A company currently has a set of Azure virtual workspace and configure the data settings. You then
machines. They want to ensure that their IT set up the virtual machine as a data source. You then
administrative team gets alerts when any of the create an alert in Azure Monitor and specify the Log
virtual machines are shut down. What would they use Analytics as the source. Would this fulfill the
to fulfill this requirement? - ANSWER -A: requirement? - ANSWER -A: YES!
Activity Logs.
What are all that apply to the use of Azure Disk
Your company currently has a site-to-site connection Encryption for Azure VM disk protection? -
with an Azure VPN. The VPN device allocated on the ANSWER -A: ADE uses BitLocker for Windows
on-premise side will undergo a change in its public IP VM-controlled disks, ADE encrypted VM must be
address. You have to ensure the Site-to-site VPN backed up to the Recovery Service Vault, ADE is
connection continues to work after the change. What integrated with Azure Key Vault, and ADE uses DM-
steps would you need to carry out after the change in Crypt for Linux based VMs.
the public IP address on the on-premise VPN device,
ensuring minimum connection downtime? -
ANSWER -A: Remove the VPN connection, Each load balancer would have to load requests
modify the local gateway IP address, recreate the across three virtual machines. You want to ensure
VPN connection. that BASIC SKU load balancer requests across the
three virtual machines. What has to be implemented?
- ANSWER -A: Ensure the virtual machines are
If you run a query in Log Analytics, what format will created in the same availability set or virtual machine
the data be displayed? - ANSWER -A: A graph scale set.
that has the avg (CounterValue) values on the Y
axis.
You need to allow traffic onto certain FQDN's via the
Azure Firewall. What rule would you create for this
When adding custom domain names, what record requirement? - ANSWER -A: Application
needs to be added to your custom domain registrar? collection rules
- ANSWER -A: TXT record.
What needs to be implemented on the Azure virtual
The security department wanted to check on any network to deploy the Azure Bastion Host? -
network intrusions into the virtual networks. What tool ANSWER -A: Add a new subnet (Bastion
should be used for this purpose? - ANSWER - requires its own subnet).
A: Variable packet capture.
Which RBAC role can be given access to read, write,
An application whizlabs-app is a critical application. delete, and modify NTFS permission in Azure
Hence you need to ensure that a backup solution is Storage file shares over SMB? - ANSWER -A:
in place for the application. What do you need to Storage File Data SMB Share Elevated Contributor.
create first? - ANSWER -A: A recovery services
vault.
Your company needs to deploy an application to a set
of three virtual machines. You have to ensure that
Your company has an Azure virtual machine that two VMs are always available in the event of a data
runs Windows Server 2016. You have to create an center failure at any point in time. You decide to
alert in Azure whenever two error events are logged deploy the virtual machines as part of a single
to the System Log on the virtual machine with an availability zone. Would this fulfill this requirement? -
hour. You decide to create a Log Analytics ANSWER -A: No. It's always desirable to have
1/3