Microsoft AZ-101 Dumps 2019

★ Pass on Your First TRY ★ 100% Money Back Guarantee ★ Realistic Practice Exam Questions

Free Instant Download NEW AZ-101 Exam Dumps (PDF & VCE):
Available on: https://www.certleader.com/AZ-101-dumps.html


AZ-101 Product Description:
Exam Number/Code: AZ-101 vce
Exam name: Microsoft Azure Integration and Security
n questions with full explanations
Certification: Microsoft Certification
Last updated on Global synchronizing

Instant Access to Free VCE Files: Microsoft AZ-101 Microsoft Azure Integration and Security

AZ-101 examcollection

Want to know AZ-101 Dumps Questions features? Want to lear more about AZ-101 Free Practice Questions experience? Study AZ-101 Exam Dumps. Gat a success with an absolute guarantee to pass Microsoft AZ-101 (Microsoft Azure Integration and Security) test on your first attempt.

Microsoft AZ-101 Free Dumps Questions Online, Read and Test Now.

NEW QUESTION 1
You plan to grant the member of a new Azure AD group named crop 75099086 the right to delegate administrative access to any resource in the resource group named 7509086.
You need to create the Azure AD group and then to assign the correct to e to the group. The solution must use the principle of least privilege and minimize the number of role assignments.
What should you do from the Azure portal?

    Answer:

    Explanation: Step 1:
    Click Resource groups from the menu of services to access the Resource Groups blade
    AZ-101 dumps exhibit
    Step 2:
    Click Add (+) to create a new resource group. The Create Resource Group blade appears. Enter corp7509086 as the Resource group name, and click the Create button.
    AZ-101 dumps exhibit
    Step 3:
    Select Create.
    Your group is created and ready for you to add members. Now we need to assign a role to this resource group scope. Step 4:
    Choose the newly created Resource group, and Access control (IAM) to see the current list of role assignments at the resource group scope. Click +Add to open the Add permissions pane.
    AZ-101 dumps exhibit
    Step 5:
    In the Role drop-down list, select a role Delegate administration, and select Assign access to: resource group corp7509086
    AZ-101 dumps exhibit
    References:
    https://docs.microsoft.com/en-us/azure/role-based-access-control/role-assignments-portal https://www.juniper.net/documentation/en_US/vsrx/topics/task/multi-task/security-vsrx-azure- marketplace-resource-group.html

    Case Study: 8
    Mix Questions Set E (Security Identities)

    NEW QUESTION 2
    You plan to move services from your on-premises network to Azure.
    You identify several virtual machines that you believe can be hosted in Azure. The virtual machines are shown in the following table.
    AZ-101 dumps exhibit
    Which two virtual machines can you access by using Azure migrate? Each correct answer presents a complete solution.
    NOTE: Each correct selection is worth one point.

    • A. Sea-CA0l
    • B. Hou-NW01
    • C. NYC-FS01
    • D. Sea-DC01
    • E. BOS-DB01

    Answer: CE

    NEW QUESTION 3
    HOTSPOT
    You have an Azure subscription named Subscription1 that contains the resources in the following table.
    AZ-101 dumps exhibit
    VM1 and VM2 run the websites in the following table.
    AZ-101 dumps exhibit
    AppGW1 has the backend pools in the following table.
    AZ-101 dumps exhibit
    DNS resolves site1.contoso.com, site2.contoso.com, and site3.contoso.com to the IP address of
    AppGW1.
    AppGW1 has the listeners in the following table.
    AZ-101 dumps exhibit
    AppGW1 has the rules in the following table.
    AZ-101 dumps exhibit
    For each of the following statements, select Yes if the statement is true. Otherwise, select No.
    NOTE: Each correct selection is worth one point.
    AZ-101 dumps exhibit

      Answer:

      Explanation: Vm1 is in Pool1. Rule2 applies to Pool1, Listener 2, and site2.contoso.com

      NEW QUESTION 4
      Note: This question is part of a series of questions that present the same scenario
      goals. Some question sets might have more than one correct solution, while others ion in the series contains a unique solution that might meet the stated not have a correct solution.
      After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen.
      You have an Azure web app named Appl. App1 runs in an Azure App Service plan named Plan1. Plan1 is associated to the Free pricing tier.
      You discover that App1 stops each day after running continuously for 60 minutes. You need to ensure that App1 can run continuously for the entire day.
      Solution: You add a triggered WebJob to App1. Does this meet the goal?

      • A. Yes
      • B. No

      Answer: B

      Explanation: You need to change to Basic pricing Tier.
      Note: The Free Tier provides 60 CPU minutes / day. This explains why App1 is stops. The Basic tier has no such cap.
      References:
      https://azure.microsoft.com/en-us/pricing/details/app-service/windows/

      NEW QUESTION 5
      HOTSPOT
      You create an Azure web app named WebApp1. WebApp1 has the autoscale settings shown in the following exhibit.
      AZ-101 dumps exhibit
      AZ-101 dumps exhibit
      The scale out and scale in rules are configured to have a duration of 10 minutes and a cool down time of five minutes.
      Use the drop-down menus to select the answer choice that completes each statement based on the information presented in the graphic.
      NOTE: Each correct selection is worth one point.
      AZ-101 dumps exhibit

        Answer:

        Explanation: AZ-101 dumps exhibit

        NEW QUESTION 6
        You have an Azure Service Bus.
        You need to implement a Service Bus queue that guarantees first in first-out (FIFO) delivery of messages.
        What should you do?

        • A. Set the Lock Duration setting to 10 seconds.
        • B. Enable duplicate detection.
        • C. Set the Max Size setting of the queue to 5 GB.
        • D. Enable partitioning.
        • E. Enable sessions.

        Answer: E

        Explanation: Through the use of messaging sessions you can guarantee ordering of messages, that is first-in-first- out (FIFO) delivery of messages.
        References:
        https://docs.microsoft.com/en-us/azure/service-bus-messaging/service-bus-azure-and-service-bus- queues-compared-contrasted

        NEW QUESTION 7
        You have a public load balancer that balancer ports 80 and 443 across three virtual machines.
        You need to direct all the Remote Desktop protocol (RDP) to VM3 only. What should you configure?

        • A. an inbound NAT rule
        • B. a load public balancing rule
        • C. a new public load balancer for VM3
        • D. a new IP configuration

        Answer: A

        Explanation: To port forward traffic to a specific port on specific VMs use an inbound network address translation (NAT) rule.
        Incorrect Answers:
        B: Load-balancing rule to distribute traffic that arrives at frontend to backend pool instances. References:
        https://docs.microsoft.com/en-us/azure/load-balancer/load-balancer-overview

        NEW QUESTION 8
        Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution.
        After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen.
        You have an Azure Active Directory (Azure AD) tenant named Adatum and an Azure Subscription named Subscription1. Adatum contains a group named Developers. Subscription1 contains a resource group named Dev.
        You need to provide the Developers group with the ability to create Azure logic apps in the Dev resource group.
        Solution: On Subscription1, you assign the DevTest Labs User role to the Developers group. Does this meet the goal?

        • A. Yes
        • B. No

        Answer: B

        Explanation: DevTest Labs User role only lets you connect, start, restart, and shutdown virtual machines in your Azure DevTest Labs.
        You would need the Logic App Contributor role. References:
        https://docs.microsoft.com/en-us/azure/role-based-access-control/built-in-roles https://docs.microsoft.com/en-us/azure/logic-apps/logic-apps-securing-a-logic-app

        NEW QUESTION 9
        HOTSPOT
        You have an Azure subscription named Subscription1 that contains a virtual network named VNet1. You add the users in the following table.
        AZ-101 dumps exhibit
        Which user can perform each configuration? To answer, select the appropriate options in the answer area.
        NOTE: Each correct selection is worth one point.
        AZ-101 dumps exhibit

          Answer:

          Explanation: Box 1: User1 and User3 only.
          The Owner Role lets you manage everything, including access to resources.
          The Network Contributor role lets you manage networks, but not access to them. Box 2: User1 and User2 only
          The Security Admin role: In Security Center only: Can view security policies, view security states, edit security policies, view alerts and recommendations, dismiss alerts and recommendations.
          References:
          https://docs.microsoft.com/en-us/azure/role-based-access-control/built-in-roles

          NEW QUESTION 10
          From the MFA Server blade, you open the Block/unblock users blade as shown in the exhibit.
          AZ-101 dumps exhibit
          What caused AlexW to be blocked?

          • A. An administrator manually blocked the user.
          • B. The user reports a fraud alert when prompted for additional authentication.
          • C. The user account password expired.
          • D. The user entered an incorrect PIN four times within 10 minutes.

          Answer: B

          NEW QUESTION 11
          HOTSPOT
          You have an Azure web app named WebApp1.
          You need to provide developers with a copy of WebApp1 that they can modify without affecting the production WebApp1. When the developers finish testing their changes, you must be able to switch the current line version of WebApp1 to the new version.
          Which command should you run prepare the environment? To answer, select the appropriate options in the answer area.
          NOTE: Each correct selection is worth one point.
          AZ-101 dumps exhibit

            Answer:

            Explanation: Box 1: New-AzureRmWebAppSlot
            The New-AzureRmWebAppSlot cmdlet creates an Azure Web App Slot in a given a resource group that uses the specified App Service plan and data center.
            Box 2: -SourceWebApp References:
            https://docs.microsoft.com/en-us/powershell/module/azurerm.websites/new-azurermwebappslot

            NEW QUESTION 12
            DRAG DROP
            You have an Azure subscription that contains the following resources:
            • a virtual network named VNet1
            • a replication policy named ReplPolicy1
            • a Recovery Services vault named Vault1
            • an Azure Storage account named Storage1
            You have an Amazon Web Services (AWS) EC2 virtual machine named VM1 that runs Windows Server
            You need to migrate VM1 to VNet1 by using Azure Site Recovery.
            Which three actions should you perform in sequence? To answer, move the appropriate actions from the list of actions to the answer area and arrange them in the correct order.
            AZ-101 dumps exhibit

              Answer:

              Explanation: Step 1: Deploy an EC2 virtual machine as a configuration server Prepare source include:
              Use an EC2 instance that's running Windows Server 2012 R2 to create a configuration server and register it with your recovery vault.
              Configure the proxy on the EC2 instance VM you're using as the configuration server so that it can access the service URLs.
              Step 2: Install Azure Site Recovery Unified Setup.
              Download Microsoft Azure Site Recovery Unified Setup. You can download it to your local machine and then copy it to the VM you're using as the configuration server.
              Step 3: Enable replication for VM1.
              Enable replication for each VM that you want to migrate. When replication is enabled, Site Recovery automatically installs the Mobility service.
              References:
              https://docs.microsoft.com/en-us/azure/site-recovery/migrate-tutorial-aws-azure

              NEW QUESTION 13
              DRAG DROP
              You are developing an Azure web app named WebApp1. WebApp1 uses an Azure App Service plan named Plan1 that uses the B1 pricing tier.
              You need to configure WebApp1 to add additional instances of the app when CPU usage exceeds 70 percent for 10 minutes.
              Which three actions should you perform in sequence? To answer, move the appropriate actions from the list of actions to the answer area and arrange them in the correct order.
              AZ-101 dumps exhibit

                Answer:

                Explanation: Box 1: From the Scale out (App Service Plan) settings blade, change the pricing tier The B1 pricing tier only allows for 1 core. We must choose another pricing tier.
                Box 2: From the Scale out (App Service Plan) settings blade, enable autoscale
                Log in to the Azure portal at http://portal.azure.com
                Navigate to the App Service you would like to autoscale.
                Select Scale out (App Service plan) from the menu
                Click on Enable autoscale. This activates the editor for scaling rules.
                AZ-101 dumps exhibit
                Box 3: From the Scale mode to Scale based on metric, add a rule, and set the instance limits.
                Click on Add a rule. This shows a form where you can create a rule and specify details of the scaling. References:
                https://azure.microsoft.com/en-us/pricing/details/app-service/windows/ https://blogs.msdn.microsoft.com/hsirtl/2017/07/03/autoscaling-azure-web-apps/

                NEW QUESTION 14
                Another administrator reports that she is unable to configure a web app named
                corplod7509086n3 to prevent all connections from an IP address of 11.0.0.11.
                You need to modify corplod7509086n3 to successfully prevent the connections from the IP address. The solution must minimize Azure-related costs.
                What should you do from the Azure portal?

                  Answer:

                  Explanation: Step 1:
                  Find and select application corplod7509086n3:
                  1. In the Azure portal, on the left navigation panel, click Azure Active Directory.
                  2. In the Azure Active Directory blade, click Enterprise applications. Step 2:
                  To add an IP restriction rule to your app, use the menu to open Network>IP Restrictions and click on Configure IP Restrictions
                  AZ-101 dumps exhibit
                  Step 3:
                  Click Add rule
                  You can click on [+] Add to add a new IP restriction rule. Once you add a rule, it will become effective immediately.
                  AZ-101 dumps exhibit
                  Step 4:
                  Add name, IP address of 11.0.0.11, select Deny, and click Add Rule
                  AZ-101 dumps exhibit
                  References:
                  https://docs.microsoft.com/en-us/azure/app-service/app-service-ip-restrictions

                  NEW QUESTION 15
                  You need to prevent remote users from publishing via FTP to a function app named FunctionApplod7509087fa. Remote users must be able to publish via FTPS. What should you do from the Azure portal?

                    Answer:

                    Explanation: Step 1:
                    Locate and select the function app FunctionApplod7509087fa.
                    Step 2:
                    Select Application Settings > FTP Access, change FTP access to FTPS Only, and click Save.
                    AZ-101 dumps exhibit
                    References:
                    https://blogs.msdn.microsoft.com/appserviceteam/2018/05/08/web-apps-making-changes-to-ftp- deployments/

                    NEW QUESTION 16
                    HOTSPOT
                    Your company has offices in New York and Los Angeles.
                    You have an Azure subscription that contains an Azure virtual network named VNet1. Each office has a site-to-site VPN connection to VNet1.
                    Each network uses the address spaces shown in the following table.
                    AZ-101 dumps exhibit
                    You need to ensure that all Internet-bound traffic from VNet1 is routed through the New York office.
                    What should you do? To answer, select the appropriate options in the answer are a.
                    NOTE: Each correct selection is worth one point.
                    AZ-101 dumps exhibit

                      Answer:

                      Explanation: Incorrect Answers:
                      Not: New-AzureRmVirtualNetworkGatewayConnection
                      This command creates the Site-to-Site VPN connection between the virtual network gateway and the on-prem VPN device. We already have Site-to-Site VPN connections.
                      Box 2: 192.168.0.0/20
                      Specify the VNET1 address. References:
                      https://docs.microsoft.com/en-us/powershell/module/azurerm.network/set- azurermvirtualnetworkgatewaydefaultsite

                      NEW QUESTION 17
                      DRAG DROP
                      You create an Azure Migrate project named TestMig in a resource group named test-migration.
                      You need to discover which on-premises virtual machines to assess for migration. Which three actions should you perform in sequence? To answer, move the appropriate actions from the list of actions to the answer area and arrange them in the correct order.
                      AZ-101 dumps exhibit

                        Answer:

                        Explanation: Step 1: Download the OVA file for the collection appliance
                        Azure Migrate uses an on-premises VM called the collector appliance, to discover information about your on-premises machines. To create the appliance, you download a setup file in Open Virtualization Appliance (.ova) format, and import it as a VM on your on-premises vCenter Server.
                        Step 2: Create a migration group in the project
                        For the purposes of assessment, you gather the discovered VMs into groups. For example, you might group VMs that run the same application. For more precise grouping, you can use dependency visualization to view dependencies of a specific machine, or for all machines in a group and refine the
                        group.
                        Step 3: Create an assessment in the project
                        After a group is defined, you create an assessment for it. References:
                        https://docs.microsoft.com/en-us/azure/migrate/migrate-overview

                        Case Study: 6
                        Mix Questions Set D (Implement advanced networking)

                        NEW QUESTION 18
                        You have an Azure subscription named Subscnption1 that contains an Azure virtual machine named VM1. VM1 is in a resource group named RG1.
                        VM1 runs services that will be used to deploy resources to RG1.
                        You need to ensure that a service running on VM1 can manage the resources in RG1 by using the identity of VM1. What should you do fit -

                        • A. From the Azure portal modify the Access control (1AM) settings of VM1.
                        • B. From the Azure portal, modify the Policies settings of RG1.
                        • C. From the Azure portal, modify the value of the Managed Service Identity option for VM1.
                        • D. From the Azure portal, modify the Access control (IAM) settings of RG1.

                        Answer: C

                        Explanation: A managed identity from Azure Active Directory allows your app to easily access other AAD-protected resources such as Azure Key Vault. The identity is managed by the Azure platform and does not require you to provision or rotate any secrets.
                        User assigned managed identities can be used on Virtual Machines and Virtual Machine Scale Sets. References:
                        https://docs.microsoft.com/en-us/azure/app-service/app-service-managed-service-identity

                        Thanks for reading the newest AZ-101 exam dumps! We recommend you to try the PREMIUM 2passeasy AZ-101 dumps in VCE and PDF here: https://www.2passeasy.com/dumps/AZ-101/ (67 Q&As Dumps)