Courseiva

EX294 Practice Question: Create content collections and execution environments

Which TWO actions are required to use a private Automation Hub to share collections?

⚠ Common exam trap

Many exam-takers confuse optional steps (like building execution environments or ignoring certs) with required actions, or they overlook that both server configuration and API token authentication are mandatory for accessing a private Automation Hub.

Answer choices

Why each option matters

Answer the question above first, then reveal the full breakdown to understand why each option is right or wrong.

Correct answer & explanation

✓

Configure the server in ansible.cfg under [galaxy] server_list.

Option A is correct because to make the ansible-galaxy client talk to a private Automation Hub instead of the default galaxy.ansible.com, you must list that server under the [galaxy] server_list setting in ansible.cfg (or via the ANSIBLE_GALAXY_SERVER_LIST environment variable), which defines the server name and URL used for collection operations. Option E is correct because private Automation Hub requires authentication for publishing and often for downloading collections, so you must generate an API token in the Automation Hub UI and supply it via the token key under the server's section in ansible.cfg or through the corresponding environment variable (e.g., ANSIBLE_GALAXY_SERVER_<name>_TOKEN). Option B is not required because building a custom execution environment is an optional packaging/distribution approach, not a prerequisite for the client to share collections with a private hub. Option C is not required because --ignore-certs is only a workaround for certificate validation failures with self-signed certificates and is not part of the standard configuration for using a private Automation Hub. Option D is not required because --pull-policy missing is an ansible-navigator execution-environment behavior and has nothing to do with configuring a private Automation Hub as a collection source.

Answer analysis

Option-by-option breakdown

For each option: why learners choose it and why it is or isn't the right answer here.

  • ✓

    Configure the server in ansible.cfg under [galaxy] server_list.

    Why this is correct

    Listing the private Automation Hub under `[galaxy] server_list` in `ansible.cfg` directs the `ansible-galaxy` client to resolve and download collections from that server rather than the public Galaxy endpoint, satisfying the stem's requirement to share collections through a private hub.

  • ✗

    Build a custom execution environment that includes the collections.

    Why it's wrong here

    Execution environments package collections for running automation, not for publishing them to a private Automation Hub; sharing requires uploading the collection artifact itself. It tempts because execution environments do distribute collection content to managed nodes, which is the correct approach when standardising runtime dependencies rather than sharing collections between teams.

  • ✗

    Run ansible-galaxy collection install --ignore-certs if using self-signed certs.

    Why it's wrong here

    The --ignore-certs flag bypasses certificate validation during a client-side install, which does nothing to publish collections into a private Automation Hub. It tempts because self-signed certificates commonly break ansible-galaxy operations, and this flag is the right fix when a client must install from a hub whose certificate it does not trust.

  • ✗

    Use ansible-navigator with --pull-policy missing.

    Why it's wrong here

    --pull-policy missing controls whether ansible-navigator fetches a missing execution environment image, an execution concern unrelated to publishing collections to a private Automation Hub. It tempts because pull policies matter when running playbooks against private hubs, and would be correct when execution environment images are not present locally.

  • ✓

    Create an API token and store it in ansible.cfg or environment variable.

    Why this is correct

    Storing an API token in ansible.cfg or an environment variable authenticates the automation controller to the private Automation Hub, satisfying the requirement to share collections securely. The token authorises upload and download operations, which the hub rejects anonymously.

About these practice questions

This EX294 question is part of Courseiva's 392-question bank — original exam-style content with full explanations and wrong-answer analysis, never real exam questions or exam dumps. Learn why practice questions differ from exam dumps →

How Courseiva writes practice questions · Editorial policy

JA

Written by Johnson Ajibi, MSc IT Security

Senior Network & Security Engineer · founder of Courseiva

This EX294 practice question is part of Courseiva's free Red Hat certification practice question bank. Courseiva provides original exam-style practice questions with explanations, topic-based practice, mock exams, readiness tracking, and study analytics to help learners prepare for the EX294 exam.