
HashiCorp Certified:Terraform Authoring and Operations Professional
Domain 2Objective 6
2f TERRAFORM-AUTHORING-AND-OPERATIONS-PROFESSIONAL Practice Questions (Page 1)
Part of the Develop and troubleshoot dynamic configuration domain, which makes up ~20% of our current practice bank. HashiCorp does not publish an official question count, but from its 240-minute exam (~95–160 total, ~19–32 in this domain), expect 3–5 from this objective — we provide 18 practice questions to prepare you well beyond it. (estimate)
18questions here
4free pages
5concepts
Questions 1–5
- 1
What is a recommended approach to avoid storing secrets in Terraform state?
Select an answer first - 2
A Terraform state file is stored in an S3 backend with server-side encryption enabled. A security audit finds that a database password is stored in plaintext in the state file. The team wants to prevent this from happening in the future. They are considering two options: (1) using a Vault provider data source, and (2) using a terraform.tfvars file with the sensitive flag. Which option fully addresses the audit finding?
Select an answer first - 3
What is a common way to use the Vault provider to consume a secret without exposing it in configuration?
Select an answer first - 4
A Terraform configuration for a web application includes a database connection string. The team wants to ensure the connection string is not exposed in the configuration files or in the state file. They already use a remote backend with encryption at rest. Which additional measure should they implement?
Select an answer first - 5
How does Terraform typically authenticate to Vault when retrieving secrets?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by HashiCorp. “TERRAFORM-AUTHORING-AND-OPERATIONS-PROFESSIONAL” is a trademark of its owner, used for identification only.