AZ-104 Assessment test exam questions
with 100% correct Answers
Custom role - Answer-Actions, Not-actions, scope
Azure DNS - Answer-a hosting service for DNS domains, providing name resolution
using the Microsoft Azure infrastructure. The Domain Name System, or DNS, is
responsible for translating (or resolving) a service name to its IP address.
IP flow - Answer-IP flow verify checks if a packet is allowed or denied to or from a virtual
machine. The information consists of direction, protocol, local IP, remote IP, local port,
and remote port. If the packet is denied by a security group, the name of the rule that
denied the packet is returned. IP flow verify looks at the rules for all Network Security
Groups (NSGs) applied to the network interface, such as a subnet or virtual machine
NIC. Traffic flow is then verified based on the configured settings to or from that network
interface. IP flow verify is useful in confirming if a rule in a Network Security Group is
blocking ingress or egress traffic to or from a virtual machine.
Connection Monitor - Answer-The Connection Monitor tool provides a way to check that
connections work between Azure resources. Use this tool to check that two VMs can
communicate if you want them to.
Availability zone - Answer-99.99% SLA on the infrastructure level for VMs deployed
across availability zone
Availability set and Managed disks - Answer-99.95% SLA on the infrastructure level for
VMs deployed across availability set and Managed disks
General purpose V2 storage - Answer-Hot, cool and archive tiers
Standard_GRS - Answer-GRS offers durability for Azure Storage data objects of at least
99.99999999999999% (16 9's) over a given year.
Gateway subnet - Answer-To create a vnet-to-vnet vpn between networks, we need a
special subnet called gateway subnet
Reserve /27 or /28 CIDR (Class less Inter Domain Routing) blocks for this subnet
NIC - Network interace - Answer-Network interface must be created in the same region
and subscription as the virtual network. VM added also must be in the same region and
subscription as the vnet. Once assigned, you cannot change the Vnet a nic is assigned
to.
Recovery services vault - Answer-Recovery services vault and VMs need to be in the
same region
with 100% correct Answers
Custom role - Answer-Actions, Not-actions, scope
Azure DNS - Answer-a hosting service for DNS domains, providing name resolution
using the Microsoft Azure infrastructure. The Domain Name System, or DNS, is
responsible for translating (or resolving) a service name to its IP address.
IP flow - Answer-IP flow verify checks if a packet is allowed or denied to or from a virtual
machine. The information consists of direction, protocol, local IP, remote IP, local port,
and remote port. If the packet is denied by a security group, the name of the rule that
denied the packet is returned. IP flow verify looks at the rules for all Network Security
Groups (NSGs) applied to the network interface, such as a subnet or virtual machine
NIC. Traffic flow is then verified based on the configured settings to or from that network
interface. IP flow verify is useful in confirming if a rule in a Network Security Group is
blocking ingress or egress traffic to or from a virtual machine.
Connection Monitor - Answer-The Connection Monitor tool provides a way to check that
connections work between Azure resources. Use this tool to check that two VMs can
communicate if you want them to.
Availability zone - Answer-99.99% SLA on the infrastructure level for VMs deployed
across availability zone
Availability set and Managed disks - Answer-99.95% SLA on the infrastructure level for
VMs deployed across availability set and Managed disks
General purpose V2 storage - Answer-Hot, cool and archive tiers
Standard_GRS - Answer-GRS offers durability for Azure Storage data objects of at least
99.99999999999999% (16 9's) over a given year.
Gateway subnet - Answer-To create a vnet-to-vnet vpn between networks, we need a
special subnet called gateway subnet
Reserve /27 or /28 CIDR (Class less Inter Domain Routing) blocks for this subnet
NIC - Network interace - Answer-Network interface must be created in the same region
and subscription as the virtual network. VM added also must be in the same region and
subscription as the vnet. Once assigned, you cannot change the Vnet a nic is assigned
to.
Recovery services vault - Answer-Recovery services vault and VMs need to be in the
same region