01. While troubleshooting, an engineer needs the ONTAP subsystem that generates event notifications for occurrences such as disk failures or storage-failover takeovers, and that can forward those notifications to a syslog server or to email.
Which ONTAP facility provides these event messages?
a) The FabricPool tiering log
b) The AutoSupport telemetry bundle
c) The Event Management System (EMS)
d) The SnapMirror transfer history
02. A customer's cluster is flagged in Active IQ as exposed to a known issue that can cause a storage takeover to fail. The customer asks what to do next.
What does Active IQ provide to help resolve the flagged risk?
a) Guided remediation steps or advisory references tied to the identified risk.
b) A live packet capture of the affected cluster network interfaces.
c) A rollback of the last configuration change applied on the cluster.
d) An automatic firmware push that clears the risk without any intervention.
03. During a support case, an engineer must identify the component that is deployed inside the customer's cloud VPC/VNet and executes actions on behalf of the NetApp Console (formerly BlueXP) control plane, such as deploying and managing a CVO environment.
Which component is being described?
a) A SnapMirror peer relationship
b) The NetApp Console web interface itself
c) A FabricPool tiering policy
d) The Connector
04. An engineer is explaining why a default ONTAP aggregate can survive the simultaneous failure of two drives within the same RAID group without losing data.
Which RAID technology provides this level of protection?
a) A FabricPool capacity tier
b) RAID-0 striping
c) RAID-DP (double parity)
d) Single-parity RAID-4
05. One node in an HA pair repeatedly logs warnings that its write-log battery charge is low, and it may soon be unable to guarantee logged writes across a power event.
What is the correct interpretation and safe action?
a) The boot media has failed, so reinstall the ONTAP image on the running node
b) The NVRAM battery is degrading; replace the battery FRU under an HA takeover
c) A data LIF is flapping and must be migrated to a healthy network port
d) A back-end data disk is predictively failing and the aggregate is about to go offline
06. Before recommending an ONTAP upgrade for a customer, an engineer wants a recommendation that already accounts for the customer's specific configuration and for issues seen on similar systems.
How does Active IQ support this decision?
a) It produces upgrade advisories informed by the system's telemetry and by issues across the installed base.
b) It requires a Config Advisor run before any upgrade advice.
c) It guarantees the upgrade will not encounter any issue.
d) It downloads and stages the target ONTAP image on the nodes automatically.
07. NFS clients on a single subnet suddenly cannot mount an export that worked the previous day, while clients on other subnets mount it normally. The storage team reports no intended change on the cluster.
Which checks most directly isolate the cause?
(Choose three.)
a) Check name resolution for the clients and the mount target
b) Replace the NVRAM battery on the node hosting the volume
c) Initiate a disruptive storage-failover takeover of the partner node and its aggregates
d) Confirm the data LIF serving that SVM is up and hosted on a reachable port and node
e) Verify the export-policy rule permits access from the affected client subnet
08. After adding a disk shelf, an engineer wants to validate that the SAS cabling and multipath HA connectivity are correct before returning the system to production.
Which tool is purpose-built to check for issues such as miscabling or single-path connectivity?
a) The EMS real-time event stream
b) A single triggered AutoSupport message
c) Config Advisor
d) Active IQ risk dashboards
09. During a support call you need an on-demand validation of a cluster's cabling and switch configuration before a hardware expansion.
Which tool is designed for that specific check?
a) The AutoSupport weekly bundle.
b) Config Advisor.
c) Active IQ Digital Advisor.
d) The EMS message log.
10. Shortly after a volume is moved to a different aggregate, read latency on that volume is elevated for a period and then gradually returns to normal without intervention. No hardware faults are reported.
Which background activity best explains the temporary read-latency increase?
a) Deswizzling, which resolves logical block references to physical locations after the move
b) A DNS lookup storm delaying client read acknowledgments on the volume
c) An AutoSupport transmission, which saturates the management network path during the move
d) A continuous snapshot deletion loop that blocks incoming reads until it eventually finishes running