Az 900

अब Quizwiz के साथ अपने होमवर्क और परीक्षाओं को एस करें!

Your company plans to deploy an Artificial Intelligence (AI) solution in Azure. What should the company use to build, test, and deploy predictive analytics solutions? A. Azure Logic Apps B. Azure Machine Learning Designer C. Azure Batch D. Azure Cosmos DB

Correct Answer: B Azure Machine Learning designer lets you visually connect datasets and modules on an interactive canvas to create machine learning models.

A support engineer plans to perform several Azure management tasks by using the Azure CLI. You install the CLI on a computer. You need to tell the support engineer which tools to use to run the CLI. Which two tools should you instruct the support engineer to use? Each correct answer presents a complete solution. NOTE: Each correct selection is worth one point. A. Command Prompt B. Azure Resource Explorer C. Windows PowerShell D. Windows Defender Firewall E. Network and Sharing Center

A. Command Prompt C. Windows PowerShell Correct Answer: A,C For Windows the Azure CLI is installed via an MSI, which gives you access to the CLI through the Windows Command Prompt (CMD) or PowerShell.

Which service provides serverless computing in Azure? A. Azure Virtual Machines B. Azure Functions C. Azure storage account D. Azure dedicated hosts

B. Azure Functions Correct Answer: B Azure Functions provide a platform for serverless code. Azure Functions is a serverless compute service that lets you run event-triggered code without having to explicitly provision or manage infrastructure.

Note: The question is included in a number of questions that depicts the identical set-up. However, every question has a distinctive result. Establish if the solution satisfies the requirements. A company that has numerous divisions is planning to deploy an Azure environment. The company would like each divisionג€™s option to pay for the Azure services it utilizes, not be the same. You have been asked to recommend a solution to meet the requirements. Solution: You recommend that an Azure role be created for each division. Does the solution meet the goal? A. Yes B. No

No. They need to have each division its own subscriptions if they want to control the costs. Solution: You recommend that a subscription be created for each division.

HOTSPOT -You need to manage Azure by using Azure Cloud Shell. Which Azure portal icon should you select? To answer, select the appropriate icon in the answer area. Hot Area:

Select the button on top right side which is similar to ">-" signed. First icon after the search bar

HOTSPOT -For each of the following statements, select Yes if the statement is true. Otherwise, select No. NOTE: Each correct selection is worth one point. Hot Area: Statements: To use Azure Active Directory (Azure AD) credentials to sign in to a computer that runs Windows 10, the computer must be joined to Azure AD. Yes or No Users in Azure Active Directory (Azure AD) are organized by using resource groups. Yes or No Azure Active Directory (Azure AD) groups support dynamic membership rules. Yes or No Users

Yes No Yes

Note: The question is included in a number of questions that depicts the identical set-up. However, every question has a distinctive result. Establish if the solution satisfies the requirements. You are required to deploy an Artificial Intelligence (AI) solution in Azure. You want to make sure that you are able to build, test, and deploy predictive analytics for the solution. Solution: You should make use of Azure Logic Apps. Does the solution meet the goal? A. Yes B. No

Answer is No Azure Logic Apps is a cloud-based platform for creating and running automated workflows that integrate your apps, data, services, and systems.

HOTSPOT -For each of the following statements, select Yes if the statement is true. Otherwise, select No. NOTE: Each correct selection is worth one point. Hot Area: Statements: Azure Advisor can generate a list of Azure virtual machines that are protected by Azure Backup. Yes or No If you implement the security recommendations provided by Azure Advisor, your company's secure score will decrease: Yes or No To maintain Microsoft support, you must implement the security recommendations provided by Azure Advisor within a period of 30 days: Yes or No

1. Azure Advisor can generate a list of VM's "NOT" protected by backup -> NO 2. You are aiming for an overall score of 100%, Score INCREASE when implementing recommendations -> NO 3. Microsoft Support is not dependent on recommendations being implemented -> NO Box 1: No -Azure Advisor does not generate a list of virtual machines that ARE protected by Azure Backup. Azure Advisor does however, generate a list of virtual that ARENOT protected by Azure Backup. You can view a list of virtual machines that are protected by Azure Backup by viewing the Protected Items in the Azure Recovery Services Vault. Box 2: No -If you implement the security recommendations, you companyג€™s score will increase, not decrease. Box 3: No -There is no requirement to implement the security recommendations provided by Azure Advisor. The recommendations are just that, ג€˜recommendationsג€™. They are not ג€˜requirementsג€™.

HOTSPOT -To complete the sentence, select the appropriate option in the answer area. Hot Area: You can enable just in time (JIT) VM access by using: A. Azure Bastion B. Azure Firewall C. Azure Front Door D. Azure Security Center

D. Azure Security Center The just-in-time (JIT) virtual machine (VM) access feature in Azure Security Center allows you to lock down inbound traffic to your Azure Virtual Machines. This reduces exposure to attacks while providing easy access when you need to connect to a VM.

HOTSPOT -You need to view a list of planned maintenance events that can affect the availability of an Azure subscription. Which blade should you use from the Azure portal? To answer, select the appropriate blade in the answer area. Hot Area: Pic of Microsoft Azure Home bar and Tabs"Blades"

Home > Help + support > Service Health > Planned maintenance

DRAG DROP -Match the Azure service to the correct description. Instructions: To answer, drag the appropriate Azure service from the column on the left to its description on the right. Each service may be used once, more than once, or not at all. NOTE: Each correct match is worth one point. Select and Place: Answer Options: Azure HDInsight Azure Data Lake Analytics Azure SQL Synapse Analytics Answer Area: _____: A managed relational cloud database service. _____: A cloud -based service that leverages massively parallel processing (MPP) to quickly run complex queries across petabytes of data in a relational database. _____: Can run massively parallel data transformation and processing programs across petabytes of data _____: An open-source framework for the distributed processing and analysis of big data sets in clusters

Relational: SQL Massive Relational: SQL Synapse Just Massive: Datake OPensource: HD Insight, HD = HadoOP Box 1: Azure SQL Database -SQL Server is a relational database service. Azure SQL Database is a managed SQL Server Database in Azure. The SQL Server is managed by Microsoft; you just have access to the database. Box 2: Azure SQL Synapse AnalyticsAzure SQL Synapse Analytics (previously called Data Warehouse) is a cloud-based Platform-as-a-Service (PaaS) offering from Microsoft. It is a large-scale, distributed, MPP (massively parallel processing) relational database technology in the same class of competitors as Amazon Redshift or Snowflake. Azure SQLSynapse Analytics is an important component of the Modern Data Warehouse multi-platform architecture. Because Azure SQL Synapse Analytics is an MPP system with a shared-nothing architecture across distributions, it is meant for large-scale analytical workloads which can take advantage of parallelism. Box 3: Azure Data Lake AnalyticsYou can process big data jobs in seconds with Azure Data Lake Analytics. You can process petabytes of data for diverse workload categories such as querying,ETL, analytics, machine learning, machine translation, image processing and sentiment analysis by leveraging existing libraries written in .NET languages, R orPython. Box 4: Azure HDInsight.Apache Hadoop was the original open-source framework for distributed processing and analysis of big data sets on clusters. The Hadoop ecosystem includes related software and utilities, including Apache Hive, Apache HBase, Spark, Kafka, and many others.Azure HDInsight is a fully managed, full-spectrum, open-source analytics service in the cloud for enterprises. The Apache Hadoop cluster type in Azure HDInsight allows you to use HDFS, YARN resource management, and a simple MapReduce programming model to process and analyze batch data in parallel.

You need to configure an Azure solution that meets the following requirements: ✑ Secures websites from attacks ✑ Generates reports that contain details of attempted attacks What should you include in the solution? A. Azure Firewall B. a network security group (NSG) C. Azure Information Protection D. DDoS protection

Attack is the Key word for DDOS. Rules is keyword for Firewall. Allow/Deny is the Keyword for NSG Azure Firewall doesn't protect from attacks, only filter traffic at layer 3 and layer 7, so DDoS is the correct answer.

What can you use to automatically send an alert if an administrator stops an Azure virtual machine? A. Azure Advisor B. Azure Service Health C. Azure Monitor D. Azure Network Watcher

Azure Monitor is correct answer. Azure Service Health provides the health/status of Azure service. Azure Monitor - Provides Health/Status of your application using insights and logs

DRAG DROP -Match the Azure services to the correct description. Instructions: To answer, drag the appropriate Azure service from the column on the left to its description on the right. Each service may be used once, more than once, or not at all. NOTE: Each correct selection is worth one point. Select and Place: Services: Azure Functions Azure App Service Azure virtual machines Azure Container Instances Answer Area: Provide operating system virtualization Provide portable environment for virtualized applications Used to build, deploy and scale web apps Provide a platform for serverless code

Box 1 - Azure Container Instances "A container virtualizes the underlying OS and causes the containerized app to perceive that it has the OS." Source: https://azure.microsoft.com/en-us/overview/what-is-a-container/ Note: Virtual Machines virtualize underlying hardware - not the OS! - so that multiple operating system (OS) instances can run on the hardware. Box 2 is Azure Virtual Machines "Another application of the VM is to provide the property of machine independence. This form, called application (or process) virtualization, creates an abstracted environment (for an application), making it independent of its physical environment. In addition to creating a portable environment in which to execute the object code, application virtualization provides an environment in which to isolate the VM from other applications running on the host." Source: https://www.ibm.com/developerworks/library/l-virtual-machine-architectures/index.html Box 3 - Azure App Service Box 4 - Azure Functions

HOTSPOT -For each of the following statements, select Yes if the statement is true. Otherwise, select No. NOTE: Each correct selection is worth one point. Hot Area: Statements: Azure Advisor provides recommendations on how to improve the security of an Azure Active Directory (Azure AD) environment. Yes or No Azure Advisor provides recommendations on how to reduce the cost of running Azure virtual machines. Yes or No Azure Advisor provides recommendations on how to configure the network settings on Azure virtual machines. Yes or No

Box 1: No -Azure Advisor provides you with a consistent, consolidated view of recommendations for all your Azure resources. It integrates with Azure Security Center to bring you security recommendations. You can get security recommendations from the Security tab on the Advisor dashboard. Examples of recommendations include restricting access to virtual machines by configuring Network Security Groups, enabling storage encryption, installing vulnerability assessment solutions. However, Azure Advisor does not provide recommendations on how to improve the security of an Azure AD environment. Box 2: Yes -Advisor helps you optimize and reduce your overall Azure spend by identifying idle and underutilized resources. You can get cost recommendations from the Cost tab on the Advisor dashboard. Box 3: No. Azure Advisor does not provide recommendations on how to configure network settings on Azure virtual machines.

HOTSPOT -To complete the sentence, select the appropriate option in the answer area. Hot Area: A. Azure policies provide B. Resource groups provide C. Azure Resource Manager templates provide D. Managements groups provide _____:a common platform for deploying objects to a cloud infrastructure and for implementing consistency across the Azure environment.

C. Azure Resource Manager templates provide Correct answer - ARM is just a template for deployment , policy/policies are just the rules that you can create and apply -you cannot use a rule to deploy - you use a common platform-ARM Azure Resource Manager templates provides a common platform for deploying objects to a cloud infrastructure and for implementing consistency across the Azure environment. Azure policies are used to define rules for what can be deployed and how it should be deployed. Whilst this can help in ensuring consistency, Azure policies do not provide the common platform for deploying objects to a cloud infrastructure.

You plan to deploy a website to Azure. The website will be accessed by users worldwide and will host large video files. You need to recommend which Azure feature must be used to provide the best video playback experience. What should you recommend? A. an application gateway B. an Azure ExpressRoute circuit C. a content delivery network (CDN) D. an Azure Traffic Manager profile

Correct Answer: C A Content delivery Network is a distributed network of server that can efficiently deliver a web content to user.

This question requires that you evaluate the underlined text to determine if it is correct. Azure Key Vault is used to store secrets for Azure Active Directory (Azure AD) user accounts. Instructions: Review the underlined text. If it makes the statement correct, select ג€No change is neededג€. If the statement is incorrect, select the answer choice that makes the statement correct. A. No change is needed B. Azure Active Directory (Azure AD) administrative accounts C. Personally Identifiable Information (PII) D. server applications

D. server applications Correct Answer: D Key Vault is designed to store configuration secrets for server apps. It's not intended for storing data belonging to your app's users, and it shouldn't be used in the client-side part of an app.

Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution. After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen. You have an Azure environment. You need to create a new Azure virtual machine from a tablet that runs the Android operating system. Solution: You use Bash in Azure Cloud Shell. Does this meet the goal? A. Yes B. No

YEs, we can use the Cloud shell from any device as long as it has a browser and access to the internet. Correct Answer: A With Azure Cloud Shell, you can create virtual machines using Bash or PowerShell. Azure Cloud Shell is an interactive, authenticated, browser-accessible shell for managing Azure resources. It provides the flexibility of choosing the shell experience that best suits the way you work, either Bash or PowerShell.

Your company plans to automate the deployment of servers to Azure. Your manager is concerned that you may expose administrative credentials during the deployment. You need to recommend an Azure solution that encrypts the administrative credentials during the deployment. What should you include in the recommendation? A. Azure Key Vault B. Azure Information Protection C. Azure Security Center D. Azure Multi-Factor Authentication (MFA)

A. Azure Key Vault Use Azure Key Vault to encrypt keys and small secrets like passwords that use keys stored in hardware security modules (HSMs). https://azure.microsoft.com/en-us/services/key-vault/ Question is about protecting credential during an automated deployment (e.g. not typing password in clear text in a JSON template or PS script), not protecting information inside documents (or logins). Azure Key Vault is the only correct answer for this scenario

Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution. After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen. You have an Azure subscription named Subscription1. You sign in to the Azure portal and create a resource group named RG1.From Azure documentation, you have the following command that creates a virtual machine named VM1. az vm create --resource-group RG1 --name VM1 --image UbuntuLTS --generate-ssh-keysYou need to create VM1 in Subscription1 by using the command. Solution: From the Azure portal, launch Azure Cloud Shell and select Bash. Run the command in Cloud Shell. Does this meet the goal? A. Yes B. No

A. Yes Answer is correct but need to understand why subscription and resource group are mentioned in question. While using the command subscription is not mentioned and some of us would look why subscription command was not used however all details mentioned in question was mentioned. For creating a virtual machine though power shall or bas, there is no requirement to put the subscription details. Name of VM and resource group are sufficient to create a vm. Lots of assumptions are being made here

An Azure administrator plans to run a PowerShell script that creates Azure resources. You need to recommend which computer configuration to use to run the script. Which three computers can run the script? Each correct answer presents a complete solution. NOTE: Each correct selection is worth one point. A. a computer that runs macOS and has PowerShell Core 6.0 installed. B. a computer that runs Windows 10 and has the Azure PowerShell module installed. C. a computer that runs Linux and has the Azure PowerShell module installed. D. a computer that runs Linux and has the Azure CLI tools installed. E. a computer that runs Chrome OS and uses Azure Cloud Shell.

A: wrong, you need Azure Powershell Module, Powershell only isn't enough B: correct, you have Powershell and the module to create Azure resources C: correct, you have Powershell and the module to create Azure resources D: wrong, with Azure CLI you don't execute Powershell script E: correct, from a browser you can connect to Azure Portal and execute Azure Powershell comdlet

DRAG DROP -Match the Azure service to the correct description. Instructions: To answer, drag the appropriate Azure service from the column on the left to its description on the right. Each service may be used once, more than once, or not at all. NOTE: Each correct selection is worth one point. Select and Place: Answer Options: Azure Machine Learning Azure IoT Hub Azure Bot Services Azure Functions Answer Area: _____: Provides a digital online assistant that provides speech support _____: Uses past trainings to provide predictions that have high probability _____: Provides serverless computing functionalities _____: Processes data from millions of sensors

Box 1:Azure Bot Services provides a digital online assistant that provides speech support. Bots provide an experience that feels less like using a computer and more like dealing with a person - or at least an intelligent robot. They can be used to shift simple, repetitive tasks, such as taking a dinner reservation or gathering profile information, on to automated systems that may no longer require direct human intervention. Users converse with a bot using text, interactive cards, and speech. A bot interaction can be a quick question and answer, or it can be a sophisticated conversation that intelligently provides access to services. Box 2:Azure Machine Learning uses past trainings to provide predictions that have high probability. Machine learning is a data science technique that allows computers to use existing data to forecast future behaviors, outcomes, and trends. By using machine learning, computers learn without being explicitly programmed. Forecasts or predictions from machine learning can make apps and devices smarter. For example, when you shop online, machine learning helps recommend other products you might want based on what you've bought. Box 3:Azure Functions provides serverless computing functionalities.Azure Functions is a serverless compute service that lets you run event-triggered code without having to explicitly provision or manage infrastructure. Box 4:IoT Hub (Internet of things Hub) provides data from millions of sensors. IoT Hub is a managed service, hosted in the cloud, that acts as a central message hub for bi-directional communication between your IoT application and the devices it manages. You can use Azure IoT Hub to build IoT solutions with reliable and secure communications between millions of IoT devices and a cloud- hosted solution backend. You can connect virtually any device to IoT Hub.

Note: The question is included in a number of questions that depicts the identical set-up. However, every question has a distinctive result. Establish if the solution satisfies the requirements. Your companyג€™s Active Directory forest includes thousands of user accounts. You have been informed that all network resources will be migrated to Azure. Thereafter, the on-premises data center will be retired. You are required to employ a strategy that reduces the effect on users, once the planned migration has been completed. Solution: You plan to enforce password change. Does the solution meet the goal? A. Yes B. No

No Correct answer is Azure Active Directory (Azure AD)

A team of developers at your company plans to deploy, and then remove, 50 virtual machines each week. All the virtual machines are configured by using AzureResource Manager templates. You need to recommend which Azure service will minimize the administrative effort required to deploy and remove the virtual machines. What should you recommend? A. Azure Reserved Virtual Machine (VM) Instances B. Azure DevTest Labs C. Azure virtual machine scale sets D. Microsoft Managed Desktop

Reserved VMs minimize cost and not administrative effort. Managed Desktop has nothing to do with this and scale sets is great but the keyword is "developer" and from the docs, Azure describes DevTest labs as: "Azure DevTest Labs enables developers on teams to efficiently self-manage virtual machines (VMs) and PaaS resources without waiting for approvals." Making DevTest Labs the right answer. Correct Answer: B DevTest Labs creates labs consisting of pre-configured bases or Azure Resource Manager templates. By using DevTest Labs, you can test the latest versions of your applications by doing the following tasks: ✑ Quickly provision Windows and Linux environments by using reusable templates and artifacts. ✑ Easily integrate your deployment pipeline with DevTest Labs to provision on-demand environments. ✑ Scale up your load testing by provisioning multiple test agents and create pre-provisioned environments for training and demos.

You have an Azure web app. You need to manage the settings of the web app from an iPhone. What are two Azure management tools that you can use? Each correct answer presents a complete solution. NOTE: Each correct selection is worth one point. A. Azure CLI B. the Azure portal C. Azure Cloud Shell D. Windows PowerShell E. Azure Storage Explorer

The correct answer is B and C. Anyone with and iPhone (IOS) can access B) the Azure portal and C) Azure Cloud Shell to manage an Azure web app settings. Correct Answer: B and C The Azure portal is the web-based portal for managing Azure. Being web-based, you can use the Azure portal on an iPhone. Azure Cloud Shell is a web-based command line for managing Azure. You access the Azure Cloud Shell from the Azure portal. Being web-based, you can use the Azure Cloud Shell on an iPhone. Incorrect Answers: A: Azure CLI can be installed on MacOS but it cannot be installed on an iPhone. D: Windows PowerShell can be installed on MacOS but it cannot be installed on an iPhone. E: Azure Storage Explorer is not used to manage Azure web apps.

Note: The question is included in a number of questions that depicts the identical set-up. However, every question has a distinctive result. Establish if the solution satisfies the requirements. Your company has an Azure Active Directory (Azure AD) environment. Users occasionally connect to Azure AD via the Internet. You have been tasked with making sure that users who connect to Azure AD via the internet from an unidentified IP address, are automatically encouraged to change passwords. Solution: You configure the use of Azure AD Identity Protection. Does the solution meet the goal? Yes No

Yes Azure AD Identity Protection. Risk detection and remediation Identity Protection identifies risks of many types, including: Anonymous IP address use Atypical travel Malware linked IP address Unfamiliar sign-in properties Leaked credentials Password spray

HOTSPOT -For each of the following statements, select Yes if the statement is true. Otherwise, select No. NOTE: Each correct selection is worth one point. Hot Area: Statements You can associate a network security group (NSG) to a virtual network subnet. Yes or No You can associate a network security group (NSG) to a virtual network. Yes or No You can associate a network security group (NSG) to a network interface. Yes or No

Yes No Yes Box 2 is Correct! - No! All of you guys saying that a Network Security Group (NSG) can be associated to a virtual network should be banned on taking this exam as you just misguide others. Please make some research before you decide to leave some worthless comment. "You can associate zero, or one, network security group to each virtual network subnet and network interface in a virtual machine. The same network security group can be associated to as many subnets and network interfaces as you choose." References: https://docs.microsoft.com/en-us/azure/virtual-network/network-security-group-how-it-works Note: It clearly says it must be either a subnet (not a virtual network) or a NIC.

Your company has several business units. Each business unit requires 20 different Azure resources for daily operation. All the business units require the same type of Azure resources. You need to recommend a solution to automate the creation of the Azure resources. What should you include in the recommendations? A. Azure Resource Manager templates B. virtual machine scale sets C. the Azure API Management service D. management groups

different resources, not VMs only. So A is correct as ARM templates are for every resource type. Correct Answer: A You can use Azure Resource Manager templates to automate the creation of the Azure resources. Deploying resource through templates is known asג€˜Infrastructure as codeג€™. To implement infrastructure as code for your Azure solutions, use Azure Resource Manager templates. The template is a JavaScript Object Notation (JSON) file that defines the infrastructure and configuration for your project. The template uses declarative syntax, which lets you state what you intend to deploy without having to write the sequence of programming commands to create it. In the template, you specify the resources to deploy and the properties for those resources.

Note: The question is included in a number of questions that depicts the identical set-up. However, every question has a distinctive result. Establish if the solution satisfies the requirements. Your company has an on-premises network with numerous servers, which they intend to migrate to Azure. You have been tasked with devising a plan that allows for the availability of a few of the servers, in the event that one of the Azure data centers becomes unavailable for a lengthy interval. Solution: You should include fault tolerance in your plan. Does the solution meet the goal? A. Yes B. No

Answer is A Correct. Fault tolerance is the capability to fail over when the primary resource is down.

Note: The question is included in a number of questions that depicts the identical set-up. However, every question has a distinctive result. Establish if the solution satisfies the requirements. You are required to deploy an Artificial Intelligence (AI) solution in Azure. You want to make sure that you are able to build, test, and deploy predictive analytics for the solution. Solution: You should make use of Azure Cosmos DB. Does the solution meet the goal? A. Yes B. No

Answer is NO. Azure Cosmos DB is a fully managed NoSQL database for modern app development. Single-digit millisecond response times, and automatic and instant scalability, guarantee speed at any scale.

This question requires that you evaluate the underlined text to determine if it is correct. Resource groups provide organizations with the ability to manage the compliance of Azure resources across multiple subscriptions. Instructions: Review the underlined text. If it makes the statement correct, select ג€No change is neededג€. If the statement is incorrect, select the answer choice that makes the statement correct. A. No change is needed B. Management groups C. Azure policies D. Azure App Service plans

B Msftlearn: "Azure management groups are containers for managing compliances across multiple subscriptions."

HOTSPOT -To complete the sentence, select the appropriate option in the answer area. Hot Area: You can access Compliance Manager from the : A. Azure Active Directory admin center B. Azure portal C. Microsoft 365 admin center D. Microsoft Service Trust Portal

C. Microsoft 365 admin center "Compliance Manager has moved from the Service Trust Portal to its new location in the Microsoft 365 compliance center. All customer data has been moved over to the new location, so you can continue using Compliance Manager without interruption. Refer to the Compliance Manager documentation for setup information and to learn about new features. Although the classic version of Compliance Manager remains in the Service Trust Portal, all users are encouraged to use Compliance Manager in the Microsoft 365 compliance center."

You have an Azure environment that contains 10 virtual networks and 100 virtual machines. You need to limit the amount of inbound traffic to all the Azure virtual networks. What should you create? A. one application security group (ASG) B. 10 virtual network gateways C. 10 Azure ExpressRoute circuits D. one Azure firewall

D. one Azure firewall NSG just block or open a port, Azure Firewall can "limit the amount of traffic", because it's a stateful firewall. So the answer is Azure Firewall Correct Answer: D You can restrict traffic to multiple virtual networks with a single Azure firewall. Azure Firewall is a managed, cloud-based network security service that protects your Azure Virtual Network resources. It's a fully stateful firewall as a service with built-in high availability and unrestricted cloud scalability. You can centrally create, enforce, and log application and network connectivity policies across subscriptions and virtual networks. Azure Firewall uses a static public IP address for your virtual network resources allowing outside firewalls to identify traffic originating from your virtual network.

Note: The question is included in a number of questions that depicts the identical set-up. However, every question has a distinctive result. Establish if the solution satisfies the requirements. Your company is planning to migrate all their virtual machines to an Azure pay-as-you-go subscription. The virtual machines are currently hosted on the Hyper-V hosts in a data center. You are required make sure that the intended Azure solution uses the correct expenditure model. Solution: You should recommend the use of the elastic expenditure model. Does the solution meet the goal? A. Yes B. No

No Elasticity is not an expenditure model rather is one of the characteristics of could computing. https://azure.microsoft.com/en-us/overview/what-is-elastic-computing/ The basic advantage of cloud computing is shifting your high Capital Expenditure (CAPEX) requirements to optimal Pay -As-You-Go model which is Operational Expenditure (OPEX) https://azure.microsoft.com/en-us/pricing/purchase-options/pay-as-you-go/

HOTSPOT -For each of the following statements, select Yes if the statement is true. Otherwise, select No. NOTE: Each correct selection is worth one point. Hot Area: Answer Area Statements: An Azure subscription can have multiple account administrators. Yes or No An Azure subscription can be managed by using a Microsoft account only. Yes or No An Azure resource group can contain multiple Azure subscriptions. Yes or No

1. Yes - You can assign additional account administrators in the Azure Portal. 2. No - You need an Azure Active Directory account to manage a subscription, not a Microsoft account. An account is created in the Azure Active Directory when you create the subscription. Further accounts can be created in the Azure Active Directory to manage the subscription 3. No. Resource groups are logical containers for Azure resources. However, resource groups do not contain subscriptions. Subscriptions contain resource groups.

Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution. After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen. An Azure administrator plans to run a PowerShell script that creates Azure resources. You need to recommend which computer configuration to use to run the script. Solution: Run the script from a computer that runs Windows 10 and has the Azure PowerShell module installed. Does this meet the goal? A. Yes B. No

Answer A. YES is correct. Windows 10 already comes with powershell installed. Only powershell AZ modules need to be installed on top of that, which the author/question is doing. Correct Answer: A A PowerShell script is a file that contains PowerShell cmdlets and code. A PowerShell script needs to be run in PowerShell.In this question, the computer has the Azure PowerShell module installed. Therefore, this solution does meet the goal.

Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution. After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen. You have an Azure subscription named Subscription1. You sign in to the Azure portal and create a resource group named RG1.From Azure documentation, you have the following command that creates a virtual machine named VM1. az vm create --resource-group RG1 --name VM1 --image UbuntuLTS--generate-ssh-keysYou need to create VM1 in Subscription1 by using the command. Solution: From a computer that runs Windows 10, install Azure CLI. From PowerShell, sign in to Azure and then run the command. Does this meet the goal?

Answer is 'Yes' Install Azure CLI in Windows 10, Run command from Powershell. During command execution we need to login Azure. Correct Answer: A The command can be run from PowerShell or the command prompt if you have the Azure CLI installed.

Note: The question is included in a number of questions that depicts the identical set-up. However, every question has a distinctive result. Establish if the solution satisfies the requirements. You have been informed by your superiors of the companyג€™s intentions to automate server deployment to Azure. There is, however, some concern that administrative credentials could be uncovered during this process. You are required to make sure that during the deployment, the administrative credentials are encrypted using a suitable Azure solution. Solution: You recommend the use of Azure Information Protection. Does the solution meet the goal? A. Yes B. No

Answer is No Azure Information Protection (AIP) is a cloud-based solution that enables organizations to discover, classify, and protect documents and emails by applying labels to content.

Your company has datacenters in Los Angeles and New York. The company has a Microsoft Azure subscription.You are configuring the two datacenters as geo-clustered sites for site resiliency.You need to recommend an Azure storage redundancy option.You have the following data storage requirements:Data must be stored on multiple nodes.Data must be stored on nodes in separate geographic locations.Data can be read from the secondary location as well as from the primary locationWhich of the following Azure stored redundancy options should you recommend? A. Geo-redundant storage B. Read-only geo-redundant storage C. Zone-redundant storage D. Locally redundant storage

Answer is correct(B). Geo-redundant storage (with GRS or GZRS) replicates your data to another physical location in the secondary region to protect against regional outages. However, that data is available to be read only if the customer or Microsoft initiates a failover from the primary to secondary region. When you enable read access to the secondary region, your data is available to be read at all times, including in a situation where the primary region becomes unavailable. For read access to the secondary region, enable read-access geo-redundant storage (RA-GRS) or read-access geo-zone-redundant storage (RA-GZRS).

Your Azure environment contains multiple Azure virtual machines. You need to ensure that a virtual machine named VM1 is accessible from the Internet over HTTP. What are two possible solutions? Each correct answer presents a complete solution. NOTE: Each correct selection is worth one point. A. Modify an Azure Traffic Manager profile B. Modify a network security group (NSG) C. Modify a DDoS protection plan D. Modify an Azure firewall

B. Modify a network security group (NSG) and D. Modify an Azure firewall A network security group works like a firewall. You can attach a network security group to a virtual network and/or individual subnets within the virtual network. You can also attach a network security group to a network interface assigned to a virtual machine. You can use multiple network security groups within a virtual network to restrict traffic between resources such as virtual machines and subnets. You can filter network traffic to and from Azure resources in an Azure virtual network with a network security group. A network security group contains security rules that allow or deny inbound network traffic to, or outbound network traffic from, several types of Azure resources. In this question, we need to add a rule to the network security group to allow the connection to the virtual machine on port 80 (HTTP).

DRAG DROP -Match the Azure services to the correct descriptions. Instructions: To answer, drag the appropriate Azure service from the column on the left to its description on the right. Each service may be used once, more than once, or not at all. NOTE: Each correct match is worth one point Select and Place: Azure Services: Azure Machine Learning Azure Synapse Analytics Azure IoT Hub Azure Functions Answer Area: _____: Provides a cloud-based Enterprise Data Warehouse (EDW) _____: Uses past trainings to provide predictions that have high probability. _____: Provides serverless computing functionalities. _____: Processes data from millions of sensors

Box 1: Azure SQL Synapse Analytics Azure SQL Synapse Analytics (previously called Data Warehouse) is a cloud-based Platform-as-a-Service (PaaS) offering from Microsoft. It is a large-scale, distributed, MPP (massively parallel processing) relational database technology in the same class of competitors as Amazon Redshift or Snowflake. Azure SQL Synapse Analytics is an important component of the Modern Data Warehouse multi-platform architecture. Because Azure SQL Synapse Analytics is an MPP system with a shared-nothing architecture across distributions, it is meant for large-scale analytical workloads which can take advantage of parallelism. Box 2:Azure Machine Learning uses past trainings to provide predictions that have high probability. Machine learning is a data science technique that allows computers to use existing data to forecast future behaviors, outcomes, and trends. By using machine learning, computers learn without being explicitly programmed. Forecasts or predictions from machine learning can make apps and devices smarter. For example, when you shop online, machine learning helps recommend other products you might want based on what you've bought. Box 3:Azure Functions provides serverless computing functionalities.Azure Functions is a serverless compute service that lets you run event-triggered code without having to explicitly provision or manage infrastructure.Box 4:IoT Hub (Internet of things Hub) provides data from millions of sensors.IoT Hub is a managed service, hosted in the cloud, that acts as a central message hub for bi-directional communication between your IoT application and the devices it manages. You can use Azure IoT Hub to build IoT solutions with reliable and secure communications between millions of IoT devices and a cloud- hosted solution backend. You can connect virtually any device to IoT Hub.

Your company has virtual machines (VMs) hosted in Microsoft Azure. The VMs are located in a single Azure virtual network named VNet1.The company has users that work remotely. The remote workers require access to the VMs on VNet1.You need to provide access for the remote workers. What should you do? A. Configure a Site-to-Site (S2S) VPN. B. Configure a VNet-toVNet VPN. C. Configure a Point-to-Site (P2S) VPN. D. Configure DirectAccess on a Windows Server 2012 server VM. E. Configure a Multi-Site VPN

C A Point-to-Site (P2S) VPN gateway connection lets you create a secure connection to your virtual network from an individual client computer. ... P2S VPN is also a useful solution to use instead of S2S VPN when you have only a few clients that need to connect to a VNet.

Your company plans to deploy several million sensors that will upload data to Azure. You need to identify which Azure resources must be created to support the planned solution. Which two Azure resources should you identify? Each correct answer presents part of the solution. NOTE: Each correct selection is worth one point. A. Azure Data Lake B. Azure Queue storage C. Azure File Storage D. Azure IoT Hub E. Azure Notification Hubs

Correct Answer: A and D IoT Hub (Internet of things Hub) provides data from millions of sensors. IoT Hub is a managed service, hosted in the cloud, that acts as a central message hub for bi-directional communication between your IoT application and the devices it manages. You can use Azure IoT Hub to build IoT solutions with reliable and secure communications between millions of IoT devices and a cloud- hosted solution backend. You can connect virtually any device to IoT Hub. There are two storage services IoT Hub can route messages to -- Azure Blob Storage and Azure Data Lake Storage Gen2 (ADLS Gen2) accounts. Azure DataLake Storage accounts are hierarchical namespace-enabled storage accounts built on top of blob storage. Both of these use blobs for their storage.

You have an Azure environment. You need to create a new Azure virtual machine from a tablet that runs the Android operating system. What are three possible solutions? Each correct answer presents a complete solution. NOTE: Each correct selection is worth one point. A. Use Bash in Azure Cloud Shell. B. Use PowerShell in Azure Cloud Shell. C. Use the PowerApps portal. D. Use the Security & Compliance admin center. E. Use the Azure portal.

Correct Answer: ABE A. Use Bash in Azure Cloud Shell. B. Use PowerShell in Azure Cloud Shell. E. Use the Azure portal. The Android tablet device will have a web browser (Chrome). Thatג€™s enough to connect to the Azure portal. The Azure portal offers three ways to create a VM: ✑ Using the graphical portal. ✑ Using the Azure Cloud Shell using Bash. ✑ Using the Azure Cloud Shell using PowerShell.

You have an on-premises application that sends email notifications automatically based on a rule.You plan to migrate the application to Azure.You need to recommend a serverless computing solution for the application.What should you include in the recommendation? A. a web app B. a server image in Azure Marketplace C. a logic app D. an API app

Correct Answer: C B - it's a server, you need a serverless solution D - API, no! you need to migrate the whole app A - web app, no, NO because web requires a server. The web is nothing but a huge WAN composed of many, many LANs. C - Whereas logic apps at least tells no conflicting information and implies you can migrate the whole app to it. Also the word "logic" refers to the email app sending emails "based on one rule". So I imagine it is done automatically, or 'logically'. Hence they are requiring a ServerLESS solution!

HOTSPOT -Several support engineers plan to manage Azure by using the computers shown in the following table: Name : Operating system Computer 1 : Windows 10 Computer 2: Ubuntu Computer 3: MacOS Mojave You need to identify which Azure management tools can be used from each computer. What should you identify for each computer? To answer, select the appropriate options in the answer area. NOTE: Each correct selection is worth one point. Hot Area: Computer 1: A. The Azure CLI and the Azure portal B. The Azure portal and Azure PowerShell C. The Azure CLI and Azure PowerShell D. The Azure CLI, the Azure portal, and Azure PowerShell Computer 2: A. The Azure CLI and the Azure portal B. The Azure portal and Azure PowerShell C. The Azure CLI and Azure PowerShell D. The Azure CLI, the Azure portal, and Azure PowerShell Computer 3: A. The Azure CLI and the Azure portal B. The Azure portal and Azure PowerShell C. The Azure CLI and Azure PowerShell D. The Azure CLI, the Azure portal, and Azure PowerShell

D for all 3 D. The Azure CLI, the Azure portal, and Azure PowerShell Previously, the Azure CLI (or x-plat CLI) was the only option for managing Azure subscriptions and resources from the command-line on Linux and macOS. Now with the open source and cross-platform release of PowerShell, youג€™ll be able to manage all your Azure resources from Windows, Linux and macOS using your tool of choice, either the Azure CLI or Azure PowerShell cmdlets. The Azure portal runs in a web browser so can be used in either operating system.

DRAG DROP -Match the Azure service to the correct definition. Instructions: To answer, drag the appropriate Azure service from the column on the left to its description on the right. Each service may be used once, more than once, or not at all. NOTE: Each correct match is worth one point. Select and Place: Answer Options: Azure Advisor Azure Cognitive Services Azure Application Insights Azure DevOps Answer Area: _____: An integrated solution for deployment of Code _____: A tool that provides guidance and recommendations to improve an Azure environment _____: A simplified tool to build intelligent Artificial Intelligence (AI) Applications _____: Monitors web applications

DevOps = code deploy Advisor = guidance Cognitive = Intelligence Insight = Monitor Box 1: Azure DevOps. Azure DevOps is Microsoftג€™s primary software development and deployment platform. DevOps influences the application lifecycle throughout its plan, develop, deliver and operate phases. Box 2: Azure Advisor. Advisor is a personalized cloud consultant that helps you follow best practices to optimize your Azure deployments. It analyzes your resource configuration and usage telemetry and then recommends solutions that can help you improve the cost effectiveness, performance, high availability, and security of your Azure resources. Box 3: Azure Cognitive Services. Azure Cognitive Services are APIs, SDKs, and services available to help developers build intelligent applications without having direct AI or data science skills or knowledge. Azure Cognitive Services enable developers to easily add cognitive features into their applications. The goal of Azure Cognitive Services is to help developers create applications that can see, hear, speak, understand, and even begin to reason. The catalog of services within Azure Cognitive Services can be categorized into five main pillars - Vision, Speech, Language, Web Search, and Decision. Box 4. Azure Application Insights. Azure Application Insights detects and diagnoses anomalies in web apps. Application Insights, a feature of Azure Monitor, is an extensible Application Performance Management (APM) service for developers and DevOps professionals. Use it to monitor your live applications. It will automatically detect performance anomalies, and includes powerful analytics tools to help you diagnose issues and to understand what users actually do with your app.

HOTSPOT -You plan to implement several security services for an Azure environment. You need to identify which Azure services must be used to meet the following security requirements: ✑ Monitor threats by using sensors ✑ Enforce Azure Multi-Factor Authentication (MFA) based on a condition Which Azure service should you identify for each requirement? To answer, select the appropriate options in the answer area. NOTE: Each correct selection is worth one point. Hot Area: Answer Area: Monitor threats by using sensors: A. Azure Monitor B. Azure Security Center C. Azure Active Directory (Azure AD) Identity Protection D. Azure Advanced Threat Protection (ATP) Enforce Azure MFA based on a condition: A. Azure Monitor B. Azure Security Center C. Azure Active Directory (Azure AD) Identity Protection D. Azure Advanced Threat Protection (ATP)

Monitor threats by using sensors: D. Azure Advanced Threat Protection (ATP) and Enforce Azure MFA based on a condition: C. Azure Active Directory (Azure AD) Identity Protection Box 1: To monitor threats by using sensors, you would use Azure Advanced Threat Protection (ATP).Azure Advanced Threat Protection (ATP) is a cloud-based security solution that leverages your on-premises Active Directory signals to identify, detect, and investigate advanced threats, compromised identities, and malicious insider actions directed at your organization. Sensors are software packages you install on your servers to upload information to Azure ATP. Box 2:To enforce MFA based on a condition, you would use Azure Active Directory Identity Protection. Azure AD Identity Protection helps you manage the roll-out of Azure Multi-Factor Authentication (MFA) registration by configuring a Conditional Access policy to require MFA registration no matter what modern authentication app you are signing in to.

HOTSPOT -To complete the sentence, select the appropriate option in the answer area. Hot Area: Data that is stored in the Archive access tier of an Azure Storage account: A. Can be accessed at any time using azcopy.exe B. Can only be read by using Azure Backup C. Must be restored before the data can be accessed. D. Must be rehydrated before the data can be accessed.

Must be rehydrated before the can be accessed. Azure storage offers different access tiers: hot, cool and archive. The archive access tier has the lowest storage cost. But it has higher data retrieval costs compared to the hot and cool tiers. Data in the archive tier can take several hours to retrieve. While a blob is in archive storage, the blob data is offline and can't be read, overwritten, or modified. To read or download a blob in archive, you must first rehydrate it to an online tier. Example usage scenarios for the archive access tier include:✑ Long-term backup, secondary backup, and archival datasets✑ Original (raw) data that must be preserved, even after it has been processed into final usable form.✑ Compliance and archival data that needs to be stored for a long time and is hardly ever accessed.

Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution. After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen. You have an Azure subscription named Subscription1. You sign in to the Azure portal and create a resource group named RG1.From Azure documentation, you have the following command that creates a virtual machine named VM1. az vm create --resource-group RG1 --name VM1 --image UbuntuLTS--generate-ssh-keysYou need to create VM1 in Subscription1 by using the command.Solution: From a computer that runs Windows 10, install Azure CLI. From a command prompt, sign in to Azure and then run the command. Does this meet the goal? A. Yes B. No

The answer should ne YES. Because Azure CLI need to log in with the command az login. Correct Answer: A The command can be run from PowerShell or the command prompt if you have the Azure CLI installed.

Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution. After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen. An Azure administrator plans to run a PowerShell script that creates Azure resources. You need to recommend which computer configuration to use to run the script. Solution: Run the script from a computer that runs macOS and has PowerShell Core 6.0 installed. Does this meet the goal? A. Yes B. No

The computer has PowerShell Core 6.0, but it doesn't have the Azure CLI installed. There is no mention of that in the question. You need Azure PowerShell module in addition to PowerShell to run Azure commands, such as New-AzVM. Therefore, the answer should be B, No.

HOTSPOT -You need to identify which blades in the Azure portal must be used to perform the following tasks:✑ View security recommendations.✑ Monitor the health of Azure services.✑ Browse available virtual machine images. Which blade should you identify for each task? To answer, select the appropriate options in the answer area. NOTE: Each correct selection is worth one point. Hot Area: Monitor the health of Azure services: A. Monitor B. Subscriptions C. Marketplace D. Advisor Browse available virtual machine images: A. Monitor B. Subscriptions C. Marketplace D. Advisor View security recommendations: A. Monitor B. Subscriptions C. Marketplace D. Advisor

health = monitor, images = marketplace, recommendations = advisor Box 1:Azure Monitor is used to monitor the health of Azure services. Azure Monitor maximizes the availability and performance of your applications and services by delivering a comprehensive solution for collecting, analyzing, and acting on telemetry from your cloud and on-premises environments. It helps you understand how your applications are performing and proactively identifies issues affecting them and the resources they depend on. Box 2:You can browse available virtual machine images in the Azure Marketplace. Azure Marketplace provides access and information on solutions and services available from Microsoft and their partners. Customers can discover, try, or buy cloud software solutions built on or for Azure. The catalog of 8,000+ listings provides Azure building blocks, such as Virtual Machines (VMs), APIs, Azure apps, Solution Templates and managed applications, SaaS apps, containers, and consulting services. Box 3.Azure Advisor displays security recommendations. Azure Advisor provides you with a consistent, consolidated view of recommendations for all your Azure resources. It integrates with Azure Security Center to bring you security recommendations. You can get security recommendations from the Security tab on the Advisor dashboard. Security Center helps you prevent, detect, and respond to threats with increased visibility into and control over the security of your Azure resources. It periodically analyzes the security state of your Azure resources. When Security Center identifies potential security vulnerabilities, it creates recommendations. The recommendations guide you through the process of configuring the controls you need.

Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution. After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen. You have an Azure subscription named Subscription1. You sign in to the Azure portal and create a resource group named RG1.From Azure documentation, you have the following command that creates a virtual machine named VM1. az vm create --resource-group RG1 --name VM1 --image UbuntuLTS --generate-ssh-keysYou need to create VM1 in Subscription1 by using the command. Solution: From the Azure portal, launch Azure Cloud Shell and select PowerShell. Run the command in Cloud Shell. Does this meet the goal? A. Yes B. No

you can run your Bash, and Azure CLI commands in the PowerShell console. It supports both! Correct Answer: A The command can be run in the Azure Cloud Shell. Although this question says you select PowerShell rather than Bash, the Az commands will work inPowerShell.The Azure Cloud Shell is a free interactive shell. It has common Azure tools preinstalled and configured to use with your account.To open the Cloud Shell, just select Try it from the upper right corner of a code block. You can also launch Cloud Shell in a separate browser tab by going to https://shell.azure.com/bash.

HOTSPOT -You plan to deploy a critical line-of-business application to Azure. The application will run on an Azure virtual machine. You need to recommend a deployment solution for the application. The solution must provide a guaranteed availability of 99.99 percent. What is the minimum number of virtual machines and the minimum number of availability zones you should recommend for the deployment? To answer, select the appropriate options in the answer area. NOTE: Each correct selection is worth one point. Hot Area: Minimum number of virtual machines: 1, 2 or 3. Minimum number of available zones: 1,2 or 3.

2 and 2 "For all Virtual Machines that have two or more instances deployed across two or more Availability Zones in the same Azure region, we guarantee you will have Virtual Machine Connectivity to at least one instance at least 99.99% of the time."

You have an Azure environment that contains multiple Azure virtual machines.You plan to implement a solution that enables the client computers on your on-premises network to communicate to the Azure virtual machines.You need to recommend which Azure resources must be created for the planned solution.Which two Azure resources should you include in the recommendation? Each correct answer presents part of the solution.NOTE: Each correct selection is worth one point. A. a virtual network gateway B. a load balancer C. an application gateway D. a virtual network E. a gateway subnet

A and E To implement a solution that enables the client computers on your on-premises network to communicate to the Azure virtual machines, you need to configure aVPN (Virtual Private Network) to connect the on-premises network to the Azure virtual network.The Azure VPN device is known as a Virtual Network Gateway. The virtual network gateway needs to be located in a dedicated subnet in the Azure virtual network. This dedicated subnet is known as a gateway subnet and must be named ג€˜GatewaySubnetג€™.Note: a virtual network (answer D) is also required. However, as we already have virtual machines deployed in a Azure, we can assume that the virtual network is already in place. Check answer discussion again

DRAG DROP -Match the Azure Services service to the correct description. Instructions: To answer, drag the appropriate service from the column on the left to its description on the right. Each service may be used once, more than once, or not at all. NOTE: Each correct selection is worth one point. Select and Place: Services: Azure Sphere IoT Central IoT Hub Answer Area: A managed service that provides bidirectional communication between IoT devices and Azure A fully managed software as (SaaS) solution to connect, monitor and manage IoT devices as scale A software and hardware solution that provides communication and security features for IoT devices

A managed service that provides bidirectional communication between IoT devices and Azure: IoT Hub A fully managed software as (SaaS) solution to connect, monitor and manage IoT devices as scale: IoT Central A software and hardware solution that provides communication and security features for IoT devices: Azure Sphere Easy phonetic way to remember: Sphere = Secure Central = Monitor Hub = not the other two, just telemetry ;)

You plan to deploy several Azure virtual machines.You need to ensure that the services running on the virtual machines remain available if a single data center fails.What are two possible solutions? Each correct answer presents a complete solution. A. Deploy the virtual machines to two or more availability zones. B. Deploy the virtual machines to two or more resource groups. C. Deploy the virtual machines to a scale set. D. Deploy the virtual machines to two or more regions.

A. Deploy the virtual machines to two or more availability zones. D. Deploy the virtual machines to two or more regions.

HOTSPOT -To complete the sentence, select the appropriate option in the answer area. Hot Area: You have several virtual machines in an Azure subscription. You create a new subscription A. The virtual machines cannot be moved to the new subscription. B. The virtual machines can be moved to the new subscription C. The virtual machines can be moved to the new subscription only if they are all in the same resource group. D. The virtual machines can be moved to the new subscription only if they run Windows Server 2016

B. The virtual machines can be moved to the new subscription You can move a VM and its associated resources to a different subscription by using the Azure portal. Moving between subscriptions can be handy if you originally created a VM in a personal subscription and now want to move it to your company's subscription to continue your work. You do not need to start the VM in order to move it and it should continue to run during the move.

HOTSPOT -To complete the sentence, select the appropriate option in the answer area. Hot Area: An Availability Zone in Azure has physically separate locations: A. Across two continents. B. Within a single Azure region C. Within multiple Azure regions. D. Within a single Azure datacenter

B. Within a single Azure region. Availability Zones is a high-availability offering that protects your applications and data from datacenter failures. Availability Zones are unique physical locations within an Azure region.

Note: The question is included in a number of questions that depicts the identical set-up. However, every question has a distinctive result. Establish if the solution satisfies the requirements. Your companyג€™s Active Directory forest includes thousands of user accounts. You have been informed that all network resources will be migrated to Azure. Thereafter, the on-premises data center will be retired. You are required to employ a strategy that reduces the effect on users, once the planned migration has been completed. Solution: You plan to require Azure Multi-Factor Authentication (MFA).Does the solution meet the goal? A. Yes B. No

Correct answer is B (NO) The best way to resolve this issue would be to sync all the Active Directory user accounts to Azure Active Directory (Azure AD).

Note: The question is included in a number of questions that depicts the identical set-up. However, every question has a distinctive result. Establish if the solution satisfies the requirements. Your companyג€™s on-premises network includes a large number of servers. They would like to make extra resources available to their users, while keeping capital and operational overheads to a minimum. You are required to make recommendations that should be included in the overall solution. Solution: You should indorse the use of a private cloud as part of the solution. Does the solution meet the goal? A. Yes B. No

Go back to discussion

HOTSPOT -For each of the following statements, select Yes if the statement is true. Otherwise, select No. NOTE: Each correct selection is worth one point. Hot Area: Statements: If you have Azure resources deployed to every region, you can implement availability zones in all the regions. Yes or No Only virtual machines that run Windows Server can be created in availability zones. Yes or No Availability zones are used to replicate data and applications to multiple regions. Yes or No

NO-NO-NO 1-Not every region has multiple Availability Zone. Some regions may have only one Availability Zone. 2-One can run both Linux and Windows virtual machines created in the availability zone. 3-Availability zones are used to replicate data and applications in the same region.

Note: The question is included in a number of questions that depicts the identical set-up. However, every question has a distinctive result. Establish if the solution satisfies the requirements. Your company is planning to migrate all their virtual machines to an Azure pay-as-you-go subscription. The virtual machines are currently hosted on the Hyper-V hosts in a data center. You are required make sure that the intended Azure solution uses the correct expenditure model. Solution: You should recommend the use of the scalable expenditure model. Does the solution meet the goal?

No Answer is No, Because Correct Expenditure model is Operational Expenditure. In this case, Scalable is Capital Expenditure.

Note: The question is included in a number of questions that depicts the identical set-up. However, every question has a distinctive result. Establish if the solution satisfies the requirements. You are currently trying to generate a number of managed Microsoft SQL Server instances in an Azure environment. During the process, you are presented with a notification informing you that the Azure subscription limits must be increased. You want to make sure that you can complete your task. Solution: You alter an Azure policy. Does the solution meet the goal? A. Yes B. No

No Azure Policy helps to enforce organizational standards and to assess compliance at-scale. Through its compliance dashboard, it provides an aggregated view to evaluate the overall state of the environment, with the ability to drill down to the per-resource, per-policy granularity. It also helps to bring your resources to compliance through bulk remediation for existing resources and automatic remediation for new resources. Common use cases for Azure Policy include implementing governance for resource consistency, regulatory compliance, security, cost, and management. Policy definitions for these common use cases are already available in your Azure environment as built-ins to help you get started. Solution: You generate a new support request.

Note: The question is included in a number of questions that depicts the identical set-up. However, every question has a distinctive result. Establish if the solution satisfies the requirements. Your company has an Azure Active Directory (Azure AD) environment. Users occasionally connect to Azure AD via the Internet. You have been tasked with making sure that users who connect to Azure AD via the internet from an unidentified IP address, are automatically encouraged to change passwords. Solution: You configure the use of Azure AD Privileged Identity Management. Does the solution meet the goal? A. Yes B. No

No Correct answer is Azure Identity Protection Azure AD Privileged Identity Management provides time-based and approval-based role activation to mitigate the risks of excessive, unnecessary, or misused access permissions on resources that you care about. Here are some of the key features of Privileged Identity Management: Provide just-in-time privileged access to Azure AD and Azure resources Assign time-bound access to resources using start and end dates Require approval to activate privileged roles Enforce multi-factor authentication to activate any role Use justification to understand why users activate Get notifications when privileged roles are activated Conduct access reviews to ensure users still need roles Download audit history for internal or external audit Prevents removal of the last active Global Administrator role assignment

Your developers have created 10 web applications that must be host on Azure.You need to determine which Azure web tier plan to host the web apps. The web tier plan must meet the following requirements:The web apps will use custom domains.The web apps each require 10 GB of storage.The web apps must each run in dedicated compute instances.Load balancing between instances must be included.Costs must be minimized.Which web tier plan should you use? A. Standard B. Basic C. Free D. Shared

Please read the requirements: Many are not noting here the load balancing fact. The web apps will use custom domains. (Basic, Shared and standard Support custom domain) The web apps each require 10 GB of storage. (basic and standard support this) The web apps must each run in dedicated compute instances.(basic support 3 instance max where standard support 10max) Load balancing between instances must be included. (free, shared and basic dont support load balancing. standard and above tier only support load balancing/autosacling) Costs must be minimized. Standard is less costier than premimum and isolated. I hope this is clear to chose the correct answer as STANDARD. Standard offers 50 GB of storage space, while Basic only gives 10 GB.

HOTSPOT -For each of the following statements, select Yes if the statement is true. Otherwise, select No. NOTE: Each correct selection is worth one point. Hot Area: Statements: North America is represented by a single Azure region. Yes or No Every Azure region has multiple datacenters: Yes or No Data transfers between Azure services located in different Azure regions are always free. Yes or No

Q1 - No, Q2 - No, Q3 - No. Q2 Explanation: "Simply put, an Azure Region is a set of Datacenters that are connected through a dedicated low-latency network. How many datacenters does a region contain. Well, we do not have a fixed number. It varies. There are regions of different sizes. A Region could be made up of just 1 dataceneter or multiple datacenters. The point is, an Azure Region is a group of one or more Azure Datacenters."

Note: The question is included in a number of questions that depicts the identical set-up. However, every question has a distinctive result. Establish if the solution satisfies the requirements. Your company has an on-premises network with numerous servers, which they intend to migrate to Azure. You have been tasked with devising a plan that allows for the availability of a few of the servers, in the event that one of the Azure data centers becomes unavailable for a lengthy interval. Solution: You should include scalability in your plan. Does the solution meet the goal?

Scalability is the ability to handle increased load. Re this question we are looking for HA / fault tolerance.

DRAG DROP -Match the Azure service to the correct definition. Instructions: To answer, drag the appropriate Azure service from the column on the left to its description on the right. Each service may be used once, more than once, or not at all. NOTE: Each correct selection is worth one point. Select and Place: Answer Options: Azure Databricks Azure Functions Azure App Service Azure Application Insights Answer Area: ____ - Provides the platform for serverless code ____ - A big data analysis service for machine learning ____ - Detects diagnoses anomalies in web apps ____ - Hosts web apps

Serverless ---> Functions big data analysis ---> databricks anomalies ---> Insights Host ---> App Service Box 1:Azure Functions provides the platform for serverless code.Azure Functions is a serverless compute service that lets you run event-triggered code without having to explicitly provision or manage infrastructure. Box 2:Azure Databricks is a big analysis service for machine learning.Azure Databricks is an Apache Spark-based analytics platform. The platform consists of several components including ג€˜MLibג€™. Mlib is a Machine Learning library consisting of common learning algorithms and utilities, including classification, regression, clustering, collaborative filtering, dimensionality reduction, as well as underlying optimization primitives. Box 3:Azure Application Insights detects and diagnoses anomalies in web apps.Application Insights, a feature of Azure Monitor, is an extensible Application Performance Management (APM) service for developers and DevOps professionals.Use it to monitor your live applications. It will automatically detect performance anomalies, and includes powerful analytics tools to help you diagnose issues and to understand what users actually do with your app. Box 4:Azure App Service hosts web apps.Azure App Service is an HTTP-based service for hosting web applications, REST APIs, and mobile back ends. You can develop in your favorite language, be it.NET, .NET Core, Java, Ruby, Node.js, PHP, or Python. Applications run and scale with ease on both Windows and Linux-based environments.

Your developers have created a portal web app for users in the Miami branch office. The web app will be publicly accessible and used by the Miami users to retrieve customer and product information. The web app is currently running in an on-premises test environment.You plan to host the web app on Azure.You need to determine which Azure web tier plan to host the web app. The web tier plan must meet the following requirements:The website will use the miami.weyland.com URL.The website will be deployed to two instances.SSL support must be included.The website requires 12 GB of storage.Costs must be minimized.Which web tier plan should you use? A. Standard B. Basic C. Free D. Shared

So the answer is Standard. The website will use the miami.weyland.com URL. - means custom domain. supported by shared, basic, standard and above tiers. The website will be deployed to two instances. supported from basic tier and above SSL support must be included. (Standard and Premium service plans include the right to use one IP SSL at no additional charge per App Service Plan. Free and shared service plans do not support SSL.) The website requires 12 GB of storage. (basic provides 10GBonly whereas standard provides 50GB) Costs must be minimized. Standard is less costlier than premium and isolated tier.

HOTSPOT -To complete the sentence, select the appropriate option in the answer area. Hot Area: Answer Area: __________: Can calculate cost savings due to reduced electricity consumption as a result of migrating on-premises Microsoft SQL servers to Azure. A. The Azure Migrate: Server Assessment tool B. The Azure Total Cost of Ownership (TCO) calculator C. The Database Migration Assistant D. The pricing calculator in Azure

The Azure Total Cost of Ownership(TCO) Calculator The Azure Total Cost of Ownership(TCO) Calculator is used to estimate the cost savings you can achieve by migrating your application workloads to Microsoft.

Note: The question is included in a number of questions that depicts the identical set-up. However, every question has a distinctive result. Establish if the solution satisfies the requirements. Your companyג€™s infrastructure includes a number of business units that each need a large number of various Azure resources for everyday operation. The resources required by each business unit are identical. You are required to sanction a strategy to create Azure resources automatically. Solution: You recommend that management groups be included in the strategy. Does the solution meet the goal? A. Yes B. No

The correct answer is B (No). Azure management groups help you organize your resources and subscriptions.

Note: The question is included in a number of questions that depicts the identical set-up. However, every question has a distinctive result. Establish if the solution satisfies the requirements. Your companyג€™s Active Directory forest includes thousands of user accounts. You have been informed that all network resources will be migrated to Azure. Thereafter, the on-premises data center will be retired. You are required to employ a strategy that reduces the effect on users, once the planned migration has been completed. Solution: You plan to sync all the Active Directory user accounts to Azure Active Directory (Azure AD).Does the solution meet the goal? A. Yes B. No

Yes

Note: The question is included in a number of questions that depicts the identical set-up. However, every question has a distinctive result. Establish if the solution satisfies the requirements. Your companyג€™s infrastructure includes a number of business units that each need a large number of various Azure resources for everyday operation. The resources required by each business unit are identical. You are required to sanction a strategy to create Azure resources automatically. Solution: You recommend that the Azure Resource Manager templates be included in the strategy. Does the solution meet the goal? A. Yes B. No

Yes Key word is "Azure resources automatically". So for this Azure Resource Manager templates should be used

Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution. After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen. You plan to deploy several Azure virtual machines. You need to ensure that the services running on the virtual machines are available if a single data center fails. Solution: You deploy the virtual machines to two or more scale sets. Does this meet the goal? A. Yes B. No

answer is "No / B". Virtual Machine Scale Sets let you create and manage a group of identical, load balanced VMs. The number of VM instances can automatically increase or decrease in response to demand or a defined schedule. What provide Data Center fault tolerant, is "Availability Set".

Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution. After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen. You have an Azure environment. You need to create a new Azure virtual machine from a tablet that runs the Android operating system. Solution: You use PowerShell in Azure Cloud Shell. Does this meet the goal? A. Yes B. No

Yes Correct Answer: A Azure Cloud Shell is a browser-based shell experience to manage and develop Azure resources. Cloud Shell offers a browser-accessible, pre-configured shell experience for managing Azure resources without the overhead of installing, versioning, and maintaining a machine yourself. Being browser-based, Azure Cloud Shell can be run on a browser from a tablet that runs the Android operating system.

Note: The question is included in a number of questions that depicts the identical set-up. However, every question has a distinctive result. Establish if the solution satisfies the requirements. You are currently trying to generate a number of managed Microsoft SQL Server instances in an Azure environment. During the process, you are presented with a notification informing you that the Azure subscription limits must be increased. You want to make sure that you can complete your task. Solution: You generate a new support request. Does the solution meet the goal? A. Yes B. No

Yes Answer is Yes, to increase the Limit we have to request a support.

Note: The question is included in a number of questions that depicts the identical set-up. However, every question has a distinctive result. Establish if the solution satisfies the requirements. You have been informed by your superiors of the companyג€™s intentions to automate server deployment to Azure. There is, however, some concern that administrative credentials could be uncovered during this process. You are required to make sure that during the deployment, the administrative credentials are encrypted using a suitable Azure solution. Solution: You recommend the use of Azure Key Vault. Does the solution meet the goal? A. Yes B. No

Yes Azure Key Vault is a cloud service that provides a secure store for secrets. You can securely store keys, passwords, certificates, and other secrets. Azure key vaults may be created and managed through the Azure portal. In this quickstart, you create a key vault, then use it to store a secret.

Which Azure service provides a set of version control tools to manage code? A. Azure Repos B. Azure DevTest Labs C. Azure Storage D. Azure Cosmos DB

A. Azure Repos Correct Answer: A Azure Repos is a set of version control tools that you can use to manage your code. Incorrect Answers: B: Azure DevTest Labs creates labs consisting of pre-configured bases or Azure Resource Manager templates. These have all the necessary tools and software that you can use to create environments. D: Azure Cosmos DB is Microsoft's globally distributed, multi-model database service.

Your company has several business units. Each business unit requires 20 different Azure resources for daily operation. All the business units require the same type of Azure resources. You need to recommend a solution to automate the creation of the Azure resources. What should you include in the recommendations? A. Azure Resource Manager templates B. virtual machine scale sets C. the Azure API Management service D. management groups Reveal Solution

A. Azure Resource Manager templates different resources, not VMs only. So A is correct as ARM templates are for every resource type.

Your company plans to migrate all its network resources to Azure. You need to start the planning process by exploring Azure. What should you create first? A. a subscription B. a resource group C. a virtual network D. a management group

A. a subscription Management group is not a mandatory component in Azure. You may create them to group subscriptions or other MG, but you can also do without. A subscription, on the other hand, is mandatory. So the answer is correct. You can't do anything in azure without a subscription.

HOTSPOT -For each of the following statements, select Yes if the statement is true. Otherwise, select No. NOTE: Each correct selection is worth one point. Hot Area: Statements: A Windows Virtual Desktop session host can run Windows 10 only. Yes or No A Windows Virtual Desktop host pool that includes 20 session hosts supports a maximum of 20 simultaneous user connections. Yes or No Windows Virtual Desktop supports desktop and app virtualization. Yes or No

Answer is correct (N,N,Y) 1. NO - Supported O/Ses are Windows 10 Enterprise multi-session or Windows 10 Enterprise, Windows 7 Enterprise, Windows Server 2012 R2, 2016, 2019. See https://docs.microsoft.com/en-us/azure/virtual-desktop/overview#requirements 2. NO - For Max session limit, enter the maximum number of users you want load-balanced to a single session host. See https://docs.microsoft.com/en-us/azure/virtual-desktop/create-host-pools-azure-marketplace#begin-the-host-pool-setup-process and https://docs.microsoft.com/en-us/windows-server/remote/remote-desktop-services/virtual-machine-recs?context=/azure/virtual-desktop/context/context#recommended-vm-sizes-for-standard-or-larger-environments 3. YES- Via RemoteApps See https://docs.microsoft.com/en-us/azure/virtual-desktop/manage-app-groups

Note: The question is included in a number of questions that depicts the identical set-up. However, every question has a distinctive result. Establish if the solution satisfies the requirements. You are tasked with deploying Azure virtual machines for your company. You need to make use of the appropriate cloud deployment solution. Solution: You should make use of Software as a Service (SaaS). Does the solution meet the goal? A. Yes B. No

B Virtual Machines are IaaS, not SaaS.

Note: The question is included in a number of questions that depicts the identical set-up. However, every question has a distinctive result. Establish if the solution satisfies the requirements. Your companyג€™s Azure subscription includes a Basic support plan. They would like to request an assessment of an Azure environmentג€™s design from Microsoft. This is, however, not supported by the existing plan. You want to make sure that the company subscribes to a support plan that allows this functionality, while keeping expenses to a minimum. Solution: You recommend that the company subscribes to the Standard support plan. Does the solution meet the goal? A. Yes B. No

B. No With the minimal cost in mind, it should be DEVELOPER but consider production environment it can be STANDARD too. General Guidelines should suffice for Architecture support.

A team of developers at your company plans to deploy, and then remove, 50 customized virtual machines each week. Thirty of the virtual machines run WindowsServer 2016 and 20 of the virtual machines run Ubuntu Linux. You need to recommend which Azure service will minimize the administrative effort required to deploy and remove the virtual machines. What should you recommend? A. Azure Reserved Virtual Machines (VM) Instances B. Azure virtual machine scale sets C. Azure DevTest Labs D. Microsoft Managed Desktop

C. Azure DevTest Labs keyword here is developer DevTest Labs creates labs consisting of pre-configured bases or Azure Resource Manager templates. By using DevTest Labs, you can test the latest versions of your applications by doing the following tasks: ✑ Quickly provision Windows and Linux environments by using reusable templates and artifacts. ✑ Easily integrate your deployment pipeline with DevTest Labs to provision on-demand environments. ✑ Scale up your load testing by provisioning multiple test agents and create pre-provisioned environments for training and demos.

You need to be notified when Microsoft plans to perform maintenance that can affect the resources deployed to an Azure subscription.What should you use? A. Azure Monitor B. Azure Service Health C. Azure Advisor D. Microsoft Trust Center

Correct Answer: B Azure Service Health provides a personalized view of the health of the Azure services and regions you're using. This is the best place to look for service impacting communications about outages, planned maintenance activities, and other health advisories because the authenticated Service Health experience knows which services and resources you currently use.

HOTSPOT -For each of the following statements, select Yes if the statement is true. Otherwise, select No. NOTE: Each correct selection is worth one point. Hot Area: Answer Area Statements Azure Monitor can Monitor the performance of on-premises computers. Yes or No Azure Monitor can send alerts to Azure Active Directory security groups. Yes or No. Azure Monitor can trigger alerts based on data in an Azure Log Analytics workspace. Yes or No

I think first answer is YES: https://docs.microsoft.com/en-us/azure/azure-monitor/overview I think second answer is NO. Azure Monitor cannot send alerts (email) to Azure AD security group but only to Azure AD user: https://docs.microsoft.com/en-us/azure/azure-monitor/platform/action-groups. I think last answer is YES: https://docs.microsoft.com/en-us/azure/azure-monitor/platform/alerts-overview Box 1: Yes -Azure Monitor maximizes the availability and performance of your applications and services by delivering a comprehensive solution for collecting, analyzing, and acting on telemetry from your cloud and on-premises environments. Box 3: Yes -Azure Monitor uses Target Resource, which is the scope and signals available for alerting. A target can be any Azure resource. Example targets: a virtual machine, a storage account, a virtual machine scale set, a Log Analytics workspace, or an Application Insights resource.

Note: The question is included in a number of questions that depicts the identical set-up. However, every question has a distinctive result. Establish if the solution satisfies the requirements. You are currently trying to generate a number of managed Microsoft SQL Server instances in an Azure environment. During the process, you are presented with a notification informing you that the Azure subscription limits must be increased. You want to make sure that you can complete your task. Solution: You generate a service health alert. Does the solution meet the goal? A. Yes B. No

No Microsoft Azure Service Health is your personalized dashboard in the Azure portal for receiving notifications, guidance, and technical support when Azure service issues, updates, or planned maintenance affect your Azure resources. Solution: You generate a new support request.

Note: The question is included in a number of questions that depicts the identical set-up. However, every question has a distinctive result. Establish if the solution satisfies the requirements. Your companyג€™s on-premises network includes a large number of servers. They would like to make extra resources available to their users, while keeping capital and operational overheads to a minimum. You are required to make recommendations that should be included in the overall solution. Solution: You should endorse the use of an added data center as part of the solution. Does the solution meet the goal? A. Yes B. No

No Hybrid cloud computing Cost-effectiveness—with the ability to scale to the public cloud, you pay for extra computing power only when needed. https://azure.microsoft.com/en-us/overview/what-are-private-public-hybrid-clouds/#overview

Note: The question is included in a number of questions that depicts the identical set-up. However, every question has a distinctive result. Establish if the solution satisfies the requirements. Your companyג€™s Azure subscription includes a Basic support plan. They would like to request an assessment of an Azure environmentג€™s design from Microsoft. This is, however, not supported by the existing plan. You want to make sure that the company subscribes to a support plan that allows this functionality, while keeping expenses to a minimum. Solution: You recommend that the company subscribes to the Professional Direct support plan. Does the solution meet the goal? A. Yes B. No

Review is only under Premier. Stop giving the wrong answers. Premier is stil available but only for companies with enterprise agreement. Professional DIrect offers only :Guidance from a pool of ProDirect delivery managers". Guidance is not a design review.

Note: The question is included in a number of questions that depicts the identical set-up. However, every question has a distinctive result. Establish if the solution satisfies the requirements. You are tasked with deploying Azure virtual machines for your company. You need to make use of the appropriate cloud deployment solution. Solution: You should make use of Platform as a Service (PaaS). Does the solution meet the goal? A. Yes B. No

Virtual Machine is IAAS, not PAAS. B is correct

Note: The question is included in a number of questions that depicts the identical set-up. However, every question has a distinctive result. Establish if the solution satisfies the requirements. You are required to deploy an Artificial Intelligence (AI) solution in Azure. You want to make sure that you are able to build, test, and deploy predictive analytics for the solution. Solution: You should make use of Azure Machine Learning Studio. Does the solution meet the goal? A. Yes B. No

Yes Machine Learning Studio (classic) is a drag-and-drop tool you can use to build, test, and deploy predictive analytics solutions. https://docs.microsoft.com/bs-cyrl-ba/azure/machine-learning/classic/

Note: The question is included in a number of questions that depicts the identical set-up. However, every question has a distinctive result. Establish if the solution satisfies the requirements. Your company has an on-premises network with numerous servers, which they intend to migrate to Azure. You have been tasked with devising a plan that allows for the availability of a few of the servers, in the event that one of the Azure data centers becomes unavailable for a lengthy interval. Solution: You should include elasticity in your plan. Does the solution meet the goal? A. Yes B. No

Answer B. Solution should be for availability if a datacenter is down for long time. Elasticity wont provide that. Looks questions have updated.

HOTSPOT -You plan to create an Azure virtual machine. You need to identify which storage service must be used to store the unmanaged data disks of the virtual machine. What should you identify? To answer, select the appropriate service in the answer area. Hot Area: Containers: Scalable, cost-effective storage for unstructured data File Share: Serverless SMB file shares Tables: Tabular data storage Queues: Effectively scale apps according to traffic

Azure containers are the backbone of the virtual disks platform for Azure IaaS. Both Azure OS and data disks are implemented as virtual disks where data is durably persisted in the Azure Storage platform and then delivered to the virtual machines for maximum performance. Azure Disks are persisted in Hyper-V VHD format and stored as a page blob in Azure Storage.

HOTSPOT -You plan to implement an Azure database solution. You need to implement a database solution that meets the following requirements:✑ Can add data concurrently from multiple regions✑ Can store JSON documents Which database service should you deploy? To answer, select the appropriate service in the answer area. Hot Area: Databases: 1. Azure Cosmos DB 2. Azure Database for MySQL servers 3. Azure Databse for MariaDB servers 4. SQL Data warehouses 5. Azure Cache for Redis 6. Data factories 7. Virtual Clusters 8. Elastic Job agents 9. SQL databases 10. Azure Database for PostgreSQL servers 11. SQL servers 12. Azure database Migration Services 13. SQL Server stretch databases 14. SQL elastic pools 15. Managed databases 16. SQL managed instances

Azure Cosmos DB is Microsoft's globally distributed, multi-model database service. With a click of a button, Cosmos DB enables you to elastically and independently scale throughput and storage across any number of Azure regions worldwide. Azure Cosmos DB is a great way to store unstructured and JSON data. Combined with Azure Functions, Cosmos DB makes storing data quick and easy with much less code than required for storing data in a relational database.

HOTSPOT -To complete the sentence, select the appropriate option in the answer area. Hot Area: Answer Area: _________ is an Apache Spark-based analytics service. Azure Databricks Azure Data Factory Azure DevOps Azure HDInsight

Azure Databricks Azure Databricks is an Apache Spark-based analytics platform. The platform consists of several components including ג€˜MLibג€™. Mlib is a Machine Learning library consisting of common learning algorithms and utilities, including classification, regression, clustering, collaborative filtering, dimensionality reduction, as well as underlying optimization primitives. Both HDInsight and Databricks use Apache Spark, making this a tricky question. But Databricks is an analytics service, which HDInsight is not. The answer is Databricks. You're right but your reasoning is wrong Databricks only uses Apache Spark framework, HD uses Hadoop, spark, Hive...etc If you check Bar_t's link, the first line mentions it's analytic service.

HOTSPOT -For each of the following statements, select Yes if the statement is true. Otherwise, select No. NOTE: Each correct selection is worth one point. Hot Area: Statements: Each Azure subscription can contain multiple account administrators: Yes or No? Each Azure subscription can be managed by using a Microsoft account only: Yes or No? An Azure resource group contains multiple Azure subscriptions? Yes or No?

Box 1: No - A subscription can have multiple administrators, but there can only be one "account" administrator. Box 2: No - You also need an Azure Active Directory account to manage a subscription. An account is created in the Azure Active Directory when you create the subscription. Further accounts can be created in the Azure Active Directory to manage the subscription. Box 3: No - A subscription can contain multiple resource groups but a resource group can only belong to one subscription. Resource groups can contain multiple resources. BTW: Same question is asked in #81 https://www.examtopics.com/exams/microsoft/az-900/view/17/ Taken from comments

For each of the following statements, select Yes if the statement is true. Otherwise, select No. NOTE: Each correct selection is worth one point. Hot Area: Statements An Azure subscription can be associated to multiple Azure Active Directory (Azure AD) tenants. Yes or No You can change the Azure Active Directory (Azure AD) tenant to which an Azure subscription is associated. Yes or No When an azure subscription expires, the associated azure active directory azure ad tenant is deleted automictically. Yes or No

Box 1: No -An Azure AD tenant can have multiple subscriptions but an Azure subscription can only be associated with one Azure AD tenant. Box 2: Yes Box 3: No -If your subscription expires, you lose access to all the other resources associated with the subscription. However, the Azure AD directory remains in Azure. You can associate and manage the directory using a different Azure subscription.

HOTSPOT -For each of the following statements, select Yes if the statement is true. Otherwise, select No. NOTE: Each correct selection is worth one point. Hot Area: Statements: Availability zones can be implemented in all Azure regions. Yes or No Only virtual machines that run Windows Server can be created in availability zones? Yes or No Availability zones are used to replicate data and applications to multiple regions. Yes or No

Box 1: No -Not all Azure regions support availability zones. Box 2: No -Availability zones can be used with many Azure services, not just VMs. Box 3: No -Availability Zones are unique physical locations within a single Azure region.

You have a virtual machine named VM1 that runs Windows Server 2016. VM1 is in the East US Azure region. Which Azure service should you use from the Azure portal to view service failure notifications that can affect the availability of VM1? A. Azure Service Fabric B. Azure Monitor C. Azure virtual machines D. Azure Advisor

Correct Answer: C In the Azure virtual machines page in the Azure portal, there is a named Maintenance Status. This column will display service issues that could affect your virtual machine. A service failure is rare but host server maintenance that could affect your virtual machines is more common. Azure periodically updates its platform to improve the reliability, performance, and security of the host infrastructure for virtual machines. The purpose of these updates ranges from patching software components in the hosting environment to upgrading networking components or decommissioning hardware.

Note: The question is included in a number of questions that depicts the identical set-up. However, every question has a distinctive result. Establish if the solution satisfies the requirements. You are tasked with deploying Azure virtual machines for your company. You need to make use of the appropriate cloud deployment solution. Solution: You should make use of Infrastructure as a Service (IaaS). Does the solution meet the goal?

Correct! Virtual Machines, Azure Storage Accounts are IaaS.

Note: The question is included in a number of questions that depicts the identical set-up. However, every question has a distinctive result. Establish if the solution satisfies the requirements. You have been informed by your superiors of the companyג€™s intentions to automate server deployment to Azure. There is, however, some concern that administrative credentials could be uncovered during this process. You are required to make sure that during the deployment, the administrative credentials are encrypted using a suitable Azure solution. Solution: You recommend the use of Azure Multi-Factor Authentication (MFA).Does the solution meet the goal? A. Yes B. No

MFA just adds another factor, but not encryption. Answer ist no Azure Multi-Factor Authentication (MFA) is related to AAD, nothing related with users data, the answer is B: No.

Note: The question is included in a number of questions that depicts the identical set-up. However, every question has a distinctive result. Establish if the solution satisfies the requirements. You are planning to migrate a company to Azure. Each of the companyג€™s numerous divisions will have an administrator in place to manage the Azure resources used by their respective division. You want to make sure that the Azure deployment you employ allows for Azure to be segmented for the divisions, while keeping administrative effort to a minimum. Solution: You plan to make use of several Azure Active Directory (Azure AD) directories. Does the solution meet the goal? A. Yes B. No

No Solution: You plan to make use of several subscriptions.

Note: The question is included in a number of questions that depicts the identical set-up. However, every question has a distinctive result. Establish if the solution satisfies the requirements. A company that has numerous divisions is planning to deploy an Azure environment. The company would like each divisionג€™s option to pay for the Azure services it utilizes, not be the same. You have been asked to recommend a solution to meet the requirements. Solution: You recommend that an Azure policy be created for each division. Does the solution meet the goal? A. Yes B. No

No Solution: You recommend that a subscription be created for each division.

Note: The question is included in a number of questions that depicts the identical set-up. However, every question has a distinctive result. Establish if the solution satisfies the requirements. You are tasked with deploying a critical LOB application, which will be installed on a virtual machine, to Azure. You are informed that the application deployment strategy should allow for a guaranteed availability of 99.99 percent. You need to make sure that the strategy requires as little virtual machines and availability zones as possible. Solution: You include two virtual machines and one availability zone in your strategy. Does the solution meet the goal? A. Yes B. No

No For all Virtual Machines that have two or more instances deployed across two or more Availability Zones in the same Azure region, we guarantee you will have Virtual Machine Connectivity to at least one instance at least 99.99% of the time. For all Virtual Machines that have two or more instances deployed in the same Availability Set or in the same Dedicated Host Group, we guarantee you will have Virtual Machine Connectivity to at least one instance at least 99.95% of the time. For any Single Instance Virtual Machine using Premium SSD or Ultra Disk for all Operating System Disks and Data Disks, we guarantee you will have Virtual Machine Connectivity of at least 99.9%. For any Single Instance Virtual Machine using Standard SSD Managed Disks for Operating System Disk and Data Disks, we guarantee you will have Virtual Machine Connectivity of at least 99.5%. For any Single Instance Virtual Machine using Standard HDD Managed Disks for Operating System Disks and Data Disks, we guarantee you will have Virtual Machine Connectivity of at least 95%. Answer correct.

Note: The question is included in a number of questions that depicts the identical set-up. However, every question has a distinctive result. Establish if the solution satisfies the requirements. You are planning a strategy to deploy numerous web servers and database servers to Azure. This strategy should allow for connection types between the web servers and database servers to be controlled. Solution: You include the Azure Service Bus in your strategy. Does the solution meet the goal? A. Yes B. No

No. Correct answer is Azure network security group Azure Service Bus is a messaging service on cloud used to connect any applications, devices, and services running in the cloud to any other applications or services. As a result, it acts as a messaging backbone for applications available in the cloud or across any devices.

Your company plans to migrate to Azure. The company has several departments. All the Azure resources used by each department will be managed by a department administrator.What are two possible techniques to segment Azure for the departments? Each correct answer presents a complete solution.NOTE: Each correct selection is worth one point. A. multiple subscriptions B. multiple Azure Active Directory (Azure AD) directories C. multiple regions D. multiple resource groups

The answer is correct AD. But this is how I believe it should be explained. Because of this statement "All the Azure resources used by each department will be managed by a department administrator.." It means it will be managed by a single admin. Therefore you need: 1. One Azure AD tenant which will be that one admin 2. Multiple Subscriptions to be under one Azure AD 3. Multiple Resources, meaning every department with its own resources An Azure subscription is a container for Azure resources. It is also a boundary for permissions to resources and for billing. You are charged monthly for all resources in a subscription. A single Azure tenant (Azure Active Directory) can contain multiple Azure subscriptions.A resource group is a container that holds related resources for an Azure solution. The resource group can include all the resources for the solution, or only those resources that you want to manage as a group.To enable each department administrator to manage the Azure resources used by that department, you will need to create a separate subscription per department. You can then assign each department administrator as an administrator for the subscription to enable them to manage all resources in that subscription.

Note: The question is included in a number of questions that depicts the identical set-up. However, every question has a distinctive result. Establish if the solution satisfies the requirements. You are tasked with deploying a critical LOB application, which will be installed on a virtual machine, to Azure. You are informed that the application deployment strategy should allow for a guaranteed availability of 99.99 percent. You need to make sure that the strategy requires as little virtual machines and availability zones as possible. Solution: You include one virtual machine and two availability zones in your strategy. Does the solution meet the goal? A. Yes B. No

The correct answer is B - NO: The question clearly states that they are looking for 99.99% guaranteed availability and the solution is to include one virtual machine and two availability zones in your strategy. When only One Virtual Machine is used the best availability percentage you can get is 99.95% so the this is not a good solution and the answer is B - NO.

HOTSPOT -To complete the sentence, select the appropriate option in the answer area. Hot Area: Answer Area Statements: You can use Availability Zones in Azure to protect Azure virtual machines from a datacenter failure. Yes or No You can use Availability Zones in Azure to protect Azure virtual machines from a region failure. Yes or No You can use Availability Zones in Azure to protect Azure managed disks from a datacenter failure. Yes or No

Yes No Yes Availability Zone: Unique physical locations within a region. Each zone is made up of one or more datacenters equipped with independent power, cooling, and networking. So this is why the third question is yes, because your data will likely be stored in more than one data center, so if a data center goes down, it's highly likely another data center in the zone will have a backup and will move the activity to that location. This is what they mean by "fault tolerance" as well. Availability zones expand the level of control you have to maintain the availability of the applications and data on your VMs. Availability Zones are unique physical locations within an Azure region. Each zone is made up of one or more datacenters equipped with independent power, cooling, and networking. To ensure resiliency, there are a minimum of three separate zones in all enabled regions. The physical separation of Availability Zones within a region protects applications and data from datacenter failures. With Availability Zones, Azure offers industry best 99.99% VM uptime SLA. By architecting your solutions to use replicated VMs in zones, you can protect your applications and data from the loss of a datacenter. If one zone is compromised, then replicated apps and data are instantly available in another zone.

Note: The question is included in a number of questions that depicts the identical set-up. However, every question has a distinctive result. Establish if the solution satisfies the requirements. Your companyג€™s developers intend to deploy a large number of custom virtual machines on a weekly basis. They will also be removing these virtual machines during the same week it was deployed. Sixty percent of the virtual machines have Windows Server 2016 installed, while the other forty percent has Ubuntu Linux installed.You are required to make sure that the administrative effort, needed for this process, is reduced by employing a suitable Azure service.Solution: you recommend the use of Azure DevTest Labs.Does the solution meet the goal? A. Yes B. No

Yes - Answer is correct Quickly provision development and test environments Minimize waste with quotas and policies Set automated shutdowns to minimize costs Build Windows and Linux environments

This question requires that you evaluate the underlined text to determine if it is correct. An Azure region contains one or more data centers that are connected by using a low-latency network. Instructions: Review the underlined text. If it makes the statement correct, select ג€No change is neededג€. If the statement is incorrect, select the answer choice that makes the statement correct. A. No change is needed B. Is found in each country where Microsoft has a subsidiary office C. Can be found in every country in Europe and the Americas only D. Contains one or more data centers that are connected by using a high-latency network

A. No change is needed High-latency means slow connection

Note: The question is included in a number of questions that depicts the identical set-up. However, every question has a distinctive result. Establish if the solution satisfies the requirements. Your companyג€™s developers intend to deploy a large number of custom virtual machines on a weekly basis. They will also be removing these virtual machines during the same week it was deployed. Sixty percent of the virtual machines have Windows Server 2016 installed, while the other forty percent has Ubuntu Linux installed. You are required to make sure that the administrative effort, needed for this process, is reduced by employing a suitable Azure service. Solution: you recommend the use of Microsoft Managed Desktop. Does the solution meet the goal? A. Yes B. No

Answer correct. (No) It is not Microsoft Managed Desktop. Welcome to Microsoft Managed Desktop Microsoft Managed Desktop brings together Microsoft 365 Enterprise, cloud-based device management by Microsoft, and security monitoring, enabling you to free your IT team to focus on core business needs. Currently, the Microsoft Managed Desktop service is offered only by invitation. Learn more on Microsoft docs or contact your Microsoft account manager. If you're unfamiliar with Microsoft Managed Desktop, learn more about the service.

Note: The question is included in a number of questions that depicts the identical set-up. However, every question has a distinctive result. Establish if the solution satisfies the requirements. You are tasked with deploying a critical LOB application, which will be installed on a virtual machine, to Azure. You are informed that the application deployment strategy should allow for a guaranteed availability of 99.99 percent. You need to make sure that the strategy requires as little virtual machines and availability zones as possible. Solution: You include two virtual machines and two availability zones in your strategy. Does the solution meet the goal? A. Yes B. No

Answer is A YES. The strategy listed in the question is looking for the absolute minimum VMs and AZ's needed to give 99% availability. This requires a minimum of 2VMs and 2 AZ's. Anything less would give 99.95% availability.

Note: The question is included in a number of questions that depicts the identical set-up. However, every question has a distinctive result. Establish if the solution satisfies the requirements. You are planning to migrate a company to Azure. Each of the companyג€™s numerous divisions will have an administrator in place to manage the Azure resources used by their respective division. You want to make sure that the Azure deployment you employ allows for Azure to be segmented for the divisions, while keeping administrative effort to a minimum. Solution: You plan to make use of several resource groups. Does the solution meet the goal? A. Yes B. No

Answer is B (No) Resource groups: A resource group is a logical container into which Azure resources like web apps, databases, and storage accounts are deployed and managed. Resources: Resources are instances of services that you create, like virtual machines, storage, or SQL databases. Solution: You plan to make use of several subscriptions.

Note: The question is included in a number of questions that depicts the identical set-up. However, every question has a distinctive result. Establish if the solution satisfies the requirements. Your companyג€™s infrastructure includes a number of business units that each need a large number of various Azure resources for everyday operation. The resources required by each business unit are identical. You are required to sanction a strategy to create Azure resources automatically. Solution: You recommend that the Azure API Management service be included in the strategy. Does the solution meet the goal? A. Yes B. No

Answer is B - No. Azure API Management Service i( APIM ) is a way to create and manage customer APIs for existing backend services. The Question is asking about a way to create Azure resources automatically ( on the fly ). ARM (Azure Resource Manager) is a tool that automates the deployments on the AZ cloud.

Note: The question is included in a number of questions that depicts the identical set-up. However, every question has a distinctive result. Establish if the solution satisfies the requirements. Your company is planning to migrate all their virtual machines to an Azure pay-as-you-go subscription. The virtual machines are currently hosted on the Hyper-V hosts in a data center. You are required make sure that the intended Azure solution uses the correct expenditure model. Solution: You should recommend the use of the operational expenditure model. Does the solution meet the goal? A. Yes B. No

Answer is Yes. Operating expenditures are ongoing costs of doing business. Consuming cloud services in a pay-as-you-go model could qualify as an operating expenditure. https://docs.microsoft.com/en-us/azure/cloud-adoption-framework/strategy/business-outcomes/fiscal-outcomes

Note: The question is included in a number of questions that depicts the identical set-up. However, every question has a distinctive result. Establish if the solution satisfies the requirements. Your company has an Azure Active Directory (Azure AD) environment. Users occasionally connect to Azure AD via the Internet. You have been tasked with making sure that users who connect to Azure AD via the internet from an unidentified IP address, are automatically encouraged to change passwords. Solution: You configure the use of Azure Key Vault. Does the solution meet the goal? A. Yes B. No

Answer is correct (No) . It is not Azure KeyVault. It is Azure Identity Protection

Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution. After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen. An Azure administrator plans to run a PowerShell script that creates Azure resources. You need to recommend which computer configuration to use to run the script. Solution: Run the script from a computer that runs Chrome OS and uses Azure Cloud Shell. Does this meet the goal? A. Yes B. No

Answer: A - Azure Cloud Shell is an interactive, authenticated, browser-accessible shell for managing Azure resources. It provides the flexibility of choosing the shell experience that best suits the way you work, either Bash or PowerShell. A PowerShell script is a file that contains PowerShell cmdlets and code. A PowerShell script needs to be run in PowerShell. With the Azure Cloud Shell, you can run PowerShell cmdlets and scripts in a Web browser. You log in to the Azure Portal and select the Azure Cloud Shell option. This will open a PowerShell session in the Web browser. The Azure Cloud Shell has the necessary Azure PowerShell module installed. Note: to run a PowerShell script in the Azure Cloud Shell, you need to change to the directory where the PowerShell script is stored.

HOTSPOT -For each of the following statements, select Yes if the statement is true. Otherwise, select No. NOTE: Each correct selection is worth one point. Hot Area: Statements: All the Azure resources deployed to a resource group must use the same Azure region. Yes or No If you assign a tag to a resource group, all the Azure resources in that resource group are assigned to the same tag. Yes or No If you assign permissions for a user to manage a resource group, the user can manage all the Azure resources in that resource group. Yes or No

Box 1: No -Azure resources deployed to a single resource group can be located in different regions. The resource group only contains metadata about the resources it contains. When creating a resource group, you need to provide a location for that resource group. You may be wondering, "Why does a resource group need a location? And, if the resources can have different locations than the resource group, why does the resource group location matter at all?" The resource group stores metadata about the resources. When you specify a location for the resource group, you're specifying where that metadata is stored. For compliance reasons, you may need to ensure that your data is stored in a particular region. Box 2: No -Tags for Resources are not inherited by default from their Resource Group Box 3: Yes -A resource group can be used to scope access control for administrative actions. By default, permissions set at the resource level are inherited by the resources in the resource group.

HOTSPOT -For each of the following statements, select Yes if the statement is true. Otherwise, select No. NOTE: Each correct selection is worth one point. Hot Area: Statements: From Azure Service Health, an administrator can view then health of all the services in an Azure environment. Yes or No From Azure Service Health, an administrator can create a rule to be alerted if an Azure service fails. Yes or No From Azure Service Health, an administrator can prevent a service failure. Yes or No

Box 1: Yes -Azure Service Health consists of three components: Azure Status, Azure Service Heath and Azure Resource Health. Azure service health provides a personalized view of the health of the Azure services and regions you're using. This is the best place to look for service impacting communications about outages, planned maintenance activities, and other health advisories because the authenticated Azure Service Health experience knows which services and resources you currently use. To view the health of all other services available in Azure, you would use the Azure Status component of Azure Service Health. Azure status informs you of service outages in Azure on the Azure Status page. The page is a global view of the health of all Azure services across all Azure regions. Box 2: Yes -The best way to use Service Health is to set up Service Health alerts to notify you via your preferred communication channels when service issues, planned maintenance, or other changes may affect the Azure services and regions you use. Box 3: No -You can use Resource Health to view the health of a virtual machine. However, you cannot use Resource Health to prevent a service failure affecting the virtual machine. Azure resource health provides information about the health of your individual cloud resources such as a specific virtual machine instance.

HOTSPOT -For each of the following statements, select Yes if the statement is true. Otherwise, select No. NOTE: Each correct selection is worth one point. Hot Area: Statements: Statements: Data that is stored in an Azure Storage account automatically has at least three copies. Yes or No All data that is copied to an Azure Storage account is backed up automatically to another Azure data center. Yes or No An Azure storage account can contain up to 2 TB of data and up to one million files. Yes or No

Box 1: Yes -There are different replication options available with a storage account. The ג€˜minimumג€™ replication option is Locally Redundant Storage (LRS). With LRS, data is replicated synchronously three times within the primary region. Box 2: No -Data is not backed up automatically to another Azure Data Center although it can be depending on the replication option configured for the account. LocallyRedundant Storage (LRS) is the default which maintains three copies of the data in the data center.Geo-redundant storage (GRS) has cross-regional replication to protect against regional outages. Data is replicated synchronously three times in the primary region, then replicated asynchronously to the secondary region. Box 3: No -The limits are much higher than that. The current storage limit is 2 PB for US and Europe, and 500 TB for all other regions (including the UK) with no limit on the number of files.

HOTSPOT -For each of the following statements, select Yes if the statement is true. Otherwise, select No. NOTE: Each correct selection is worth one point. Hot Area: Statements A single Microsoft account can be used to manage multiple Azure subscriptions. Yes or No Two Azure subscriptions can be merged into a single subscription. Yes or No A company can use resources from multiple subscriptions. Yes or No

Box 1: Yes -You can use the same account to manage multiple subscriptions. You can create an additional subscription for your account in the Azure portal. You may want an additional subscription to avoid hitting subscription limits, to create separate environments for security, or to isolate data for compliance reasons. Box 2: No -You cannot merge two subscriptions into a single subscription. However, you can move some Azure resources from one subscription to another. You can also transfer ownership of a subscription and change the billing type for a subscription. Box 3: Yes -A company can have multiple subscriptions and store resources in the different subscriptions. However, a resource instance can exist in only one subscription.

Which Azure service should you use to collect events from multiple resources into a centralized repository? A. Azure Event Hubs B. Azure Analysis Services C. Azure Monitor D. Azure Stream Analytics

C. Azure Monitor -- resources are azure resource -- https://medium.com/@kyleake/exam-az-900-microsoft-azure-fundamentals-most-complete-preparation-guide-ever-76614d31a59c To correlate events from multiple resources into a centralized repository. Log data collected by Azure Monitor is stored in a Log Analytics workspace, which is based on Azure Data Explorer. It collects telemetry from a variety of sources and uses the Kusto query language used by Data Explorer to retrieve and analyze data.

Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution. After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen. You have an Azure environment. You need to create a new Azure virtual machine from a tablet that runs the Android operating system. Solution: You use the Azure portal. Does this meet the goal? A. Yes B. No

Correct Answer: A The Azure portal is a web-based, unified console that provides an alternative to command-line tools. With the Azure portal, you can manage your Azure subscription using a graphical user interface. You can build, manage, and monitor everything from simple web apps to complex cloud deployments. Create custom dashboards for an organized view of resources. Configure accessibility options for an optimal experience. Being web-based, the Azure portal can be run on a browser from a tablet that runs the Android operating system.

Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution. After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen. You have an Azure subscription named Subscription1. You sign in to the Azure portal and create a resource group named RG1.From Azure documentation, you have the following command that creates a virtual machine named VM1. az vm create --resource-group RG1 --name VM1 --image UbuntuLTS --generate-ssh-keys You need to create VM1 in Subscription1 by using the command. Solution: From the Azure portal, launch Azure Cloud Shell and select Bash. Run the command in Cloud Shell. Does this meet the goal? A. Yes B. No

Correct Answer: A The command can be run in the Azure Cloud Shell. The Azure Cloud Shell is a free interactive shell. It has common Azure tools preinstalled and configured to use with your account. To open the Cloud Shell, just select Try it from the upper right corner of a code block. You can also launch Cloud Shell in a separate browser tab by going to https://shell.azure.com/bash.

Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution. After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen. An Azure administrator plans to run a PowerShell script that creates Azure resources. You need to recommend which computer configuration to use to run the script. Solution: Run the script from a computer that runs Linux and has the Azure CLI tools installed. Does this meet the goal? A. Yes B. No

Correct Answer: B A PowerShell script is a file that contains PowerShell cmdlets and code. A PowerShell script needs to be run in PowerShell. PowerShell can now be installed on Linux. However, the question states that the computer has Azure CLI tools, not PowerShell installed. Therefore, this solution does not meet the goal. Answer is correct, Azure PowerShell requires Windows PowerShell to function. Azure CLI can't execute any powershell scripts.

Your company plans to move several servers to Azure. The companyג€™s compliance policy states that a server named FinServer must be on a separate network segment. You are evaluating which Azure services can be used to meet the compliance policy requirements. Which Azure solution should you recommend? A. a resource group for FinServer and another resource group for all the other servers B. a virtual network for FinServer and another virtual network for all the other servers C. a VPN for FinServer and a virtual network gateway for each other server D. one resource group for all the servers and a resource lock for FinServer

Correct Answer: B Networks in Azure are known as virtual networks. A virtual network can have multiple IP address spaces and multiple subnets. Azure automatically routes traffic between different subnets within a virtual network. The question states that FinServer must be on a separate network segment. The only way to separate FinServer from the other servers in networking terms is to place the server in a different virtual network to the other servers.

Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution. After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen. You have an Azure environment. You need to create a new Azure virtual machine from a tablet that runs the Android operating system .Solution: You use the PowerApps portal. Does this meet the goal? A. Yes B. No

Correct Answer: B PowerApps lets you quickly build business applications with little or no code. It is not used to create Azure virtual machines. Therefore, this solution does not meet the goal. PowerApps Portals allow organizations to create websites which can be shared with users external to their organization either anonymously or through the login provider of their choice like LinkedIn, Microsoft Account, other commercial login providers. Correct answer would be Azure Portal The Azure portal is a web-based, unified console that provides an alternative to command-line tools. With the Azure portal, you can manage your Azure subscription using a graphical user interface. You can build, manage, and monitor everything from simple web apps to complex cloud deployments. Create custom dashboards for an organized view of resources. Configure accessibility options for an optimal experience. Being web-based, the Azure portal can be run on a browser from a tablet that runs the Android operating system.

You plan to map a network drive from several computers that run Windows 10 to Azure Storage. You need to create a storage solution in Azure for the planned mapped drive. What should you create? A. an Azure SQL database B. a virtual machine data disk C. a Files service in a storage account D. a Blobs service in a storage account

Correct Answer: C Azure Files is Microsoft's easy-to-use cloud file system. Azure file shares can be seamlessly used in Windows and Windows Server. To use an Azure file share with Windows, you must either mount it, which means assigning it a drive letter or mount point path, or access it via its UNC path. Unlike other SMB shares you may have interacted with, such as those hosted on a Windows Server, Linux Samba server, or NAS device, Azure file shares do not currently support Kerberos authentication with your Active Directory (AD) or Azure Active Directory (AAD) identity, although this is a feature we are working on. Instead, you must access your Azure file share with the storage account key for the storage account containing your Azure file share. A storage account key is an administrator key for a storage account, including administrator permissions to all files and folders within the file share you're accessing, and for all file shares and other storage resources (blobs, queues, tables, etc) contained within your storage account.

You attempt to create several managed Microsoft SQL Server instances in an Azure environment and receive a message that you must increase your Azure subscription limits.What should you do to increase the limits? A. Create a service health alert B. Upgrade your support plan C. Modify an Azure policy D. Create a new support request

Correct Answer: DMany Azure resource have quote limits. The purpose of the quota limits is to help you control your Azure costs. However, it is common to require an increase to the default quota.You can request a quota limit increase by opening a support request. In the support request, select ג€˜Service and subscription limits (quotas)ג€™ for the Issue type, select your subscription and the service you want to increase the quota for. For this question, you would select ג€˜SQL Database Managed Instanceג€™ as the quote

Note: The question is included in a number of questions that depicts the identical set-up. However, every question has a distinctive result. Establish if the solution satisfies the requirements. Your companyג€™s on-premises network includes a large number of servers. They would like to make extra resources available to their users, while keeping capital and operational overheads to a minimum. You are required to make recommendations that should be included in the overall solution. Solution: You should indorse the use of a hybrid cloud as part of the solution. Does the solution meet the goal? A. Yes B. No

Go back to discussion - many different ideas

Note: The question is included in a number of questions that depicts the identical set-up. However, every question has a distinctive result. Establish if the solution satisfies the requirements. You are planning a strategy to deploy numerous web servers and database servers to Azure. This strategy should allow for connection types between the web servers and database servers to be controlled. Solution: You include a local network gateway in your strategy. Does the solution meet the goal? A. Yes B. No

No The local network gateway is a specific object that represents your on-premises location (the site) for routing purposes. Correct answer is Network Security Groups

Note: The question is included in a number of questions that depicts the identical set-up. However, every question has a distinctive result. Establish if the solution satisfies the requirements. Your companyג€™s developers intend to deploy a large number of custom virtual machines on a weekly basis. They will also be removing these virtual machines during the same week it was deployed. Sixty percent of the virtual machines have Windows Server 2016 installed, while the other forty percent has Ubuntu Linux installed. You are required to make sure that the administrative effort, needed for this process, is reduced by employing a suitable Azure service. Solution: you recommend the use of Azure Reserved Virtual Machines (VM) Instances. Does the solution meet the goal? A. Yes B. No

No An Azure Reserved Virtual Machine Instance (RI) is a virtual machine (VM) on the Microsoft Azure public cloud that has been reserved for dedicated use on a one- or three-year basis. ... Azure RIs are available for all Azure VM types, except for the A-series, A_v2 series and the G-series

Note: The question is included in a number of questions that depicts the identical set-up. However, every question has a distinctive result. Establish if the solution satisfies the requirements. A company that has numerous divisions is planning to deploy an Azure environment. The company would like each divisionג€™s option to pay for the Azure services it utilizes, not be the same. You have been asked to recommend a solution to meet the requirements. Solution: You recommend that a subscription be created for each division. Does the solution meet the goal? A. Yes B. No

Yes

Note: The question is included in a number of questions that depicts the identical set-up. However, every question has a distinctive result. Establish if the solution satisfies the requirements. Your companyג€™s Azure subscription includes a Basic support plan. They would like to request an assessment of an Azure environmentג€™s design from Microsoft. This is, however, not supported by the existing plan. You want to make sure that the company subscribes to a support plan that allows this functionality, while keeping expenses to a minimum. Solution: You recommend that the company subscribes to the Premier support plan. Does the solution meet the goal? A. Yes B. No

Yes Only with Premier it is possible to request an architectural review of an Azure enOnly with Premier it is possible to request an architectural review of an Azure environment from Microsoft, and this is what's being asked. Others provide only guidance, not review. Professional Direct support plan it's not enough since it only provides "Architectural guidance based on best practice delivered by ProDirect Delivery Manager". Check out the enterprise support plans in Ref link 2. Premier support plan has Architecture Support: "Customer specific architectural support such as design reviews, performance tuning, configuration and implementation assistance delivered by Microsoft Azure technical specialists." Ref: https://azure.microsoft.com/en-us/support/plans/ https://support.azure.cn/en-us/support/plans --------------------------------------- Developer and Standard are not valid options. Ans for this question set will be: **Premier Check comments could be wrongvironment from Microsoft, and this is what's being asked. Others provide only guidance, not review. Professional Direct support plan it's not enough since it only provides "Architectural guidance based on best practice delivered by ProDirect Delivery Manager". Check out the enterprise support plans in Ref link 2. Premier support plan has Architecture Support: "Customer specific architectural support such as design reviews, performance tuning, configuration and implementation assistance delivered by Microsoft Azure technical specialists." Ref: https://azure.microsoft.com/en-us/support/plans/ https://support.azure.cn/en-us/support/plans --------------------------------------- Developer and Standard are not valid options. Ans for this question set will be: **Premier Check comments could be wrong

Note: The question is included in a number of questions that depicts the identical set-up. However, every question has a distinctive result. Establish if the solution satisfies the requirements. You are planning to migrate a company to Azure. Each of the companyג€™s numerous divisions will have an administrator in place to manage the Azure resources used by their respective division. You want to make sure that the Azure deployment you employ allows for Azure to be segmented for the divisions, while keeping administrative effort to a minimum. Solution: You plan to make use of several subscriptions. Does the solution meet the goal? A. Yes B. No

Yes To enable each department administrator to manage the Azure resources used by that department, you will need to create a separate subscription per department. You can then assign each department administrator as an administrator for the subscription to enable them to manage all resources in that subscription.

Note: The question is included in a number of questions that depicts the identical set-up. However, every question has a distinctive result. Establish if the solution satisfies the requirements. You are planning a strategy to deploy numerous web servers and database servers to Azure. This strategy should allow for connection types between the web servers and database servers to be controlled. Solution: You include network security groups (NSGs) in your strategy. Does the solution meet the goal? A. Yes B. No

Yes You can use an Azure network security group to filter network traffic to and from Azure resources in an Azure virtual network. A network security group contains security rules that allow or deny inbound network traffic to, or outbound network traffic from, several types of Azure resources. For each rule, you can specify source and destination, port, and protocol.


संबंधित स्टडी सेट्स

Nursing Care of the Child With an Alteration in Behavior, Cognition, or Development

View Set

Health & Illness Final Exam (second half of review questions)

View Set

Maternal and Newborn Success Study Questions

View Set

Polyatomic ions (only -2 and -3 charges)

View Set

CS 409 - Overview (Module 1) [Prelim Reviewer]

View Set

Pathogens and disease definitions

View Set

The Cerebellum - Neuro3050, Block 4

View Set