Summer Certification Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code = getmirror

Pass the HashiCorp Security Automation Certification VA-002-P Questions and answers with ExamsMirror

Practice at least 50% of the questions to maximize your chances of passing.
Exam VA-002-P Premium Access

View all detail and faqs for the VA-002-P exam


724 Students Passed

97% Average Score

95% Same Questions
Viewing page 5 out of 6 pages
Viewing questions 41-50 out of questions
Questions # 41:

By default, how long does the transit secrets engine store the resulting ciphertext?

Options:

A.

24 hours

B.

32 days

C.

transit does not store data

D.

30 days

Questions # 42:

A Vault client who has read access to the path secrets/apps/app1 is having trouble viewing the secret in the user interface (UI) but can access via the API. What can be done to resolve this issue?

Options:

A.

add read permissions to the path secrets/apps

B.

modify the policy to allow the create permission

C.

remove the deny policy blocking access to the secrets/apps/app1 path

D.

add LIST to the policy so the user can browse the paths leading up to the key/value's path

Questions # 43:

Which of the following commands will launch the Interactive console for Terraform interpolations?

Options:

A.

terraform

B.

terraform console

C.

terraform cmdline

D.

terraform cli

Questions # 44:

In Terraform Enterprise, a workspace can be mapped to how many VCS repos?

Options:

A.

5

B.

3

C.

2

D.

1

Questions # 45:

Select all features which are exclusive to Terraform Enterprise. (select three)

Options:

A.

Audit Logs

B.

Cost Estimation

C.

Sentinel

D.

Clustering

E.

SAML/SSO

Questions # 46:

Which of the following is considered a Terraform plugin?

Options:

A.

Terraform logic

B.

Terraform language

C.

Terraform tooling

D.

Terraform provider

Questions # 47:

Which is not a benefit of running HashiCorp Vault in your environment?

Options:

A.

Integrate with your code repository to pull secrets when deploying your applications

B.

Consolidate static, long-lived passwords used throughout your organization

C.

Act as root or intermediate certificate authority to automate the generation of PKI certificates

D.

The ability to generate dynamic secrets for applications and resource access

Questions # 48:

True or False:

The terraform refresh command is used to reconcile the state Terraform knows about (via its state file) with the real-world infrastructure. If the drift is detected between the real-world infrastructure and the last known-state, it will modify the infrastructure to correct the drift.

Options:

A.

False

B.

True

Questions # 49:

In regards to Terraform state file, select all the statements below which are correct: (select four)

Options:

A.

storing state remotely can provide better security

B.

the Terraform state can contain sensitive data, therefore the state file should be protected from unauthorized access

C.

Terraform Cloud always encrypts state at rest

D.

using the mask feature, you can instruct Terraform to mask sensitive data in the state file

E.

when using local state, the state file is stored in plain-text

F.

the state file is always encrypted at rest

Questions # 50:

Which of the following best describes a Terraform provider?

Options:

A.

describes an infrastructure object, such as a virtual network, compute instance, or other components

B.

a container for multiple resources that are used together

C.

serves as a parameter for a Terraform module that allows a module to be customized

D.

a plugin that Terraform uses to translate the API interactions with the service or provider

Viewing page 5 out of 6 pages
Viewing questions 41-50 out of questions
TOP CODES

TOP CODES

Top selling exam codes in the certification world, popular, in demand and updated to help you pass on the first try.