replication to make your backups immutable on-premises or off-site.
*The backup copy to a hardened repository can be configured and managed by Veeam Backup & Replication, regardless of the cloud provider that does not currently support immutability. You only need to deploy and connect a Linux server with a hardened repository in the cloud environment, and then use it as a target for your backup copy jobs.
NEW QUESTION # 63
Based on additional discovery, it was determined that a few critical workloads need to maintain a less than five-minute recovery point objective. Which of the following would be the recommended method to replicate VMware virtual machines?
- A. Custom PowerShell scripting.
- B. Veeam backup copy with immediate mode
- C. Veeam Image-based replication
- D. Veeam Continuous Data Protection.
Answer: D
Explanation:
The recommended method to replicate VMware virtual machines with a less than five-minute RPO is Veeam Continuous Data Protection (CDP). CDP is a feature that allows near-continuous replication of VMware virtual machines to a secondary site or cluster with minimal data loss and downtime. CDP uses VMware vSphere APIs for I/O Filtering (VAIO) to capture every write operation from the source VMs and send them to the target VMs in near real-time. CDP can achieve RPOs as low as seconds and enable fast failover and failback in case of a disaster.
NEW QUESTION # 64
During architecture planning, Veeam Life and Indemnity decides that recovery point objective of gold tier machines should change from one hour to three hours with daily retention set to seven days. What will be impact on the Veeam design?
- A. The Veeam database size will increase.
- B. Proxies will require fewer resources
- C. Repositories will require more resources.
- D. More proxy servers will be required
Answer: B
Explanation:
If the recovery point objective (RPO) of gold tier machines changes from one hour to three hours with daily retention set to seven days, the impact on the Veeam design is that proxies will require fewer resources. This is because the backup frequency and the number of restore points for gold tier machines will decrease, which means that less data will need to be processed and transferred by the proxies. Therefore, the proxies will have lower CPU, memory, disk, and network utilization and can handle more backup tasks with the same resources.
NEW QUESTION # 65
While deciding which transport mode to use for the proxies, you notice that one of the requirements is support the encrypted datastore in VMware. Which processing modes can you leverage for the backup proxies?
(Choose 3)
- A. Direct SMB.
- B. Direct SAN.
- C. Network mode with Encryption (NBDSSL).
- D. Network (NBD) mode.
- E. Virtual Appliance (HotAdd) mode.
- F. Direct NFS.
Answer: A,C,E
Explanation:
To access encrypted datastores in VMware, you need to use a transport mode that supports encryption. The following transport modes support encryption:
*Network mode with Encryption (NBDSSL): This mode uses an encrypted network connection between the backup proxy and the ESXi host to read and write data from the encrypted datastore. This mode does not require direct access to the datastore, but it can be slower than other modes due to network traffic and encryption overhead2
*Virtual Appliance (HotAdd) mode: This mode uses a virtual backup proxy that runs on an ESXi host and attaches virtual disks of the encrypted VMs to itself using the VMware vSphere API. This mode requires that the backup proxy and the source VMs reside on the same datastore or on datastores that are accessible by the same ESXi host. This mode can offer better performance than network mode, but it can also cause SCSI reservation conflicts if multiple backup proxies access the same datastore simultaneously3
*Direct SMB: This mode uses a physical backup proxy that accesses the encrypted datastore over the SMB protocol. This mode requires that the datastore is configured as an SMB share and that the backup proxy has read and write permissions on it. This mode can offer high performance and scalability, but it also requires additional configuration steps and security considerations4 The following transport modes do not support encryption:
*Network (NBD) mode: This mode uses an unencrypted network connection between the backup proxy and the ESXi host, which cannot access encrypted datastores2
*Direct SAN: This mode uses a physical backup proxy that accesses the encrypted datastore over the SAN fabric, which cannot decrypt encrypted data5
*Direct NFS: This mode uses a physical backup proxy that accesses the encrypted datastore over the NFS protocol, which does not support encryption6 References:
1: Hardened Repository - User Guide for VMware vSphere 2: Network Mode - User Guide for VMware vSphere 3: Virtual Appliance Mode - User Guide for VMware vSphere 4: Direct SMB Access Mode - User Guide for VMware vSphere 5: Direct SAN Access Mode - User Guide forVMware vSphere 6: Direct NFS Access Mode - User Guide for VMware vSphere
NEW QUESTION # 66
While looking through the requirements regarding database servers, you see native Oracle utilities must be available for backups and restores. To make sure the native tools can interface directly with Veeam, which option most closely matches the requirements?
- A. Install the Veeam RMAN Plug-in to allow native RMAN backups and restores to leverage Veeam repository directly from the Oracle servers.
- B. Set up RMAN to backup locality to a dedicated disk and use Veeam Agent File Folder backups to send the backups to a Veeam Backup & Replication repository.
- C. Create a script to kick off virtual machine backups and initiate Oracle explorer exports in a RMAN format.
- D. Set up RMAN to backups to a NAS share that gets backed up by Veeam NAS backups.
Answer: A
Explanation:
Thank you for your question. I'm glad to help you with your VMCA 2022 project.
To design a solution that meets the database requirements for Veeam University Hospital, you need to consider some of the options and features that can support and integrate with Oracle databases. This will help you to ensure the consistency and reliability of the Oracle backups and restores, as well as the compatibility and supportability of the native Oracle tools with Veeam products and features.
According to the Veeam Backup & Replication Best Practice Guide, the option that most closely matches the requirements of having native Oracle utilities available for backups and restores is D. Install the Veeam RMAN Plug-in to allow native RMAN backups and restores to leverage Veeam repository directly from the Oracle servers.
This option means that:
*The Veeam RMAN Plug-in is a solution that integrates with Oracle Recovery Manager (RMAN) and allows you to back up and restore Oracle databases using Veeam repositories as targets.
*The Veeam RMAN Plug-in supports both virtual and physical Oracle servers, as well as different versions and editions of Oracle databases.
*The Veeam RMAN Plug-in enables you to use native Oracle tools and commands, such as RMAN, SQL*Plus, Data Pump, etc., to perform backups and restores of Oracle databases, without requiring any additional scripts or configurations.
*The Veeam RMAN Plug-in leverages the benefits and features of Veeam Backup & Replication, such as backup compression, deduplication, encryption, immutability, etc., to improve the backup performance and efficiency, as well as the backup security and integrity.
This option is the best match for the requirements, as it allows you to use native Oracle utilities for backups and restores, while also taking advantage of Veeam products and features.
NEW QUESTION # 67
Which type of backup job will you need more informacion on to properly plan backup copy job settings later to make sure you are creating the required number of restore point per day offsite?
- A. Laptop backup jobs
- B. Silver tier backup jobs
- C. Bronze tier backup jobs
- D. Gold tier backup jobs
Answer: D
Explanation:
Explanation
The gold tier backup jobs have the most stringent recovery point objective (RPO) of one hour for image backup and 15 minutes for transaction log backup. This means that they need to run more frequently than the other backup jobs and create more restore points per day. Therefore, to properly plan the backup copy job settings, you will need more information on the gold tier backup jobs, such as the number of VMs, the size of backups, the change rate, the retention policy, and the bandwidth available for copying backups to the offsite location.
References: [Backup Copy], [Backup Methods], [Continuous Data Protection]
NEW QUESTION # 68
What information is necessary to design the disaster recovery solution and must be identified during discovery? (Choose 3)
- A. The number of vLANs per site.
- B. The number of virtual machines to be replicated.
- C. The required amount of backups to be storage off site.
- D. Which sites will be the source of replication and which sites will be the targets for recovery.
- E. The available bandwidth between locations.
Answer: B,D,E
Explanation:
To design a disaster recovery solution that meets the needs and requirements of Veeam University Hospital, you need to identify some information during the discovery phase. This information will help you to understand the scope and scale of the replication and failover processes, the network andstorage resources and limitations, and the recovery time objectives and recovery point objectives.
According to the Veeam Backup & Replication Best Practice Guide, some of the information that is necessary to design the disaster recovery solution and must be identified during discovery are:
*The number of virtual machines to be replicated. This information will help you to determine the number and size of the replication jobs, as well as the replication performance and scalability, based on the number and type of virtual machines.
*The available bandwidth between locations. This information will help you to estimate the network bandwidth and throughput that are available for replication traffic, as well as the impact of replication activities on the network performance and latency.
*Which sites will be the source of replication and which sites will be the targets for recovery. This information will help you to plan and configure the replication infrastructure, such as the proxy servers, repository servers, WAN accelerators, and failover plans, based on the source and target locations.
Topic 2, Veeam Life and Indemnity
Executive Summary:
Veeam Life and Indemnity is expanding its existing Veeam backup infrastructure to protect additional virtual machines, physical server and NAS workloads at their Fresno, CA and Carson City, NY data centers.
The original installation and configuration of Veeam software occurred two years ago. Since the installation, the organization has grown, and as a result, the Veeam Infrastructure needs to be resized to accommodate the existing and new workloads.
For the past three months, Veeam Life and Indemnity has noticed that they are having issues with backups completing within the allotted backup window. Only 40% of backup jobs complete successfully, so they have broken the backups into two sets, and they run them on alternating days. They have also stopped all backups for their development environment.
In addition, the original configuration required a daily backup copy job, but to the issue with backups completing, this has been modified to run only on Sundays.
They have also noticed a degradation in storage performance and are having to purchase new storage on a quarterly basis to accommodate data growth.
Solution Concept:
Veeam Life and Indemnity is upgrading Veeam Backup & Replication to the last version. They are also replacing all legacy physical hardware and storage with current generation equipment. Veeam Life and Indemnity wants to be able to ensure that all backups, including production and dev test workloads, can run every night and that all backups complete within the required backup window. In addition, Veeam Life and Indemnity would like to run daily copy jobs to ensure that a copy of all backed up data resides at both physical sites.
Veeam Life and Indemnity has also expressed concern about the threat of ransomware. They have not experienced a data breach of any kind but would like to ensure the ability of recover should one occur.
Existing Technical Environment:
Veeam Life and Indemnity has VMware clusters in all locations. These clusters are broken into two categories:
general use virtual workloads, and application specific workloads, such as MSSQL and Oracle.
All customer data is subject to government regulation and must be kept secure at all times.
Veeam Life and Indemnity has a proprietary CRM system that must be quiesced prior to backup.
All email is hosted in Office 365.
All database servers are virtualized.
All virtual machines are categorized as either gold, silver, or bronze, with different service-level agreements based on tier.
All backups currently encrypted in flight and at rest.
Internet connectivity at both sites is current 1 Gbps, with plans to increase to 2 Gbps soon.
All field sales reps are assigned a company laptop that runs a CRM client.
The LAN at each location supports up to 40 Gbps bandwidth.
All backups are currently written to Scaled-out Backup Repositories with each extent residing on a CIFS share.
Each department has its own vLAN, with a total of 30 vLANs for production traffic.
A single management vLAN is stretched between sites.
All unstructured data resides either on 10 NFS shares on the company's incumbent NAS devices, or Windows file servers as file shares.
VMware uses vSAN for VM datastores.
All vLAN must traverse a firewall to communicate, and the backup network itself is no routable.
All network traffic between clusters is required to traverse a firewall.
The firewall devices can support up to 20 Gbps.
Business Requirements:
Due to limited manpower, all backups should be dynamically scope.
All backups must be copied across site outside of the current backup window to avoid any backup performance issues.
Due to the sensitivity of customer data, tier 1 helpdesk personnel must not be able to access these backups.
They should have access to restore non-customer data.
Backup administrators are subject toa rigorous background check and should be the only staff able to perform restores of confidential customer data.
For any legal issues, fast and timely discovery from backup data should be supported.
For security purposes, all storage should be hardened to prevent data breaches.
Remote sales staff should have the ability to start a backup oh their devices.
Due to regulatory requirements, audits must be performed periodically to ensure successful and consistent backups, as well adherence to security policies.
Technical Requirements:
All backups must complete within the hours of 5 p.m. to 8 a.m. local time Backup copy jobs must successfully complete daily outside of the backup window.
Gold tier virtual machines have a recovery point objective of the one hour for image backup, and 15 minutes for traction log backup, with a recovery time objective of four hours.
Silver tier virtual machines have a recovery point objective of 24 hours, with a recovery time objective of eight hours.
Bronze tier virtual machines have a recovery point objective of seven days, with no defined recovery time objective.
NAS devices and file servers have a recovery point objective of four hours, with no specified recovery time objective.
Eight weekly backup, three monthly backups, and seven yearly backups should be retained for regulatory requirements.
All data must be encrypted in flight and rest.
Alternative decryption capabilities on encrypted backups must be possible in the event of lost passwords.
Role Based Access Control must be used to prevent unauthorized access to backup data.
New storage must be hardened to prevent intrusion, and if possible, the data written must be unchangeable to prevent ransomware attacks.
All backups must be scanned prior to any restore operations for malware.
All gold level systems must have a custom script run before restore to ensure compliance to specific legal statutes.
Gold tier backups must be tested to verify recoverability.
Only silver tier systems should be indexed during backups, with the exception of laptops belonging to the sales field.
All personal files on laptops should be excluded from backup
All MSSQL server backups should exclude the H: drive.
NEW QUESTION # 69
When deciding on the design of the primary backup repository, which option best fits the requirements in the case study?
- A. Windows repository using ReFS integration, single-use credential and persistent VSS snapshot
- B. Linux Repository using XFS integration, single-use credentials, and immutability
- C. Dedupe appliance leveraging vendor API for access
- D. Public cloud storage with S3 object-lock for immutability
Answer: B
Explanation:
Explanation
The best option for the primary backup repository design that fits the requirements in the case study is a Linux Repository using XFS integration, single-use credentials, and immutability. A Linux Repository is a type of backup repository that uses a Linux server as a backup target. A LinuxRepository can leverage XFS integration to enable fast creation and transformation of synthetic full backups by using XFS file system features such as reflink and copy-on-write. A Linux Repository can also use single-use credentials to enhance security by generating unique credentials for each backup job session. A Linux Repository can also provide immutability and ransomware protection for backup files by using Linux access control mechanisms such as immutable flag or chattr command.
NEW QUESTION # 70
......
Download Real Veeam VMCA2022 Exam Dumps Test Engine Exam Questions: https://www.prepawaytest.com/Veeam/VMCA2022-practice-exam-dumps.html
Free VMCA2022 Sample Questions and 100% Cover Real Exam Questions: https://drive.google.com/open?id=1vF8Bx50s7F_F7KVfVlSjkHcOHP8PIYQl