Highest Quality AZ-100 Exam Questions 2021

Proper study guides for AZ-100 Microsoft Azure Infrastructure and Deployment certified begins with AZ-100 Exam Dumps preparation products which designed to deliver the AZ-100 Exam Dumps by making you pass the AZ-100 test at your first time. Try the free AZ-100 Exam Questions and Answers right now.

Check AZ-100 free dumps before getting the full version:

NEW QUESTION 1
You need to configure the Device settings to meet the technical requirements and the user requirements. Which two settings should you modify? To answer, select the appropriate settings in the answer area.
AZ-100 dumps exhibit
AZ-100 dumps exhibit

    Answer:

    Explanation: Box 1: Selected
    Only selected users should be able to join devices Box 2: Yes
    Require Multi-Factor Auth to join devices. From scenario:
    Ensure that only users who are part of a group named Pilot can join devices to Azure AD
    Ensure that when users join devices to Azure Active Directory (Azure AD), the users use a mobile phone to verify their identity.

    NEW QUESTION 2
    You need to implement a backup solution for App1 after the application is moved. What should you create first?

    • A. a recovery plan
    • B. an Azure Backup Server
    • C. a backup policy
    • D. a Recovery Services vault

    Answer: D

    Explanation: A Recovery Services vault is a logical container that stores the backup data for each protected resource, such as Azure VMs. When the backup job for a protected resource runs, it creates a recovery point inside the Recovery Services vault.
    Scenario:
    There are three application tiers, each with five virtual machines. Move all the virtual machines for App1 to Azure.
    Ensure that all the virtual machines for App1 are protected by backups.
    References: https://docs.microsoft.com/en-us/azure/backup/quick-backup-vm-portal

    NEW QUESTION 3
    You have an Active Directory forest named contoso.com.
    You install and configure Azure AD Connect to use password hash synchronization as the single sign-on (SSO) method. Staging mode is enabled.
    You review the synchronization results and discover that the Synchronization Service Manager does not display any sync jobs.
    You need to ensure that the synchronization completes successfully. What should you do?

    • A. From Synchronization Service Manager, run a full import.
    • B. Run Azure AD Connect and set the SSO method to Pass-through Authentication.
    • C. From Azure PowerShell, run Start-AdSyncSyncCycle -PolicyType Initial.
    • D. Run Azure AD Connect and disable staging mode.

    Answer: D

    Explanation: Staging mode must be disabled. If the Azure AD Connect server is in staging mode, password hash synchronization is temporarily disabled.
    References:
    https://docs.microsoft.com/en-us/azure/active-directory/connect/active-directory-aadconnectsync-troubleshoot-p

    NEW QUESTION 4
    Click to expand each objective. To connect to the Azure portal, type https://portal.azure.com in the browser address bar.
    AZ-100 dumps exhibit
    AZ-100 dumps exhibit
    AZ-100 dumps exhibit
    AZ-100 dumps exhibit
    AZ-100 dumps exhibit
    AZ-100 dumps exhibit
    When you are finished performing all the tasks, click the ‘Next’ button.
    Note that you cannot return to the lab once you click the ‘Next’ button. Scoring occur in the background while you complete the rest of the exam.
    Overview
    The following section of the exam is a lab. In this section, you will perform a set of tasks in a live environment. While most functionality will be available to you as it would be in a live environment, some functionality (e.g., copy and paste, ability to navigate to external websites) will not be possible by design. Scoring is based on the outcome of performing the tasks stated in the lab. In other words, it doesn’t matter how you accomplish the task, if you successfully perform it, you will earn credit for that task.
    Labs are not timed separately, and this exam may have more than one lab that you must complete. You can use as much time as you would like to complete each lab. But, you should manage your time appropriately to ensure that you are able to complete the lab(s) and all other sections of the exam in the time provided.
    Please note that once you submit your work by clicking the Next button within a lab, you will NOT be able to return to the lab.
    To start the lab
    You may start the lab by clicking the Next button.
    You plan to create 100 Azure virtual machines on each of the following three virtual networks:
    AZ-100 dumps exhibit VNET1005a
    AZ-100 dumps exhibit VNET1005b
    AZ-100 dumps exhibit VNET1005c
    All the network traffic between the three virtual networks will be routed through VNET1005a.
    You need to create the virtual networks, and then to ensure that all the Azure virtual machines can connect to other virtual machines by using their private IP address. The solution must NOT require any virtual network gateways and must minimize costs.
    What should you do from the Azure portal before you configure IP routing?

      Answer:

      Explanation: Step 1: Click Create a resource in the portal.
      Step 2: Enter Virtual network in the Search the Marketplace box at the top of the New pane that appears. Click Virtual network when it appears in the search results.
      Step 3: Select Classic in the Select a deployment model box in the Virtual Network pane that appears, then click Create.
      Step 4: Enter the following values on the Create virtual network (classic) pane and then click Create: Name: VNET1005a
      Address space: 10.0.0.0/16 Subnet name: subnet0 Resource group: Create new
      Subnet address range: 10.0.0.0/24
      Subscription and location: Select your subscription and location.
      Step 5: Repeat steps 3-5 for VNET1005b (10.1.0.0/16, 10.1.0.0/24), and for VNET1005c 10.2.0.0/16, 10.2.0.0/24).
      References: https://docs.microsoft.com/en-us/azure/virtual-network/create-virtual-network-classic

      NEW QUESTION 5
      You have an Azure virtual machine named VM1 that you use for testing. VM1 is protected by Azure Backup. You delete VM1.
      You need to remove the backup data stored for VM1. What should you do first?

      • A. Modify the backup policy.
      • B. Delete the Recovery Services vault.
      • C. Stop the backup.
      • D. Delete the storage account.

      Answer: A

      Explanation: Azure Backup provides backup for virtual machines — created through both the classic deployment model and the Azure Resource Manager deployment model — by using custom-defined backup policies in a Recovery Services vault.
      With the release of backup policy management, customers can manage backup policies and model them to meet their changing requirements from a single window. Customers can edit a policy, associate more virtual machines to a policy, and delete unnecessary policies to meet their compliance requirements.

      NEW QUESTION 6
      You need to define a custom domain name for Azure AD to support the planned infrastructure. Which domain name should you use?

      • A. Join the client computers in the Miami office to Azure AD.
      • B. Add http://autologon.microsoftazuread-sso.com to the intranet zone of each client computer in the Miami office.
      • C. Allow inbound TCP port 8080 to the domain controllers in the Miami office.
      • D. Install Azure AD Connect on a server in the Miami office and enable Pass-through Authentication
      • E. Install the Active Directory Federation Services (AD FS) role on a domain controller in the Miami office.

      Answer: BD

      Explanation: Every Azure AD directory comes with an initial domain name in the form of domainname.onmicrosoft.com. The initial domain name cannot be changed or deleted, but you can add your corporate domain name to Azure AD as well. For example, your organization probably has other domain names used to do business and users who sign in using your corporate domain name. Adding custom domain names to Azure AD allows you to assign user names in the directory that are familiar to your users, such as ‘alice@contoso.com.’ instead of 'alice@domain name.onmicrosoft.com'.
      Scenario:
      Network Infrastructure: Each office has a local data center that contains all the servers for that office. Each office has a dedicated connection to the Internet.
      Humongous Insurance has a single-domain Active Directory forest named humongousinsurance.com Planned Azure AD Infrastructure: The on-premises Active Directory domain will be synchronized to Azure
      AD.
      References: https://docs.microsoft.com/en-us/azure/active-directory/fundamentals/add-custom-domain

      NEW QUESTION 7
      You have an Azure subscription that contains a virtual machine named VM1. VM1 hosts a line-of-business application that is available 24 hours a day. VM1 has one network interface and one managed disk. VM1 uses the D4s v3 size.
      You plan to make the following changes to VM1:
      AZ-100 dumps exhibit Change the size to D8s v3.
      AZ-100 dumps exhibit Add a 500-GB managed disk.
      AZ-100 dumps exhibit Add the Puppet Agent extension.
      AZ-100 dumps exhibit Attach an additional network interface. Which change will cause downtime for VM1?

      • A. Add a 500-GB managed disk.
      • B. Attach an additional network interface.
      • C. Add the Puppet Agent extension.
      • D. Change the size to D8s v3.

      Answer: D

      Explanation: While resizing the VM it must be in a stopped state.
      References: https://azure.microsoft.com/en-us/blog/resize-virtual-machines/

      NEW QUESTION 8
      Your company registers a domain name of contoso.com.
      You create an Azure DNS named contoso.com and then you add an A record to the zone for a host named www that has an IP address of 131.107.1.10.
      You discover that Internet hosts are unable to resolve www.contoso.com to the 131.107.1.10 IP address. You need to resolve the name resolution issue.
      Solution: You modify the SOA record in the contoso.com zone Does this meet the goal?

      • A. Yes
      • B. No

      Answer: B

      Explanation: Modify the NS record, not the SOA record.
      Note: The SOA record stores information about the name of the server that supplied the data for the zone; the administrator of the zone; the current version of the data file; the number of seconds a secondary name server should wait before checking for updates; the number of seconds a secondary name server should wait before retrying a failed zone transfer; the maximum number of seconds that a secondary name server can use data before it must either be refreshed or expire; and a default number of seconds for the time-to-live file on resource records.
      References: https://searchnetworking.techtarget.com/definition/start-of-authority-record

      NEW QUESTION 9
      You have an on-premises file server named Server1 that runs Windows Server 2021. You have an Azure subscription that contains an Azure file share.
      You deploy an Azure File Sync Storage Sync Service, and you create a sync group. You need to synchronize files from Server1 to Azure.
      Which three actions should you perform in sequence? To answer, move the appropriate actions from the list of actions to the answer area and arrange them in the correct order.
      AZ-100 dumps exhibit

        Answer:

        Explanation: Step 1: Install the Azure File Sync agent on Server1
        The Azure File Sync agent is a downloadable package that enables Windows Server to be synced with an Azure file share
        Step 2: Register Server1.
        Register Windows Server with Storage Sync Service
        Registering your Windows Server with a Storage Sync Service establishes a trust relationship between your server (or cluster) and the Storage Sync Service.
        Step 3: Add a server endpoint
        Create a sync group and a cloud endpoint.
        A sync group defines the sync topology for a set of files. Endpoints within a sync group are kept in sync with each other. A sync group must contain one cloud endpoint, which represents an Azure file share and one or more server endpoints. A server endpoint represents a path on registered server.
        References: https://docs.microsoft.com/en-us/azure/storage/files/storage-sync-files-deployment-guide

        NEW QUESTION 10
        Click to expand each objective. To connect to the Azure portal, type https://portal.azure.com in the browser address bar.
        AZ-100 dumps exhibit
        AZ-100 dumps exhibit
        AZ-100 dumps exhibit
        When you are finished performing all the tasks, click the ‘Next’ button.
        Note that you cannot return to the lab once you click the ‘Next’ button. Scoring occur in the background while you complete the rest of the exam.
        Overview
        The following section of the exam is a lab. In this section, you will perform a set of tasks in a live environment. While most functionality will be available to you as it would be in a live environment, some functionality (e.g., copy and paste, ability to navigate to external websites) will not be possible by design. Scoring is based on the outcome of performing the tasks stated in the lab. In other words, it doesn’t matter how you accomplish the task, if you successfully perform it, you will earn credit for that task.
        Labs are not timed separately, and this exam may have more than one lab that you must complete. You can use as much time as you would like to complete each lab. But, you should manage your time appropriately to ensure that you are able to complete the lab(s) and all other sections of the exam in the time provided.
        Please note that once you submit your work by clicking the Next button within a lab, you will NOT be able to return to the lab.
        To start the lab
        You may start the lab by clicking the Next button.
        You plan to configure VM1 to be accessible from the Internet.
        You need to add a public IP address to the network interface used by VM1. What should you do from Azure portal?

          Answer:

          Explanation: You can add private and public IP addresses to an Azure network interface by completing the steps that follow.
          Step 1: In Azure portal, click More services > type virtual machines in the filter box, and then click Virtual machines.
          Step 2: In the Virtual machines pane, click the VM you want to add IP addresses to. Click Network interfaces in the virtual machine pane that appears, and then select the network interface you want to add the IP addresses to. In the example shown in the following picture, the NIC named myNIC from the VM named myVM is selected:
          AZ-100 dumps exhibit
          Step 3: In the pane that appears for the NIC you selected, click IP configurations. Step 4: Click Create public IP address.
          AZ-100 dumps exhibit
          Step 5: In the Create public IP address pane that appears, enter a Name, select an IP address assignment type, a Subscription, a Resource group, and a Location, then click Create, as shown in the following picture:
          References:
          https://docs.microsoft.com/en-us/azure/virtual-network/virtual-network-multiple-ip-addresses-portal

          NEW QUESTION 11
          Click to expand each objective. To connect to the Azure portal, type https://portal.azure.com in the browser address bar.
          AZ-100 dumps exhibit
          AZ-100 dumps exhibit
          AZ-100 dumps exhibit
          AZ-100 dumps exhibit
          AZ-100 dumps exhibit
          AZ-100 dumps exhibit
          When you are finished performing all the tasks, click the ‘Next’ button.
          Note that you cannot return to the lab once you click the ‘Next’ button. Scoring occur in the background while you complete the rest of the exam.
          Overview
          The following section of the exam is a lab. In this section, you will perform a set of tasks in a live environment. While most functionality will be available to you as it would be in a live environment, some functionality (e.g., copy and paste, ability to navigate to external websites) will not be possible by design. Scoring is based on the outcome of performing the tasks stated in the lab. In other words, it doesn’t matter how you accomplish the task, if you successfully perform it, you will earn credit for that task.
          Labs are not timed separately, and this exam may have more than one lab that you must complete. You can use as much time as you would like to complete each lab. But, you should manage your time appropriately to ensure that you are able to complete the lab(s) and all other sections of the exam in the time provided.
          Please note that once you submit your work by clicking the Next button within a lab, you will NOT be able to return to the lab.
          To start the lab
          You may start the lab by clicking the Next button.
          You need to deploy two Azure virtual machines named VM1003a and VM1003b based on the Ubuntu Server 17.10 image. The deployment must meet the following requirements:
          AZ-100 dumps exhibit Provide a Service Level Agreement (SLA) of 99.95 percent availability.
          AZ-100 dumps exhibit Use managed disks.
          What should you do from the Azure portal?

            Answer:

            Explanation: 1. Open the Azure portal.
            2. On the left menu, select All resources. You can sort the resources by Type to easily find your images.
            3. Select the image you want to use from the list. The image Overview page opens.
            4. Select Create VM from the menu.
            5. Enter the virtual machine information.
            Select VM1003a as the name for the first Virtual machine.The user name and password entered here will be used to log in to the virtual machine. When complete, select OK. You can create the new VM in an existing resource group, or choose Create new to create a new resource group to store the VM.
            6. Select a size for the VM. To see more sizes, select View all or change the Supported disk type filter.
            7. Under Settings, make changes as necessary and select OK.
            8. On the summary page, you should see your image name listed as a Private image. Select Ok to start the virtual machine deployment.
            Repeat the procedure for the second VM and name it VM1003b. References:
            https://docs.microsoft.com/en-us/azure/virtual-machines/windows/create-vm-generalized-managed

            NEW QUESTION 12
            You have an Azure Active Directory (Azure AD) tenant named adatum.com. Adatum.com contains the groups in the following table.
            AZ-100 dumps exhibit
            You create two user accounts that are configured as shown in the following table.
            AZ-100 dumps exhibit
            To which groups do User1 and User2 belong? To answer. select the appropriate options in the answer area. NOTE: Each correct selection is worth one point.
            AZ-100 dumps exhibit

              Answer:

              Explanation: Box 1: Group 1 only First rule applies
              Box 2: Group1 and Group2 only Both membership rules apply.
              References: https://docs.microsoft.com/en-us/sccm/core/clients/manage/collections/create-collections

              NEW QUESTION 13
              You have an Azure subscription named Subscription1. Subscription1 contains the virtual networks in the following table.
              AZ-100 dumps exhibit
              Subscription1 contains the virtual machines in the following table:
              AZ-100 dumps exhibit
              The firewalls on all the virtual machines are configured to allow all ICMP traffic. You add the peerings in the following table.
              AZ-100 dumps exhibit
              For each of the following statements, select Yest if the statement is true. Otherwise, select No. NOTE: Each correct selection is worth one point.
              AZ-100 dumps exhibit

                Answer:

                Explanation: Box 1: Yes
                Vnet1 and Vnet3 are peers. Box 2: Yes
                Vnet2 and Vnet3 are peers. Box 3: No
                Peering connections are non-transitive.
                References:
                https://docs.microsoft.com/en-us/azure/architecture/reference-architectures/hybrid-networking/hub-spoke

                NEW QUESTION 14
                You plan to deploy 20 Azure virtual machines by using an Azure Resource Manager template. The virtual machines will run the latest version of Windows Server 2021 Datacenter by using an Azure Marketplace image.
                You need to complete the storageProfile section of the template.
                How should you complete the storageProfile section? To answer, select the appropriate options in the answer area.
                NOTE: Each correct selection is worth one point.
                AZ-100 dumps exhibit

                  Answer:

                  Explanation: … "storageProfile": {
                  "imageReference": {
                  "publisher": "MicrosoftWindowsServer", "offer": "WindowsServer",
                  "sku": "2021-Datacenter", "version": "latest"
                  },
                  … References:
                  https://docs.microsoft.com/en-us/rest/api/compute/virtualmachines/createorupdate

                  NEW QUESTION 15
                  Your company registers a domain name of contoso.com.
                  You create an Azure DNS named contoso.com and then you add an A record to the zone for a host named www that has an IP address of 131.107.1.10.
                  You discover that Internet hosts are unable to resolve www.contoso.com to the 131.107.1.10 IP address. You need to resolve the name resolution issue.
                  Solution: You add an NS record to the contoso.com zone. Does this meet the goal?

                  • A. Yes
                  • B. No

                  Answer: A

                  Explanation: Before you can delegate your DNS zone to Azure DNS, you need to know the name servers for your zone. The NS record set contains the names of the Azure DNS name servers assigned to the zone.
                  References: https://docs.microsoft.com/en-us/azure/dns/dns-delegate-domain-azure-dns

                  NEW QUESTION 16
                  Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution.
                  After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen.
                  You have an Azure subscription that contains 10 virtual networks. The virtual networks are hosted in separate resource groups.
                  Another administrator plans to create several network security groups (NSGs) in the subscription.
                  You need to ensure that when an NSG is created, it automatically blocks TCP port 8080 between the virtual networks.
                  Solution: You assign a built-in policy definition to the subscription. Does this meet the goal?

                  • A. Yes
                  • B. No

                  Answer: B

                  NEW QUESTION 17
                  You are planning the move of App1 to Azure. You create a network security group (NSG).
                  You need to recommend a solution to provide users with access to App1. What should you recommend?

                  • A. Create an outgoing security rule for port 443 from the Interne
                  • B. Associate the NSG to all the subnets.
                  • C. Create an incoming security rule for port 443 from the Interne
                  • D. Associate the NSG to all the subnets.
                  • E. Create an incoming security rule for port 443 from the Interne
                  • F. Associate the NSG to the subnet that contains the web servers.
                  • G. Create an outgoing security rule for port 443 from the Interne
                  • H. Associate the NSG to the subnet thatcontains the web servers.

                  Answer: C

                  Explanation: As App1 is public-facing we need an incoming security rule, related to the access of the web servers. Scenario: You have a public-facing application named App1. App1 is comprised of the following three tiers: a SQL database, a web front end, and a processing middle tier.
                  Each tier is comprised of five virtual machines. Users access the web front end by using HTTPS only.

                  100% Valid and Newest Version AZ-100 Questions & Answers shared by Simply pass, Get Full Dumps HERE: https://www.simply-pass.com/Microsoft-exam/AZ-100-dumps.html (New 106 Q&As)