Certification Practice Test Sample Questions For Microsoft Azure Administrator (AZ-103)
QuickStart is now offering sample questions for Microsoft Azure Administrator (AZ-103). Whether you are deciding which exam to sign up for, or simply want to practice the materials necessary to complete certification for this course, we have provided a practice test to better aid in certification. 100% of the questions are real test questions; from a recent version of the Microsoft Azure Administrator (AZ-103) exam.
Microsoft Certified Azure Administrator + Exam Bundle Course
Enroll now today and get 30% off using discount code PRACTICE30 at checkout.
Designing and Implementing Microsoft DevOps solutions (AZ-400T00)
Enroll now today and get 30% off using discount code at checkout.
AZ 103 Sample Exam Questions
Your organization stores transactional information by a line-of-business (LOB) application that uses Azure SQL Database. There is also a System Center Service Manager deployed in your organization. You are required to configure an alert that must inform when 70% of CPU usage is reached by the database. Once the alert goes on, you will be using emails and SMS to notify several users about it. You will also have to create a ticket in the ITSM system automatically. What two actions would you choose to do if you want your solution to require minimum administrative effort?
OrganizationA has a Azure hosted Line-Of-Business (LOB) application. There is a three-layer architecture in this LOB application with a scale set. Each layer has several virtual machines (VMs). A load balancer is used by the VMs so the traffic is distributed across all VMs. OrganizationA’s LOB application is deployed in the West US 2 Azure region. There is another company named OrganizationB that is acquired by OrganizationA. OrganizationB has another Azure Subscription. The Azure Active Directory (Azure AD) tenant is different and has several resources deployed in it. Users in OrganizationB have a site-to-site VPN deployed in the East US Azure region which they use to access resources. You need to make sure users in OrganizationB can access the OrganizationA LOB application. For that purpose, you plan to configure a VNet peering. A concern is raised by the users of OrganizationB that they cannot access the LOB application in OrganizationA. You need to troubleshoot these connectivity issues. Identify the two reasons that might have caused this issue. What are the two most likely causes of this issue? Each correct answer presents a complete solution.
- A. The LOB application uses Basic load Balancers
-
Correct!
- B. The LOB application uses Standard Load Balancers..
-
Incorrect.
- C. The VPN gateway has a missing configuration.
-
Correct!
You back up Linux and Windows Server VMs in Azure to a Recovery Services vault using Azure VM Backup. You come to know from a colleague that corp-archive-vm1 has been accidentally deleted by him. Upon checking and verifying the Azure Monitor you come to know that the server has been backed up every night for the past two months, although the server was powered off the entire time. Which two of the below provided actions would you perform in order to restore the VM to its original location as quickly as possible?
- B. Restore the corp-archive-vm1 disks and ARM template and redeploy the VM using Azure PowerShell.
-
Incorrect.
- C. Restore corp-archive-vm1 by creating a new VM.
-
Correct!
A new application is purchased by your organization and it is planned to be deployed on Azure. Windows Server 2016 is required by the application. High-availability is also required, so an availability set will be required to deploy it. You are required to prepare the virtual machine (VM) so the requirements for the application to run are deployed automatically. You have decided to use a custom script extension. You have to make sure the custom script runs with no errors in the local environment, so you test it before it is deployed. You use a blob storage account to store the script and some dependencies needed for the application. Upon testing automatic deployment, it is noticed that the custom script is not running. Why do you think the custom script isn’t running?
- B. The operation is taking more than 90 minutes.
-
Incorrect.
- D. You need to sign the script.
-
Incorrect.
The organization you work for has an Azure subscription with an Azure Active Directory (Azure AD) tenant. Your organization wants users to have a unified experience on all Windows devices for which it is planning to deploy a system. According to organization’s security policies, user and application data must be encrypted before moving to the cloud. The policies also require the data to be encrypted when at rest and stored in cloud. Different versions of Windows 7, Windows 8.1, and Windows 10 are run in the computer machines of the organization. Your organization has an Active Directory Domain Service (AD DS) domain and a local infrastructure configured on it. The machines are all joined to the AD DS domain. Enterprise State Roaming is required to be deployed. There must be lowest costs incurred by the solution you suggest. Can you identify what two prerequisites must be met before Enterprise State Roaming is configured?
- A. Deploy Azure AD Connect.
-
Correct!
- B. Purchase Azure AD Basic licenses.
-
Incorrect.
- C. Deploy Active Directory Federation Services (AD FS).
-
Incorrect.
- D. Purchase Azure AD Premium P1 licenses.
-
Correct!
There are two virtual networks (VNets) in the same Azure Resource Group. You are asked to configure Azure virtual machine (VM) connectivity between the two. Your provided solution is expected to support an application which requires connectivity using IPv6 as a part of compliance policies. The application must also support IPv6 clients on the public Internet. Identify the three actions you would perform to implement these requirements. (opt any THREE).
An organization you work for has an application that stores transactional information. The app is a line-of-business (LOB) application using Azure SQL Database to store transactional information. Linux and Windows virtual machines (VMs) are used by the LOB application for the business and presentation application layers. The application is reported by some users to have errors in it. In case there is an exception that arises in any part of the application, you want to be alerted about it. There should be minimum administrative effort to be spent in the solution you suggest. Identify the two most suitable actions you would take to implement a solution like this. (opt any TWO).
- A. Create an alert using a search query that looks for exceptions in business layer servers.
-
Correct!
Following are the properties of two virtual networks (VNets) that you have deployed: -dev-vnet-west (West US region) -prod-vnet-east (East US region) To link these two VNets, you configure global VNet peering. You want virtual machines (VMs) in either VNet to be able to resolve fully qualified domain names (FQDNs) of any other VM in Azure. What is the most suitable step for you to take?
- A. Add service endpoints to each VNet.
-
Incorrect.
- B. Create a private zone in Azure DNS.
-
Correct!
- C. Deploy DNS servers in each VNet and add their private IP addresses to the DNS servers list.
-
Incorrect.
- D. Use Azure-provided DNS in each VNet.
-
Incorrect.
You are approached by a client who requires a public website and Domain Name System (DNS) domain to be moved from the current host into Azure. You agree to do for the clinet and take necessary steps to migrate the website to an Azure App Service web application. The client’s domain name is organization.com. A zone in Azure DNS is created for the client's domain. DNS is now required to be configured in order to resolve user requests from organization.com to the Azure App Service app. What will be your next step of action?
- A. Configure Azure DNS as a secondary name server.
-
Incorrect.
- B. Create an A record for company.com in Azure DNS.
-
Incorrect.
- C. Create a CNAME record for company.com in Azure DNS.
-
Incorrect.
- D. Delegate the company.com zone to Azure DNS.
-
Correct!
There is a mixture of servers on your on-premises datacenter, running Windows Server 2016 Datacenter edition and Windows Server 2012 R2 Datacenter edition. Azure Sync Service needs to be configured between the servers in the datacenter and the Azure Files service. If you want to ensure the service operates successfully on the servers, which two activities will you complete? (opt any TWO)
The organization you work for has several resources running on an active Azure Subscription. A cloud Service Provider is managing the subscription. As per the system, users in the accounting department can only see cost-related information, as they are only granted the billing reader role. They want to understand costs better so they can place costs in their respective cost centers. You have to provide a solution that can help them separate costs and get proper cost center information. The solution must ensure lowest administrative costs. Identify the two most suitable actions you would take to help the Accounts department. (opt any TWO)
You work in an organization that is planning to develop a line-of-business (LOB) application. The LOB application gathers information from Internet of Things (IoT) devices using the Azure loT Hub. The LOB application read device telemetry from the loT Hub using the loT Hub Service SDK. You are required to monitor device telemetry and configure alerts based on device telemetry values. There should be least administrative effort required by the solution you provide. What would be your step of action?
- A. Use Azure Activity Logs.
-
Incorrect.
- B. Use Azure Resource Health.
-
Incorrect.
- C. Use Azure Application Insights with the LOB application.
-
Incorrect.
The organization you work for plans on developing a web application. Virtual Machines will be used to deploy the web app in Azure. It is also planned to configure a load balancer for the app so that the high-availability of the application can be ensured. Following are the requirements of the web application: -The application users will need to upload files to it. TCP and UDP ports will be used for the upload process -The application uses a TCP keep-alive of 10 minutes You are configuring the load balancing rules for the public load balancer of the application. Which two of the following configuration changes would you make? (opt any TWO)
- A. Configure session persistence to None.
-
Incorrect.
- B. Configure the idle timeout to 5 minutes.
-
Incorrect.
- D. Configure the idle timeout to 15 minutes.
-
Correct!
You work for an organization that has 53 offices distributed across the world. Office 365 is used by your organization the identities of employees are managed by an Active Directory Domain Services (AD DS) domain. The D DS domain and Azure AD tenant for Office 365 are not connected. It is required by you to implement multi-factor authentication (MFA). You have to make sure that users are not required to provide two-factor authentication while connecting to the company’s network from any of the 53 office locations. Can you identify the two most suitable actions to take in this situation? (opt any TWO)
You work for an organization that plans on deploying an Azure File Sync service. There is an on-premises file server in your office, and this service syncs with the server. The information synced with Azure is stored by the server in a volume that is different from the system volume. There is an antivirus solution installed in the file server. It is witnessed that some files that are not frequently accessed are downloaded to the file server. You monitor the file system access, and realize that the affected files are not accessed by any user. Which of the two action steps mentioned below would you take to determine what is happening with those files?
- A. Run the fltmc command at an elevated command prompt.
-
Incorrect.
- C. Run the Set-AzStorageSyncServerEndpoint -Id serverendpointid -CloudTiering true - VolumeFreeSpacePercent 60 PowerShell cmdlet.
-
Incorrect.
- D. Review the Application event log.
-
Correct!
You are required to prepare a new set of Azure Active Directory (Azure AD) security groups. Those security groups will represent a complete manager’s team hierarchy. The hierarchy will include team members a manager is managing, but not those who are managed by manager’s team members. If Roger is the manager, and he manages Chris, and Chris manages Tom, the group should include Chris but not Tom. As people change managers over time, the group should also be able to update dynamically. The request must be implemented keeping in mind the administrative effort spent should be as less as possible. What would you choose to do?
- A. Construct dynamic groups in Azure AD using a ruleset that includes the ManagerlD property.
-
Incorrect.
- C. Create new groups using the Direct Reports rule.
-
Correct!
You are required to back up all virtual machines (VMs) that are Azure-based, to a Recovery Services vault. One of these VMs is named app1. App1 is a Windows Server 2016 domain member server. An internally developed Line-of-Business web app is hosted by this domain member server. A developer is required to review three-month-old log files that are stored on app1 for which you are required to retrieve the files as efficiently as possible. What would be your step of action?
- A. Retrieve the files from the appropriate backed-up virtual hard disks (VHDs) by using Azure Storage Explorer.
-
Incorrect.
You work for an organization that uses an Office 365 tenant for the purposes of collaboration and communications. The organization has also subscribed to an Azure subscription with an Azure Active Directory (Azure AD) Premium tenant. There is also an on-premises Active Directory Domain Services (AD DS) domain in the organization. According to organization’s security policies, cloud applications can be accessed via employee-owned devices. The security policies limits access to any Office 365 application from a mobile device to devices enrolled and registered in the corporate Azure AD tenant. The policy applies only to iOS or Android devices. You are required to meet the requirements by creating a conditional access policy in order to implement the security policy for Microsoft Office 365 Exchange Online. Which conditions should you configure?
- A. Require device to be marked as compliant
-
Incorrect.
- B. Users and groups
-
Correct!
- C. Location
-
Incorrect.
- D. Require approved client app
-
Incorrect.
There is an Azure Active Directory (Azure AD) tenant named organization.com to which are linked 20 Azure subscriptions the organization has. Detailed usage and spend reports are planned to be generated across all Azure subscriptions. The reports must also have resource optimization suggestions. What would be your step of action?
- A. Create a Stream Analytics job in the Azure portal.
-
Incorrect.
- B. Run interactive queries in Azure Log Analytics.
-
Incorrect.
- C. Design metrics charts in Azure Monitor.
-
Incorrect.
- D. Use Cloudyn reports.
-
Correct!
You work for an organization that has an Azure subscription. The subscription hosts all services that the company uses in production. The Azure related bills are increasing as noticed by the Finance department. The organization wants to bring Azure costs under control. Upon further analyzing the cost reports, it is realized that many virtual machines (VMs) are using more resources than expected. The management wants you to identify and inform when the spend is unusual for these resources. What would be your step of action?
- C. Configure the PowerBl content pack for Azure Enterprise.
-
Incorrect.
Your organization has an Azure subscription and you deploy virtual machines (VMs) in it. There are different virtual networks (VNets) having the VMs connected to them. Custom filtering rules are configured on the VNets. Communication between the VMs is working correctly. An additional VM is deployed in a new VNet. The new VM is called VM01 and the new VNet is called VNet01. There are some connectivity issues with the new VM. Network Watcher is decided to be used so the connectivity issues can be troubleshooted. You are required to identify the filtering rule that is the reason behind this issue. Which cmdlet will you choose to use? (opt any TWO)
- A. Test-AzNetworkWatcherConnectivity
-
Incorrect.
- B. Get-AzEffectiveNetworkSecurityGroup
-
Correct!
- C. Get-AzNetworkSecurityGroup
-
Incorrect.
- D. Test-AzNetworkWatcherIPFlow
-
Correct!
Your organization has subscribed to Office 365. You are required to connect this new subscription with organization’s on-premises Active Directory Domain Services (AD DS) domain. Azure AD Connect is configured and Seamless Single Sign-On (SSO) is enabled. You need to configure Group Policy Object (GPO) support for SSO. Identify the two policies or settings you would configure? (opt any TWO)
- C. Allow updates to status bar via script for Internet Zone
-
Incorrect.
- D. Site to Zone Assignment List
-
Correct!
Tell Us About You:
- Home
- (AZ-103) Sample Question - Microsoft Azure Administrator
(AZ-103) Sample Question - Microsoft Azure Administrator
More Information:
- Learning Style: On Demand
- Learning Style: Practice Exam
- Difficulty: Beginner
- Course Duration: 1 Hour
- Course Info: Download PDF
- Certificate: See Sample
Contact a Learning Consultant
Need Training for 5 or More People?
Customized to your team's need:
- Annual Subscriptions
- Private Training
- Flexible Pricing
- Enterprise LMS
- Dedicated Customer Success Manager
Course Information