HashiCorp Vault-Associate Exam (page: 1)
HashiCorp Certified: Vault Associate (002)
Updated on: 25-Dec-2025

Viewing Page 1 of 41

Which auth method is ideal for machine to machine authentication?

  1. GitHub
  2. UserPass
  3. AppRole
  4. Okta

Answer(s): C

Explanation:

The ideal method for a machine to machine authentication is AppRole although it's not the only method. The other options are frequently reserved for human access.


Reference:

https://www.hashicorp.com/blog/authenticating-applications-with-vault-approle/



When Vault is sealed, which are the only two options available to a Vault administrator? (select two)

  1. rotate the encryption key
  2. unseal Vault
  3. view the status of Vault
  4. configure policies
  5. author security policies
  6. view data stored in the key/value store

Answer(s): B,C

Explanation:

When Vault is sealed, the only two options available are, viewing the vault status and unsealing Vault. All the other actions performed after the Vault is unsealed and the user is authenticated.



After creating a dynamic credential on a database, the DBA accidentally deletes the credentials on the database itself. When attempting to remove the lease, Vault returns an error stating that the
credential cannot be found. What command can be run to coerce Vault to remove the secret?

  1. vault lease -renew
  2. vault lease revoke -force -prefix <lease_path>
  3. vault revoke -apply
  4. vault lease revoke -enforce

Answer(s): B

Explanation:

The -force flag is meant for recovery when the secret in the target secrets engine was manually deleted.



What type of token does not have a TTL (time to live)?

  1. default tokens
  2. parent tokens
  3. user tokens
  4. root tokens
  5. expired tokens
  6. child tokens

Answer(s): D

Explanation:

Non-root tokens are associated with a TTL, which determines how long a token is valid. Root tokens are not associated with a TTL, and therefore, do not expire. Root tokens are tokens that have the root policy attached to them. They are the only type of token within Vault that are not associated with a TTL, and therefore, do not expire.



An application is trying to use a secret in which the lease has expired. What can be done in order for the application to successfully request data from Vault?

  1. request a new secret and associated lease
  2. try the expired secret in hopes it hasn't been deleted yet
  3. request the TTL be extended for the secret
  4. perform a lease renewal

Answer(s): A

Explanation:

A lease must be renewed before it has expired. Once it has expired, it is permanently revoked and a new secret must be requested.



Viewing Page 1 of 41



Share your comments for HashiCorp Vault-Associate exam with other users:

Gerard 6/29/2023 11:14:00 AM

good so far
Anonymous


Limbo 10/9/2023 3:08:00 AM

this is way too informative
BOTSWANA


Tejasree 8/26/2023 1:46:00 AM

very helpfull
UNITED STATES


Yolostar Again 10/12/2023 3:02:00 PM

q.189 - answers are incorrect.
Anonymous


Shikha Bakra 9/10/2023 5:16:00 PM

awesome job in getting these questions
AUSTRALIA


Kevin 10/20/2023 2:01:00 AM

i cant find aws certified practitioner clf-c01 exam in aws website but i found aws certified practitioner clf-c02 exam. can everyone please verify the difference between the two clf-c01 and clf-c02? thank you
UNITED STATES


D Mario 6/19/2023 10:38:00 PM

grazie mille. i got a satisfactory mark in my exam test today because of this exam dumps. sorry for my english.
ITALY


Bharat Kumar Saraf 10/31/2023 4:36:00 AM

some of the answers are incorrect. need to be reviewed.
HONG KONG


JP 7/13/2023 12:21:00 PM

so far so good
Anonymous


Kiky V 8/8/2023 6:32:00 PM

i am really liking it
Anonymous


trying 7/28/2023 12:37:00 PM

thanks good stuff
UNITED STATES


exampei 10/4/2023 2:40:00 PM

need dump c_tadm_23
Anonymous


Eman Sawalha 6/10/2023 6:18:00 AM

next time i will write a full review
GREECE


johnpaul 11/15/2023 7:55:00 AM

first time using this site
ROMANIA


omiornil@gmail.com 7/25/2023 9:36:00 AM

please sent me oracle 1z0-1105-22 pdf
BANGLADESH


John 8/29/2023 8:59:00 PM

very helpful
Anonymous


Kvana 9/28/2023 12:08:00 PM

good info about oml
UNITED STATES


Checo Lee 7/3/2023 5:45:00 PM

very useful to practice
UNITED STATES


dixitdnoh@gmail.com 8/27/2023 2:58:00 PM

this website is very helpful.
UNITED STATES


Sanjay 8/14/2023 8:07:00 AM

good content
INDIA


Blessious Phiri 8/12/2023 2:19:00 PM

so challenging
Anonymous


PAYAL 10/17/2023 7:14:00 AM

17 should be d ,for morequery its scale out
Anonymous


Karthik 10/12/2023 10:51:00 AM

nice question
Anonymous


Godmode 5/7/2023 10:52:00 AM

yes.
NETHERLANDS


Bhuddhiman 7/30/2023 1:18:00 AM

good mateial
Anonymous


KJ 11/17/2023 3:50:00 PM

good practice exam
Anonymous


sowm 10/29/2023 2:44:00 PM

impressivre qustion
Anonymous


CW 7/6/2023 7:06:00 PM

questions seem helpful
Anonymous


luke 9/26/2023 10:52:00 AM

good content
Anonymous


zazza 6/16/2023 9:08:00 AM

question 21 answer is alerts
ITALY


Abwoch Peter 7/4/2023 3:08:00 AM

am preparing for exam
Anonymous


mohamed 9/12/2023 5:26:00 AM

good one thanks
EGYPT


Mfc 10/23/2023 3:35:00 PM

only got thru 5 questions, need more to evaluate
Anonymous


Whizzle 7/24/2023 6:19:00 AM

q26 should be b
Anonymous