getcertified4sure.com

Vivid AZ-102 Study Guides 2021




Act now and download your AZ-102 Dumps today! Do not waste time for the worthless AZ-102 Braindumps tutorials. Download AZ-102 Dumps with real questions and answers and begin to learn AZ-102 Braindumps with a classic professional.

Online Microsoft AZ-102 free dumps demo Below:

NEW QUESTION 1
HOT SPOT
You need to provision the resources in Azure to support the virtual machine that will be migrated from the New York office.
What should you include in the solution? To answer, select the appropriate options in the answer
area.
NOTE: Each correct selection is worth one point.
AZ-102 dumps exhibit

    Answer:

    Explanation: AZ-102 dumps exhibit
    Box 1: 10.20.0.0/16
    Scenario: The New York office an IP address of 10.0.0.0/16. The Los Angeles office uses an IP address space of 10.10.0.0/16.
    Box 2: Storage (general purpose v1)
    Scenario: The New York office has a virtual machine named VM1 that has the vSphere console installed.

    NEW QUESTION 2
    Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution.
    After you answer a question in this section, you will NOT be able to return to it As a result, these questions will not appear in the review screen.
    You have an Azure Active Directory (Azure AD) tenant named Adatum and an Azure Subscript contains a resource group named Dev.d Subscription1. Adatum contains a group named Developers. Subscription!
    You need to provide the Developers group with the ability to create Azure logic apps in the; Dev, resource group.
    Solution: On Dev, you assign the Logic App Contributor role to the Developers group. Does this meet the goal?

    • A. Yes
    • B. No

    Answer: A

    Explanation: The Logic App Contributor role lets you manage logic app, but not access to them. It provides access to view, edit, and update a logic app.
    References:
    https://docs.microsoft.com/en-us/azure/role-based-access-control/built-in-roles https://docs.microsoft.com/en-us/azure/logic-apps/logic-apps-securing-a-logic-app

    NEW QUESTION 3
    You have an Azure DNS zone named adatum.com. You need to delegate a subdomain named research.adatum.com to a different DNS server in Azure. What should you do?

    • A. Create an PTR record named research in the adatum.com zone.
    • B. Create an NS record named research in the adatum.com zone.
    • C. Modify the SOA record of adatum.com.
    • D. Create an A record named “.research in the adatum.com zon

    Answer: D

    Explanation: Configure A records for the domains and sub domains.
    References: http://www.stefanjohansson.org/2012/12/how-to-configure-custom-dns-names-formultiple- subdomain-based-azure-web-sites/

    NEW QUESTION 4
    HOT SPOT
    You purchase a new Azure subscription named Subscription1.
    You create a virtual machine named VM1 in Subscription1. VM1 is not protected by Azure Backup. You need to protect VM1 by using Azure Backup. Backups must be created at 01:00 and stored for 30 days.
    What should you do? To answer, select the appropriate options in the answer area. NOTE: Each correct selection is worth one point.
    AZ-102 dumps exhibit

      Answer:

      Explanation: Box 1: A Recovery Services vault
      A Recovery Services vault is an entity that stores all the backups and recovery points you create over time.
      Box 2: A backup policy
      What happens when I change my backup policy?
      When a new policy is applied, schedule and retention of the new policy is followed. References:
      https://docs.microsoft.com/en-us/azure/backup/backup-configure-vault https://docs.microsoft.com/en-us/azure/backup/backup-azure-backup-faq

      NEW QUESTION 5
      You have an Azure subscription named Subscription1 that has the following providers registered: Authorization
      Automation Resources Compute KeyVault Network Storage Billing Web
      Subscription1 contains an Azure virtual machine named VM1 that has the following configurations: Private IP address: 10.0.0.4 (dynamic)
      Network security group (NSG): NSG1 Public IP address: None
      Availability set: AVSet Subnet: 10.0.0.0/24 Managed disks: No Location: East US
      You need to record all the successful and failed connection attempts to VM1.
      Which three actions should you perform? Each correct answer presents part of the solution.
      NOTE: Each correct selection is worth one point.

      • A. Register the Microsoft.Insights resource provider
      • B. Add an Azure Network Watcher connection monitor
      • C. Register the Microsoft.LogAnalytics provider
      • D. Enable Azure Network Watcher in the East US Azure region
      • E. Create an Azure Storage account
      • F. Enable Azure Network Watcher flow logs

      Answer: ADF

      Explanation:
      Step 1: (D)
      We must have a network watcher enabled in the East US region Step 2: (A+F)
      A: NSG flow logging requires the Microsoft.Insights provider, which must be registered.
      F: Network security groups (NSG) allow or deny inbound or outbound traffic to a network interface in a VM. The NSG flow log capability allows you to log the source and destination IP address, port, protocol, and whether traffic was allowed or denied by an NSG.
      References:
      https://docs.microsoft.com/en-us/azure/network-watcher/network-watcher-nsg-flow-logging-portal

      NEW QUESTION 6
      You have an Azure App Service plan named AdatumASP1 that uses the P2v2 pricing tier. AdatumASP1 hosts Ml Azure web app named adatumwebapp1. You need to delegate the management of adatumwebapp1 to a group named Devs. Devs must be able to perform the following tasks:
      • Add deployment slots.
      • View the configuration of AdatumASP1.
      • Modify the role assignment for adatumwebapp1. Which role should you assign to the Devs group?

      • A. Owner
      • B. Contributor
      • C. Web Plan Contributor
      • D. Website Contributor

      Answer: B

      Explanation: The Contributor role lets you manage everything except access to resources. Incorrect Answers:
      A: The Owner role lets you manage everything, including access to resources.
      C: The Web Plan Contributor role lets you manage the web plans for websites, but not access to them.
      D: The Website Contributor role lets you manage websites (not web plans), but not access to them. References:
      https://docs.microsoft.com/en-us/azure/role-based-access-control/built-in-roles

      NEW QUESTION 7
      DRAG DROP
      You have an Azure Active Directory (Azure AD) tenant that has the initial domain name. You have a domain name of contoso.com registered at a third-party registrar.
      You need to ensure that you can create Azure AD users that have names containing a suffix of
      @contoso.com.
      Which three actions should you perform in sequence? To answer, move the appropriate cmdlets from the list of cmdlets to the answer area and arrange them in the correct order.
      AZ-102 dumps exhibit

        Answer:

        Explanation: The process is simple:
        Add the custom domain name to your directory
        Add a DNS entry for the domain name at the domain name registrar Verify the custom domain name in Azure AD
        References: https://docs.microsoft.com/en-us/azure/dns/dns-web-sites-custom-domain

        NEW QUESTION 8
        You have an Azure App Service plan that hosts an Azure App Service named App1.
        You configure one production slot and four staging slots for App1.
        You need to allocate 10 percent of the traffic to each staging slot and 60 percent of the traffic to the production slot.
        What should you add to Appl1?

        • A. slots to the Testing in production blade
        • B. a performance test
        • C. a WebJob
        • D. templates to the Automation script blade

        Answer: A

        Explanation: Besides swapping, deployment slots offer another killer feature: testing in production. Just like the name suggests, using this, you can actually test in production. This means that you can route a specific percentage of user traffic to one or more of your deployment slots.
        Example:
        AZ-102 dumps exhibit
        References:
        https://stackify.com/azure-deployment-slots/

        NEW QUESTION 9
        You have two Azure virtual networks named VNet1 and VNet2. VNet1 contains an Azure virtual
        machine named VM1. VNet2 contains an Azure virtual machine named VM2. VM1 hosts a frontend application that connects to VM2 to retrieve data. Users report that the frontend application is slower than usual.
        You need to view the average round-trip time (RTT) of the packets from VM1 to VM2. Which Azure Network Watcher feature should you use?

        • A. NSG flow logs
        • B. Connection troubleshoot
        • C. IP flow verify
        • D. Connection monitor

        Answer: D

        Explanation: The Connection Monitor feature in Azure Network Watcher is now generally available in all public regions. Connection Monitor provides you RTT values on a per-minute granularity. You can monitor a direct TCP connection from a virtual machine to a virtual machine, FQDN, URI, or IPv4 address. References:
        https://azure.microsoft.com/en-us/updates/general-availability-azure-network-watcher-connectionmonitor- in-all-public-regions/

        NEW QUESTION 10
        HOT SPOT
        You plan to deploy five virtual machines to a virtual network subnet.
        Each virtual machine will have a public IP address and a private IP address. Each virtual machine requires the same inbound and outbound security rules.
        What is the minimum number of network interfaces and network security groups that you require? To answer, select the appropriate options in the answer area.
        NOTE: Each correct selection is worth one point.
        AZ-102 dumps exhibit

          Answer:

          Explanation: Box 1: 10
          One public and one private network interface for each of the five VMs. Box 2: 1
          You can associate zero, or one, network security group to each virtual network subnet and network interface in a virtual machine. The same network security group can be associated to as many subnets and network interfaces as you choose.
          References:
          https://docs.microsoft.com/en-us/azure/virtual-network/security-overview

          NEW QUESTION 11
          You need to deploy an Azure load balancer named Ib 1015 to your Azure subscription. The solution must meet the following requirements:
          -Support the load balancing of IP traffic from the Internet to Azure virtual machines connected to VNET1016 subnet0.
          -Prov.de 4 Service level Agreement (SWJ of 99.99 percent ability for the Azure virtual machines.
          -Minimize Azure-related costs.
          What should you do from the Azure portal?
          To complete this task, you do NOT need to wait for the deployment to complete. Once the deployment start in Azure, you can move to the next task.

            Answer:

            Explanation: Step 1:
            On the top left-hand side of the screen, click Create a resource > Networking > Load Balancer. Step 2:
            In the Create a load balancer page enter these values for the load balancer: myLoadBalancer - for the name of the load balancer.
            Internal - for the type of the load balancer. Basic - for SKU version.
            Microsoft guarantees that apps running in a customer subscription will be available 99.99% of the time.
            VNET1016subnet0 - for subnet that you choose from the list of existing subnets.
            Step 3: Accept the default values for the other settings and click Create to create the load balancer.

            NEW QUESTION 12
            DRAG DROP
            You create an Azure Migrate project named TestMig in a resource group named test-migration. You need to discover which on-premises virtual machines to assess for migration.
            Which three actions should you perform in sequence? To answer, move the appropriate actions from the list of actions to the answer area and arrange them in the correct order.
            AZ-102 dumps exhibit

              Answer:

              Explanation: Step 1: Download the OVA file for the collection appliance
              Azure Migrate uses an on-premises VM called the collector appliance, to discover information about your on-premises machines. To create the appliance, you download a setup file in Open Virtualization Appliance (.ova) format, and import it as a VM on your on-premises vCenter Server. Step 2: Create a migration group in the project
              For the purposes of assessment, you gather the discovered VMs into groups. For example, you might group VMs that run the same application. For more precise grouping, you can use dependency visualization to view dependencies of a specific machine, or for all machines in a group and refine the group.
              Step 3: Create an assessment in the project
              After a group is defined, you create an assessment for it. References:
              https://docs.microsoft.com/en-us/azure/migrate/migrate-overview

              Case Study: 9
              Mix Questions Set D (Implement advanced networking)

              NEW QUESTION 13
              HOT SPOT
              You have an Azure web app named WebApp1 that runs in an Azure App Service plan named ASP1. ASP1 is based on the D1 pricing tier.
              You need to ensure that WebApp1 can be accessed only from computers on your on-premises network. The solution must minimize costs.
              What should you configure? To answer, select the appropriate options in the answer area. NOTE: Each correct selection is worth one point.
              AZ-102 dumps exhibit

                Answer:

                Explanation: Box 1: B1
                B1 (Basic) would minimize cost compared P1v2 (premium) and S1 (standard). Box 2: Cross Origin Resource Sharing (CORS)
                Once you set the CORS rules for the service, then a properly authenticated request made against the service from a different domain will be evaluated to determine whether it is allowed according to the rules you have specified.
                Note: CORS (Cross Origin Resource Sharing) is an HTTP feature that enables a web application running under one domain to access resources in another domain. In order to reduce the possibility of cross-site scripting attacks, all modern web browsers implement a security restriction known as
                same-origin policy. This prevents a web page from calling APIs in a different domain. CORS provides a secure way to allow one origin (the origin domain) to call APIs in another origin.
                References:
                https://azure.microsoft.com/en-us/pricing/details/app-service/windows/ https://docs.microsoft.com/en-us/azure/cdn/cdn-cors

                NEW QUESTION 14
                You create an Azure Storage account named contosostorage. You plan to create a file share named data.
                Users need to map a drive to the data file share from home computers that run Windows 10. Which port should be open between the home computers and the data file share?

                • A. 80
                • B. 443
                • C. 445
                • D. 3389

                Answer: C

                Explanation: Ensure port 445 is open: The SMB protocol requires TCP port 445 to be open; connections will fail if port 445 is blocked.
                References: https://docs.microsoft.com/en-us/azure/storage/files/storage-how-to-use-files-windows

                NEW QUESTION 15
                From the MFA Server blade, you open the Block/unblock users blade as shown in the exhibit. Block/unblock users
                A blocked user will not receive Multi-Factor Authentication requests. Authentication attempts for that user will be automatically denied. A user will remain blocked for 90 days from the time they are blocked. To manually unblock a user, click the “Unblock” action.
                AZ-102 dumps exhibit
                What caused AlexW to be blocked?

                • A. The user entered an incorrect PIN four times within 10 minutes.
                • B. The user account password expired.
                • C. An administrator manually blocked the user.
                • D. The user reported a fraud alert when prompted for additional authenticatio

                Answer: D

                NEW QUESTION 16
                You have an Active Directory forest named contoso.com.
                You install and configure Azure AD Connect to use password hash synchronization as the single signon (SSO) method. Staging mode is enabled.
                You review the synchronization results and discover that the Synchronization Service Manager does not display any sync jobs.
                You need to ensure that the synchronization completes successfully. What should you do?

                • A. From Synchronization Service Manager, run a full import.
                • B. Run Azure AD Connect and set the SSO method to Pass-through Authentication.
                • C. From Azure PowerShell, run Start-AdSyncSyncCycle -PolicyType Initial.
                • D. Run Azure AD Connect and disable staging mode.

                Answer: D

                Explanation: Staging mode must be disabled. If the Azure AD Connect server is in staging mode, password hash synchronization is temporarily disabled.
                References: https://docs.microsoft.com/en-us/azure/active-directory/connect/active-directoryaadconnectsync-troubleshoot-password-hash-synchronization#no-passwords-are-synchronizedtroubleshoot-by-using-the-troubleshooting-task

                NEW QUESTION 17
                You plan to automate the deployment of a virtual machine scale set that uses the Windows Server 2021 Datacenter image.
                You need to ensure that when the scale set virtual machines are provisioned, they have web server components installed.
                Which two actions should you perform? Each correct answer presents part of the solution. NOTE Each correct selection is worth one point.

                • A. Modify the extensionProfile section of the Azure Resource Manager template.
                • B. Create a new virtual machine scale set in the Azure portal.
                • C. Create an Azure policy.
                • D. Create an automation account.
                • E. Upload a configuration scrip

                Answer: AB

                Explanation: Virtual Machine Scale Sets can be used with the Azure Desired State Configuration (DSC) extension handler. Virtual machine scale sets provide a way to deploy and manage large numbers of virtual machines, and can elastically scale in and out in response to load. DSC is used to configure the VMs as they come online so they are running the production software.
                References: https://docs.microsoft.com/en-us/azure/virtual-machine-scale-sets/virtual-machinescale- sets-dsc

                NEW QUESTION 18
                Note: This questions is part of a series of questions that present the same scenario. Each questions in the series contains a unique solution that might meet the stated goals. Some questions sets might have more than one correct solution, while others might not have a correct solution. After you answer a questions in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen.
                You have an Azure virtual machine named VM1. VM1 was deployed by using a custom Azure Resource Manager template named ARM1.json.
                You receive a notification that VM1 will be affected by maintenance. You need to move VM1 to a different host immediately.
                Solution: From the Update management blade, you click enable. Does this meet the goal?

                • A. Yes
                • B. No

                Answer: B

                Explanation: You would need to Redeploy the VM.
                References: https://docs.microsoft.com/en-us/azure/virtual-machines/windows/redeploy-to-newnode

                Recommend!! Get the Full AZ-102 dumps in VCE and PDF From Surepassexam, Welcome to Download: https://www.surepassexam.com/AZ-102-exam-dumps.html (New 195 Q&As Version)