Nutanix NCP-CI-Azure Practice Exams
Last updated on Oct 07,2026- Exam Code: NCP-CI-Azure
- Exam Name: Nutanix Certified Professional - Cloud Integration - Azure (NCP-CI-Azure v6.7)
- Certification Provider: Nutanix
- Latest update: Oct 07,2026
An organization wants to use a Jump Host to access Prism Element and Prism Central within an NC2 cluster on Azure.
Which statement is true?
- A . Jump Host instance must be deployed in the cluster VNet.
- B . Jump Host instance can be deployed in the Prism Central VNet or an external VNet.
- C . Jump Host must not be used. Only VPN or ExpressRoute should be use.
- D . Jump Host instance can only be deployed in the Prism Central VNet.
B
Explanation:
Jump Host Deployment: A Jump Host is a secure server used to access other systems in a network. In the context of an NC2 cluster on Azure, it serves as an intermediary for accessing Prism Element and Prism Central.
Flexible Deployment The Jump Host can be deployed in either the Prism Central VNet or an external VNet, providing flexibility in network design and access strategies. This allows the organization to choose the most suitable network for deploying the Jump Host based on their security and connectivity requirements.
Reference: Nutanix NC2 on Azure Deployment Guide
Azure Virtual Network Configuration Documentation
An organization uses a Pay As. You Go subscription plan and wants to pay directly to Nutanix.
What is a valid payment method available to pay directly to Nutanix?
- A . Via Wire Transfer
- B . Via Credit Card
- C . Via Physical Check
- D . Via Online Payment Platform
A
Explanation:
Payment Method When using a Pay As You Go subscription plan and opting to pay directly to Nutanix, wire transfer is a valid and secure payment method.
Direct Payment: Wire transfers allow for the direct transfer of funds from the organization’s bank account to Nutanix, ensuring a straightforward and efficient payment process.
Reference: Nutanix Billing and Payment Documentation
Pay As You Go Subscription Payment Methods Guide
An administrator is planning an NC2 deployment in Azure and wants to connect the company’s on-premises datacenter to the cloud environment.
What connectivity solution should the administrator use to avoid traffic between the locations flowing over the public internet?
- A . ExpressRoute
- B . Site-to-Site VPN
- C . Point-to-Site VPN
- D . VTEP Gateways
A
Explanation:
To connect the company’s on-premises datacenter to the Azure cloud environment while avoiding traffic over the public internet, the administrator should use Azure ExpressRoute. ExpressRoute provides a private connection to Azure, offering more reliability, faster speeds, and lower latencies compared to typical internet connections. This service ensures that data traffic does not traverse the public internet, enhancing security and performance.
Reference: Azure ExpressRoute Overview
Which service enables the monitoring of key metrics on various Azure services, including virtual networks, virtual machines, and bare metal hosts for an NC2 cluster?
- A . Azure Monitor
- B . Resource Manager
- C . Azure Service Health
- D . Azure Network Watcher
A
Explanation:
Azure Monitor Overview: Azure Monitor is a comprehensive monitoring service that collects, analyzes, and acts on telemetry data from Azure resources.
Key Metrics Monitoring: Azure Monitor enables the monitoring of various Azure services such as virtual networks, virtual machines, and bare metal hosts, providing insights and visibility into their performance and health.
Comparison of Services:
Resource Manager: Manages Azure resources but does not provide detailed monitoring capabilities. Azure Service Health: Provides personalized alerts and guidance when Azure service issues affect you but is not a comprehensive monitoring solution.
Azure Network Watcher: Focuses on network performance monitoring and diagnostics but does not cover all resource types.
Conclusion: Azure Monitor is the most suitable service for monitoring key metrics across a wide range of Azure services.
Reference: Azure Monitor Documentation
Nutanix NC2 on Azure Monitoring Guide
An administrator is deploying a new cluster on Azure and would like to ensure the data is encrypted. Due to cost constraints the deployment will leverage the native local key manager (LKM).
What is the minimal number of nodes needed to support the Nutanix native LKM?
- A . 1
- B . 2
- C . 3
- D . 4
C
Explanation:
Local Key Manager (LKM): The native local key manager in Nutanix requires a minimum number of nodes to function correctly and provide key management services.
Minimum Node Requirement for LKM: To support the Nutanix native LKM, at least three nodes are needed. This configuration ensures that the key management service can achieve the necessary quorum and redundancy for secure operations.
Reference: Nutanix Data Encryption Documentation
Nutanix Cluster Configuration Guide
An administrator has recently deployed an NC2 on azure cluster, but does not have connectivity back to the on-premises environment. The administrator would like to start working on configuring the new cluster.
What is the best way to get access to Prism Central?
- A . Deploy a Jump Host in an external VNet and peer the VNets for communication between Prism Central VNet and the Jump Host VNet.
- B . Deploy a Jump Host instance in the same subnet as the bare-metal.
- C . Deploy a Jump Host in an external VNet and peer the VNets for communication between bare-metal VNet and the Jump Host VNet.
- D . Deploy a Jump HostInstanceIn the Prism Central VNet inside a delegated subnet
A
Explanation:
Jump Host Deployment:A Jump Host provides a secure method to access the NC2 environment when direct connectivity is unavailable. Deploying it in an external VNet allows flexibility in managing network access and security.
VNet Peering:By peering the external VNet (where the Jump Host is deployed) with the VNet containing Prism Central, the administrator can establish a communication pathway. This setup enables secure and controlled access to Prism Central from the Jump Host.
Reference: Azure VNet Peering Documentation
Nutanix NC2 Configuration and Access Guide
NC2 Azure API calls are failing and MCM no longer shows telemetry or health of the cluster. Where should the administrator look first?
- A . Check whitelisting of Outbound Communication
- B . Log into Prism and check alerts and notifications
- C . SSH into the NC2 Azure CVMs
- D . Check VPN/ExpressRoute
A
Explanation:
Outbound Communication Whitelisting: For NC2 Azure API calls and telemetry data to function correctly,
certain outbound communications must be allowed. If these communications are not whitelisted, API calls can fail, and telemetry or health data might not be reported correctly.
First Check: Given the symptoms (failing API calls and missing telemetry), the first step should be to ensure that all necessary outbound communications are correctly whitelisted. This includes ensuring that endpoints and services required for NC2 operation are accessible.
Reference: Nutanix NC2 Networking Requirements
Azure Networking and Security Configuration Guide
Native Azure VMs exist in a subnet (10.20.80.0/20) in the Prism Central VNet that need access to the workload running on the Nutanix User.
What needs to be modified to allow access from the native Azure VMs to the workloads running in the Nutanix User VPC?
- A . Remove the ERP value on the transit VPC and Nutanix User VPC.
- B . Change the ERP value to the the subnet range of the native Azure VMs (10.20.80.0/20) on the Transit VPC and the Nutanix User VPC.
- C . Adjust the Inbound Network Security Group on the Flow Gateway VM External NIC to allow traffic 102030.0/20.
- D . Adjust the Inbound Network Security Group on the Flow Gateway VM Internal NIC to allow traffic 102030,0/20.
D
Explanation:
To allow access from the native Azure VMs to the workloads running in the Nutanix User VPC, the administrator needs to:
Adjust the Inbound Network Security Group (NSG) on the Flow Gateway VM’s Internal NIC. Specifically, allow traffic from the subnet range of the native Azure VMs (10.20.80.0/20) in the Inbound rules of the NSG associated with the Internal NIC of the Flow Gateway VM.
This configuration change permits the desired network traffic, ensuring that the native Azure VMs can communicate with the workloads in the Nutanix User VPC.
Reference: Azure Network Security Groups Overview
Nutanix Networking and Security Best Practices
An administrator manager a virtual desktop environment running on an NC2 cluster in Azure.
The desktop running on the cluster need to contact resources on-premises through the ExpressRoute that has been setup. The save on bandwidth from the on-premises environment to Azure, the administrator wants the desktops to access the internet through an Azure NAT Gateway.
Which co0nfigruation will best accomplish this task?
- A . Set the default route of 0.0.0.0/0 for the Nutanix User VPC pointing to the external-No-NAT network.
- B . Set the default route of 0.0.0.0/0 for the Nutanix User VPC pointing to the external-NAT network. Set a route to the on-premises subnet for the Nutanix User VPC pointing to the external-No-NAT network.
- C . Set the default route of 0.0.0.0/0 for the Nutanix User VPC pointing to the external-NAT network. Set a route to the on-premises subnet for the Nutanix User VPC pointing to the external-NAT network.
- D . Assign all desktops Floating IPs and use an external-NAT network in the transit VPC. Set the default route of 0.0.0.0/0 for the Nutanix User VPC pointing to the external-NAT network.
B
Explanation:
Default Route for Internet Traffic: By setting the default route of 0.0.0.0/0 for the Nutanix User VPC pointing to the external-NAT network, all internet-bound traffic from the desktops will be routed through the Azure NAT Gateway, conserving bandwidth on the ExpressRoute connection.
On-Premises Route:Setting a specific route to the on-premises subnet for the Nutanix User VPC pointing to the external-No-NAT network ensures that traffic destined for on-premises resources bypasses the NAT Gateway and utilizes the ExpressRoute connection, optimizing the use of network paths.
Reference: Azure NAT Gateway Documentation
Nutanix NC2 Networking Configuration Guide
An administrator wants to ensure that enough available bandwidth exits for workloads running in an NC2 on Azure cluster environment.
What is the highest number of Flew Gateway VMs that can be deployed within this environment?
- A . 1
- B . 3
- C . 4
- D . 6
D
Explanation:
Flow Gateway VMs: Flow Gateway VMs are used to manage and route network traffic within an NC2 on Azure cluster, ensuring sufficient bandwidth for workloads.
Scalability: To ensure enough available bandwidth, multiple Flow Gateway VMs can be deployed. Maximum Limit: The highest number of Flow Gateway VMs that can be deployed within an NC2 on Azure environment is 6, providing the necessary capacity to handle high traffic volumes and ensure optimal performance.
Conclusion: Deploying up to 6 Flow Gateway VMs ensures adequate bandwidth for NC2 workloads.
Reference: Nutanix Clusters Networking Guide
Azure Network Performance Documentation