Your company has a line-of-business (LOB) application that uses Azure SQL Database for storing transactional information. Your company also has System Center Service Manager deployed. You need to configure an alert when the database reaches the 70% of CPU usage. When this alert rises, you need to notify several users by email and by SMS. You also need to automatically create a ticket in the ITSM system. Your solution should require the minimum administrative effort. Which two actions should you perform? Each correct answer presents part of the solution.
- A. Configure one Action Group with three actions: one for email notification, one for SMS notification, and one for ITSM ticket creation.
- C. Configure two Action Groups: one Action Group for email and SMS notification and one for ITSM ticket creation.
CompanyA has a Line-Of-Business (LOB) application hosted in an Azure subscription. This LOB application has a three-layer architecture with a scale set and several virtual machines (VMs) in each layer. The VMs use a load balancer to distribute the traffic across all VMs. The LOB application is deployed in the West US 2 Azure region. CompanyA acquires another company named CompanyB. This company has another Azure Subscription with a different Azure Active Directory (Azure AD) tenant and several resources deployed in it. CompanyB users access these resources using a site-to-site VPN deployed in the East US Azure region. You want to ensure that users in CompanyB can access the CompanyA LOB application. You decide to configure a VNet peering. Users from CompanyB report that they are not able to access the CompanyA LOB application. You need to troubleshoot these connectivity issues. What are the two most likely causes of this issue? Each correct answer presents a complete solution.
You configure federated authentication on your Azure subscription for multiple applications. As a part of that work, you enable Home Realm Discovery and set the policy as shown in the exhibit. The majority of your users can successfully access the application, but several users report that they are unable to sign in. You need to resolve the problem. What are two ways to resolve the problem? Each correct answer presents a complete solution.
You have a Windows server that runs in Azure and an ExpressRoute connection from your site into Azure, as shown in the exhibit. After six months of normal use without issues, you receive feedback from your users indicating that they are experiencing network issues when attempting to connect to both Server 1 and Server 2. You need to monitor the network traffic to discover the cause of this issue. What tool should you use?
- B. TRACERT
You use Azure VM Backup to back up all Windows Server and Linux VMs in Azure to a Recovery Services vault. One of your colleagues informs you that he accidentally deleted corp-archive-vm1. You inspect Azure Monitor and verify that the server has been backed up every night for the past two months even though it has been powered off the entire time. You need to restore the VM to its original location as quickly as possible. What two actions should you perform? Each correct answer presents part of the solution.
Your company purchases a new application and is planning to deploy it in Azure. The application requires Windows Server 2016. It also requires high-availability, so it will be deployed using an availability set. You are asked to prepare the virtual machine (VM) to automatically deploy all needed requirements for the application to run. You decide to use a custom script extension. Before deploying the custom script, you test it and ensure that the script runs with no errors in the local environment. You store the script and some dependencies needed for the application in a blob storage account. While you are testing automatic deployment, you realize that the custom script is not running. What is the most likely reason for the custom script not running?
Your company has an Azure subscription with an Azure Active Directory (Azure AD) tenant. Your company wants to deploy a system that allows users to have a unified experience across all their Windows devices. The security policies of your company require that all user and application data must be encrypted before moving to the cloud and also be encrypted at rest when stored in the cloud. All computers in your company runs different versions of Windows 7, Windows 8.1, and Windows 10. Your company has an Active Directory Domain Service (AD DS) domain on the local infrastructure. All the computers in the company are joined to the AD DS domain. You need to deploy Enterprise State Roaming. Your solution needs to require the lowest possible costs. Which two prerequisites do you need to meet before configuring Enterprise State Roaming? Each correct answer presents part of the solution.
You are asked to configure Azure virtual machine (VM) connectivity between two virtual networks (VNets) in the same Azure Resource Group. The solution must support an application that requires connectivity using IPv6 and may not fall back to IPv4 for compliance reasons. The application must also support IPv6 clients on the public Internet. You need to implement these requirements. What three actions should you perform? Each correct answer presents part of the solution.
Your company has a line-of-business (LOB) application that uses Azure SQL Database to store transactional information. The LOB application also uses Windows and Linux virtual machines for the business and presentation application layers. Some users are reporting errors in the application. You need to be alerted every time that an exception arises in any part of the application. Your solution should require minimal administrative effort. Which two actions should you perform? Each correct answer presents part of the solution.
- A. Create an alert using a search query that looks for exceptions in business and presentation layer virtual machines.
You deployed two virtual networks (VNets) that have the following properties: * dev-vnet-west (West US region) * prod-vnet-east (East US region) You configure global VNet peering to link to dev-vnet-west and prod-vnet-east VNets. You need to ensure that virtual machines (VMs) in either VNet can resolve fully qualified domain names (FQDNs) of any other VM in Azure. What should you do?
A client asks you to assist in moving a public website and Domain Name System (DNS) domain from the current host into Azure. You help the client migrate the website to an Azure App Service web application. You also create a zone in Azure DNS for the client's company.com domain. You now need to configure DNS so that user requests to company.com resolve to the Azure App Service app. What should you do next?
Your on-premises datacenter has a mixture of servers running Windows Server 2012 R2 Datacenter edition and Windows Server 2016 Datacenter edition. You need to configure Azure Sync Service between the Azure Files service and the servers in the datacenter. Which two activities must you complete to ensure that the service will operate successfully on your servers? Each correct answer presents part of the solution.
Your company has an Azure Subscription with several resources deployed. The subscription is managed by a Cloud Service Provider. The accounting department is currently granted the billing reader role, so they are able to see cost-related information. They need to get a better understanding of the costs so they can assign them to the correct cost center. You need to provide cost center information. Your solution should minimize administrative effort. What two actions should you perform? Each correct answer presents part of the solution.
Your company is developing a line-of-business (LOB) application that uses the Azure loT Hub for gathering information from Internet of things (loT) devices. The LOB application uses the loT Hub Service SDK to read device telemetry from the loT Hub. You need to monitor device telemetry and be able configure alerts based on device telemetry values. Your solution should require the least administrative effort. What should you do?
Your company is developing a web application. This web application will be deployed in Azure using virtual machines (VMs). To ensure the high availability of the application, you plan to configure a load balancer for the web application. The web application has the following requirements: * Users of the application need to upload files to it. This upload process uses TCP and UDP ports. * The application uses a TCP keep-alive of 10 minutes. You are configuring the load balancing rules for the public load balancer of the application. Which two configuration changes should you make? Each correct answer presents part of the solution.
Your company has 53 offices distributed across the world. Your company uses Office 365 for all employees and an Active Directory Domain Services (AD DS) domain to manage identity for employees. The Azure AD tenant for Office 365 and the AD DS domain are not connected. You are asked to implement multi-factor authentication (MFA). You need to ensure that users do not need to provide two-factor authentication when they are connected to the company's network from each of the 53 offices. What two actions should you perform? Each correct answer presents part of the solution.
Your company deploys an Azure File Sync service. This service syncs with an on-premises file server located in your office. The server stores the information synced with Azure in a volume different from the system volume. The file server has an antivirus solution installed. You notice that some infrequently accessed files are downloaded to the file server. After monitoring file system access, you determine that no user is accessing the affected files. You need to troubleshoot what is happening with those files. What are two ways of meeting your goal? Each correct answer presents a complete solution.
- A. Run the Set-AzStorageSyncServerEndpoint -Id serverendpointid -CloudTiering true - VolumeFreeSpacePercent 60 PowerShell cmdlet.
You are asked to create a new set of Azure Active Directory (Azure AD) security groups that represent the entire hierarchy of a manager's team. This is to include people managed by the manager but not people managed by the manager's own team. For example if Bob manages Tom and Tom manages Fred. The group must include Tom but not Fred. The group should also update dynamically as people change managers over time. You need to implement the request using the least amount of administrative effort. What should you do?
- B. Create new Azure AD groups for each manager and use a custom script to detect ManagerlD attribute changes and modify the group membership accordingly.
- C. Create multiple Azure AD groups and add the members with the same ManagerlD attribute value to each group.
You back up all Azure-based virtual machines (VMs) to a Recovery Services vault. One of these VMs is a Windows Server 2016 domain member server named app1 that hosts an internally developed line of business (LOB) web application. A developer informs you that she needs to review three-month-old log files stored on app1. You need to retrieve these files as efficiently as possible. What should you do?
- A. Download the appropriate virtual hard disk (VHD) files from the Recovery Services vault to your administrative workstation.
- B. Mount the virtual hard disks (VHDs) from the relevant VM backup as drives on your administrative workstation.
- C. Make a Remote Desktop Protocol (RDP) connection to app1 and use the Previous Versions feature to restore the requested log files.
Your company has an Office 365 tenant for communications and collaboration. The company has also an Azure subscription with an Azure Active Directory (Azure AD) Premium tenant. The company also has an on-premises Active Directory Domain Services (AD DS) domain. The security policies of your company allow access to cloud applications from employee-owned devices. The security policies require that access to any Office 365 application from a mobile device be limited to users who have enrolled and registered their devices in the corporate Azure AD tenant. The policy applies only to iOS or Android devices. You need create a conditional access policy to implement the security policy for Microsoft Office 365 Exchange Online to meet the requirements. Which four conditions should you configure? Each correct answer presents part of the solution
- A. Location
You have 20 Azure subscriptions. All subscriptions are linked to the same Azure Active Directory (Azure AD) tenant named company.com. You plan to generate detailed usage and spend reports across all Azure subscriptions. You need to incorporate resource optimization suggestions into your reports. What should you do?
You have an Azure network, as shown in the exhibit. Your network consists of two virtual networks (VNets) and several servers. Server 2 has the Network Watcher Agent installed. You have peered both VNets together, but Server 1 cannot communicate with Server 2 over HTTPS. You need to find the fault that is preventing the servers from communicating. What should you do first?
Your company has an Azure subscription that hosts all services that the company uses in production. The Finance department notices that the bills related to Azure are increasing. The company wants to keep the costs of this Azure subscription under control. After reviewing the cost analysis reports, you realize that there are several virtual machines that are consuming more resources than expected. You need to inform management when the spend for these resources is unusual. What should you do?
You deploy virtual machines (VMs) in your Azure subscription. The VMs are connected to different virtual networks (VNets). You configure custom filtering rules on the VNets. Communication between the VMs is working correctly. You deploy an additional VM named VM01 in a new VNet named VNet01. This new VM is experiencing some connectivity issues. You decide to use Network Watcher to troubleshoot the connectivity issues. You need to determine which filtering rule is causing the issue. Which two cmdlets should you use? Each correct answer presents part of the solution.
You are asked to connect your new Office 365 subscription with your on-premises Active Directory Domain Services (AD DS) domain. You configure Azure AD Connect and enable Seamless Single Sign-On (SSO). You need to configure Group Policy Object (GPO) support for SSO. Which two policies or settings should you configure? Each correct answer presents part of the solution.
About Individual Course:
|Learning Style||Self-Paced Learning|
|Course Duration||1 Hour|