AZ-104 : Microsoft Azure Administrator Certification dumps - - Page 31
1. Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution. After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen. You have an Azure subscription that contains the virtual machines shown in the following table. You deploy a load balancer that has the following configurations: -Name: LB1 -Type: Internal -SKU: Standard -Virtual network: VNET1 You need to ensure that you can add VM1 and VM2 to the backend pool of LB1. Solution: You create two Standard public IP addresses and associate a Standard SKU public IP address to the network interface of each virtual machine. Does this meet the goal?
Page: Page 31
Option A: Yes
Option B: No
Answer(s): 1
Explanation: A Backend Pool configured by IP address has the following limitations: Standard load balancer only
SEO Keywords: 1. Microsoft Azure Administrator Certification dumps, 2. AZ-104 exam preparation, 3. Load balancer configuration in Azure, 4. Azure Virtual Network setup, 5. Azure Standard SKU public IP addresses
2. Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution. After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen. You have a computer named Computer1 that has a point-to-site VPN connection to an Azure virtual network named VNet1. The point-to-site connection uses a self-signed certificate. From Azure, you download and install the VPN client configuration package on a computer named Computer2. You need to ensure that you can establish a point-to-site VPN connection to VNet1 from Computer2. Solution: You export the client certificate from Computer1 and install the certificate on Computer2. Does this meet the goal?
Page: Page 31
Option A: Yes
Option B: No
Answer(s): 1
Explanation: Each client computer that connects to a VNet using Point-to-Site must have a client certificate installed. You generate a client certificate from the self-signed root certificate, and then export and install the client certificate. If the client certificate is not installed, authentication fails.
SEO Keywords: 1. AZ-104 certification dumps, 2. Microsoft Azure Administrator certification tips, 3. Azure point-to-site VPN connection, 4. Microsoft Azure VPN client configuration, 5. Azure self-signed certificate for VPN
3. You have an Azure virtual machine named VM1. The network interface for VM1 is configured as shown in the exhibit. (Click the Exhibit tab.) You deploy a web server on VM1, and then create a secure website that is accessible by using the HTTPS protocol. VM1 is used as a web server only. You need to ensure that users can connect to the website from the Internet. What should you do?
Page: Page 31
Option A: Modify the protocol of Rule4
Option B: Delete Rule1
Option C: For Rule5, change the Action to Allow and change the priority to 401
Option D: Create a new inbound rule that allows TCP protocol 443 and configure the rule to have a priority of 501.
Answer(s): 3
Explanation: HTTPS uses port 443. Rule2, with priority 500, denies HTTPS traffic. Rule5, with priority changed from 2000 to 401, would allow HTTPS traffic. Note: Priority is a number between 100 and 4096. Rules are processed in priority order, with lower numbers processed before higher numbers, because lower numbers have higher priority. Once traffic matches a rule, processing stops. As a result, any rules that exist with lower priorities (higher numbers) that have the same attributes as rules with higher priorities are not processed. Note: There are several versions of this question in the exam. The question has two possible correct answers: 1. Change the priority of Rule3 to 450. 2. For Rule5, change the Action to Allow and change the priority to 401. Other incorrect answer options you may see on the exam include the following: -Modify the action of Rule1. -Change the priority of Rule6 to 100. -For Rule4, change the protocol from UDP to Any.
SEO Keywords: 1. Microsoft Azure Administrator Certification, 2. AZ-104 exam dumps, 3. AZ-104 practice questions, 4. Azure VM network configuration, 5. Creating secure website in AzureVM
4. Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution. After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen. You have an Azure subscription that contains 10 virtual networks. The virtual networks are hosted in separate resource groups. Another administrator plans to create several network security groups (NSGs) in the subscription. You need to ensure that when an NSG is created, it automatically blocks TCP port 8080 between the virtual networks. Solution: From the Resource providers blade, you unregister the Microsoft.ClassicNetwork provider. Does this meet the goal?
Page: Page 31
Option A: Yes
Option B: No
Answer(s): 2
Explanation: You should use a policy definition. Resource policy definition used by Azure Policy enables you to establish conventions for resources in your organization by describing when the policy is enforced and what effect to take. By defining conventions, you can control costs and more easily manage your resources.
SEO Keywords: 1. Azure AZ-104 certification dumps, 2. Microsoft Azure Administrator exam prep, 3. Network security groups (NSGs) in Azure, 4. Azure subscription network management, 5. Microsoft.ClassicNetwork provider deregistration in Azure
Post a Comment