5V0-23-20 Sample Questions & Answers
Namespaces, pods and storage built for cloud-native workloads in vSphere dominate the weighting, next to the Supervisor Cluster's architecture and networking, deploying and configuring Tanzu Kubernetes clusters, and the Supervisor Cluster's own lifecycle.
Launch the full 5V0-23-20 simulator →Showing 10 of 20 free samples.
- Question 1Beginner
Introduction to vSphere with Tanzu · kubectl CLI
The command
kubectl vsphere login --server= --tanzu-kubernetes-cluster-name --vsphere-usernameis used to authenticate to a Tanzu Kubernetes Cluster. Where does the resulting authentication context get stored?Show answer & explanation
Correct answer: C
The
kubectl vsphere logincommand authenticates the user against vCenter SSO and retrieves a temporary token. It then adds a new context, cluster, and user entry to the user's local kubeconfig file (typically located at~/.kube/config), allowing subsequentkubectlcommands to be authenticated against the target cluster. - Question 2Intermediate
vSphere with Tanzu Core Services · Persistent Volumes
A developer needs to deploy a stateful application that requires 50 GiB of high-performance storage. The vSphere administrator has created a storage policy named 'fast-ssd' which is backed by an all-flash vSAN datastore. How can the developer request storage that adheres to this policy for their application?
Show answer & explanation
Correct answer: B
The standard Kubernetes method for requesting storage is to create a PersistentVolumeClaim (PVC). In a vSphere with Tanzu environment, vSphere storage policies are automatically exposed as StorageClasses. The developer creates a PVC manifest that specifies the size requirement (50 GiB) and sets the
storageClassNamefield to 'fast-ssd'. This tells vSphere to provision a persistent volume on a datastore that complies with the 'fast-ssd' policy. - Question 3Beginner
Introduction to vSphere with Tanzu · Spherelet
What is the primary role of the Spherelet component running on each ESXi host in a Supervisor Cluster?
Show answer & explanation
Correct answer: B
The Spherelet is a VMware-developed equivalent of a Kubelet that is integrated directly into the ESXi hypervisor. It allows the Supervisor Cluster's Kubernetes control plane to communicate with the ESXi host, register it as a node, and manage the lifecycle of vSphere Pods directly on the hypervisor, providing a secure and performant way to run containers.
- Question 4Intermediate
Introduction to vSphere with Tanzu · Tanzu Kubernetes Cluster (TKC) Management
An administrator needs to update the Kubernetes version of a running Tanzu Kubernetes Cluster (TKC). Which is the correct procedure to perform this upgrade in a supported manner?
Show answer & explanation
Correct answer: C
Tanzu Kubernetes Clusters are managed declaratively via a Custom Resource Definition (CRD). The supported method to trigger a rolling upgrade is to edit the cluster's manifest, change the Kubernetes version specified in the
distribution.versionfield to a supported, available version, and then re-apply the manifest. The TKG controllers will then orchestrate a rolling update of the control plane and worker nodes. - Question 5Advanced
vSphere with Tanzu Core Services · Harbor Image Registry
A vSphere administrator has enabled the Harbor Image Registry service on a Supervisor Cluster. A developer reports that they are unable to push container images to the registry, receiving an 'authentication required' error. The developer is a member of a group that has 'Edit' permissions on the vSphere Namespace. What is the most likely reason for this failure?
Show answer & explanation
Correct answer: A
Permissions on the vSphere Namespace (like 'Edit' or 'View') do not automatically grant access to the integrated Harbor registry. Harbor maintains its own authentication. Users must perform a separate
docker logincommand using their vCenter SSO username and password. This authenticates their client session specifically with the registry service. - Question 6IntermediateSelect 3
Introduction to vSphere with Tanzu · Supervisor Cluster
Which three of the following are valid characteristics of vSphere Pods? (Select THREE)
Show answer & explanation
Correct answers: B, C, E
Each vSphere Pod is encapsulated in its own lightweight virtual machine (CRX VM) with a dedicated kernel. This provides the same strong hardware-virtualization security and isolation boundary as a traditional VM.
From a developer's perspective, a vSphere Pod is a standard Kubernetes pod. It can be created, inspected, and managed using familiar
kubectlcommands likekubectl apply,kubectl get pods, andkubectl describe pod.vSphere Pods fully support Kubernetes persistent storage concepts. They can use PersistentVolumeClaims to dynamically provision and mount VMDKs from vSphere datastores (vSAN, VMFS, NFS) for stateful applications.
- Question 7Advanced
vSphere with Tanzu Core Services · Persistent Volumes
A platform architect is designing a vSphere with Tanzu solution. They need to ensure that different development teams can only consume resources from specific physical datastores. For example, the 'Finance' team's workloads must land on 'Datastore-Cluster-A' and the 'Marketing' team's workloads must land on 'Datastore-Cluster-B'. How can this be enforced?
graph TD subgraph vCenter SupervisorCluster[Supervisor Cluster] subgraph Namespaces FinanceNS[Finance Namespace] MarketingNS[Marketing Namespace] end subgraph Storage DSC_A[Datastore Cluster A] DSC_B[Datastore Cluster B] end end FinanceNS -- Must Use --> DSC_A MarketingNS -- Must Use --> DSC_BShow answer & explanation
Correct answer: B
This is the correct and intended method for storage governance in vSphere with Tanzu. The process is: 1) Tag the datastores (e.g., 'usage=finance'). 2) Create a vSphere Storage Policy that includes datastores with that tag. 3) In the vSphere Namespace configuration, add this storage policy. This ensures that any persistent volume claim created within that namespace will be satisfied only by datastores matching the policy.
- Question 8Beginner
Introduction to vSphere with Tanzu · Tanzu Kubernetes Cluster (TKC) Management
To create a new Tanzu Kubernetes Cluster using a declarative YAML manifest, an administrator would use the command
kubectl apply -f _____.yaml.Show answer & explanation
Correct answer: B
The
TanzuKubernetesClusteris the Custom Resource (CR) used to declaratively define and manage the lifecycle of a guest cluster. The manifest would specify details like the Kubernetes version, number of nodes, VM classes, and storage classes. - Question 9Intermediate
vSphere with Tanzu Core Services · vSphere Namespaces Configuration and Management
True or False: A single vSphere Namespace can contain both vSphere Pods running directly on the Supervisor Cluster and multiple Tanzu Kubernetes Clusters (TKCs).
Show answer & explanation
Correct answer: A
This is true. A vSphere Namespace is a unit of management and resource allocation within the Supervisor Cluster. It can be used to host vSphere Pods, Tanzu Kubernetes Clusters, and virtual machines (if VM Service is enabled), all within the same namespace boundary.
- Question 10Advanced
vSphere with Tanzu Core Services · Persistent Volumes
Company Background:
A healthcare data analytics company, MedData Inc., is deploying a new AI/ML processing application on vSphere with Tanzu. The application consists of several containerized components that will run in a Tanzu Kubernetes Cluster (TKC).Current Situation:
The AI/ML application requires access to a large, shared dataset stored on an NFS share in the company's data center. The DevOps team needs to make this existing NFS share available as a persistent storage option for all pods running within their new TKC. The vSphere environment is already configured with the NFS server as a valid datastore on the ESXi hosts.Requirement:
The solution must allow multiple pods to read from and write to the same persistent volume simultaneously. The vSphere administrator needs to configure the necessary objects to fulfill this requirement.Which solution should the administrator implement?
Show answer & explanation
Correct answer: B
This is the correct approach. vSphere CNS (Cloud Native Storage) supports
ReadWriteMany(RWX) access mode for persistent volumes provisioned on NFS datastores. The administrator creates the StorageClass pointing to the NFS-backed storage policy. The developers then create a PVC requesting this StorageClass with theReadWriteManyaccess mode. This allows the resulting Persistent Volume to be mounted and used concurrently by multiple pods across different worker nodes in the TKC.
Ready for the real thing?
The full 5V0-23-20 simulator has every exam-style question, timed mode, and instant scoring.