2V0-622 · Question #31
Which group in the vsphere.local domain will have administrator privileges for the VMware Certificate Authority (VMCA)?
The correct answer is B. CAAdmins. The CAAdmins group in the vsphere.local domain is the designated group whose members have administrative privileges over the VMware Certificate Authority.
Question
Which group in the vsphere.local domain will have administrator privileges for the VMware Certificate Authority (VMCA)?
Options
- ASolutionUsers
- BCAAdmins
- CDCAAdmins
- DSystemConfiguration.Administrators
How the community answered
(35 responses)- A3% (1)
- B86% (30)
- C9% (3)
- D3% (1)
Why each option
The CAAdmins group in the vsphere.local domain is the designated group whose members have administrative privileges over the VMware Certificate Authority.
SolutionUsers is a group for vSphere solution accounts such as vpxd and vsphere-webclient that authenticate between services, not for managing the certificate authority.
CAAdmins is a built-in vsphere.local group specifically created during PSC installation to grant members full administrative rights over VMCA, including the ability to issue, revoke, and manage certificates.
DCAAdmins is not a standard built-in group in the vsphere.local domain and has no defined role in certificate authority administration.
SystemConfiguration.Administrators grants access to manage system configuration settings in the PSC, but does not specifically confer VMCA administrative privileges.
Concept tested: vsphere.local built-in groups and VMCA administration
Source: https://docs.vmware.com/en/VMware-vSphere/7.0/com.vmware.vsphere.authentication.doc/GUID-AE64E616-E4CB-4CF2-BB8E-C5B0E93B5CAA.html
Topics
Community Discussion
No community discussion yet for this question.