Deal of The Day! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

VMware Exam 3V0-21.23 Topic 2 Question 6 Discussion

Actual exam question for VMware's 3V0-21.23 exam
Question #: 6
Topic #: 2
[All 3V0-21.23 Questions]

An architect is tasked with creating a design for a vSphere-based solution.

Reviewing requirements with the security team, the architect makes the following design decision:

ESXi hosts in the environment will enable shell sandbox for SSH connections and the local ESXi shell

What is an implication of the design decision to enable shell sandboxing?

Show Suggested Answer Hide Answer
Suggested Answer: A

When the shell sandbox is enabled on ESXi hosts, it restricts the execution of commands within the shell to ensure that only authorized or safe commands are allowed. This provides a level of isolation that limits the potential for accidental or malicious commands to be run in the shell, enhancing security while still providing necessary administrative access.


Contribute your Thoughts:

Fallon
1 months ago
I'm going with B. Only admin accounts should be able to access that sandbox. Can't let just anyone play in there, you know?
upvoted 0 times
...
Alberta
1 months ago
Option C, of course! Logging all the commands in the sandbox shell is the way to go. Gotta keep that audit trail tight.
upvoted 0 times
...
Sabra
1 months ago
Enabling the shell sandbox? Sounds like a safe bet to me. At least we won't have any rogue users wreaking havoc in the shell, right?
upvoted 0 times
Nikita
10 days ago
That's right! Enabling shell sandboxing adds an extra layer of security by restricting certain commands and logging all activities.
upvoted 0 times
...
Carlee
11 days ago
C) All commands executed in the sandbox shell will be logged
upvoted 0 times
...
Alaine
15 days ago
A) Only certain commands can be executed in the sandboxed shell
upvoted 0 times
...
...
Shalon
1 months ago
That's a good point, Denny. It could be a way to track and monitor any changes made in the environment.
upvoted 0 times
...
Denny
2 months ago
But wouldn't it also mean that all commands executed in the sandbox shell will be logged?
upvoted 0 times
...
Stefania
2 months ago
I agree with Lilli, it makes sense to limit the commands that can be run for security reasons.
upvoted 0 times
...
Lilli
2 months ago
I think the implication is that only certain commands can be executed in the sandboxed shell.
upvoted 0 times
...

Save Cancel
az-700  pass4success  az-104  200-301  200-201  cissp  350-401  350-201  350-501  350-601  350-801  350-901  az-720  az-305  pl-300  

Warning: Cannot modify header information - headers already sent by (output started at /pass.php:70) in /pass.php on line 77