AZ-102 | Exact AZ-102 Dumps 2021

Act now and download your AZ-102 Braindumps today! Do not waste time for the worthless AZ-102 Dumps Questions tutorials. Download AZ-102 Study Guides with real questions and answers and begin to learn AZ-102 Exam Questions with a classic professional.

Online Microsoft AZ-102 free dumps demo Below:

NEW QUESTION 1
Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution.
After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen.
You have an Azure Active Directory (Azure AD) tenant named Adatum and an Azure Subscription named Subscription1. Adatum contains a group named Developers. Subscription1 contains a resource group named Dev.
You need to provide the Developers group with the ability to create Azure logic apps in the Dev resource group.
Solution: On Subscription1, you assign the Logic App Operator role to the Developers group. Does this meet the goal?

  • A. Yes
  • B. No

Answer: B

Explanation: The Logic App Operator role only lets you read, enable and disable logic app. With it you can view the logic app and run history, and enable/disable. Cannot edit or update the definition.
You would need the Logic App Contributor role. References:
https://docs.microsoft.com/en-us/azure/role-based-access-control/built-in-roles https://docs.microsoft.com/en-us/azure/logic-apps/logic-apps-securing-a-logic-app

NEW QUESTION 2
Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution.
After you answer a question in this section, you will NOT be able to return to it. As a result, these Questions will not appear in the review screen.
You have an Azure subscription named Subscription1. Subscription1 contains a resource group named RG1. RG1 contains resources that were deployed by using templates.
You need to view the date and time when the resources were created in RG1.
Solution: From the Subscriptions blade, you select the subscription, and then click Resource providers.
Does this meet the goal?

  • A. Yes
  • B. No

Answer: B

NEW QUESTION 3
Note: This question is part of a series of Questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more
than one correct solution, while others might not have a correct solution. After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen.
You have an Azure virtual machine named VM1. VM1 was deployed by using a custom Azure Resource Manager template named ARM1.json.
You receive a notification that VM1 will be affected by maintenance. You need to move VM1 to a different host immediately.
Solution: From the Overview blade, you move the virtual machine to a different resource group. Does this meet the goal?

  • A. Yes
  • B. No

Answer: B

NEW QUESTION 4
You need to define a custom domain name for Azure AD to support the planned infrastructure. Which domain name should you use?

  • A. Join the client computers in the Miami office to Azure AD.
  • B. Add http://autologon.microsoftazuread-sso.com to the intranet zone of each client computer in the Miami office.
  • C. Allow inbound TCP port 8080 to the domain controllers in the Miami office.
  • D. Install Azure AD Connect on a server in the Miami office and enable Pass-through Authentication
  • E. Install the Active Directory Federation Services (AD FS) role on a domain controller in the Miamioffic

Answer: BD

Explanation: Every Azure AD directory comes with an initial domain name in the form of domainname.onmicrosoft.com. The initial domain name cannot be changed or deleted, but you can add your corporate domain name to Azure AD as well. For example, your organization probably has other domain names used to do business and users who sign in using your corporate domain name. Adding custom domain names to Azure AD allows you to assign user names in the directory that are familiar to your users, such as ‘alice@contoso.com.’ instead of 'alice@domain name.onmicrosoft.com'.
Scenario:
Network Infrastructure: Each office has a local data center that contains all the servers for that office. Each office has a dedicated connection to the Internet.
Humongous Insurance has a single-domain Active Directory forest named humongousinsurance.com Planned Azure AD Infrastructure: The on-premises Active Directory domain will be synchronized to Azure AD.
References: https://docs.microsoft.com/en-us/azure/active-directory/fundamentals/add-customdomain

NEW QUESTION 5
HOT SPOT
You have an Azure Active Directory (Azure AD) tenant.
You need to create a conditional access policy that requires all users to use multi-factor authentication when they access the Azure portal.
Which three settings should you configure? To answer, select the appropriate settings in the answer area.
AZ-102 dumps exhibit

    Answer:

    Explanation: Box 1: Assignments, Users and Groups
    When you configure the sign-in risk policy, you need to set:
    The users and groups the policy applies to: Select Individuals and Groups
    AZ-102 dumps exhibit
    Box 2:
    When you configure the sign-in risk policy, you need to set the type of access you want to be enforced.
    AZ-102 dumps exhibit
    Box 3:
    When you configure the sign-in risk policy, you need to set:
    The type of access you want to be enforced when your sign-in risk level has been met:
    AZ-102 dumps exhibit
    References:
    https://docs.microsoft.com/en-us/azure/active-directory/identity-protection/howto-user-risk-policy

    NEW QUESTION 6
    You have 100 Azure subscriptions. All the subscriptions are associated to the same Azure Active Directory (Azure AD) tenant named contoso.com.
    You are a global administrator.
    You plan to create a report that lists all the resources across all the subscriptions. You need to ensure that you can view all the resources in all the subscriptions. What should you do?

    • A. From the Azure portal, modify the profile settings of your account.
    • B. From Windows PowerShell, run the Add-AzureADAdministrativeUnitMember cmdlet.
    • C. From Windows PowerShell, run the New-AzureADUserAppRoleAssignment cmdlet.
    • D. From the Azure portal, modify the properties of the Azure AD tenan

    Answer: C

    Explanation: The New-AzureADUserAppRoleAssignment cmdlet assigns a user to an application role in Azure Active Directory (AD). Use it for the application report.
    References: https://docs.microsoft.com/en-us/powershell/module/azuread/newazureaduserapproleassignment? view=azureadps-2.0

    NEW QUESTION 7
    DRAG DROP
    You have an Azure Active Directory (Azure AD) tenant that has the initial domain name. You have a domain name of contoso.com registered at a third-party registrar.
    You need to ensure that you can create Azure AD users that have names containing a suffix of
    @contoso.com.
    Which three actions should you perform in sequence? To answer, move the appropriate cmdlets from the list of cmdlets to the answer area and arrange them in the correct order.
    AZ-102 dumps exhibit

      Answer:

      Explanation: The process is simple:
      Add the custom domain name to your directory
      Add a DNS entry for the domain name at the domain name registrar Verify the custom domain name in Azure AD
      References: https://docs.microsoft.com/en-us/azure/dns/dns-web-sites-custom-domain

      NEW QUESTION 8
      DRAG DROP
      You have an Azure Linux virtual machine that is protected by Azure Backup. One week ago, two files were deleted from the virtual machine.
      You need to restore the deleted files to an on-premises computer as quickly as possible.
      Which four actions should you perform in sequence? To answer, move the appropriate actions from the list of actions to the answer area and arrange them in the correct order.
      AZ-102 dumps exhibit

        Answer:

        Explanation: To restore files or folders from the recovery point, go to the virtual machine and choose the desired recovery point.
        Step 0. In the virtual machine's menu, click Backup to open the Backup dashboard. Step 1. In the Backup dashboard menu, click File Recovery.
        Step 2. From the Select recovery point drop-down menu, select the recovery point that holds the files you want. By default, the latest recovery point is already selected.
        Step 3: To download the software used to copy files from the recovery point, click Download Executable (for Windows Azure VM) or Download Script (for Linux Azure VM, a python script is generated).
        Step 4: Copy the files by using AzCopy
        AzCopy is a command-line utility designed for copying data to/from Microsoft Azure Blob, File, and Table storage, using simple commands designed for optimal performance. You can copy data between a file system and a storage account, or between storage accounts.
        References:
        https://docs.microsoft.com/en-us/azure/backup/backup-azure-restore-files-from-vm https://docs.microsoft.com/en-us/azure/storage/common/storage-use-azcopy

        NEW QUESTION 9
        Note: This questions is part of a series of questions that present the same scenario. Each questions in the series contains a unique solution that might meet the stated goals. Some questions sets might have more than one correct solution, while others might not have a correct solution. After you answer a questions in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen.
        You have an Azure virtual machine named VM1. VM1 was deployed by using a custom Azure Resource Manager template named ARM1.json.
        You receive a notification that VM1 will be affected by maintenance. You need to move VM1 to a different host immediately.
        Solution: From the Update management blade, you click enable. Does this meet the goal?

        • A. Yes
        • B. No

        Answer: B

        Explanation: You would need to Redeploy the VM.
        References: https://docs.microsoft.com/en-us/azure/virtual-machines/windows/redeploy-to-newnode

        NEW QUESTION 10
        Note: This questions is part of a series of questions that present the same scenario. Each questions in the series contains a unique solution that might meet the stated goals. Some questions sets might have more than one correct solution, while others might not have a correct solution. After you answer a questions in this section, you will NOT be able to return to it. As a result, these Questions will not appear in the review screen.
        You have an Azure subscription that contains 10 virtual networks. The virtual networks are hosted in separate resource groups.
        Another administrator plans to create several network security groups (NSGs) in the subscription. You need to ensure that when an NSG is created, it automatically blocks TCP port 8080 between the virtual networks.
        Solution: From the Resource providers blade, you unregister the Microsoft.ClassicNetwork provider. Does this meet the goal?

        • A. Yes
        • B. No

        Answer: B

        NEW QUESTION 11
        SIMULATION
        Click to expand each objective. To connect to the Azure portal, type https://portal.azure.com in the browser address bar.
        AZ-102 dumps exhibit
        AZ-102 dumps exhibit
        AZ-102 dumps exhibit
        AZ-102 dumps exhibit
        AZ-102 dumps exhibit
        AZ-102 dumps exhibit
        When you are finished performing all the tasks, click the ‘Next’ button.
        Note that you cannot return to the lab once you click the ‘Next’ button. Scoring occur in the background while you complete the rest of the exam.
        Overview
        The following section of the exam is a lab. In this section, you will perform a set of tasks in a live environment. While most functionality will be available to you as it would be in a live environment, some functionality (e.g., copy and paste, ability to navigate to external websites) will not be possible by design. Scoring is based on the outcome of performing the tasks stated in the lab. In other words, it doesn’t matter how you accomplish the task, if you successfully perform it, you will earn credit for that task.
        Labs are not timed separately, and this exam may have more than one lab that you must complete. You can use as much time as you would like to complete each lab. But, you should manage your time appropriately to ensure that you are able to complete the lab(s) and all other sections of the exam in the time provided.
        Please note that once you submit your work by clicking the Next button within a lab, you will NOT be able to return to the lab.
        To start the lab
        You may start the lab by clicking the Next button.
        You need to deploy an Azure virtual machine named VM1004a based on the Ubuntu Server 17.10 image, and then to configure VM1004a to meet the following requirements:
        The virtual machine must contain data disks that can store at least 15 TB of data. The data disks must be able to provide at least 2,000 IOPS.
        Storage costs must be minimized.
        What should you do from the Azure portal?

          Answer:

          Explanation: 1. Open the Azure portal.
          2. On the left menu, select All resources. You can sort the resources by Type to easily find your images.
          3. Select the image you want to use from the list. The image Overview page opens.
          4. Select Create VM from the menu.
          5. Enter the virtual machine information.
          Select VM1004a as the name for the first Virtual machine.
          The user name and password entered here will be used to log in to the virtual machine. When complete, select OK. You can create the new VM in an existing resource group, or choose Create new to create a new resource group to store the VM.
          6. Select a size for the VM. To see more sizes, select View all or change the Supported disk type filter. To support 15 TB of data you would need a Premium disk.
          7. Under Settings, make changes as necessary and select OK.
          8. On the summary page, you should see your image name listed as a Private image. Select Ok to start the virtual machine deployment.
          References: https://docs.microsoft.com/en-us/azure/virtual-machines/windows/create-vmgeneralized- managed

          NEW QUESTION 12
          You have an Azure subscription.
          You plan to use Azure Resource Manager templates to deploy 50 Azure virtual machines that will be part of the same availability set.
          You need to ensure that as many virtual machines as possible are available if the fabric fails or during servicing.
          How should you configure the template? To answer, select the appropriate options in the answer area.
          NOTE: Each correct selection is worth one point.
          AZ-102 dumps exhibit
          Select two alternatives below.

          • A. platformFaultDomainCount: 0
          • B. platformFaultDomainCount: 1
          • C. platformFaultDomainCount: 2
          • D. platformFaultDomainCount: 3
          • E. platformFaultDomainCount: 4
          • F. platformUpdateDomainCount: 10
          • G. platformUpdateDomainCount: 20
          • H. platformUpdateDomainCount: 25
          • I. platformUpdateDomainCount: 30
          • J. platformUpdateDomainCount: 40
          • K. platformUpdateDomainCount: 50

          Answer: CG

          Explanation: Use two fault domains.
          2 or 3 is max, depending on which region you are in. Use 20 for platformUpdateDomainCount
          Increasing the update domain (platformUpdateDomainCount) helps with capacity and availability planning when the platform reboots nodes. A higher number for the pool (20 is max) means that fewer of their nodes in any given availability set would be rebooted at once.
          References:
          https://www.itprotoday.com/microsoft-azure/check-if-azure-region-supports-2-or-3-fault-domainsmanaged- disks
          https://github.com/Azure/acs-engine/issues/1030

          NEW QUESTION 13
          HOT SPOT
          You have an Azure subscription named Subscription1. Subscription1 contains the resources in the following table.
          AZ-102 dumps exhibit
          VNet1 is in RG1. VNet2 is in RG2. There is no connectivity between VNet1 and Vnet2.
          An administrator named Admin1 creates an Azure virtual machine named VM1 in RG1. VM1 uses a disk named Disk1 and connects to VNet1. Admin1 then installs a custom application in VM1.
          You need to move the custom application to Vnet2. The solution must minimize administrative effort.
          Which two actions should you perform? To answer, select the appropriate options in the answer area.
          NOTE: Each correct selection is worth one point.
          AZ-102 dumps exhibit

            Answer:

            Explanation: You can move a VM and its associated resources to another resource group using the portal. References: https://docs.microsoft.com/en-us/azure/virtual-machines/windows/move-vm

            NEW QUESTION 14
            HOT SPOT
            You plan to deploy five virtual machines to a virtual network subnet.
            Each virtual machine will have a public IP address and a private IP address. Each virtual machine requires the same inbound and outbound security rules.
            What is the minimum number of network interfaces and network security groups that you require? To answer, select the appropriate options in the answer area.
            NOTE: Each correct selection is worth one point.
            AZ-102 dumps exhibit

              Answer:

              Explanation: Box 1: 10
              One public and one private network interface for each of the five VMs. Box 2: 1
              You can associate zero, or one, network security group to each virtual network subnet and network interface in a virtual machine. The same network security group can be associated to as many subnets and network interfaces as you choose.
              References:
              https://docs.microsoft.com/en-us/azure/virtual-network/security-overview

              NEW QUESTION 15
              SIMULATION
              Click to expand each objective. To connect to the Azure portal, type https://portal.azure.com in the browser address bar.
              AZ-102 dumps exhibit
              AZ-102 dumps exhibit
              AZ-102 dumps exhibit
              AZ-102 dumps exhibit
              AZ-102 dumps exhibit
              AZ-102 dumps exhibit
              When you are finished performing all the tasks, click the ‘Next’ button.
              Note that you cannot return to the lab once you click the ‘Next’ button. Scoring occur in the background while you complete the rest of the exam.
              Overview
              The following section of the exam is a lab. In this section, you will perform a set of tasks in a live environment. While most functionality will be available to you as it would be in a live environment, some functionality (e.g., copy and paste, ability to navigate to external websites) will not be possible by design. Scoring is based on the outcome of performing the tasks stated in the lab. In other words, it doesn’t matter how you accomplish the task, if you successfully perform it, you will earn credit for that task.
              Labs are not timed separately, and this exam may have more than one lab that you must complete. You can use as much time as you would like to complete each lab. But, you should manage your time appropriately to ensure that you are able to complete the lab(s) and all other sections of the exam in the time provided.
              Please note that once you submit your work by clicking the Next button within a lab, you will NOT be able to return to the lab.
              To start the lab
              You may start the lab by clicking the Next button.
              You plan to deploy several Azure virtual machines and to connect them to a virtual network named VNET1007.
              You need to ensure that future virtual machines in VNET1007 can register their name in an internal DNS zone named corp7523690.com. The zone must NOT be hosted on a virtual machine.
              What should you do from Azure Cloud Shell?
              To complete this task, start Azure Cloud Shell and select PowerShell(Linux). Click Show Advanced Settings, and then enter corp7523690n1 in the Storage account text box and File1 in the File share text box. Click Create storage, and then complete the task.

                Answer:

                Explanation: Step 1: New-AzureRMResourceGroup -name MyResourceGroup
                Before you create the DNS zone, create a resource group to contain the DNS zone.
                Step 2: New-AzureRmDnsZone -Name corp7523690.com -ResourceGroupName MyResourceGroup A DNS zone is created by using the New-AzureRmDnsZone cmdlet. This creates a DNS zone called corp7523690.com in the resource group called MyResourceGroup.
                References: https://docs.microsoft.com/en-us/azure/dns/dns-getstarted-powershell

                NEW QUESTION 16
                You need to create a web app named corp7509086n2 that can be scaled horizontally. The solution must use the lowest possible pricing tier for the App Service plan.
                What should you do from the Azure portal?

                  Answer:

                  Explanation: Step 1:
                  In the Azure Portal, click Create a resource > Web + Mobile > Web App. Step 2:
                  Use the Webb app settings as listed below. Web App name: corp7509086n2
                  Hosting plan: Azure App Service plan Pricing tier of the Pricing Tier: Standard
                  Change your hosting plan to Standard, you can't setup auto-scaling below standard tier. Step 3:
                  Select Create to provision and deploy the Web app. References:
                  https://docs.microsoft.com/en-us/azure/app-service/environment/app-service-web-how-to-createa- web-app-in-an-ase
                  https://azure.microsoft.com/en-us/pricing/details/app-service/plans/

                  NEW QUESTION 17
                  You are the global administrator for an Azure Active Directory (Azure AD) tenet named adatum.com. You need to enable two-step verification for Azure users.
                  What should you do?

                  • A. Create a sign-in risk policy in Azure AD Identity Protection
                  • B. Enable Azure AD Privileged Identity Management.
                  • C. Create and configure the Identity Hub.
                  • D. Configure a security policy in Azure Security Cente

                  Answer: A

                  Explanation: With Azure Active Directory Identity Protection, you can: require users to register for multi-factor authentication handle risky sign-ins and compromised users
                  References:
                  https://docs.microsoft.com/en-us/azure/active-directory/identity-protection/flows

                  100% Valid and Newest Version AZ-102 Questions & Answers shared by Surepassexam, Get Full Dumps HERE: https://www.surepassexam.com/AZ-102-exam-dumps.html (New 195 Q&As)