
HashiCorp Certified:Vault Operations Professional
Domain 7Objective 1
Interpret Vault Identity Entities and Groups VAULT-OPERATIONS-PROFESSIONAL Practice Questions (Page 1)
Part of the Configure access control domain, which makes up ~13% of our current practice bank. HashiCorp does not publish an official question count, but from its 240-minute exam (~95–160 total, ~12–21 in this domain), expect 2–4 from this objective — we provide 18 practice questions to prepare you well beyond it. (estimate)
18questions here
4free pages
6concepts
Questions 1–5
- 1
A Vault administrator creates an internal group 'devs' with a policy granting read access to development secrets. They also create a parent group 'all-staff' with a policy granting read access to general company secrets. The 'devs' group is added as a child of 'all-staff'. What access will a member of 'devs' have?
Select an answer first - 2
A user logs in to Vault using GitHub authentication with the username 'dev-jane'. Later, the same user logs in using LDAP with the username 'jane.doe'. The user expects the same Vault policies in both sessions. What must be configured to achieve this?
Select an answer first - 3
What is an entity alias in Vault?
Select an answer first - 4
How does Vault embed identity information in tokens?
Select an answer first - 5
A company uses Vault with an external identity provider (IdP) that syncs groups. The IdP has a group 'managers' that should grant read access to the 'secret/hr' path. The administrator wants to ensure that when a user is added to the 'managers' group in the IdP, they automatically get access in Vault. What should the administrator do?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by HashiCorp. “VAULT-OPERATIONS-PROFESSIONAL” is a trademark of its owner, used for identification only.