Ms Azure Administrator - Mock Test Set 7

Case study: A Datum Corporation

Overview

ADatum Corporation is a financial company that has two main offices in New York and Los Angeles. ADatum has a subsidiary named Fabrikam, Inc. that shares the Los Angeles office.

ADatum is conducting an initial deployment of Azure services to host new line-of-business applications and is preparing to migrate its existing on-premises workloads to Azure.

ADatum uses Microsoft Exchange Online for email.

On-Premises Environment

The on-premises workloads run on virtual machines hosted in a VMware vSphere 6 infrastructure. All the virtual machines are members of an Active Directory forest named adatum.com and run Windows Server 2016.

The New York office an IP address of 10.0.0.0/16. The Los Angeles office uses an IP address space of 10.10.0.0/16.

The offices connect by using a VPN provided by an ISP. Each office has one Azure ExpressRoute circuit that provides access to Azure services and Microsoft Online Services. Routing is implemented by using Microsoft peering.

The New York office has a virtual machine named VM1 that has the vSphere console installed.

Azure Environment

You provision the Azure infrastructure by using the Azure portal. The infrastructure contains the resources shown in the following table.

AG1 has two backend pools named Pool11 and Pool12. AG2 has two backend pools named Pool21 and Pool22.

Planned Changes

ADatum plans to migrate the virtual machines from the New York office to the East US Azure region by using Azure Site Recovery.

Infrastructure Requirements

ADatum identifies the following infrastructure requirements:

A new web app named App1 that will access third-parties for credit card processing must be deployed.

A newly developed API must be implemented as an Azure function named App2. App2 will use a blob storage trigger. App2 must process new blobs immediately.

The Azure infrastructure and the on-premises infrastructure and the on-premises infrastructure must be prepared for the migration of the VMware virtual machines to Azure.

The sizes of the Azure virtual machines that will be used to migrate the on-premises workloads must be identified.

All migrated and newly deployed Azure virtual machines must be joined to the adatum.com domain.

AG1 must load balance incoming traffic in the following manner:

http://corporate.adatum.com/video/*

will be load balanced across Pool11.

http://corporate.adatum.com/images/*

will be load balanced across Pool12.

AG2 must load balance incoming traffic in the following manner:

http://www.adatum.com

will be load balanced across Pool21.

http://www.fabrikam.com

will be load balanced across Pool22.

ER1 must route traffic between the New York office and the platform as a service (PaaS) services in the East US Azure region, as long as ER1 is available.

ER2 must route traffic between the Los Angeles office and the PaaS sevices in the West US region, as long as ER2 is available.

ER1 and ER2 must be configured to fail over automatically.

Application Requirements

App2 must be able to connect directly to the private IP addresses of the Azure virtual machines. App2 will be deployed directly to an Azure virtual network.

Inbound and outbound communications to App1 must be controlled by using NSGs.

Pricing Requirements

ADatum identifies the following pricing requirements:

The cost of App1 and App2 must be minimized.

The transactional charges of Azure Storage account must be minimized.


Ready for Mock Test now?


Options are :

  • Click Skip question > button (Correct)

Answer :Click Skip question > button

AZ-104 Real Azure Administrator Practice Test Set 5

You need to configure AG1.

What should you create?


Options are :

  • a multi-site listener
  • a URL path-based routing rule (Correct)
  • a basic listener
  • a basic routing rule

Answer :a URL path-based routing rule

You need to identify the appropriate sizes for the Azure virtual machines.

Which five actions should you perform in sequence? To answer, move the appropriate actions from the list of actions to the answer area and arrange them in the correct order.


Options are :

  • From the Azure portal, create an Azure Migrate project. From the Azure portal, download an OVA file. From VM1, run the Deploy OVF Template wizard. From VM1, connect to the collector virtual machine and run the Azure Migrate Collector. From the Azure portal, create an Azure Migrate assessment. (Correct)
  • From the Azure portal, create an Azure Migrate project. From the Azure portal, download an OVA file. From VM1, run the Deploy OVF Template wizard. From Microsoft Download Center, download the Azure Site Recovery deployment planner. From the Azure portal, create an Azure Migrate assessment.
  • From the Azure portal, create an Azure Migrate project. From the Azure portal, download an OVA file. From VM1, run the Deploy OVF Template wizard. From VM1, connect to the collector virtual machine and run the Azure Site recovery deployment planner. From the Azure portal, create an Azure Migrate assessment.
  • From the Azure portal, create an Azure Migrate project. From the Azure portal, download an OVA file. From VM1, run the Deploy OVF Template wizard. From VM1, connect to the collector virtual machine and run the Azure Site recovery deployment planner. From Microsoft Download Center, download the Azure Site Recovery deployment planner.

Answer :From the Azure portal, create an Azure Migrate project. From the Azure portal, download an OVA file. From VM1, run the Deploy OVF Template wizard. From VM1, connect to the collector virtual machine and run the Azure Migrate Collector. From the Azure portal, create an Azure Migrate assessment.

What should you create to configure AG2?


Options are :

  • multi-site listeners (Correct)
  • basic listeners
  • URL path-based routing rules
  • basic routing rules
  • an additional public IP address

Answer :multi-site listeners

AZ-203 Microsoft Certified Azure Developer practice exams Set 15

You need to prepare the New York office infrastructure for the migration of the on-premises virtual machines to Azure.

Which four actions you perform in sequence? To answer, move the appropriate actions from the list of actions to the answer area and arrange them in the correct order.


Options are :

  • From the Azure portal, download the OVF file. From VM1, connect to the collector virtual machine. From the ASRV1 blade in the Azure portal, select a protection goal. From VM1, register the configuration server. (Correct)
  • From the Azure portal, download the OVF file. From VM1, connect to the collector virtual machine. From the ASRV1 blade in the Azure portal, select a protection goal. From VM1, deploy a virtual machine.
  • From the Azure portal, download the OVF file. From VM1, connect to the collector virtual machine. From VM1, deploy a virtual machine. From VM1, register the configuration server.
  • From the Azure portal, download the OVF file. From VM1, deploy a virtual machine. From the ASRV1 blade in the Azure portal, select a protection goal. From VM1, register the configuration server.

Answer :From the Azure portal, download the OVF file. From VM1, connect to the collector virtual machine. From the ASRV1 blade in the Azure portal, select a protection goal. From VM1, register the configuration server.

You need to configure the Azure ExpressRoute circuits.

How should you configure Azure ExpressRoute routing? To answer, drag the appropriate configurations to the correct locations. Each configuration may be used once, more than once, or not at all. You may need to drag the split bar between panes or scroll to view content.

NOTE: Each correct selection is worth one point.


Options are :

  • Use BGP to append the private AS numbers to the advertised prefixes. Use BGP communities to configure BGP's Local Preference. (Correct)
  • Use BGP to append the public AS numbers to the advertised prefixes. Use BGP communities to configure BGP's Local Preference.
  • Use BGP to append the private AS numbers to the advertised prefixes. Use BGP to append the public AS numbers to the advertised prefixes.

Answer :Use BGP to append the private AS numbers to the advertised prefixes. Use BGP communities to configure BGP's Local Preference.

You need to recommend an environment for the deployment of App1.

What should you recommend?


Options are :

  • a new App Service plan that uses the P3v2 pricing tier
  • ASE1 and an App Service plan that uses the I1 pricing tier (Correct)
  • ASE1 and an App Service plan that uses the I3 pricing tier
  • a new App Service plan that uses the S1 pricing tier

Answer :ASE1 and an App Service plan that uses the I1 pricing tier

Ms Azure Administrator - Mock Test Set 6

You need to implement App2 to meet the application? To answer, select the appropriate options in the answer area.

NOTE: Each correct selection is worth one point.


Options are :

  • Isolated Always On
  • Shared Auto Swap
  • Standard Always On (Correct)
  • Standard Web Sockets

Answer :Standard Always On

You need to provision the resources in Azure to support the virtual machine that will be migrated from the New York office.

What should you include in the solution? To answer, select the appropriate options in the answer area.

NOTE: Each correct selection is worth one point.


Options are :

  • 10.20.0.0/16 Storage (general purpose v1) (Correct)
  • 10.0.0.0/16 Blob storage
  • 10.20.0.0/16 StorageV2 (general purpose v2)
  • 10.10.0.0/16 StorageV2 (general purpose v2)

Answer :10.20.0.0/16 Storage (general purpose v1)

You need to implement App2 to meet the application requirements.

What should you include in the implementation? To answer, select the appropriate options in the answer area.

NOTE: Each correct selection is worth one point.


Options are :

  • Isolated Always On
  • Shared Auto Swap
  • Standard Web Sockets
  • Standard Always On (Correct)

Answer :Standard Always On

AZ-203 Microsoft Certified Azure Developer practice exams Set 7

Case study: Humongous Insurance

Overview

Existing Environment

Active Directory Environment

Humongous Insurance has a single-domain Active Directory forest named humongousinsurance.com. The functional level of the forest is Windows Server 2012.

You recently provisioned an Azure Active Directory (Azure AD) tenant.

Network Infrastructure

Each office has a local data center that contains all the servers for that office. Each office has a dedicated connection to the Internet. Each office has several link load balancers that provide access to the servers.

Active Directory Issue

Several users in humongousinsurance.com have UPNs that contain special characters.

You suspect that some of the characters are unsupported in Azure AD.

Licensing Issue

You attempt to assign a license in Azure to several users and receive the following error message: "Licenses not assigned. License agreement failed for one user."

You verify that the Azure subscription has the available licenses.

Requirements

Planned Changes

Humongous Insurance plans to open a new office in Paris. The Paris office will contain 1,000 users who will be hired during the next 12 months. All the resources used by the Paris office users will be hosted in Azure.

Planned Azure AD Infrastructure

The on-premises Active Directory domain will be synchronized to Azure AD.

All client computers in the Paris office will be joined to an Azure AD domain.

Planned Azure Networking Infrastructure You plan to create the following networking resources in a resource group named All_Resources:

Default Azure system routes that will be the only routes used to route traffic

A virtual network named Paris-VNet that will contain two subnets named Subnet1 and Subnet2

A virtual network named ClientResources-VNet that will contain one subnet named ClientSubnet

A virtual network named AllOffices-VNet that will contain two subnets named Subnet3 and Subnet4

You plan to enable peering between Paris-VNet and AllOffices-VNet. You will enable the Use remote gateways setting for the Paris-VNet peerings.

You plan to create a private DNS zone named humongousinsurance.local and set the registration network to the ClientResources-VNet virtual network.

Planned Azure Computer Infrastructure

Each subnet will contain several virtual machines that will run either Windows Server 2012 R2, Windows Server 2016, or Red Hat Linux.

Department Requirements

Humongous Insurance identifies the following requirements for the company's departments:

Web administrators will deploy Azure web apps for the marketing department. Each web app will be added to a separate resource group. The initial configuration of the web apps will be identical. The web administrators have permission to deploy web apps to resource groups.

During the testing phase, auditors in the finance department must be able to review all Azure costs from the past week.

Authentication Requirements

Users in the Miami office must use Azure Active Directory Seamless Single Sign-on (Azure AD Seamless SSO) when accessing resources in Azure.

Ready for Mock Test now?


Options are :

  • Click Skip question > button (Correct)

Answer :Click Skip question > button

AZ-103 Microsoft Azure Administrator Practice Exam Questions Set 3

You need to resolve the licensing issue before you attempt to assign the license again.

What should you do?


Options are :

  • From the Groups blade, invite the user accounts to a new group. (Correct)
  • From the Profile blade, modify the usage location.
  • From the Directory role blade, modify the directory role.

Answer :From the Groups blade, invite the user accounts to a new group.

You need to define a custom domain name for Azure AD to support the planned infrastructure.

Which domain name should you use?


Options are :

  • ad.humongousinsurance.com
  • humongousinsurance.onmicrosoft.com
  • humongousinsurance.local
  • humongousinsurance.com (Correct)

Answer :humongousinsurance.com

Which blade should you instruct the finance department auditors to use?


Options are :

  • Partner information
  • Overview
  • Payment methods
  • Invoices (Correct)

Answer :Invoices

AZ-203 Microsoft Certified Azure Developer practice exams Set 15

You need to resolve the Active Directory issue.

What should you do?


Options are :

  • From Active Directory Users and Computers, select the user accounts, and then modify the User Principal Name value.
  • Run idfix.exe, and then use the Edit action. (Correct)
  • From Active Directory Domains and Trusts, modify the list of UPN suffixes.
  • From Azure AD Connect, modify the outbound synchronization rule.

Answer :Run idfix.exe, and then use the Edit action.

You are evaluating the name resolution for the virtual machines after the planned implementation of the Azure networking infrastructure.

For each of the following statements, select Yes if the statement is true. Otherwise, select No.


Options are :

  • The virtual machines on Subnet1 will be.......... Yes The virtual machines on ClinetSubnet will be...Yes The virtual machine on Subnet4 will be also.....No (Correct)
  • The virtual machines on Subnet1 will be..........No The virtual machines on ClinetSubnet will be...Yes The virtual machine on Subnet4 will be also.....No
  • The virtual machines on Subnet1 will be.......... No The virtual machines on ClinetSubnet will be...No The virtual machine on Subnet4 will be also.....No
  • The virtual machines on Subnet1 will be.......... Yes The virtual machines on ClinetSubnet will be...Yes The virtual machine on Subnet4 will be also.....Yes

Answer :The virtual machines on Subnet1 will be.......... Yes The virtual machines on ClinetSubnet will be...Yes The virtual machine on Subnet4 will be also.....No

You need to prepare the environment to meet the authentication requirements.

Which two actions should you perform? Each correct answer presents part of the solution.

NOTE: Each correct selection is worth one point.


Options are :

  • Allow inbound TCP port 8080 to the domain controllers in the Miami office.
  • Add http://autogon.microsoftazuread-sso.com to the intranet zone of each client computer in the Miami office. (Correct)
  • Join the client computers in the Miami office to Azure AD.
  • Install the Active Directory Federation Services (AD FS) role on a domain controller in the Miami office.
  • Install Azure AD Connect on a server in the Miami office and enable Pass-through Authentication. (Correct)

Answer :Add http://autogon.microsoftazuread-sso.com to the intranet zone of each client computer in the Miami office. Install Azure AD Connect on a server in the Miami office and enable Pass-through Authentication.

AZ-203 Microsoft Certified Azure Developer practice exams Set 8

Which blade should you instruct the finance department auditors to use?


Options are :

  • invoices (Correct)
  • partner information
  • cost analysis
  • External services

Answer :invoices

You need to prepare the environment to meet the authentication requirements.

Which two actions should you perform? Each correct answer presents part of the solution.

NOTE Each correct selection is worth one point.


Options are :

  • Azure Active Directory (AD) Identity Protection and an Azure policy
  • a Recovery Services vault and a backup policy (Correct)
  • an Azure Key Vault and an access policy
  • an Azure Storage account and an access policy (Correct)

Answer :a Recovery Services vault and a backup policy an Azure Storage account and an access policy

You need to prepare the environment to ensure that the web administrators can deploy the web apps as quickly as possible.

Which three actions should you perform in sequence? To answer, move the appropriate actions from the list of actions to the answer area and arrange them in the correct order.


Options are :

  • - Create resource group, and then deploy a web app to the resource group - From the Automation script blade of the resource group, click Deploy. - From the Templates service, select the template, and then share the template to the web administrators.
  • - From the Automation Accounts service, add an automation account. - From the Automation script blade of the resource group, click Deploy. - From the Automation script blade or the resource group, click the Parameter tab.
  • - From the Automation script blade or the resource group, click the Parameter tab.. - From the Automation script blade of the resource group, click Deploy. - From the Templates service, select the template, and then share the template to the web administrators.
  • - From the Automation Accounts service, add an automation account. - From the Automation script blade of the resource group, click Deploy. - From the Templates service, select the template, and then share the template to the web administrators. (Correct)

Answer :- From the Automation Accounts service, add an automation account. - From the Automation script blade of the resource group, click Deploy. - From the Templates service, select the template, and then share the template to the web administrators.

AZ-203 Microsoft Certified Azure Developer practice exams Set 5

You need to define a custom domain name for Azure AD to support the planned infrastructure.

Which domain name should you use?


Options are :

  • Join the client computers in the Miami office to Azure AD.
  • Add http://autologon.microsoftazuread-sso.com to the intranet zone of each client computer in the Miami office. (Correct)
  • Allow inbound TCP port 8080 to the domain controllers in the Miami office.
  • Install Azure AD Connect on a server in the Miami office and enable Pass-through Authentication (Correct)
  • Install the Active Directory Federation Services (AD FS) role on a domain controller in the Miami office.

Answer :Add http://autologon.microsoftazuread-sso.com to the intranet zone of each client computer in the Miami office. Install Azure AD Connect on a server in the Miami office and enable Pass-through Authentication

You have an Azure subscription that contains two virtual networks named VNet1 and VNet2. Virtual machines connect to the virtual networks.

The virtual networks have the address spaces and the subnets configured as shown in the following table.

You need to add the address space of 10.33.0.0/16 to VNet1. The solution must ensure that the hosts on VNet1 and VNet2 can communicate.

Which three actions should you perform in sequence? To answer, move the appropriate actions from the list of actions to the answer area and arrange them in the correct order.


Options are :

  • Remove peering between Vnet1 and VNet2. Add the 10.44.0.0/16 address space to VNet1. Recreate peering between VNet1 and VNet2. (Correct)
  • Create a new virtual network named VNet1. Add the 10.44.0.0/16 address space to VNet1. Recreate peering between VNet1 and VNet2.
  • Remove VNet1. Create a new virtual network named VNet1. Recreate peering between VNet1 and VNet2.
  • Add the 10.44.0.0/16 address space to VNet1. Recreate peering between VNet1 and VNet2. On the peering connection in VNet2, allow gateway transit.

Answer :Remove peering between Vnet1 and VNet2. Add the 10.44.0.0/16 address space to VNet1. Recreate peering between VNet1 and VNet2.

Case study: Contoso Ltd

Overview

Contoso, Ltd. is a manufacturing company that has offices worldwide. Contoso works with partner organizations to bring products to market.

Contoso products are manufactured by using blueprint files that the company authors and maintains.

Existing Environment

Currently, Contoso uses multiple types of servers for business operations, including the following:

File servers

Domain controllers

Microsoft SQL Server servers

Your network contains an Active Directory forest named contoso.com. All servers and client computers are

joined to Active Directory.

You have a public-facing application named App1. App1 is comprised of the following three tiers:

A SQL database

A web front end

A processing middle tier

Each tier is comprised of five virtual machines. Users access the web front end by using HTTPS only.

Requirements

Planned Changes

Contoso plans to implement the following changes to the infrastructure:

Move all the tiers of App1 to Azure.

Move the existing product blueprint files to Azure Blob storage.

Create a hybrid directory to support an upcoming Microsoft Office 365 migration project.

Technical Requirements

Contoso must meet the following technical requirements:

Move all the virtual machines for App1 to Azure.

Minimize the number of open ports between the App1 tiers.

Ensure that all the virtual machines for App1 are protected by backups.

Copy the blueprint files to Azure over the Internet.

Ensure that the blueprint files are stored in the archive storage tier.

Ensure that partner access to the blueprint files is secured and temporary.

Prevent user passwords or hashes of passwords from being stored in Azure.

Use unmanaged standard storage for the hard disks of the virtual machines.

Ensure that when users join devices to Azure Active Directory (Azure AD), the users use a mobile

phone to verify their identity.

Minimize administrative effort whenever possible.

User Requirements

Contoso identifies the following requirements for users:

Ensure that only users who are part of a group named Pilot can join devices to Azure AD.

Designate a new user named Admin1 as the service administrator of the Azure subscription.

Ensure that a new user named User3 can create network objects for the Azure subscription.

Ready for Mock Test now?


Options are :

  • Click Skip question > button (Correct)

Answer :Click Skip question > button

70-533 Implementing Microsoft Azure Infrastructure Solution Set 4

You need to identify the storage requirements for Contoso.

For each of the following statements, select Yes if the statement is true. Otherwise, select No.

NOTE: Each correct selection is worth one point.


Options are :

  • Contoso requires a storage account that support Blob storage. -> Yes Contos requires a storage account that supports Azure Table Storage. -> No Contos requires a storage account that supports Azure File Storage. -> No (Correct)
  • Contoso requires a storage account that support Blob storage. -> Yes Contos requires a storage account that supports Azure Table Storage. -> Yes Contos requires a storage account that supports Azure File Storage. -> No
  • Contoso requires a storage account that support Blob storage. -> Yes Contos requires a storage account that supports Azure Table Storage. -> No Contos requires a storage account that supports Azure File Storage. -> Yes
  • Contoso requires a storage account that support Blob storage. -> No Contos requires a storage account that supports Azure Table Storage. -> Yes Contos requires a storage account that supports Azure File Storage. -> Yes

Answer :Contoso requires a storage account that support Blob storage. -> Yes Contos requires a storage account that supports Azure Table Storage. -> No Contos requires a storage account that supports Azure File Storage. -> No

You need to meet the user requirement for Admin1.

What should you do?


Options are :

  • From the Subscriptions blade, select the subscription, and then modify the Properties. (Correct)
  • From the Subscriptions blade, select the subscription, and then modify the Access control (IAM) settings.
  • From the Azure Active Directory blade, modify the Properties.
  • From the Azure Active Directory blade, modify the Groups.

Answer :From the Subscriptions blade, select the subscription, and then modify the Properties.

You need to move the blueprint files to Azure.

What should you do?


Options are :

  • Generate a shared access signature (SAS). Map a drive, and then copy the files by using File Explorer.
  • Use the Azure Import/Export service.
  • Generate an access key. Map a drive, and then copy the files by using File Explorer.
  • Use Azure Storage Explorer to copy the files. (Correct)

Answer :Use Azure Storage Explorer to copy the files.

AZ-300 Microsoft Azure Architect Practice Exam Questions NEW Set 1

You need to implement a backup solution for App1 after the application is moved.

What should you create first?


Options are :

  • a recovery plan
  • an Azure Backup Server
  • a backup policy
  • a Recovery Services vault (Correct)

Answer :a Recovery Services vault

You are planning the move of App1 to Azure.

You create a network security group (NSG).

You need to recommend a solution to provide users with access to App1.

What should you recommend?


Options are :

  • Create an outgoing security rule for port 443 from the Internet. Associate the NSG to all the subnets.
  • Create an incoming security rule for port 443 from the Internet. Associate the NSG to all the subnets
  • Create an incoming security rule for port 443 from the Internet. Associate the NSG to the subnet that contains the web servers. (Correct)
  • Create an outgoing security rule for port 443 from the Internet. Associate the NSG to the subnet that contains the web servers.

Answer :Create an incoming security rule for port 443 from the Internet. Associate the NSG to the subnet that contains the web servers.

You need to recommend an identify solution that meets the technical requirements.

What should you recommend?


Options are :

  • federated single-on (SSO) and Active Directory Federation Services (AD FS) (Correct)
  • password hash synchronization and single sign-on (SSO)
  • cloud-only user accounts
  • Pass-through Authentication and single sign-on (SSO)

Answer :federated single-on (SSO) and Active Directory Federation Services (AD FS)

AZ-400 Microsoft Azure DevOps Solutions Practice Tests Set 2

You need to recommend a solution for App1. The solution must meet the technical requirements. What should you include in the recommendation? To answer, select the appropriate options in the answer area.

NOTE: Each correct selection is worth one point.


Options are :

  • 1 1
  • 1 2
  • 1 3 (Correct)
  • 2 3

Answer :1 3

Comment / Suggestion Section
Point our Mistakes and Post Your Suggestions