nerdexam
Nutanix

NCP-MCI-6.10 · Question #50

An administrator needs to enable Windows Defender Credential Guard to comply with company policy. The new VM configurations include: Legacy BIOS 4 vCPUs 8 GB RAM Windows Server 2019 What must be…

The correct answer is B. Enable UEFI with Secure Boot. Windows Defender Credential Guard relies on Virtualization-Based Security (VBS), which has a hard requirement for UEFI firmware and Secure Boot - Legacy BIOS is explicitly incompatible. The VM is currently configured with Legacy BIOS, which prevents VBS and therefore Credential…

Configure and Manage Nutanix Resources

Question

An administrator needs to enable Windows Defender Credential Guard to comply with company policy. The new VM configurations include:

Legacy BIOS 4 vCPUs 8 GB RAM Windows Server 2019 What must be changed in order to properly enable Windows Defender Credential Guard?

Options

  • AUpdate vCPU to 8.
  • BEnable UEFI with Secure Boot.
  • CUse Windows Server 2022.
  • DUpdate Memory to 16GB.

How the community answered

(26 responses)
  • A
    4% (1)
  • B
    81% (21)
  • C
    4% (1)
  • D
    12% (3)

Explanation

Windows Defender Credential Guard relies on Virtualization-Based Security (VBS), which has a hard requirement for UEFI firmware and Secure Boot - Legacy BIOS is explicitly incompatible. The VM is currently configured with Legacy BIOS, which prevents VBS and therefore Credential Guard from initializing. Changing the firmware to UEFI and enabling Secure Boot satisfies the platform security requirement. Increasing vCPUs to 8 (A) has no bearing on Credential Guard. Upgrading to Windows Server 2022 (C) is not required - Credential Guard is supported on Windows Server 2019. Increasing RAM to 16 GB (D) is not a prerequisite for Credential Guard; 8 GB is sufficient.

Topics

#Credential Guard#VM Configuration#UEFI#Secure Boot

Community Discussion

No community discussion yet for this question.

Full NCP-MCI-6.10 Practice