TASK 4
As the Cloud Administrator, you have received the following request to make the changes in vRealize Automation to support new service capabilities.
1. Create a Storage Tier to support encryption.
2. Create a Network Profile for Phobos Project.
• Choose the NSX-T network from the available list.
3. The existing Phobos Zone should offer the following capabilities
• Initial workload placement should use VMware vRealize Operations and all workloads should be placed into a specific virtual machine folder by default.
The following information has been provided to assist you in these tasks:
The following information has been provided to assist you in these tasks:
• vRealize Automation URL: vr-automation.corp.local
• Cloud Admin Username: vcapadmin@corp.local
• Cloud Admin Password: VMware1!
Storage Profile Settings:
• Name: Encrypted Storage Tier
• Disk Type: Standard disk
• Region: vSphere Private Cloud / Local Dat
. Datastore/Cluster: RegionAOUSCSIOI-CC3'
• Provisioning Type: Thin
• Supports Encryption: Yes
• Capability Tag:
o Key: storage
o Value: encrypted
Network Profile Settings:
• Name: Phobos Networks
• Region: vSphere Private Cloud / Local Datacenter
• Network Segment: nsx-phobos-external
• Network IPv4 CIDR: 172.16.15.0/24
• Network Default Gateway: 172.16.15.1
• Domain: cofp.local
• IP Range Name: Phobos-range
• IP Range: 172.16.15.5-172.16.15.250
• Network Profile Capability Tag:
o Key: net
o Value: phobos
Cloud Zone Settings:
• Name: Phobos
• Folder: Workloads
TASK 12
As the Cloud Administrator, you have been tasked to update the Atlas App cloud template in the Atlas project. Perform the following tasks:
1. Edit the existing cloud template Atlas App. such that it is a multi-tier application that meets the following requirements:
• 2 Web servers
• 1 Database server
• The Database server is always built before the Web servers
• 2 NSX Networks:
o The first network should use the NAT feature
• Resource Name: external
• Second network should be an existing network
• Resource Name: internal o All networks should be restricted to use only the Atlas project networks
o The internal network should be restricted to use only the nsx-atlas-existing NSX network
• Both the web and db VMs should be connected to the internal network
2. Add an NSX load balancer to provide access from the outside to the two Web servers:
• Resource Name: IbWeb
• Port: 443
• Protocol: HTTPS
3. Assign an existing Security Group to the Web servers:
• Resource Name: sgWeb
• Instances: Web Sewers
• Constraint Tag Key: sg
• Constraint Tag Value: atlasweb
TASK 2
As a Cloud Administrator you have two tasks to complete:
1. Onboard new interns into vRealize Automation and assign the correct access. The Interns are split into two Active Directory groups, interns-group-a and interns-group-b. The interns-group-a group requires access to Cloud Assembly and the interns-group-b group requires access to Service Broker. The interns should be allocated the most restrictive access available.
2 Assist in resolving issues reported by the following users who do not have the correct access permissions in vRealize Automation. Each user should have the minimum permissions required to fulfill their role:
• A User with logon id appdevuset2@corp.local is only responsible for creating new and deploying from cloud templates in Cloud Assembly.
The following additional information is provided to help complete both tasks:
• IDM URL: https://identity-manager.corp.tocal/SAAS/admin or use bookmark
• IDM System Domain Username: admin
• IDM Admin Password: VMware1!
• AD Organization Unit ON: OU=lnterns.DC=corp.DC=local
• vRealize Automation URL: vr-automalion.corp.local
• Cloud Administrator Username: vca pad mm @corp. local
• Cloud Administrator Password: VMware1!