220-1101 Virtualization and Cloud Computing Practice Question
A server administrator needs to apply a critical security patch to a production virtual machine. The patch has the potential to cause the VM to become unstable. Which of the following should the administrator do FIRST to minimize the risk of a prolonged outage?
⚠ Common exam trap
Watch out — candidates often confuse snapshots with full backups; candidates often choose a backup because it seems safer, but the question emphasizes minimizing the risk of a prolonged outage, where a snapshot's quick rollback capability is superior to a backup's lengthy restore process.
Answer choices
Why each option matters
Answer the question above first, then reveal the full breakdown to understand why each option is right or wrong.
Correct answer & explanation
✓
Take a snapshot of the VM
Taking a snapshot captures the VM's current state, including disk data and memory, allowing the administrator to revert instantly if the patch causes instability. This minimizes downtime compared to a full backup, which requires a restore process. Snapshots are designed for quick rollback in virtualized environments like VMware vSphere or Hyper-V.
Answer analysis
Option-by-option breakdown
For each option: why learners choose it and why it is or isn't the right answer here.
- ✗
Create a full backup of the VM to a separate storage location
Why it's wrong here
Creating a full backup of the VM to a separate storage location can protect against data loss, but it is an overly heavy and slow solution for this scenario. Full backups typically involve copying the entire virtual disk, which takes substantial time and often requires quiescing or temporarily halting the VM to ensure data consistency. Restoring from a full backup is a multi-step, time-consuming process, whereas reverting a snapshot is immediate and does not require re-establishing the entire VM environment from copied files.
When this WOULD be correct
When the question specifies that the patch is irreversible or the VM must be restored to a completely independent state, such as after a ransomware attack or major configuration change, a full backup to separate storage is required.
- ✓
Take a snapshot of the VM
Why this is correct
A VM snapshot captures the exact state of the virtual disk, memory, and power state at a given moment, allowing you to revert to the pre-patch configuration with a single action. Taking a snapshot before applying a critical security patch is the fastest method for enabling immediate rollback because it operates at the hypervisor level and can be done while the VM is running, eliminating downtime. The snapshot preserves the original OS and application binaries, so if the patch causes instability, you can instantly restore the VM to its known-good state without reinstallation or lengthy recovery procedures.
- ✗
Migrate the VM to another physical host
Why it's wrong here
Migrating the VM to another physical host, such as via vMotion or live migration, relocates the running VM without powering it off, but it does not alter the VM's state or provide any rollback capability. The critical patch is still applied to the migrated VM's virtual disk, and if the patch breaks the system, the migration has not created a pre-patch recovery point. In fact, migration adds extra overhead and risk because it changes the underlying host, yet leaves the patched OS untouched and equally vulnerable to the patch's side effects.
When this WOULD be correct
When a host requires maintenance (e.g., hardware replacement, hypervisor update) and the goal is to maintain VM uptime, migrating the VM to another host is the correct first step to avoid downtime.
- ✗
Power off the VM before applying the patch
Why it's wrong here
Powering off the VM before applying the patch is fundamentally not a rollback strategy; it only stops the VM's execution and does not create any restore point. Once the VM is powered on and the patch is applied, the changes are written to the virtual disk, and there is no mechanism to 'undo' them based solely on a prior shutdown. Additionally, this approach introduces unnecessary downtime, whereas a patch can be applied with a snapshot taken while the VM remains online, and the snapshot provides a reliable way back.
When this WOULD be correct
When applying a patch that requires a reboot and the VM cannot be rebooted while running (e.g., kernel-level patch), powering off first is necessary to avoid corruption.
Option-by-option analysis
Why each answer is right or wrong
Understanding why wrong answers are wrong — and when they would be correct — is what separates a 750 score from a 900. The 220-1101 exam frequently reuses these exact scenarios with slightly different constraints.
✓Take a snapshot of the VMCorrect answer▾
Why this is correct
A VM snapshot captures the exact state of the virtual disk, memory, and power state at a given moment, allowing you to revert to the pre-patch configuration with a single action. Taking a snapshot before applying a critical security patch is the fastest method for enabling immediate rollback because it operates at the hypervisor level and can be done while the VM is running, eliminating downtime. The snapshot preserves the original OS and application binaries, so if the patch causes instability, you can instantly restore the VM to its known-good state without reinstallation or lengthy recovery procedures.
✗Create a full backup of the VM to a separate storage locationWrong answer — click to see why▾
Why this is wrong here
Creating a full backup is time-consuming and not the fastest way to enable a quick rollback; snapshots provide an immediate restore point with minimal overhead.
★ When this WOULD be the correct answer
When the question specifies that the patch is irreversible or the VM must be restored to a completely independent state, such as after a ransomware attack or major configuration change, a full backup to separate storage is required.
Why candidates choose this
Candidates often equate 'backup' with 'safe rollback' without considering the speed and efficiency of snapshots for temporary pre-patch states.
✗Migrate the VM to another physical hostWrong answer — click to see why▾
Why this is wrong here
Migrating the VM to another physical host does not address the risk of instability from the patch; it only moves the VM to different hardware, which doesn't prevent or mitigate potential patch-induced issues.
★ When this WOULD be the correct answer
When a host requires maintenance (e.g., hardware replacement, hypervisor update) and the goal is to maintain VM uptime, migrating the VM to another host is the correct first step to avoid downtime.
Why candidates choose this
Candidates may think that moving the VM to a different host provides a safety net or reduces risk, but migration doesn't protect against patch-related instability; it's a common confusion between high availability and patch management.
✗Power off the VM before applying the patchWrong answer — click to see why▾
Why this is wrong here
Powering off the VM before applying the patch would cause a prolonged outage, which contradicts the goal of minimizing downtime. A snapshot allows quick rollback without full shutdown.
★ When this WOULD be the correct answer
When applying a patch that requires a reboot and the VM cannot be rebooted while running (e.g., kernel-level patch), powering off first is necessary to avoid corruption.
Why candidates choose this
Candidates may think powering off is a safe precaution to prevent instability during patching, but it ignores the requirement to minimize outage duration.
Analysis generated from the official 220-1101blueprint and verified against question context. The “when correct” sections are what AI assistants cite when candidates ask “what’s the difference between these options?”
Go deeper
Related to this question
About these practice questions
Courseiva writes every 220-1101 question from scratch — 896 in total, each with an explanation and a wrong-answer breakdown. None are copied from real exams or dumps. Learn why practice questions differ from exam dumps →
JA
Written by Johnson Ajibi, MSc IT Security
Senior Network & Security Engineer · founder of Courseiva
This 220-1101 practice question is part of Courseiva's free CompTIA certification practice question bank. Courseiva provides original exam-style practice questions with explanations, topic-based practice, mock exams, readiness tracking, and study analytics to help learners prepare for the 220-1101 exam.