[2022] Get Top-Rated Microsoft AZ-104 Exam Dumps Now [Q85-Q100]

Share

[2022] Get Top-Rated Microsoft AZ-104 Exam Dumps Now

Passing Key To Getting AZ-104 Certified Exam Engine PDF


Main Topics and Subtopics of Microsoft AZ-104 Exam

There are a few different objectives included in the AZ-104 certification test, so the candidates will need to work hard on them. These topics cover the following areas:

  • Deploy and Manage Azure Compute Resources (25-30%)

    In the framework of this topic, the test takers are required to show that they have a grasp of the following skills: monitoring resources with the help of Azure Monitor (monitoring a network; customizing and interpreting metrics; customizing Log Analytics; querying and analyzing logs; setting up actions and alerts; customizing Application Insights); executing recovery and backup (customizing and reviewing backup reports; executing restore and backup operations with the help of Azure Backup; designing Recovery Services Vault; designing and customizing backup policy; executing site-to-site recovery with the help of Azure Site Recovery).

  • Manage and Configure Virtual Networking (30-35%)

    In this topic, the candidates must confirm that they have expertise in implementing and managing virtual networking (designing and customizing VNET peering; customizing private and public IP addresses, subnets, network routes, virtual network, and network interface); customizing name resolution (customizing Azure DNS; customizing custom DNS settings; customizing a private or public DNS zone); securing access to virtual networks (designing security rules; associating an NSG to network interface or a subnet; assessing effective security rules; deploying and configuring Azure Firewall; deploying and customizing Azure Bastion Service); customizing load balancing (customizing Application Gateway; customizing an internal load balancer; customizing load balancing rules; customizing a public load balancer; fixing load balancing); monitoring and fixing virtual networking (monitoring on-premises connectivity; utilizing Network Performance Monitor; utilizing Network Watcher; fixing external networking; troubleshooting virtual network connectivity); integrating an on-premises network with an Azure virtual network (designing and customizing Azure VPN Gateway; designing and customizing VPNs; customizing ExpressRoute; customizing Azure Virtual WAN).

  • Monitor and Back Up Azure Resources (10-15%)

    This subject area is designed to check the examinees’ knowledge and skills in the following areas: monitoring resources with the help of Azure Monitor (customizing and interpreting metrics; customizing Log Analytics; querying and analyzing logs; setting up actions and alerts; customizing Application Insights); implementing recovery and backup (customizing and reviewing backup reports; executing backup and restore operations with the help of Azure Backup; designing a Recovery Services Vault; designing and customizing backup policy; executing site-to-site recovery with the help of Azure Site Recovery).

  • Manage Azure Governance and Identities (15-20%)

    This objective encompasses the following competencies: managing Azure Active Directory objects (designing users and groups; managing group and user properties; managing device settings; executing bulk user updates; managing guest accounts; customizing Azure AD Join; customizing self-service password reset); managing role-based access control (designing a custom role; accessing Azure resources through assigning roles; interpreting access assignments; managing multiple directories); managing governance and subscriptions (customizing Azure policies; customizing resource locks; applying tags; designing and managing resource groups; managing subscriptions; customizing Cost Management; customizing management groups).

  • Implement and Manage Storage (10-15%)

    Within this domain, the applicants need to demonstrate the abilities, such as managing storage accounts (customizing network access to storage accounts; designing and customizing storage accounts; generating shared access signature; managing access keys; executing Azure storage replication; customizing Azure AD Authentication for a storage account); managing data in Azure Storage (exporting from Azure job; importing into Azure job; installing and utilizing Azure Storage Explorer; copying data with the help of AZCopy); customizing Azure files and Azure blob storage (designing an Azure file share; designing and customizing Azure File Sync service; customizing Azure blob storage; customizing storage tiers for Azure blobs).


How to study the AZ-104:Microsoft Azure Administrator Exam

Preparation of certification exams could be covered with two resource types . The first one are the study guides, reference books and study forums that are elaborated and appropriate for building information from ground up. Apart from them video tutorials and lectures are a good option to ease the pain of through study and are relatively make the study process more interesting nonetheless these demand time and concentration from the learner. Smart candidates who wish to create a solid foundation altogether examination topics and connected technologies typically mix video lectures with study guides to reap the advantages of each but practice exams or practice exam engines is one important study tool which goes typically unnoted by most candidates. Practice exams are designed with our experts to make exam prospects test their knowledge on skills attained in course, as well as prospects become comfortable and familiar with the real exam environment. Statistics have indicated exam anxiety plays much bigger role of students failure in exam than the fear of the unknown. BraindumpsPass expert team recommends preparing some notes on these topics along with it don’t forget to practice AZ-104 dumps which had been written by our expert team, each of these can assist you loads to clear this exam with excellent marks.

 

NEW QUESTION 85
Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution.
After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen.
You have an Azure Directory (Azure AD) tenant named Adatum and an Azure Subscription named Subscription1. Adatum contains a group named Developers. Subscription1 contains a resource group named Dev.
You need to provide the Developers group with the ability to create Azure logic apps in the Dev resource group.
Solution: On Dev, you assign the Contributor role to the Developers group.
Does this meet the goal?

  • A. No
  • B. Yes

Answer: B

Explanation:
Section: [none]
Explanation:
The Contributor role can manage all resources (and add resources) in a Resource Group.

 

NEW QUESTION 86
You have an Azure subscription that contains the resources shown in the following table.

You need to deploy Application1 to Cluster1. Which command should you run?

  • A. kubect1 apply
  • B. az ales create
  • C. docker build
  • D. az acr build

Answer: B

 

NEW QUESTION 87
You need to resolve the Active Directory issue.
What should you do?

  • A. From Azure AD Connect, modify the outbound synchronization rule.
    IdFix is used to perform discovery and remediation of identity objects and their attributes in an on-premises Active Directory environment in preparation for migration to Azure Active Directory. IdFix is intended for the Active Directory administrators responsible for directory synchronization with Azure Active Directory.
    Scenario: Active Directory Issue
    Several users in humongousinsurance.com have UPNs that contain special characters.
    You suspect that some of the characters are unsupported in Azure AD.
    References:
    https://www.microsoft.com/en-us/download/details.aspx?id=36832
  • B. Run idfix.exe, and then use the Edit action.
  • C. From Active Directory Users and Computers, select the user accounts, and then modify the User Principal Name value.
  • D. From Active Directory Domains and Trusts, modify the list of UPN suffixes.

Answer: B

 

NEW QUESTION 88
You have an Azure subscription named Subscription1. Subscription1 contains the resources in the following table.

In Azure, you create a private DNS zone named adatum.com. You set the registration virtual network to VNet2. The adatum.com zone is configured as shown in the following exhibit.

For each of the following statements, select Yes if the statement is true. Otherwise, select No.
NOTE: Each correct selection is worth one point.

Answer:

Explanation:

Explanation:
Box 1: No
Azure DNS provides automatic registration of virtual machines from a single virtual network that's linked to a private zone as a registration virtual network. VM5 does not belong to the registration virtual network though.
Box 2: No
Forward DNS resolution is supported across virtual networks that are linked to the private zone as resolution virtual networks. VM5 does belong to a resolution virtual network.
Box 3: Yes
VM6 belongs to registration virtual network, and an A (Host) record exists for VM9 in the DNS zone.
By default, registration virtual networks also act as resolution virtual networks, in the sense that DNS resolution against the zone works from any of the virtual machines within the registration virtual network.
References: https://docs.microsoft.com/en-us/azure/dns/private-dns-overview

 

NEW QUESTION 89
You have an Azure subscription named Subscription1 that contains the resources in the following table.

VM1 and VM2 run the websites in the following table.

AppGW1 has the backend pools in the following table.

DNS resolves site1.contoso.com, site2.contoso.com, and site3.contoso.com to the IP address of AppGW1.
AppGW1 has the listeners in the following table.

AppGW1 has the rules in the following table.

For each of the following statements, select Yes if the statement is true. Otherwise, select No.
NOTE: Each correct selection is worth one point.

Answer:

Explanation:

Explanation:
Vm1 is in Pool1. Rule2 applies to Pool1, Listener 2, and site2.contoso.com

 

NEW QUESTION 90
You have an Azure subscription that contains the public load balancers shown in the following table.

You plan to create six virtual machines and to load balancer requests to the virtual machines. Each load balancer will load balance three virtual machines.
You need to create the virtual machines for the planned solution.
How should you create the virtual machines? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.

Answer:

Explanation:

Explanation

Box 1: be created in the same availability set or virtual machine scale set.
The Basic tier is quite restrictive. A load balancer is restricted to a single availability set, virtual machine scale set, or a single machine.
Box 2: be connected to the same virtual network
The Standard tier can span any virtual machine in a single virtual network, including blends of scale sets, availability sets, and machines.
References:
https://www.petri.com/comparing-basic-standard-azure-load-balancers

 

NEW QUESTION 91
You have an Azure Active Directory tenant named Contoso.com that includes following users:

Contoso.com includes following Windows 10 devices:

You create following security groups in Contoso.com:

For each of the following statements, select Yes if the statement is true. Otherwise, select No.
NOTE: Each correct selection is worth one point.

Answer:

Explanation:

Explanation

Box 1: Yes
User1 is a Cloud Device Administrator.
Device2 is Azure AD joined.
Group1 has the assigned to join type. User1 is the owner of Group1.
Note: Assigned groups - Manually add users or devices into a static group.
Azure AD joined or hybrid Azure AD joined devices utilize an organizational account in Azure AD Box 2: No User2 is a User Administrator.
Device1 is Azure AD registered.
Group1 has the assigned join type, and the owner is User1.
Note: Azure AD registered devices utilize an account managed by the end user, this account is either a Microsoft account or another locally managed credential.
Box 3: Yes
User2 is a User Administrator.
Device2 is Azure AD joined.
Group2 has the Dynamic Device join type, and the owner is User2.
References:
https://docs.microsoft.com/en-us/azure/active-directory/devices/overview

 

NEW QUESTION 92
Your network contains an Active Directory domain. The domain contains a user named User1. The domain is synced to Azure Active Directory (Azure AD) as shown in the following exhibit.

Use the drop-down menus to select the answer choice that completes each statement based on the information presented in the graphic NOTE: Each correct selection is worth one point.

Answer:

Explanation:

Explanation:
Box 1: a computer joined in the Active Directory domain
The Active Directory domain service stores passwords in the form of a hash value representation, of the actual user password.
Box 2: Stored in both Azure AD and in the Active Director domain
The Active Directory domain service stores passwords in the form of a hash value representation, of the actual user password.
To synchronize your password, Azure AD Connect sync extracts your password hash from the on-premises Active Directory instance.
References:
https://docs.microsoft.com/en-us/azure/active-directory/hybrid/how-to-connect-password-hash-synchronization

 

NEW QUESTION 93
You have Azure virtual machines that run Windows Server 2019 and are configured as shown in the following table.

You create a public Azure DNS zone named adatum.com and a private Azure DNS zone named contoso.com.
For contoso.com, you create a virtual network link named link1 as shown in the exhibit. (Click the Exhibit tab.)

You discover that VM1 can resolve names in contoso.com but cannot resolve names in adatum.com. VM1 can resolve other hosts on the internet.
You need to ensure that VM1 can resolve host names in adatum.com.
What should you do?

  • A. Modify the Access control (IAM) settings for link1.
  • B. Create an SRV record in the contoso.com zone.
  • C. Configure the name servers for adatum.com at the domain registrar.
  • D. Update the DNS suffix on VM1 to be adatum.com.

Answer: C

Explanation:
Explanation
Adatum.com is a public DNS zone. The Internet top level domain DNS servers need to know which DNS servers to direct DNS queries for adatum.com to. You configure this by configuring the name servers for adatum.com at the domain registrar.
Reference:
https://docs.microsoft.com/en-us/azure/dns/dns-getstarted-portal

 

NEW QUESTION 94
You have an Azure subscription named Subscription1 that contains the quotas shown in the following table.

You deploy virtual machine to Subscription1 as shown in the following table.

You plan to deploy the virtual machines shown in the following table.

For each of the following statements, select Yes if the statement is true. Otherwise, select No.

Answer:

Explanation:

Reference:
https://docs.microsoft.com/en-us/azure/virtual-machines/windows/quotas

 

NEW QUESTION 95
You have peering configured as shown in the following exhibit.

Use the drop-down menus to select the answer choice that completes each statement based on the information presented in the graphic.
NOTE: Each correct selection is worth one point.

Answer:

Explanation:

Explanation

Box 1: vNET6 only
Box 2: Modify the address space
The virtual networks you peer must have non-overlapping IP address spaces.
References:
https://docs.microsoft.com/en-us/azure/virtual-network/virtual-network-manage-peering#requirements-and-const

 

NEW QUESTION 96
You have an Azure subscription.
You activate Enterprise Mobility + Security E5 licenses for all users.
You need the users to request approval before they can create virtual machines.
What should you configure first?

  • A. Azure Active Directory (Azure AD) conditional access policies
  • B. Azure Active Directory (Azure AD) Privileged Identity Management for the Azure AD directory roles Explanation
  • C. Azure Active Directory (Azure AD) Authentication methods
  • D. Azure Active Directory (Azure AD) Privileged Identity Management for the Azure resource roles

Answer: D

Explanation:
https://docs.microsoft.com/en-us/azure/active-directory/privileged-identity-management/pim-resource-roles-assign-roles

 

NEW QUESTION 97
You purchase a new Azure subscription named Subscription1.
You create a virtual machine named VM1 in Subscription1. VM1 is not protected by Azure Backup.
You need to protect VM1 by using Azure Backup. Backups must be created at 01:00 and stored for 30 days.
What should you do? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.

Answer:

Explanation:

Explanation:
Box 1: A Recovery Services vault
A Recovery Services vault is an entity that stores all the backups and recovery points you create over time.
Box 2: A backup policy
What happens when I change my backup policy?
When a new policy is applied, schedule and retention of the new policy is followed.
References:
https://docs.microsoft.com/en-us/azure/backup/backup-configure-vault
https://docs.microsoft.com/en-us/azure/backup/backup-azure-backup-faq

 

NEW QUESTION 98
You need to prepare the environment to ensure that the web administrators can deploy the web apps as quickly as possible.
Which three actions should you perform in sequence? To answer, move the appropriate actions from the list of actions to the answer area and arrange them in the correct order.

Answer:

Explanation:

Explanation

Scenario:
1. Web administrators will deploy Azure web apps for the marketing department.
2. Each web app will be added to a separate resource group.
3. The initial configuration of the web apps will be identical.
4. The web administrators have permission to deploy web apps to resource groups.
Steps:
1 --> Create a resource group, and then deploy a web app to the resource group.
2 --> From the Automation script blade of the resource group , click Add to Library.
3 --> From the Templates service, select the template, and then share the template to the web administrators .
References:
https://docs.microsoft.com/en-us/azure/azure-resource-manager/templates/quickstart-create-templates-use-the-po

 

NEW QUESTION 99
You have an Azure subscription named Subscription1 that has a subscription ID of c276fc76-9cd4-44c9-99a7-4fd71546436e.
You need to create a custom RBAC role named CR1 that meets the following requirements:
Can be assigned only to the resource groups in Subscription1
Prevents the management of the access permissions for the resource groups Allows the viewing, creating, modifying, and deleting of resource within the resource groups What should you specify in the assignable scopes and the permission elements of the definition of CR1? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.

Answer:

Explanation:


Box 1: "/subscription/c276fc76-9cd4-44c9-99a7-4fd71546436e"
In the assignableScopes you need to mention the subscription ID where you want to implement the RBAC Box 2: "Microsoft.Authorization/*" Microsoft.Authorization/* is used to Manage authorization References:
https://docs.microsoft.com/en-us/azure/role-based-access-control/resource-provider-operations#microsoftauthorization
https://docs.microsoft.com/en-us/azure/role-based-access-control/built-in-roles
References:
https://docs.microsoft.com/en-us/azure/role-based-access-control/custom-roles
https://docs.microsoft.com/en-us/azure/role-based-access-control/resource-provider-operations#microsoftresources

 

NEW QUESTION 100
......

AZ-104 exam questions for practice in 2022 Updated 465 Questions: https://www.braindumpspass.com/Microsoft/AZ-104-practice-exam-dumps.html

AZ-104 Exam Dumps Pass with Updated Tests Dumps: https://drive.google.com/open?id=19EFbcWNdXjO1Cyb-Fut-YcDgM__vHNC8