Q: 10
An administrator must configure identity access for VMware vSphere Foundation (VVF) to allow
admin accounts from the enterprise Active Directory domain corp.local to log in using domain
credentials. Security requires authentication to use the default Active Directory protocol, without
federation.
Which configuration step is required to enable Active Directory users to authenticate to vCenter?
Options
Discussion
Option D "Active Directory over LDAP" is the default protocol, no federation needed for corp.local, so that's the right config in vCenter imo.
D for sure. Saw this exact setup in a mock, and LDAP is always the move when you need domain creds without federation. Nothing fancy like SAML or OIDC needed here. If anyone picked something else, curious why.
Looks like D fits, since LDAP handles default AD protocol and no need for federation. Pretty sure that's what VMware wants here.
A is wrong, D. You only need to set up "Active Directory over LDAP" as an identity source in vCenter to hit the requirements (default AD protocol, no federation). Official doc covers this pretty clearly. If you want to drill it in, hit some VMware labs or the admin guide, helped me a ton.
D tbh, saw similar on an exam report, LDAP is the direct way for vCenter AD auth without federation.
Probably D here, since AD over LDAP is what vCenter expects by default for enterprise login without any federation.
D imo, had a similar question on a practice test and it was also LDAP. Federation isn’t needed here.
Be respectful. No spam.