AZ-104 : Microsoft Azure Administrator Certification dumps - - Page 25
1. You have an Azure subscription that contains the resources in the following table. VM1 and VM2 are deployed from the same template and host line-of-business applications. You configure the network security group (NSG) shown in the exhibit. (Click the Exhibit tab.) You need to prevent users of VM1 and VM2 from accessing websites on the Internet over TCP port 80. What should you do?
Page: Page 25
Option A: Disassociate the NSG from a network interface
Option B: Change the Port_80 inbound security rule.
Option C: Associate the NSG to Subnet1.
Option D: Change the DenyWebSites outbound security rule.
Answer(s): 3
Explanation: You can associate or dissociate a network security group from a network interface or subnet. The NSG has the appropriate rule to block users from accessing the Internet. We just need to associate it with Subnet1.
SEO Keywords: 1. Azure Administrator Certification dumps, 2. AZ-104 exam prep, 3. Microsoft Azure NSG configuration, 4. How to restrict Internet access on Azure VMs, 5. Azure NSG best practices
2. You have two subscriptions named Subscription1 and Subscription2. Each subscription is associated to a different Azure AD tenant. Subscription1 contains a virtual network named VNet1. VNet1 contains an Azure virtual machine named VM1 and has an IP address space of 10.0.0.0/16. Subscription2 contains a virtual network named VNet2. VNet2 contains an Azure virtual machine named VM2 and has an IP address space of 10.10.0.0/24. You need to connect VNet1 to VNet2. What should you do first?
Page: Page 25
Option A: Move VM1 to Subscription2.
Option B: Move VNet1 to Subscription2.
Option C: Modify the IP address space of VNet2.
Option D: Provision virtual network gateways.
Answer(s): 4
Explanation: The virtual networks can be in the same or different regions, and from the same or different subscriptions. When connecting VNets from different subscriptions, the subscriptions do not need to be associated with the same Active Directory tenant. Configuring a VNet-to-VNet connection is a good way to easily connect VNets. Connecting a virtual network to another virtual network using the VNet-to-VNet connection type (VNet2VNet) is similar to creating a Site-to-Site IPsec connection to an on-premises location. Both connectivity types use a VPN gateway to provide a secure tunnel using IPsec/IKE, and both function the same way when communicating. The local network gateway for each VNet treats the other VNet as a local site. This lets you specify additional address space for the local network gateway in order to route traffic.
SEO Keywords: 1. Azure AZ-104 certification dumps, 2. Microsoft Azure Administrator exam tips, 3. Azure virtual network connection best practices, 4. Connecting Azure VNets for Azure Administrator exam, 5. VNet peering in Azure for certification exam prep
3. You plan to create an Azure virtual machine named VM1 that will be configured as shown in the following exhibit. The planned disk configurations for VM1 are shown in the following exhibit. You need to ensure that VM1 can be created in an Availability Zone. Which two settings should you modify? Each correct answer presents part of the solution. NOTE: Each correct selection is worth one point.
Page: Page 25
Option A: Use managed disks
Option B: OS disk type
Option C: Availability options
Option D: Size
Answer(s): 1,3
Explanation: A: Your VMs should use managed disks if you want to move them to an Availability Zone by using Site Recovery. C: When you create a VM for an Availability Zone, Under Settings > High availability, select one of the numbered zones from the Availability zone dropdown.
SEO Keywords: 1. AZ-104 exam preparation, 2. Azure Administrator certification tips, 3. Microsoft Azure VM configurations, 4. Creating Azure virtual machines in Availability Zone, 5. Azure VM disk configurations and availability zones
4. HOTSPOT (Drag and Drop is not supported) You have an Azure subscription that contains the resources shown in the following table. VMSS1 is set to VM (virtual machines) orchestration mode. You need to deploy a new Azure virtual machine named VM1, and then add VM1 to VMSS1. Which resource group and location should you use to deploy VM1? To answer, select the appropriate options in the answer area. NOTE: Each correct selection is worth one point. Hot Area:
Page: Page 25
Option A: See Explanation section for answer.
Answer(s): 1
Explanation: Box 1: RG1, RG2, or RG3 The resource group stores metadata about the resources. When you specify a location for the resource group, you're specifying where that metadata is stored. Box 2: West US only Note: Virtual machine scale sets will support 2 distinct orchestration modes: ScaleSetVM – Virtual machine instances added to the scale set are based on the scale set configuration model. The virtual machine instance lifecycle - creation, update, deletion - is managed by the scale set. VM (virtual machines) – Virtual machines created outside of the scale set can be explicitly added to the scaleset.
SEO Keywords: 1. AZ-104 certification dumps, 2. Microsoft Azure Administrator exam preparation, 3. Azure virtual machine deployment, 4. VM orchestration in Azure, 5. Azure VMSS deployment resources
Post a Comment