Nutanix NCP-CI-Azure Practice Exams
Last updated on Oct 07,2026- Exam Code: NCP-CI-Azure
- Exam Name: Nutanix Certified Professional - Cloud Integration - Azure (NCP-CI-Azure v6.7)
- Certification Provider: Nutanix
- Latest update: Oct 07,2026
An administrator is tasked with adding an Azure account to the NC2 console. A requirement is to configure an Azure user that can open, close or extend a support tunnel for the Nutanix Support team.
Which permission must be assigned to the user?
- A . Customer Auditor
- B . Account Administrator
- C . Cluster Administrator
- D . Cluster Auditor
B
Explanation:
Account Administrator Role: This role grants the necessary permissions for managing the Azure account, including the ability to open, close, or extend a support tunnel. These capabilities are crucial for the Nutanix Support team to perform diagnostics and troubleshooting efficiently.
Permissions Included: The Account Administrator role encompasses broader account management rights, ensuring that the user can interact with various support and operational aspects of the NC2 environment within Azure.
Reference: Azure Role-Based Access Control (RBAC) Documentation Nutanix NC2 Support Tunnel Requirements
An administrator has created a new overlay network.
Which is intended for the company’s user VMs.
The cluster has these characteristics:
* Policy-based Routing is not configured
* Only using external NAT
* DNS Server: 8.8.8.8
After adding a few VMs to the network, the administrator notices that the VMs cannot reach resources outside the network, even by IP address.
What is a likely cause?
- A . The local cluster does not have access to the underlying network.
- B . The DNS server is unreachable.
- C . The VPC connection is not established.
- D . A default route was not configured for the external subnet.
D
Explanation:
When the administrator notices that the VMs cannot reach resources outside the network, even by IP address, it is likely that a default route was not configured for the external subnet. The default route is essential for directing traffic from the VMs to external networks. Without it, the VMs will not know how to route traffic to external destinations, which leads to connectivity issues.
Reference: Azure Virtual Network Documentation
Nutanix Flow Networking Best Practices
An administrator needs to ensure API calls are executing successfully from NC2 to manage Azure resources.
Which cluster outbound to Azure connections are required to satisfy this task?
- A . azure-support.nutan/x.com
- B . portal.azure.com
- C . managementazure.com
- D . apikeys.nutanix.com
D
Explanation:
API Key Management: For NC2 to manage Azure resources successfully, it needs to authenticate and authorize API calls. This is typically handled through API keys, which are managed via specific endpoints.
Required Connection: The endpointapikeys.nutanix.comis crucial for managing these API keys. Ensuring connectivity to this endpoint allows NC2 to verify and utilize the API keys needed for interacting with Azure services.
Reference: Nutanix NC2 API Configuration Guide
Azure API Management Documentation
What is the minimum number of nodes needed to deploy an RF3 NC2 cluster?
- A . 1
- B . 3
- C . 5
- D . 7
C
Explanation:
Replication Factor (RF3): RF3 requires that data is replicated across three different nodes to ensure data durability and fault tolerance. This replication scheme allows the system to tolerate the failure of two nodes simultaneously.
Minimum Node Requirement for RF3: To meet the RF3 requirements while maintaining operational capability, a minimum of five nodes is necessary. This configuration ensures that there are enough nodes to distribute the data and provide the necessary redundancy.
Reference: Nutanix Replication Factor Documentation
Nutanix NC2 on Azure Deployment Guide
An administrator has been asked to create a cluster to support new workloads.
What are the maximum number of nodes supported in an NC2 on Azure environment?
- A . 14 nodes
- B . 18 nodes
- C . 24 nodes
- D . 28 nodes
B
Explanation:
NC2 Cluster Node Limit: NC2 on Azure has specific limitations regarding the maximum number of nodes supported in a single cluster.
Maximum Nodes: According to the current NC2 on Azure guidelines, a single cluster can support up to 18 nodes.
Workload Support: This limitation ensures optimal performance and management of resources within the Azure environment.
Comparison of
14 nodes: Less than the maximum supported.
24 nodes and 28 nodes: Exceed the maximum supported, potentially leading to performance and management issues.
Conclusion: For supporting new workloads, the maximum number of nodes in an NC2 on Azure environment is 18.
Reference: Nutanix Clusters on Azure Technical Specifications
Azure Virtual Machine Scale Sets Documentation
An administrator is trying to determine which type of DNS server to deploy for a networking infrastructure in Azure.
Which DNS server option would require either VPN or ExpressRoute connectivity?
- A . Cloudflare
- B . Azure
- C . On-premises
- D . Google
C
Explanation:
DNS Server
Cloudflare: A public DNS service that operates over the internet.
Azure: Azure DNS operates within the Azure cloud and does not require VPN or ExpressRoute for connectivity within Azure.
On-premises: Requires a secure connection, such as VPN or ExpressRoute, to be accessible from Azure, as it resides outside the Azure cloud.
Google: Another public DNS service accessible over the internet.
Connectivity Requirements:
On-premises DNS: To integrate on-premises DNS with Azure, secure connectivity (VPN or
ExpressRoute) is necessary to ensure seamless and secure communication between the on-premises
infrastructure and Azure resources.
Conclusion: An on-premises DNS server would require VPN or ExpressRoute connectivity to be accessible and integrated with the Azure environment.
Reference: Azure DNS Overview
VPN Gateway Configuration
ExpressRoute Overview
An administrator needs to extend an on-premises subnet to an NC2 cluster on Azure.
Which set of options should the administrator configure to complete this task?
- A . Subnet Type: VPC subnets
Traffic Type: IPv4 unicast traffic and ARP
On-premises Hypervisor: ESXi, AHV, Hyper-V - B . Subnet Type: On-premises VLAN subnets and VPC subnets
Traffic Type: IPv4 unicast traffic IPv6 unicast traffic and ARP
On-premises Hypervisor: ESXi and AHV - C . Subnet Type: On-premises VLAN subnets and VPC subnets
Traffic Type: IPv4 unicast traffic and ARP
On-premises Hypervisor: AHV - D . Subnet Type: On-premises VLAN subnets and VPC subnets
Traffic Type: IPv6 umcasi traffic and
ARP On-premises Hypervisor: Hyper-V
B
Explanation:
To extend an on-premises subnet to an NC2 cluster on Azure, the administrator should configure: Subnet Type: Both on-premises VLAN subnets and VPC subnets. This ensures that the subnet can span both the on-premises environment and the Azure environment.
Traffic Type: Support for IPv4 unicast traffic, IPv6 unicast traffic, and ARP is necessary to ensure proper communication and address resolution across the extended subnet.
On-premises Hypervisor: ESXi and AHV are supported hypervisors for this type of configuration, allowing for a seamless extension of the subnet between these environments.
Reference: Nutanix Hybrid Cloud Networking
An administrator is tasked to identify the firewall requirement and submit the port request to the requirement team before the clusters deployment.
Which requirement should the administrator ensure is implement on the corporate firewall?
- A . ICMP can disable but the connectivity should be enabled between the CVMs. Prism Element, and Prism Central.
- B . Allow bi-directional Internet Control Message Protocol (ICMP) traffic between the CVMs, Prism Element, and Prism Central.
- C . Allow uni-directional internet Control Message Protocol (ICMP) traffic between the CVMs, femenr and Prism Central.
- D . ICMP and connectivity can be disabled between the CVMs, Prism Element, and Prism Central
B
Explanation:
ICMP Traffic: ICMP is essential for network diagnostics and troubleshooting, such as ping and traceroute, which help in monitoring the connectivity and health of the network.
Bi-Directional Traffic: Allowing bi-directional ICMP traffic ensures that all nodes (CVMs, Prism Element, and Prism Central) can both send and receive diagnostic messages, which is crucial for maintaining proper communication and network stability.
Reference: Nutanix Networking and Connectivity Requirements
Corporate Firewall Configuration Guidelines
A nutanix User VPC named Servers has a subnet named Tier1:
Servers: 10.0.0.0/20
Tier1: 10.0.0.0/25
Tier is using floating IPS to allow inbound traffic to the web servers that are hosted for a payroll system. The company requires that the Network Security Group allow other Native Azure instances running in subnet AD (10.20.0.0/24) in the Prism Central VNet to be able to contact the web servers.
Which statement is true regarding this company requirement?
- A . Native Azure instances the Prism Central vNet will be allowed access by default.
- B . The internal NIC of the Flow Gateway Network Security Group needs to allow to traffic from 1 10.20.0.0/24.
- C . The external NIC of the Flow Gateway Network Security Group needs to allow traffic from 10.20.0,0/24.
- D . Policy based routing in the Servers VPC must be edited to allow traffic from 10.20.0.0/24.
B
Explanation:
Flow Gateway Network Security Group (NSG): NSGs control the traffic flow to and from network interfaces associated with VMs and other resources. Configuring the NSG correctly is crucial for ensuring that required traffic is allowed.
Internal NIC Configuration: To allow Native Azure instances in the Prism Central VNet (10.20.0.0/24) to access the web servers in the Tier1 subnet, the internal NIC of the Flow Gateway must be configured to allow traffic from 10.20.0.0/24. This ensures that inbound traffic from these instances is permitted and properly routed to the web servers.
Reference: Azure Network Security Group Documentation
Nutanix Flow Gateway Configuration Guide
An administrator deploys an NC2 cluster in Azure and uses 10.100.0.0/16 for one of the VNets.
The cluster is configured as follows:
* 8 nodes
* Prism Central Deployed
* Files Deployed
Following the deployment, the administrator experiences network connectivity issues.
Which reason explains the connectivity issues?
- A . The 10.100.0.0/16 range is not a valid CIDR range.
- B . 10.100.0.0/16 range is reserved for internal cluster usage.
- C . The W.100.0.0/16 range contains too many IP addresses for an NC2 cluster.
- D . The 10.100.0.0/16 range is reserved by IANA.
B
Explanation:
Network Configuration: Using a specific IP range for a VNet can cause conflicts if that range is reserved or already in use by the cluster’s internal operations.
Internal Usage: In NC2, certain IP ranges are reserved for internal cluster functions and should not be used for VNets to avoid IP conflicts and connectivity issues.
Impact: If the 10.100.0.0/16 range is reserved for internal usage, using it for a VNet would lead to IP conflicts, causing network connectivity issues.
Verification: It’s important to verify the reserved IP ranges in the NC2 documentation before assigning them to VNets.
Conclusion: The connectivity issues are likely due to using the 10.100.0.0/16 range, which is reserved
for internal cluster usage.
Reference: Nutanix Networking Guidelines
Azure Virtual Network Documentation