AZ-102 | High value AZ-102 Free Practice Questions 2021

Master the AZ-102 Free Practice Questions content and be ready for exam day success quickly with this AZ-102 Free Practice Questions. We guarantee it!We make it a reality and give you real AZ-102 Braindumps in our Microsoft AZ-102 braindumps. Latest 100% VALID AZ-102 Free Practice Questions at below page. You can use our Microsoft AZ-102 braindumps and pass your exam.

Online Microsoft AZ-102 free dumps demo Below:

NEW QUESTION 1
HOT SPOT
You have an Azure subscription named Subscription1. Subscription1 contains the resources in the following table.
AZ-102 dumps exhibit
In Azure, you create a private DNS zone named adatum.com. You set the registration virtual network to VNet2. The adatum.com zone is configured as shown in the following exhibit.
AZ-102 dumps exhibit
For each of the following statements, select Yes if the statement is true. Otherwise, select No. NOTE: Each correct selection is worth one point.
AZ-102 dumps exhibit

    Answer:

    Explanation: Box 1: No
    Azure DNS provides automatic registration of virtual machines from a single virtual network that's linked to a private zone as a registration virtual network. VM5 does not belong to the registration virtual network though.
    Box 2: No
    Forward DNS resolution is supported across virtual networks that are linked to the private zone as resolution virtual networks. VM5 does belong to a resolution virtual network.
    Box 3: Yes
    VM6 belongs to registration virtual network, and an A (Host) record exists for VM9 in the DNS zone. By default, registration virtual networks also act as resolution virtual networks, in the sense that DNS resolution against the zone works from any of the virtual machines within the registration virtual network.
    References: https://docs.microsoft.com/en-us/azure/dns/private-dns-overview

    NEW QUESTION 2
    You are configuring serverless computing in Azure.
    You need to receive an email message whenever a resource is created in or deleted from a resource group. Which three actions should you perform in sequence? To answer, move the appropriate actions from the list of actions to the answer area and arrange them in the correct order.
    AZ-102 dumps exhibit

      Answer:

      Explanation: Step 1: Create an event subscription
      When you subscribe to events for a resource group, your endpoint receives all events for that resource group. Step 2: Create an Azure Event Grid trigger
      Step 3: Create conditions and actions References:
      https://docs.microsoft.com/en-us/azure/event-grid/event-schema-resource-groups

      NEW QUESTION 3
      HOT SPOT
      You have an Azure subscription named Subscription1.
      You have a virtualization environment that contains the virtualization servers in the following table.
      AZ-102 dumps exhibit
      The virtual machines are configured as shown in the following table.
      AZ-102 dumps exhibit
      All the virtual machines use basic disks. VM1 is protected by using BitLocker Drive Encryption (BitLocker).
      You plan to use Azure Site Recovery to migrate the virtual machines to Azure.
      Which virtual machines can you migrate? To answer, select the appropriate options in the answer area. NOTE: Each correct selection is worth one point.
      AZ-102 dumps exhibit

        Answer:

        Explanation: Box 1: VM3
        Not VM1 as Bitlocker is not supported. BitLocker must be disabled before you enable replication for a VM.
        Not VM2 as maximum Operating system disk size for a generation VM is 2,048 GB. Box 2: VMA and VMB only
        Not VMC as the max data disk size is 4,095 GB References:
        https://docs.microsoft.com/en-us/azure/site-recovery/hyper-v-azure-support-matrix https://docs.microsoft.com/en-us/azure/site-recovery/vmware-physical-azure-supportmatrix# azure-vm-requirements

        NEW QUESTION 4
        HOT SPOT
        You purchase a new Azure subscription named Subscription1.
        You create a virtual machine named VM1 in Subscription1. VM1 is not protected by Azure Backup. You need to protect VM1 by using Azure Backup. Backups must be created at 01:00 and stored for 30 days.
        What should you do? To answer, select the appropriate options in the answer area. NOTE: Each correct selection is worth one point.
        AZ-102 dumps exhibit

          Answer:

          Explanation: Box 1: A Recovery Services vault
          A Recovery Services vault is an entity that stores all the backups and recovery points you create over time.
          Box 2: A backup policy
          What happens when I change my backup policy?
          When a new policy is applied, schedule and retention of the new policy is followed. References:
          https://docs.microsoft.com/en-us/azure/backup/backup-configure-vault https://docs.microsoft.com/en-us/azure/backup/backup-azure-backup-faq

          NEW QUESTION 5
          Your company has an Azure subscription named Subscription1.
          The company also has two on-premises servers named Server1 and Server2 that run Windows Server 2021. Server1 is configured as a DNS server that has a primary DNS zone named adatum.com. Adatum.com contains 1,000 DNS records.
          You manage Server1 and Subscription1 from Server2. Server2 has the following tools installed: The DNS Manager console
          Azure PowerShell Azure CLI 2.0
          You need to move the adatum.com zone to Subscription1. The solution must minimize administrative effort.
          What should you use?

          • A. Azure PowerShell
          • B. Azure CLI
          • C. the Azure portal
          • D. the DNS Manager console

          Answer: B

          Explanation: Azure DNS supports importing and exporting zone files by using the Azure command-line interface (CLI). Zone file import is not currently supported via Azure PowerShell or the Azure portal. References: https://docs.microsoft.com/en-us/azure/dns/dns-import-export

          NEW QUESTION 6
          Note: This questions is part of a series of questions that present the same scenario. Each questions in the series contains a unique solution that might meet the stated goals. Some questions sets might have more than one correct solution, while others might not have a correct solution. After you answer a questions in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen.
          You have an Azure subscription that contains 10 virtual networks. The virtual networks are hosted in separate resource groups.
          Another administrator plans to create several network security groups (NSGs) in the subscription. You need to ensure that when an NSG is created, it automatically blocks TCP port 8080 between the virtual networks.
          Solution: You assign a built-in policy definition to the subscription. Does this meet the goal?

          • A. Yes
          • B. No

          Answer: B

          NEW QUESTION 7
          You need to deploy an Azure load balancer named Ib 1015 to your Azure subscription. The solution must meet the following requirements:
          -Support the load balancing of IP traffic from the Internet to Azure virtual machines connected to VNET1016 subnet0.
          -Prov.de 4 Service level Agreement (SWJ of 99.99 percent ability for the Azure virtual machines.
          -Minimize Azure-related costs.
          What should you do from the Azure portal?
          To complete this task, you do NOT need to wait for the deployment to complete. Once the deployment start in Azure, you can move to the next task.

            Answer:

            Explanation: Step 1:
            On the top left-hand side of the screen, click Create a resource > Networking > Load Balancer. Step 2:
            In the Create a load balancer page enter these values for the load balancer: myLoadBalancer - for the name of the load balancer.
            Internal - for the type of the load balancer. Basic - for SKU version.
            Microsoft guarantees that apps running in a customer subscription will be available 99.99% of the time.
            VNET1016subnet0 - for subnet that you choose from the list of existing subnets.
            Step 3: Accept the default values for the other settings and click Create to create the load balancer.

            NEW QUESTION 8
            You have an Azure Active Directory (Azure AD) tenant.
            You have an existing Azure AD conditional access policy named Policy1. Policy1 enforces the use of Azure AD-joined devices when members of the Global Administrators group authenticate to Azure AD from untrusted locations.
            You need to ensure that members of the Global Administrators group will also be forced to use multi- factor authentication when authenticating from untrusted locations.
            What should you do?

            • A. From the multi-factor authentication page, modify the service settings.
            • B. From the multi-factor authentication page, modify the user settings.
            • C. From the Azure portal, modify grant control of Policy1.
            • D. From the Azure portal, modify session control of Policy1.

            Answer: C

            Explanation: There are two types of controls: Grant controls – To gate access
            Session controls – To restrict access to a session
            Grant controls oversee whether a user can complete authentication and reach the resource that they’re attempting to sign-in to. If you have multiple controls selected, you can configure whether all of them are required when your policy is processed. The current implementation of Azure Active Directory enables you to set the following grant control requirements:
            AZ-102 dumps exhibit
            References:
            https://blog.lumen21.com/2021/12/15/conditional-access-in-azure-active-directory/

            NEW QUESTION 9
            You plan to connect a virtual network named VNET1017 to your on-premises network by using both an Azure ExpressRoute and a site-to-site VPN connection.
            You need to prepare the Azure environment for the planned deployment. The solution must maximize the IP address space available to Azure virtual machines.
            What should you do from the Azure portal before you create the ExpressRoute are the VPN gateway?

              Answer:

              Explanation: We need to create a Gateway subnet Step 1:
              Go to More Services > Virtual Networks Step 2:
              Then click on the VNET1017, and click on subnets. Then click on gateway subnet.
              Step 3:
              In the next window define the subnet for the gateway and click OK
              AZ-102 dumps exhibit
              It is recommended to use /28 or /27 for gateway subnet.
              As we want to maximize the IP address space we should use /27. References:
              https://blogs.technet.microsoft.com/canitpro/2021/06/28/step-by-step-configuring-a-site-to-sitevpn- gateway-between-azure-and-on-premise/

              NEW QUESTION 10
              HOT SPOT
              You have an Azure subscription named Subscription1. Subscription1 contains two Azure virtual machines named VM1 and VM2. VM1 and VM2 run Windows Server 2021.
              VM1 is backed up daily by Azure Backup without using the Azure Backup agent. VM1 is affected by ransomware that encrypts data.
              You need to restore the latest backup of VM1.
              To which location can you restore the backup? To answer, select the appropriate options in the answer area.
              NOTE: Each correct selection is worth one point.
              AZ-102 dumps exhibit

                Answer:

                Explanation: Box 1: VM1 only
                To restore files or folders from the recovery point, go to the virtual machine and choose the desired recovery point.
                Box 2: A new Azure virtual machine only
                On the Restore configuration blade, you have two choices: Create virtual machine
                Restore disks References:
                https://docs.microsoft.com/en-us/azure/backup/backup-azure-restore-files-from-vm https://docs.microsoft.com/en-us/azure/backup/backup-azure-arm-restore-vms

                NEW QUESTION 11
                You need to deploy an application gateway named appgwl015 to meet the following requirements: Load balance internal IP traffic to the Azure virtual machines connected to subnet0.
                Provide a Service Level Agreement (SLA) of 99.99 percent availability for the Azure virtual machines. What should you do from the Azure portal?

                  Answer:

                  Explanation: Step 1:
                  Click New found on the upper left-hand corner of the Azure portal. Step 2:
                  Select Networking and then select Application Gateway in the Featured list. Step 3:
                  Enter these values for the application gateway: appgw1015 - for the name of the application gateway. SKU Size: Standard_V2
                  The new SKU [Standard_V2] offers autoscaling and other critical performance enhancements.
                  AZ-102 dumps exhibit
                  Step 4:
                  Accept the default values for the other settings and then click OK. Step 5:
                  Click Choose a virtual network, and select subnet0.
                  References:
                  https://docs.microsoft.com/en-us/azure/application-gateway/application-gateway-create-gatewayportal

                  NEW QUESTION 12
                  You need to meet the technical requirement for VM4. What should you create and configure?

                  • A. an Azure Notification Hub
                  • B. an Azure Event Hub
                  • C. an Azure Logic App
                  • D. an Azure services Bus

                  Answer: B

                  Explanation: Scenario: Create a workflow to send an email message when the settings of VM4 are modified. You can start an automated logic app workflow when specific events happen in Azure resources or third-party resources. These resources can publish those events to an Azure event grid. In turn, the event grid pushes those events to subscribers that have queues, webhooks, or event hubs as endpoints. As a subscriber, your logic app can wait for those events from the event grid before running automated workflows to perform tasks - without you writing any code.
                  References:
                  https://docs.microsoft.com/en-us/azure/event-grid/monitor-virtual-machine-changes-event-gridlogic- app

                  NEW QUESTION 13
                  Your company registers a domain name of contoso.com.
                  You create an Azure DNS named contoso.com and then you add an A record to the zone for a host named www that has an IP address of 131.107.1.10.
                  You discover that Internet hosts are unable to resolve www.contoso.com to the 131.107.1.10 IP address.
                  You need to resolve the name resolution issue.
                  Solution: You modify the SOA record in the contoso.com zone Does this meet the goal?

                  • A. Yes
                  • B. No

                  Answer: B

                  Explanation: Modify the NS record, not the SOA record.
                  Note: The SOA record stores information about the name of the server that supplied the data for the zone; the administrator of the zone; the current version of the data file; the number of seconds a secondary name server should wait before checking for updates; the number of seconds a secondary name server should wait before retrying a failed zone transfer; the maximum number of seconds that a secondary name server can use data before it must either be refreshed or expire; and a default number of seconds for the time-to-live file on resource records.
                  References: https://searchnetworking.techtarget.com/definition/start-of-authority-record

                  NEW QUESTION 14
                  HOT SPOT
                  You have an Azure subscription named Subscription1.
                  In Subscription1, you create an Azure file share named share1.
                  You create a shared access signature (SAS) named SAS1 as shown in the following exhibit.
                  AZ-102 dumps exhibit
                  To answer, select the appropriate options in the answer area. NOTE: Each correct selection is worth one point.
                  AZ-102 dumps exhibit

                    Answer:

                    Explanation: Box 1: Will be prompted for credentials
                    Azure Storage Explorer is a standalone app that enables you to easily work with Azure Storage data on Windows, macOS, and Linux. It is used for connecting to and managing your Azure storage accounts.
                    Box 2: Will have read, write, and list access
                    The net use command is used to connect to file shares. References:
                    https://docs.microsoft.com/en-us/azure/storage/common/storage-dotnet-shared-access-signaturepart- https://docs.microsoft.com/en-us/azure/vs-azure-tools-storage-manage-with-storageexplorer? tabs=windows

                    NEW QUESTION 15
                    You have an azure subscription that contain a virtual named VNet1. VNet1. contains four subnets named Gatesway, perimeter, NVA, and production.
                    The NVA contain two network virtual appliance (NVAs) that will network traffic inspection between the perimeter subnet and the production subnet.
                    You need o implement an Azure load balancer for the NVAs. The solution must meet the following requirements:
                    The NVAs must run in an active-active configuration that uses automatic failover.
                    The NVA must load balance traffic to two services on the Production subnet. The services have different IP addresses
                    Which three actions should you perform? Each correct answer presents parts of the solution. NOTE: Each correct selection is worth one point.

                    • A. Add two load balancing rules that have HA Ports enabled and Floating IP disabled.
                    • B. Deploy a standard load balancer.
                    • C. Add a frontend IP configuration, two backend pools, and a health prob.
                    • D. Add a frontend IP configuration, a backend pool, and a health probe.
                    • E. Add two load balancing rules that have HA Ports and Floating IP enabled.
                    • F. Deploy a basic load balance

                    Answer: BCE

                    Explanation: A standard load balancer is required for the HA ports.
                    -Two backend pools are needed as there are two services with different IP addresses.
                    -Floating IP rule is used where backend ports are reused. Incorrect Answers:
                    F: HA Ports are not available for the basic load balancer. References:
                    https://docs.microsoft.com/en-us/azure/load-balancer/load-balancer-standard-overview https://docs.microsoft.com/en-us/azure/load-balancer/load-balancer-multivip-overview

                    NEW QUESTION 16
                    You download an Azure Resource Manager template based on an existing virtual machine. The template will be used to deploy 100 virtual machines.
                    You need to modify the template to reference an administrative password. You must prevent the password from being stored in plain text.
                    What should you create to store the password?

                    • A. Azure Active Directory (AD) Identity Protection and an Azure policy
                    • B. a Recovery Services vault and a backup policy
                    • C. an Azure Key Vault and an access policy
                    • D. an Azure Storage account and an access policy

                    Answer: C

                    Explanation: You can use a template that allows you to deploy a simple Windows VM by retrieving the password that is stored in a Key Vault. Therefore the password is never put in plain text in the template parameter file.
                    References: https://azure.microsoft.com/en-us/resources/templates/101-vm-secure-password/

                    NEW QUESTION 17
                    You plan to deploy an application getaway named appgw1015 to load balance IP traffic to the Azure virtual machines connected to subnet0.
                    You need to configure a virtual network named VNET1015 to support the planned application gateway.
                    What should you do from the Azure portal?

                      Answer:

                      Explanation: Step 1:
                      Click Networking, Virtual Network, and select VNET1015. Step 2:
                      Click Subnets, and Click +Add on the VNET1015 - Subnets pane that appears. Step 3:
                      On the Subnets page, click +Gateway subnet at the top to open the Add subnet page.
                      AZ-102 dumps exhibit
                      Step 4:
                      Locate subnet0 and add it. References:
                      https://docs.microsoft.com/en-us/azure/vpn-gateway/vpn-gateway-howto-site-to-site-resourcemanager- portal

                      Recommend!! Get the Full AZ-102 dumps in VCE and PDF From 2passeasy, Welcome to Download: https://www.2passeasy.com/dumps/AZ-102/ (New 195 Q&As Version)