AZ-104 : Microsoft Azure Administrator Certification dumps - - Page 18
1. You discover that VM3 does NOT meet the technical requirements. You need to verify whether the issue relates to the NSGs. What should you use?
Page: Page 18
Option A: Diagram in VNet1
Option B: Diagnostic settings in Azure Monitor
Option C: Diagnose and solve problems in Traffic Manager profiles
Option D: The security recommendations in Azure Advisor
Answer(s): 5
Explanation: Scenario: Contoso must meet technical requirements including: Ensure that VM3 can establish outbound connections over TCP port 8080 to the applications servers in the Montreal office. IP flow verify checks if a packet is allowed or denied to or from a virtual machine. The information consists of direction, protocol, local IP, remote IP, local port, and remote port. If the packet is denied by a security group, the name of the rule that denied the packet is returned. While any source or destination IP can be chosen, IP flow verify helps administrators quickly diagnose connectivity issues from or to the internet and from or to the on-premises environment.
SEO Keywords: 1. Azure Administrator Certification exam, 2. AZ-104 exam dumps, 3. Microsoft Azure VM troubleshooting, 4. Network Security Groups (NSGs) in Azure, 5. VM technical requirements verification
2. HOTSPOT (Drag and Drop is not supported) You have an Azure subscription named Sub1. You plan to deploy a multi-tiered application that will contain the tiers shown in the following table. You need to recommend a networking solution to meet the following requirements: -Ensure that communication between the web servers and the business logic tier spreads equally across the virtual machines. -Protect the web servers from SQL injection attacks. Which Azure resource should you recommend for each requirement? To answer, select the appropriate options in the answer area. NOTE: Each correct selection is worth one point. Hot Area:
Page: Page 18
Option A: See Explanation section for answer.
Answer(s): 1
Explanation: Box 1: an internal load balancer Azure Internal Load Balancer (ILB) provides network load balancing between virtual machines that reside inside a cloud service or a virtual network with a regional scope. Box 2: an application gateway that uses the WAF tier Azure Web Application Firewall (WAF) on Azure Application Gateway provides centralized protection of your web applications from common exploits and vulnerabilities. Web applications are increasingly targeted by malicious attacks that exploit commonly known vulnerabilities.
SEO Keywords: 1. AZ-104 certification, 2. Microsoft Azure Administrator, 3. Azure networking solution, 4. Multi-tiered application deployment, 5. SQL injection protection
3. Your company has three offices. The offices are located in Miami, Los Angeles, and New York. Each office contains datacenter. You have an Azure subscription that contains resources in the East US and West US Azure regions. Each region contains a virtual network. The virtual networks are peered. You need to connect the datacenters to the subscription. The solution must minimize network latency between the datacenters.What should you create?
Page: Page 18
Option A: three Azure Application Gateways and one On-premises data gateway
Option B: three virtual hubs and one virtual WAN
Option C: three virtual WANs and one virtual hub
Option D: three On-premises data gateways and one Azure Application Gateway
Answer(s): 2
Explanation: Not available
SEO Keywords: 1. AZ-104 exam preparation, 2. Microsoft Azure Administrator certification tips, 3. Azure datacenter connection strategies, 4. Minimizing network latency in Azure, 5. Azure Virtual Network peering optimization
4. HOTSPOT (Drag and Drop is not supported) You plan to deploy five virtual machines to a virtual network subnet. Each virtual machine will have a public IP address and a private IP address. Each virtual machine requires the same inbound and outbound security rules. What is the minimum number of network interfaces and network security groups that you require? To answer, select the appropriate options in the answer area. NOTE: Each correct selection is worth one point. Hot Area:
Page: Page 18
Option A: See Explanation section for answer.
Answer(s): 1
Explanation: Box 1: 5 A public and a private IP address can be assigned to a single network interface. Box 2: 1 You can associate zero, or one, network security group to each virtual network subnet and network interface in a virtual machine. The same network security group can be associated to as many subnets and network interfaces as you choose.
SEO Keywords: 1. AZ-104 certification exam, 2. Microsoft Azure Administrator dumps, 3. Network interfaces for virtual machines, 4. Network security groups Azure, 5. Azure Administrator exam question
Post a Comment