Your company has a series of virtual machines created as part of their Azure
subscription. They want to ensure the IT administrative team is notified if any of the
virtual machines go into the "deallocated" state. Which of the following could you
perform to fulfill this requirement?
A. Enable Diagnostics logs for the virtual machine.
B. Create an alert based on the Activity log for the virtual machine.
C. Assign a resource tag for the virtual machine and then create an alert based on
that resource tag
D. Create an Azure policy using an in-built definition from the compute category.
Give this one a try later!
B. Create an alert based on the Activity log for the virtual machine.
Your company has an Azure Active Directory (Azure AD) tenant named
devopshub2023.com. Company has appointed User1 to review all the settings of the
,tenant. As an admin your job is to ensure that the User1 can review all the settings of
the tenant however User1 must be prevented from changing any settings.
Which role should you assign to User1?
A. Security reader
B. Directory reader.
C. Global reader
D. Reports reader
Give this one a try later!
C. Global reader
You manage a virtual network named VNet1 that is hosted in the East US Azure region.
VNet1 hosts two virtual machines named VM1 and VM2 that run Windows Server. You
need to inspect all the network traffic from VM1 to VM2 for a period of three hours.
Solution: From Azure Network Watcher, you create a packet capture.
Does this meet the goal?
A. Yes
B. No
Give this one a try later!
A. Yes
You have 10 Azure subscriptions. You have an Azure Active Directory (Azure AD)
tenant that contains a security group named Group1 and you plan to purchase
additional Azure subscription. You need to ensure that Group1 can manage role
assignments for the existing subscriptions and the planned subscriptions. The solution
must meet the following requirements:
,· Use the principle of least privilege.
· Minimize administrative effort.
What should you do?
A. Create a new management group and assign Group1 the User Access Administrator
role for the group.
B. Create a new management group and assign Group1 the Owner role for the group.
C. Assign Group1 the Owner role for the root management group.
D. Assign Group1 the User Access Administrator role for the root management group.
Give this one a try later!
D. Assign Group1 the User Access Administrator role for the root
management group.
When using Azure resource manager (ARM) templates, what features enables you to
control resource properties during deployment in your organization?
A. Active Directory
B. Azure Policy
C. API Management
D. Resource tags
Give this one a try later!
B. Azure Policy
Your company has an azure subscription that includes a storage account, a resource
group, a blob container and a file share. A colleague named Jim Taylor makes use of a
solitary Azure Resource Manager (ARM) template to deploy a virtual machine and an
additional Azure Storage account. You want to review the ARM template that was
used by Jim Taylor.
, Solution: You access the Virtual Machine blade.
Does the solution meet the goal?
A. Yes
B. No
Give this one a try later!
B. No
You plan to deploy route-based Site-to-Site VPN connections between several on-
premises locations and an Azure virtual network. Which tunneling protocol
should you use?
A. PPTP
B. IKEv1
C. IKEv2
D. L2TP
Give this one a try later!
C. IKEv2
Your company has an Azure Active Directory (Azure AD) subscription.
You need to deploy five virtual machines (VMs) to your company's virtual network
subnet. The VMs will each have both a public and private IP address. Inbound and
outbound security rules for all of these virtual machines must be identical.
Which of the following is the least amount of network interfaces needed for this
configuration?
A. 5
subscription. They want to ensure the IT administrative team is notified if any of the
virtual machines go into the "deallocated" state. Which of the following could you
perform to fulfill this requirement?
A. Enable Diagnostics logs for the virtual machine.
B. Create an alert based on the Activity log for the virtual machine.
C. Assign a resource tag for the virtual machine and then create an alert based on
that resource tag
D. Create an Azure policy using an in-built definition from the compute category.
Give this one a try later!
B. Create an alert based on the Activity log for the virtual machine.
Your company has an Azure Active Directory (Azure AD) tenant named
devopshub2023.com. Company has appointed User1 to review all the settings of the
,tenant. As an admin your job is to ensure that the User1 can review all the settings of
the tenant however User1 must be prevented from changing any settings.
Which role should you assign to User1?
A. Security reader
B. Directory reader.
C. Global reader
D. Reports reader
Give this one a try later!
C. Global reader
You manage a virtual network named VNet1 that is hosted in the East US Azure region.
VNet1 hosts two virtual machines named VM1 and VM2 that run Windows Server. You
need to inspect all the network traffic from VM1 to VM2 for a period of three hours.
Solution: From Azure Network Watcher, you create a packet capture.
Does this meet the goal?
A. Yes
B. No
Give this one a try later!
A. Yes
You have 10 Azure subscriptions. You have an Azure Active Directory (Azure AD)
tenant that contains a security group named Group1 and you plan to purchase
additional Azure subscription. You need to ensure that Group1 can manage role
assignments for the existing subscriptions and the planned subscriptions. The solution
must meet the following requirements:
,· Use the principle of least privilege.
· Minimize administrative effort.
What should you do?
A. Create a new management group and assign Group1 the User Access Administrator
role for the group.
B. Create a new management group and assign Group1 the Owner role for the group.
C. Assign Group1 the Owner role for the root management group.
D. Assign Group1 the User Access Administrator role for the root management group.
Give this one a try later!
D. Assign Group1 the User Access Administrator role for the root
management group.
When using Azure resource manager (ARM) templates, what features enables you to
control resource properties during deployment in your organization?
A. Active Directory
B. Azure Policy
C. API Management
D. Resource tags
Give this one a try later!
B. Azure Policy
Your company has an azure subscription that includes a storage account, a resource
group, a blob container and a file share. A colleague named Jim Taylor makes use of a
solitary Azure Resource Manager (ARM) template to deploy a virtual machine and an
additional Azure Storage account. You want to review the ARM template that was
used by Jim Taylor.
, Solution: You access the Virtual Machine blade.
Does the solution meet the goal?
A. Yes
B. No
Give this one a try later!
B. No
You plan to deploy route-based Site-to-Site VPN connections between several on-
premises locations and an Azure virtual network. Which tunneling protocol
should you use?
A. PPTP
B. IKEv1
C. IKEv2
D. L2TP
Give this one a try later!
C. IKEv2
Your company has an Azure Active Directory (Azure AD) subscription.
You need to deploy five virtual machines (VMs) to your company's virtual network
subnet. The VMs will each have both a public and private IP address. Inbound and
outbound security rules for all of these virtual machines must be identical.
Which of the following is the least amount of network interfaces needed for this
configuration?
A. 5