Docsity
Docsity

Prepare for your exams
Prepare for your exams

Study with the several resources on Docsity


Earn points to download
Earn points to download

Earn points by helping other students or get them with a premium plan


Guidelines and tips
Guidelines and tips

Renewal Assessment for the Microsoft Certified Azure Exam Questions with Verified Answers, Exams of Computer Networks

Renewal Assessment for the Microsoft Certified Azure Exam Questions with Verified Answers 2023

Typology: Exams

2023/2024

Available from 02/10/2024

TOPGradeBooster.
TOPGradeBooster. 🇺🇸

3.4

(34)

2.4K documents

1 / 32

Toggle sidebar

Related documents


Partial preview of the text

Download Renewal Assessment for the Microsoft Certified Azure Exam Questions with Verified Answers and more Exams Computer Networks in PDF only on Docsity! 1 Renewal Assessment for the Microsoft Certified Azure Exam Questions with Verified Answers 2023 Question 1 of 2 You plan to deploy an Azure web app that will have the following settings: • Name: WebApp1 • Publish: Docker container • Operating system: Windows • Region: West US • Windows Plan (West US): ASP-RG1-8bcf You need to ensure that WebApp1 uses the ASP.NET V4.8 runtime stack. Which setting should you modify? O Region O Operating system O Publish O Windows Plan Question 2 of 2 …. • Azure App Service named WebAppI You need to ensure that WebAppI can access KeyVaultl by using Azure AD authentication. Which two settings can be used to configure WebAppI? Each correct answer presents a complete solution. User assigned managed identity Application settings TLS/SSL bindings App Service Authentication System assigned managed identity Question 3 …. You add a deployment slot to Contoso2023 named Slotl. You need to be able to perform a deployment slot swap with preview. What should you modify? application settings for Contoso2023 general settings for Contoso2vfe3 2 application settings for Contoso2023-Slot1 general settings for Contoso2023-Slot1 Question 4 You have an Azure web app named WebApp1. You discover that backup options are unavailable for WebApp1. You need to back up WebAppI. What should you do first? O Modify the platform settings of WebAppI. O Modify the Application settings of WebApp1. O Scale up the app service plan. O Scale out the app service plan. Question 5 You plan to create an Azure container instance named contained that will use a Docker image named Image! You need to ensure that contained has persistent storage. Which Azure resources should you deploy for the persistent storage? an Azure container registry an Azure Storage account and a file share an Azure Storage account and a blob container an Azure SQL database Question 6/28 You have Azure subscription that includes virtual network with following subnets: • Subnet1, which has connected virtual machine • Subnet2, which has connected web app • Subnet3, which has connected container instance You plan to deploy container instance named container1. To which subnets can you connect container1 ? O Subnet3 only O Subnetl and Subnet3 only O Subnet2 and Subnet3 only O Subnetl, Subnet2 and Subnet3 5 Server1 of type A Server2 of type TXT Question 12/28 You have an Azure private DNS zone named contoso.com that is linked to a virtual network named Vnet1 and has auto- registration enabled. You deploy a virtual machine that runs Windows Server to VNetl with the following settings: • VM name: VM1 • Windows Server name: Server1 • Private IP address: 10.10.1.5 • Public IP address: 168.61.186.27 Which DNS record is automatically added to contoso.com? a resource record for VM1 a resource record for Serverl a PTR resource record for 10.10.1.5 a PTR resource record for 168.61.186.27 Question 13/28 • VNET2- deployed in the East US location • VNET3- deployed in the West US location Contoso purchases a company named A. Datum Corporation. A. Datum has an Azure subscription that contains an Azure AD tenant named adatum.com. Adatum.com contains the following virtual networks: • VNETA- deployed in the East US location • VNETB- deployed in the West US location Which virtual networks can you peer to VNET1? VNET2 only VNET2 and VNET3 only VNET2 and VNETA only VNET2, VNET3, and VNETA only VNET2, VNET3, VNETA, and VNETB Question 14/28 6 You have an Azure virtual network named VNET1 that has an IP address space of 192.168.0.0/16 and the following subnets: • Subnetl - has an IP address range of 192.168.1.0/24 and is connected to 15 VMs • Subnet2- has an IP address range of 192.168.2.0/24 and does NOT have any VMs connected You need to ensure that you can deploy Azure Firewall to VNET1. What should you do? Add a new subnet to VNET1 Add a service endpoint to Subnet2. Modify the subnet mask of Subnet2. Modify the IP address space of VNET1. Question 16/28 You have an Azure virtual machine named VM1 that connects to a virtual network named VNET1. A network security group (NSG) named NSG1 allows connections to VM1 from VNET1 only. You need to add an inbound security rule to NSG1 that meets the following requirements: • Allows Azure Backup to back up VM1 • Minimizes the types of allowed inbound traffic What should you use as the source for the inbound security rule? any IP address the IP address of VM1 a service tag for Azure Backup an application security group Question 17/28 You have an Azure subscription that contains a virtual network named VNET1. VNET1 uses the following address spaces: • 10.10.1.0/24 • 10.10.2.0/28 VNET1 contains the following subnets: • Subnetl - has an address space of 10.10.1.0/24 • Subnet2- has an address space of 10.10.2.0/28 7 To Subnetl, you deploy a virtual machine named VM1 that runs Windows Server 2022. VM1 has Remote Desktop enabled. VM1 does NOT have a public IP address. You need to be able to deploy Azure Bastion to protect VM1. What should you do first? Add a new subnet to VNET1. Modify the address space of VNET1. Add a public IP address to VM1 Add an extension to VM1. Question 18/28 …You need to configure a priority for Rulel Rulel must have the highest priority for inbound security rules in NSG1. Which priority should you configure for Rulel? 0 1 10 100 1000 Question 19/28 You have a proximity placement group named Proximity1 You plan to create the following Azure resources: • a virtual machine named VM1 • a disk named Disk1 • a virtual network named VNET1 • a public IP address named IP1 Which resources can you place in Proximity1? VM1 only VM1 and Diski only Disk1 and IP1 only VNET1, Disk1 and IP1 only Question 20/28 10 You need to ensure that a user named Adminl can create access reviews. The solution must use the principle of least privilege. Which role should you assign to Admin1? User administrator Groups administrator Security administrator Compliance administrator Question 27/28 You have an Azure AD tenant that contains the following users: • User1 has a Department set to Sales and a Country set to USA • User2 has a Department set to Marketing and a Country set to USA • User3 has a Department set to Sales and a Country set to DE • User4 has a Department set to Marketing and a Country set to DE You create a group named Group1 that has the following dynamic membership rule. user.country -eq "USA" -and user.department -eq "Marketing" -or user.department -eq "Sales" Which users are members of Group1? User1, and User2 only User1, and User3 only User2 and User3 only User1, User2, and User3 only User1, User2, User3 and User4 Question 28/28 You have an Azure AD tenant named contoso.com. You need to assign a new group named Groupl to an Azure AD role. Which two group and membership types should you use for Group1? Each correct answer presents a complete solution. Security group with assigned membership type Security group with dynamic user membership type Microsoft 365 group with assigned membership type Microsof t 365 group with dynamic user membership type 11 Test 2 Question 1 of 28 You have Azure web app named WebApp1 You need to integrate GitHub as a source code repository for WebApp1 What should you use? Extensions Deployment slots Deployment Center Service Connector Question 2 of 28 You plan to deploy the following Azure web apps: • WebApp1 that uses the .NET 6 runtime stack • WebApp2, that uses the ASP.NET V4.8 runtime stack • WebApp3, that uses the Java 17 runtime stack • WebApp4, that uses the PHP 8.0 runtime stack You need to create the app service plans for the web apps. What is the minimum number of app service plans that should be created? 1 2 3 4 Question 3 of 28 …slots in use. A user named Userl has the Contributor role for Contoso2022. You need to ensure that Userl can create additional deployment slots to Co What should you do? Assign Userl the Owner role for Contoso2022. Assign Userl the Website Contnbutor role for Contoso2022. Scale up the Contoso2022 App Service plan. Scale out the Contoso2022 App Service plan. 12 Question 4 of 28 You plan to deploy the following Azure web apps: • WebApp1, that runs on Windows Server 2016 • WebAppi that runs on Windows Server 2022 • WebApp3, that runs on Ubuntu Server • WebApp4, that runs on Red Hat Enterprise Linux You need to create the app service plans for the web apps. What is the minimum number of app service plans that should be created? 1 2 3 4 Question 5 of 28 You have an Azure subscnption that contains the following resources: • a storage account named storage 123 • a container instance named AppContainer The subscription contains a virtual network named VirtualNet4 that has the following subnets: • SubnetA- storage123 is connected to SubnetA. • SubnetB- AppContainer is connected to SubnetB. • SubnetC- No resources. You plan to deploy an Azure container instance named containers to VirtualNet4. To which subnets can you deploy containers? SubnetB only SubnetC only SubnetB and SubnetC only SubnetA SubnetB. and SubnetC 15 You have an Azure subscnption that contains the following virtual networks: • Vnet1 in the West US region. No pnvate DNS zone linked to Vnet1 • VNet2 in the West US region. A pnvate DNS zone is linked to VNet2 and the link has auto- registration enabled. • VNet3 in the East US region. No private DNS zone linked to VNet3. You create a pnvate DNS zone named Zonel in the West US region. To which virtual network or virtual networks can you link Zonel and then enable auto-registration on the link? VNetl only VNetl and VNet2 only VNetl and VNet3 only VNetl. VNet2 and Vnet3 Question 13 of 28 …tenant named adatum.com. Adatum.com contains the following virtual networks: • VNETA- deployed in the East US location • VNETB- deployed in the West US location Which virtual networks can you peer to VNET1? O VNET2 only O VNET2 and VNET3 only O VNET2 and VNETA only O VNET2. VNET3, and VNETA only (§) VNET2, VNET3, VNETA. and VNETB Question 14 of 28 • Server2- connected to VirtualNET1 and has a Fabfikam.com DNS suffix configured in Windows Server 2022 • Server3- connected to VirtualNET2 and has a Wmgtiptoys.com DNS suffix configured in Windows Server 2022 • Server4- connected to VirtualNET2 and has a Fabnkam.com DNS suffix configured in Windows Server 2022 You create a pnvate DNS zone named fabnkam.com and add the following virtual network links to fabnkam.com: • Unk1- connected to VirtualNET1 and has auto registration enabled 16 • Lmk2- connected to VirtualNET2 and has auto registration enabled Which virtual machines will register a DNS record in fabrikam.com? Server2 only Serverl and Server2 only Server2 and Server4 only Server1, Server2. Server3, and Server4 Question 15 of 28 • A virtual machine named VM1 • A network interface for VM1 named NIC1 • A network security group named NSG1 • An application security group named ASG1 For which resource can you use service tags? VNET1 VM1 NIC1 NSG1 ASG1 Question 16 of 28 • 10.10.2.0/28 VNET1 contains the following subnets: • Subnetl - has an address space of 10.10.1.0/24 • Subnet2- has an address space of 10.10.2.0/28 To Subnetl. you deploy a virtual machine named VM1 that runs Windows Server 2022. VM1 has Remote Desktop enabled. VM1 does NOT have a public IP address. You need to be able to deploy Azure Bastion to protect VM1. What should you do first? Add a new subnet to VNET1. Modify the address space of VNET1 17 Add a public IP address to VM1. Add an extension to VM1 Question 17 of 28 You have an Azure subscnption that includes a network secunty group named NSG1 You plan to add an inbound security rule named Rule1 to NSG1. You need to configure a pnonty for Rule1. Rule1 must have the highest pnonty for inbound secunty rules in NSG1 Which pnonty should you configure for Rule1? 0 1 10 100 1000 Question 18 of 28 You have an Azure subscription that includes following resources: • VNet! a virtual network • Subnet1, a subnet in Vnet1 • VM1, a virtual machine • NIC1, a network interface of VM1 • LB 1, a load balancer You create a network secunty group named NSG1. To which two Azure resources can you associate NSG1? LB1 VM1 NIC1 VNet1 Subnet1 Question 19 of 28 You have an Azure subscnption that contains a virtual machine named VM1 and a storage account named storage! You need to ensure that VM1 can access storagel by using the Azure backbone. 20 Question 25 of 28 You have an Azure subscnption. You plan to use fault domains. From which Azure resource can you configure the fault domains? Virtual machine Virtual machine scale set Availability set Virtual network Question 26 of 28 You have an Azure AD tenant that contains the following users: • Userl. a cloud user • User2, a user synced from an on-premises Active Directory domain • User3, a guest user For which users can you configure a Usage location? User1 only User1 and User2 only User1 and User3 only User1, User2 and User3 Question 27 of 28 You have an Azure AD tenant. You create a user named Admin1 You need to ensure that Admin1 can perform following tasks: • Assign licenses to Azure AD groups • Reset passwords of Azure AD users What Azure AD role should you add to Admml? User administrator Billing administrator License administrator Helpdesk administrator Question 28 of 28 You have an Azure subscnption that contains a user named User1, a resource group named RG1, and a virtual machine named VM1, 21 You enable a system-assigned managed identity for VM1. To which identities can you assign the Reports reader role? User1 only User1 and RG1 only User1 and VM1 only Userl, RGI.and VM1 TEST 3 Question 1 of 28 You have an Azure web app named Contoso2023. You add a deployment slot to Contoso2023 named Slotl. You need to be able to perform a deployment slot swap with preview. What should you modify? O application settings for Contoso202B O general settings for Contoso2023 O application settings for Contoso2023-Slot1 O general settings for Contoso2023-Slot1 Question 2 of 28 You have an Azure web app named WebAppI. You discover that backup options are unavailable for WebAppI. You need to back up WebAppI. What should you do first? O Modify the platform settings of WebAppI. O Modify the Application settings of WebAppI. O Scale up the app service plan. O Scale out the app service plan. Question 3 of 28 You plan to deploy an Azure web app that will have the following settings: • Name: WebAppI • Publish: Docker container • Operating system: Windows 22 • Region: West US • Windows Plan (West US): ASP-RG1-8bcf You need to ensure that WebAppI uses the ASP.NET v4.7 runtime stack. Which setting should you modify? Region Operating system Publish Windows Plan Question 4 of 28 You have an Azure web service named Contoso2022 that runs in the Standard App Service plan. Contoso2022 has five deployment slots in use. A user named User1 has the Contributor role for Contoso2022. You need to ensure that User1 can create additional deployment slots to Contoso2022. What should you do? Assign User1 the Owner role for Contoso2022. Assign User1 the Website Contributor role for Contoso2022. Scale up the Contoso2022 App Service plan. Scale out the Contoso2022 App Service plan. Question 5 of 28 You plan to create an Azure container instance named containerl that will use a Docker image named Image1. You need to ensure that containerl has persistent storage. Which Azure resources should you deploy for the persistent storage? an Azure container registry only an Azure Storage account and a file share an Azure Storage account and a blob container an Azure SQL database only Question 6 of 28 You have an Azure subscription that contains the following resources: • a storage account named Storage123 • a container instance named AppContainer The subscription contains a virtual network named VirtualNet4 that has the following subnets: 25 address of VM1 changes, www.contoso.com will resolve to the changed IP address. Which DNS record type should you add to contoso.com? O A O SVR O TXT O AAAA O CNAME Question 13 of 28 A company named Contoso, Ltd. has an Azure subscription that contains an Azure Active Directory (Azure AD) tenant named contoso.com. The Azure subscription contains the following virtual networks: • VNET1- deployed in the East US location • VNET2- deployed in the East US location • VNET3- deployed in the West US location Contoso purchases a company named A. Datum Corporation. A. Datum has an Azure subscription that contains an Azure AD tenant named adatum.com. Adatum.com contains the following virtual networks: • VNETA- deployed in the East US location • VNETB- deployed in the West US location Which virtual networks can you peer to VNET1 ? O VNET2 only O VNET2 and VNET3 only O VNET2 and VNETA only O VNET2, VNET3, and VNETA only O VNET2, VNET3, VNETA, and VNETB Question 14 of 28 You have an Azure virtual machine named VM1 that connects to a virtual network named VNET1. You create a private DNS zone named contoso.com and add an A record named host1 to the zone. You need to ensure that VM1 can resolve host1.contoso.com. What should you do? O Modify the Access control (IAM) settings of the zone. 26 O From the zone, add a virtual network link. O From the properties of the network interface, modify the options of the DNS servers. O From the properties of VNET1, modify the options of the DNS servers. Question 15 of 28 You have an Azure virtual network named VNET1 that has an IP address space of 192.168.0.0/16 and the following subnets: • Subnet1 - has an IP address range of 192.168.1.0/24 and is connected to 15 VMs • Subnet2- has an IP address range of 192.168.2.0/24 and does not have any VMs connected You need to ensure that you can deploy Azure Firewall to VNET1. What should you do? O Add a new subnet to VNET1. O Add a service endpoint to Subnet2. O Modify the subnet mask of Subnet2. O Modify the IP address space of VNET1. Question 16 of 28 You have a proximity placement group named Proximity1 You plan to create the following Azure resources: • a virtual machine named VM1 • a disk named Disk1 • a virtual network named VNET1 • a public IP address named IP1 Which resources can you place in Proximity1? O VM1 only O VM1 and Disk1 only O Disk1 and IP1 only O VNET1, Disk! and IP1 only Question 17 of 28 You have an Azure virtual network named VNET1 has and a network security group (NSG) named NSG1. NSG1 has the following inbound security rules: • Rule1 has a priority of 100 and allows port 3389 on TCP protocol from any source and to any destination • Rule2 has a priority of 200 and allows ports 80 and 8080 on UDP protocol from any source and to any destination 27 • Rule3 has a priority of 300 and denies ports 1 -2000 on TCP protocol from any source and to any destination • Rule4 has a priority of 400 and allows ports 50-500 on TCP protocol from Virtual Network source and to any destination • Rule5 has a priority of 500 and allows ports 80 and 443 on TCP protocol from any source and to any destination You need to allow http and https connections from the internet to VNET! What should you change for NSG1? O Priority for Rule4 to 250 O Protocol for Rule2 to TCP O Priority for Rule3 to 450 O Priority for Rule5 to 250 Question 18 of 28 You have an Azure virtual machine named VM1 that connects to a virtual network named VNET1 A network security group (NSG) named NSG1 allows connections to VM1 from VNET1 only. You need to add an inbound security rule to NSG1 that meets the following requirements: • Allows Azure Backup to back up VM1 • Minimizes the types of allowed inbound traffic What should you use as the source for the inbound security rule? O any IP address O the IP address of VM1 O a service tag for Azure Backup O an application security group Question 19 of 28 You have an Azure subscription that contains a virtual network named VNET1. VNET1 uses the following address spaces: • 10.10.1.0/24 • 10.10.2.0/28 VNET1 contains the following subnets: • Subnet1 - has an address space of 10.10.1.0/24 • Subnet2- has an address space of 10.10.2.0/28 To Subnet1 you deploy a virtual machine named VM1 that runs Windows Server 2019. VM1 has Remote Desktop enabled. VM1 does NOT have a public IP address. You need to be able to deploy Azure Bastion, and then protect VM1 30 • Authentication method: Service principal • Network configuration: Basic You need to ensure that you can integrate AKS1 and Contoso2020. Which AKS1 settings should you modify? O Kubernetes version O Virtual nodes O Authentication method O Network configuration Question 26 of 28 You have an Azure Active Directory (Azure AD) tenant that contains a group named Group1 that has the following users: • User1-Member • User2- Member • User3- Guest User1 is an owner of Group! You create an access review that has the following settings: • Review name: Review1 • Start date: 07/15/2020 • Frequency: One time • End date: 08/14/2020 • Users to review: Members of a group • Scope: Everyone • Group: Group1 • Reviewers: Members (self) • Auto apply results to resource: Disable • If reviewers don't respond: Remove access The users provide the following responses to the Do you require membership in Group1? access review question: • User! No • User2: Yes • User3: did not answer Which users will be members of Group1 on 08/20/2020? O User2 only O User1 and User2 only O User2 and User3 only O User1 User2, and User3 31 Question 27 of 28 You have an Azure subscription that contains a user named User! a security group named Group! and a virtual machine named VM1. You enable a system-assigned managed identity for VM1. To which identities can you assign the Reports reader role? O User1 only O User1 and Group1 only TREBA OVA O User1 and VM1 only O User1 Group1 and VM1 Question 28 of 28 You have an Azure Active Directory (Azure AD) tenant named contoso.com that contains a user named Ben Smith. You configure a Password protection for contoso.com that includes the following Custom banned passwords settings: • Enforce custom list: Yes • Custom banned password list: Contoso Which password can be used by Ben Smith? O FgRsOI O C0nt0s0123 O C0NT0S0123 O Conto123so 32 Renewal Assessment for the Microsoft Certified Azure Exam Questions with Verified Answers 2023
Docsity logo



Copyright © 2024 Ladybird Srl - Via Leonardo da Vinci 16, 10126, Torino, Italy - VAT 10816460017 - All rights reserved