5V0-2121 Sample Questions & Answers
Designing vSAN clusters and services, plus sizing tools, carries the most weight, next to product integration and consumption, upgrade sequencing and disk group management, getting past failures including stretched-setup problems, and encrypted vSAN management.
Launch the full 5V0-2121 simulator →Showing 10 of 20 free samples.
- Question 1Advanced
Planning and Designing · Identify appropriate vSAN services design
Case Study:
A regional healthcare provider, MedCloud Inc., is modernizing its infrastructure to support a new Electronic Health Record (EHR) system. They are deploying a new 12-node all-flash vSAN 7 cluster to host the EHR application's database and application VMs. The primary business requirement is to ensure the highest level of data availability and integrity, as downtime or data loss is unacceptable. Regulatory compliance mandates that all patient data (data-at-rest) must be encrypted.
The current plan involves using a storage policy with Failures to Tolerate (FTT) set to 2 and a Failure Tolerance Method (FTM) of RAID-6 (Erasure Coding). The security team has deployed a corporate Key Management Server (KMS) which is located in a separate management cluster. The vSAN cluster will utilize a vSphere Distributed Switch for networking with four 10GbE uplinks per host, configured for LACP.
During the design review, a concern is raised about the potential performance impact of both RAID-6 and vSAN's native encryption on the I/O-intensive database VMs. The infrastructure team is also unsure about the recovery process if the KMS server becomes unavailable. The primary goal is to maintain the required levels of availability and security without compromising the performance needed for the EHR system.
Which action should the vSAN administrator take to address the performance concerns while still meeting all security and availability requirements?
Show answer & explanation
Correct answer: B
Modern CPUs with the AES-NI instruction set significantly accelerate encryption/decryption operations, making the performance impact of vSAN native encryption negligible for most workloads. vSAN is highly optimized to leverage this. RAID-6 (Erasure Coding) is the most space-efficient method for achieving FTT=2. While RAID-1 offers better performance for write-intensive workloads, the combination of a well-designed all-flash cluster and AES-NI acceleration makes the RAID-6 and native encryption combination a valid and efficient design that meets all stated requirements without significant compromise.
- Question 2Intermediate
Administrative and Operational Tasks · Identify the operational tasks required to manage an encrypted vSAN
Referring to the MedCloud Inc. case study, the security team is concerned about an extended outage of the KMS server. What happens to the encrypted vSAN datastore if the KMS becomes unreachable after the ESXi hosts have already booted and unlocked their disks?
Show answer & explanation
Correct answer: B
Once a host boots, it retrieves the Key Encryption Key (KEK) from the KMS and uses it to decrypt the Host Encryption Key (HEK), which in turn decrypts the Disk Encryption Keys (DEKs). The KEK is then cached in memory. As long as the host is running, it does not need to contact the KMS for normal I/O. Therefore, existing VMs run without issue. However, operations that require a new key or re-authentication with the KMS, such as powering on a new encrypted VM or rebooting a host (which would require fetching the KEK again), will fail until KMS connectivity is restored.
- Question 3Beginner
Performance-tuning, Optimization, and Upgrades · Identify the appropriate vSAN upgrade methodology
An administrator is upgrading a 5-node vSAN cluster from version 6.7 to 7.0 U3. The upgrade of vCenter Server and the ESXi hosts has completed successfully. The administrator now needs to upgrade the vSAN on-disk format. Which of the following is the primary reason to perform this final step?
Show answer & explanation
Correct answer: A
Upgrading the on-disk format is necessary to enable the features and optimizations introduced in the newer version of vSAN. While the cluster can operate in a mixed mode with an older on-disk format for backward compatibility, you cannot use new capabilities (like larger capacity device support, enhanced checksums, or certain performance algorithms) until the format is upgraded across the cluster.
- Question 4Intermediate
Planning and Designing · Use vSAN design and sizing tools
A vSAN architect is using the official vSAN Sizing Calculator for a new VDI deployment. The requirements are for 500 linked-clone desktops. The architect inputs the workload details and the tool recommends a specific amount of cache tier capacity. What is the primary purpose of the cache tier in a hybrid vSAN cluster for this VDI workload?
Show answer & explanation
Correct answer: B
In a hybrid vSAN architecture, the cache tier (comprised of flash devices) serves two functions: it acts as a write buffer to acknowledge writes quickly and destage them to the capacity tier (magnetic disks) later, and it serves as a read cache to store frequently accessed data blocks, improving read performance. This is crucial for VDI workloads which can have bursty I/O patterns, especially during boot storms.
- Question 5Intermediate
Troubleshooting and Repairing · Recover from a vSAN or infrastructure failure
A vSAN administrator is alerted to a network partition in a 6-node standard vSAN cluster. The vSAN Health service shows that two hosts can no longer communicate with the other four hosts. The two hosts have formed their own partition. What is the state of the VM objects whose components are located entirely on the two-host partition?
Show answer & explanation
Correct answer: B
vSAN uses a quorum-based system to prevent split-brain scenarios. To be active, a VM object must have access to more than 50% of its components. In a network partition, only the partition containing the majority of a VM's components will keep the object active. The two-host partition does not have a majority of the cluster nodes, and therefore any objects within it will lose quorum and become inaccessible, even if all their components reside on those two hosts. The larger four-host partition will retain ownership of the objects.
- Question 6Intermediate
Planning and Designing · Identify appropriate vSAN cluster design
During the design of a vSAN stretched cluster, the network team states that the round-trip time (RTT) latency between the two data sites is consistently 7ms. What is the implication of this latency on the proposed stretched cluster design?
Show answer & explanation
Correct answer: A
VMware has a strict requirement for vSAN stretched clusters that the round-trip time (RTT) latency between the two main data sites must be 5ms or less. A latency of 7ms exceeds this maximum supported threshold and would result in an unsupported configuration that is prone to performance issues, timeouts, and potential data inconsistency. Therefore, the design is invalid and the network latency must be addressed before proceeding.
- Question 7Beginner
Troubleshooting and Repairing · Recover from a vSAN or infrastructure failure
What is the function of the
Object Repair Timerin a vSAN cluster?Show answer & explanation
Correct answer: A
The Object Repair Timer is a configurable setting (defaulting to 60 minutes) that dictates the delay before vSAN initiates a rebuild for an absent or degraded component. This delay is designed to prevent unnecessary resynchronization traffic during transient events, such as a host reboot or a brief network outage. If the component becomes available again before the timer expires, no rebuild is necessary.
- Question 8IntermediateSelect 2
Administrative and Operational Tasks · Identify the impact of making changes to a storage policy
A vSAN administrator changes the storage policy on a large, production VM from
Failures to Tolerate: 1withFailure tolerance method: RAID-1toFailures to Tolerate: 1withFailure tolerance method: RAID-5/6. What are the primary impacts of this change? (Select TWO).Show answer & explanation
Correct answers: A, C
Changing the failure tolerance method from RAID-1 (mirroring) to RAID-5/6 (erasure coding) requires a complete change in the object's component layout. vSAN will initiate a resynchronization task to create the new RAID-5/6 components and remove the old RAID-1 components.
RAID-1 (mirroring) for FTT=1 consumes 2x the storage of the source data. RAID-5 (erasure coding) for FTT=1 consumes only 1.33x the storage. Therefore, changing from RAID-1 to RAID-5 will result in a significant reduction in the overall storage consumption for that object once the resynchronization is complete.
- Question 9Beginner
VMware Products and Solutions · Identify appropriate vSAN services design
True or False: The vSAN iSCSI Target Service can be used to present vSAN storage to physical servers outside of the vSphere environment.
Show answer & explanation
Correct answer: A
This is true. The primary purpose of the vSAN iSCSI Target Service is to provide block-level storage from the vSAN datastore to external, non-vSphere workloads. This includes physical servers (e.g., for Microsoft Clustering) or other hypervisors that require shared block storage and have an iSCSI initiator.
- Question 10Advanced
Planning and Designing · Identify appropriate vSAN cluster design
Case Study:
A retail company, ShopFast, has a 2-node vSAN ROBO (Remote Office/Branch Office) cluster at each of its 50 retail stores. These clusters run point-of-sale and inventory management VMs. All stores are connected back to a central data center where the vCenter Server and a single vSAN Witness Appliance are located. The witness appliance is currently serving all 50 ROBO sites.
Recently, ShopFast acquired a competitor and will be adding 30 more stores, each with its own 2-node vSAN ROBO cluster. The IT team is concerned that the single, existing witness appliance cannot support the new total of 80 ROBO sites. The network latency from the new stores to the central data center is within the supported limits for witness traffic.
The project goal is to accommodate the new stores' witness component requirements while minimizing the management overhead and resource consumption at the central data center. The existing ROBO sites are running vSAN 7.0 U1 and the new sites will be deployed with the same version.
What is the most efficient solution for the administrator to implement to support all 80 ROBO sites?
Show answer & explanation
Correct answer: B
A single vSAN Witness Appliance can be configured as a 'Shared Witness' to provide witness components for multiple 2-node vSAN clusters. As of vSAN 7.0 U1, a single shared witness can support up to 64 2-node clusters. While this doesn't cover all 80 sites, the most efficient first step is to enable this feature and add as many new sites as possible. Since the case states they need to support all 80, this implies deploying a second shared witness would be the ultimate solution, but enabling the existing one is the correct, most efficient first action. A single shared witness is far more resource and management efficient than deploying one witness per ROBO site.
Ready for the real thing?
The full 5V0-2121 simulator has every exam-style question, timed mode, and instant scoring.