Guaranteed AZ-104 Testing Engine 2021

Breathing of AZ-104 download materials and item pool for Microsoft certification for consumer, Real Success Guaranteed with Updated AZ-104 pdf dumps vce Materials. 100% PASS Microsoft Azure Administrator (beta) exam Today!

Microsoft AZ-104 Free Dumps Questions Online, Read and Test Now.

NEW QUESTION 1

Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution.
After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen.
You have a computer named Computer1 that has a point-to-site VPN connection to an Azure virtual network named VNet1. The point-to-site connection uses a self-signed certificate.
From Azure, you download and install the VPN client configuration package on a computer named Computer2.
You need to ensure that you can establish a point-to-site VPN connection to VNet1 from Computer2. Solution: On Computer2, you set the Startup type for the IPSec Policy Agent service to Automatic.
Does this meet the goal?

  • A. Yes
  • B. No

Answer: B

Explanation:
Instead export the client certificate from Computer1 and install the certificate on Computer2.
Note: Each client computer that connects to a VNet using Point-to-Site must have a client certificate installed. You generate a client certificate from the self-signed root certificate, and then export and install the client certificate. If the client certificate is not installed, authentication fails.
References:
https://docs.microsoft.com/en-us/azure/vpn-gateway/vpn-gateway-certificates-point-to-site

NEW QUESTION 2

You have an Azure subscription that contains an Azure Availability Set named WEBPROD-AS-USE2 as shown in the following exhibit.
AZ-104 dumps exhibit
You add 14 virtual machines to WEBPROD-AS-USE2.
Use the drop-down menus to select the answer choice that completes each statement based on the information presented in the graphic.
NOTE: Each correct selection is worth one point.
AZ-104 dumps exhibit

  • A. Mastered
  • B. Not Mastered

Answer: A

Explanation:
AZ-104 dumps exhibit

NEW QUESTION 3

You have two Azure virtual machines named VM1 and VM2. You have two Recovery Services vaults named RSV1 and RSV2.
VM2 is protected by RSV1.
You need to use RSV2 to protect VM2. What should you do first?

  • A. From the RSV1 blade, click Backup items and stop the VM2 backup.
  • B. From the RSV1 blade, click Backup Jobs and export the VM2 backup.
  • C. From the RSV1 blade, click Backu
  • D. From the Backup blade, select the backup for the virtual machine, and then click Backup.
  • E. From the VM2 blade, click Disaster recovery, click Replication settings, and then select RSV2 as the Recovery Services vault.

Answer: D

Explanation:
References:
https://docs.microsoft.com/en-us/azure/backup/backup-azure-vms-first-look-arm

NEW QUESTION 4

You need to meet the technical requirement for VM4. What should you create and configure?

  • A. an Azure Notification Hub
  • B. an Azure Event Hub
  • C. an Azure Logic App
  • D. an Azure services Bus

Answer: B

Explanation:
Scenario: Create a workflow to send an email message when the settings of VM4 are modified.
You can start an automated logic app workflow when specific events happen in Azure resources or third-party resources. These resources can publish those events to an Azure event grid. In turn, the event grid pushes those events to subscribers that have queues, webhooks, or event hubs as endpoints. As a subscriber, your logic app can wait for those events from the event grid before running automated workflows to perform tasks - without you writing any code.
References:
https://docs.microsoft.com/en-us/azure/event-grid/monitor-virtual-machine-changes-event-grid-logic-app

NEW QUESTION 5

You have Azure virtual machines that run Windows Server 2021 and are configured as shown in the following table.
AZ-104 dumps exhibit
You create a public Azure DNS zone named adatum.com and a private Azure DNS zone named contoso.com.
For contoso.com, you create a virtual network link named link1 as shown in the exhibit. (Click the Exhibit tab.)
AZ-104 dumps exhibit
You discover that VM1 can resolve names in contoso.com but cannot resolve names in adatum.com.
VM1 can resolve other hosts on the internet.
You need to ensure that VM1 can resolve host names in adatum.com. What should you do?

  • A. Update the DNS suffix on VM1 to be adatum.com.
  • B. Create an SRV record in the contoso.com zone.
  • C. Configure the name servers for adatum.com at the domain registrar.
  • D. Modify the Access control (IAM) settings for link1.

Answer: D

NEW QUESTION 6

You have an Azure subscription that contains the following resources:
AZ-104 dumps exhibit 100 Azure virtual machines
AZ-104 dumps exhibit 20 Azure SQL databases
AZ-104 dumps exhibit 50 Azure file shares
You need to create a daily backup of all the resources by using Azure Backup. What is the minimum number of backup policies that you must create?

  • A. 1
  • B. 2
  • C. 3
  • D. 150
  • E. 170

Answer: C

Explanation:
There is a limit of 100 VMs that can be associated to the same backup policy from portal. We recommend that for more than 100 VMs, create multiple backup policies with same schedule or different schedule.
One policy for VMS, one for SQL databases, and one for the file shares. References:
https://docs.microsoft.com/en-us/azure/backup/backup-azure-vm-backup-faq

NEW QUESTION 7

You have an Azure virtual machine named VM1 and a Recovery Services vault named Vault1. You create a backup Policy1 as shown in the exhibit. (Click the Exhibit tab.)
AZ-104 dumps exhibit
You configure the backup of VM1 to use Policy1 on Thursday, January 1. You need to identify the number of available recovery points for VM1.
How many recovery points are available on January 8 and on January 15? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.
AZ-104 dumps exhibit

  • A. Mastered
  • B. Not Mastered

Answer: A

Explanation:
Box 1: 6
4 daily + 1 weekly + monthly Box 2: 8
4 daily + 2 weekly + monthly + yearly

NEW QUESTION 8

You create a virtual machine scale set named Scale1. Scale1 is configured as shown in the following exhibit.
AZ-104 dumps exhibit
Use the drop-down menus to select the answer choice that completes each statement based on the information presented in the graphic.
AZ-104 dumps exhibit

  • A. Mastered
  • B. Not Mastered

Answer: A

Explanation:
Box 1:
The Autoscale scale out rule increases the number of VMs by 2 if the CPU threshold is 80% or higher. The initial instance count is 4 and rises to 6 when the 2 extra instances of VMs are added.
Box 2:
The Autoscale scale in rule decreases the number of VMs by 4 if the CPU threshold is 30% or lower. The initial instance count is 4 and thus cannot be reduced to 0 as the minimum instances is set to 2. Instances are only added when the CPU threshold reaches 80%.
References:
https://docs.microsoft.com/en-us/azure/azure-monitor/platform/autoscale-overview https://docs.microsoft.com/en-us/azure/azure-monitor/platform/autoscale-best-practices https://docs.microsoft.com/en-us/azure/azure-monitor/platform/autoscale-common-scale-patterns

NEW QUESTION 9

You create an App Service plan named App1 and an Azure web app named webapp1. You discover that the option to create a staging slot is unavailable. You need to create a staging slot for App1.
What should you do first?

  • A. From webapp1, modify the Application settings.
  • B. From webapp1, add a custom domain.
  • C. From App1, scale up the App Service plan.
  • D. From App1, scale out the App Service plan.

Answer: C

Explanation:
https://docs.microsoft.com/en-us/azure/app-service/manage-scale-up

NEW QUESTION 10

You have an azure subscription that contain a virtual named VNet1. VNet1. contains four subnets named Gatesway, perimeter, NVA, and production.
The NVA contain two network virtual appliance (NVAs) that will network traffic inspection between the perimeter subnet and the production subnet.
You need to implement an Azure load balancer for the NVAs. The solution must meet the following requirements:
AZ-104 dumps exhibit The NVAs must run in an active-active configuration that uses automatic failover.
AZ-104 dumps exhibit The NVA must load balance traffic to two services on the Production subnet. The services have different IP addresses
Which three actions should you perform? Each correct answer presents parts of the solution. NOTE: Each correct selection is worth one point.

  • A. Add two load balancing rules that have HA Ports enabled and Floating IP disabled.
  • B. Deploy a standard load balancer.
  • C. Add a frontend IP configuration, two backend pools, and a health prob.
  • D. Add a frontend IP configuration, a backend pool, and a health probe.
  • E. Add two load balancing rules that have HA Ports and Floating IP enabled.
  • F. Deploy a basic load balancer.

Answer: BCE

Explanation:
A standard load balancer is required for the HA ports.
-Two backend pools are needed as there are two services with different IP addresses.
-Floating IP rule is used where backend ports are reused.

NEW QUESTION 11

You have a sync group that has the endpoints shown in the following table.
AZ-104 dumps exhibit
Cloud tiering is enabled for Endpoint3.
You add a file named File1 to Endpoint1 and a file named File2 to Endpoint2.
You need to identify on which endpoints File1 and File2 will be available within 24 hours of adding the files. What should you identify? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.
AZ-104 dumps exhibit

  • A. Mastered
  • B. Not Mastered

Answer: A

Explanation:
File1: Endpoint3 only
Cloud Tiering: A switch to enable or disable cloud tiering. When enabled, cloud tiering will tier files to your Azure file shares. This converts on-premises file shares into a cache, rather than a complete copy of the dataset, to help you manage space efficiency on your server. With cloud tiering, infrequently used or accessed files can be tiered to Azure Files.
File2: Endpoint1, Endpoint2, and Endpoint3 References:
https://docs.microsoft.com/en-us/azure/storage/files/storage-sync-cloud-tiering

NEW QUESTION 12

You have an Azure Active Directory (Azure AD) tenant named contoso.com that is synced to an Active Directory domain. The tenant contains the users shown in the following table.
AZ-104 dumps exhibit
The users have the attributes shown in the following table.
AZ-104 dumps exhibit
You need to ensure that you can enable Azure Multi-Factor Authentication (MFA) for all four users. Solution: You add an office phone number for User2.
Does this meet the goal?

  • A. Yes
  • B. No

Answer: B

Explanation:
User3 requires a user account in Azure AD.
Note: Your Azure AD password is considered an authentication method. It is the one method that cannot be disabled.
References:
https://docs.microsoft.com/en-us/azure/active-directory/authentication/concept-authentication-methods

NEW QUESTION 13

Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution.
After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen.
You have an Azure subscription that contains the following resources:
AZ-104 dumps exhibit A virtual network that has a subnet named Subnet1
AZ-104 dumps exhibit Two network security groups (NSGs) named NSG-VM1 and NSG-Subnet1
AZ-104 dumps exhibit A virtual machine named VM1 that has the required Windows Server configurations to allow Remote Desktop connections
NSG-Subnet1 has the default inbound security rules only.
NSG-VM1 has the default inbound security rules and the following custom inbound security rule:
AZ-104 dumps exhibit Priority: 100
AZ-104 dumps exhibit Source: Any
AZ-104 dumps exhibit Source port range: *
AZ-104 dumps exhibit Destination: *
AZ-104 dumps exhibit Destination port range: 3389
AZ-104 dumps exhibit Protocol: UDP
AZ-104 dumps exhibit Action: Allow
VM1 connects to Subnet1. NSG1-VM1 is associated to the network interface of VM1. NSG-Subnet1 is associated to Subnet1.
You need to be able to establish Remote Desktop connections from the internet to VM1.
Solution: You add an inbound security rule to NSG-Subnet1 that allows connections from the Any source to the VirtualNetwork destination for port range 3389 and uses the TCP protocol. You remove NSG-VM1 from the network interface of VM1.
Does this meet the goal?

  • A. Yes
  • B. No

Answer: B

Explanation:
The default port for RDP is TCP port 3389. A rule to permit RDP traffic must be created automatically when you create your VM.
Note on NSG-Subnet1: Azure routes network traffic between all subnets in a virtual network, by default. References:
https://docs.microsoft.com/en-us/azure/virtual-machines/troubleshooting/troubleshoot-rdp-connection

NEW QUESTION 14

You need to resolve the licensing issue before you attempt to assign the license again. What should you do?

  • A. From the Groups blade, invite the user accounts to a new group.
  • B. From the Profile blade, modify the usage location.
  • C. From the Directory role blade, modify the directory role.

Answer: A

Explanation:
License cannot be assigned to a user without a usage location specified. Scenario: Licensing Issue
You attempt to assign a license in Azure to several users and receive the following error message: "Licenses not assigned. License agreement failed for one user."
You verify that the Azure subscription has the available licenses.

NEW QUESTION 15

You have an Azure subscription named Subscription1 that contains the resources shown in the following table.
AZ-104 dumps exhibit
You create virtual machines in Subscription1 as shown in the following table.
AZ-104 dumps exhibit
You plan to use Vault1 for the backup of as many virtual machines as possible. Which virtual machines can be backed up to Vault1?

  • A. VM1, VM3, VMA, and VMC only
  • B. VM1 and VM3 only
  • C. VM1, VM2, VM3, VMA, VMB, and VMC
  • D. VM1 only
  • E. VM3 and VMC only

Answer: A

Explanation:
To create a vault to protect virtual machines, the vault must be in the same region as the virtual machines. If you have virtual machines in several regions, create a Recovery Services vault in each region.
References:
https://docs.microsoft.com/bs-cyrl-ba/azure/backup/backup-create-rs-vault

NEW QUESTION 16

You have an Azure virtual machine named VM1.
The network interface for VM1 is configured as shown in the exhibit. (Click the Exhibit tab.) You deploy a web server on VM1, and then create a secure website that is accessible by using the
HTTPS protocol VM1 is used as a web server only.
You need to ensure that users can connect to the website from the Internet.
What should you do?

  • A. Change the priority of Rule3 to 450.
  • B. Change the priority of Rule6 to 100
  • C. DeleteRule1.
  • D. Create a new inbound rule that allows TCP protocol 443 and configure the protocol to have a priority of 501.

Answer: D

NEW QUESTION 17

You have an Azure subscription that contains the storage accounts shown in the following table.
AZ-104 dumps exhibit
You need to identify which storage account can be converted to zone-redundant storage (ZRS) replication by requesting a live migration from Azure support.
What should you identify?

  • A. Storage1
  • B. Storage2
  • C. Storage3
  • D. Storage4

Answer: B

Explanation:
ZRS currently supports standard general-purpose v2, FileStorage and BlockBlobStorage storage account types.

NEW QUESTION 18

You have Azure subscriptions named Subscription1 and Subscription2. Subscription1 has following resource groups:
AZ-104 dumps exhibit
RG1 includes a web app named App1 in the West Europe location. Subscription2 contains the following resource groups:
AZ-104 dumps exhibit
For each of the following statements, select Yes if the statement is true. Otherwise, select No.
NOTE: Each correct selection is worth one point.
AZ-104 dumps exhibit

  • A. Mastered
  • B. Not Mastered

Answer: A

Explanation:
Reference:
https://docs.microsoft.com/en-us/azure/azure-resource-manager/management/move-limitations/app-service-mov

NEW QUESTION 19

You have an Azure subscription named Subscription1 that contains the resources shown in the following table.
AZ-104 dumps exhibit
In storage1, you create a blob container named blob1 and a file share named share1.
Which resources can be backed up to Vault1 and Vault2? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.
AZ-104 dumps exhibit

  • A. Mastered
  • B. Not Mastered

Answer: A

Explanation:
Box 1: VM1 only
VM1 is in the same region as Vault1. File1 is not in the same region as Vautl1.
SQL is not in the same region as Vault1. Blobs cannot be backup up to service vaults.
Note: To create a vault to protect virtual machines, the vault must be in the same region as the virtual machines.
Box 2: Share1 only.
Storage1 is in the same region (West USA) as Vault2. Share1 is in Storage1.
Note: After you select Backup, the Backup pane opens and prompts you to select a storage account from a list of discovered supported storage accounts. They're either associated with this vault or present in the same region as the vault, but not yet associated to any Recovery Services vault.
References:
https://docs.microsoft.com/bs-cyrl-ba/azure/backup/backup-create-rs-vault https://docs.microsoft.com/en-us/azure/backup/backup-afs

NEW QUESTION 20

You need to prepare the environment to meet the authentication requirements.
Which two actions should you perform? Each correct answer presents part of the solution.
NOTE: Each correct selection is worth one point.

  • A. Allow inbound TCP port 8080 to the domain controllers in the Miami office.
  • B. Addhttp://autogon.microsoftazuread-sso.com to the intranet zone of each client computer in the Miami office.
  • C. Join the client computers in the Miami office to Azure AD.
  • D. Install the Active Directory Federation Services (AD FS) role on a domain controller in the Miami office.
  • E. Install Azure AD Connect on a server in the Miami office and enable Pass-through Authentication.

Answer: BE

Explanation:
B: You can gradually roll out Seamless SSO to your users. You start by adding the following Azure AD URL to all or selected users' Intranet zone settings by using Group Policy in Active Directory: https://autologon.microsoftazuread-sso.com
E: Seamless SSO works with any method of cloud authentication - Password Hash Synchronization or Pass-through Authentication, and can be enabled via Azure AD Connect.
References:
https://docs.microsoft.com/en-us/azure/active-directory/hybrid/how-to-connect-sso-quick-start

NEW QUESTION 21

You have an Azure Active Directory (Azure AD) tenant named adatum.com. Adatum.com contains the groups in the following table.
AZ-104 dumps exhibit
You create two user accounts that are configured as shown in the following table.
AZ-104 dumps exhibit
To which groups do User1 and User2 belong? To answer. select the appropriate options in the answer area. NOTE: Each correct selection is worth one point.
AZ-104 dumps exhibit

  • A. Mastered
  • B. Not Mastered

Answer: A

Explanation:
Box 1: Group 1 only First rule applies
Box 2: Group1 and Group2 only Both membership rules apply.
References: https://docs.microsoft.com/en-us/sccm/core/clients/manage/collections/create-collections

NEW QUESTION 22

You plan to use the Azure Import/Export service to copy files to a storage account.
Which two files should you create before you prepare the drives for the import job? Each correct answer presents part of the solution.
NOTE: Each correct selection is worth one point.

  • A. an XML manifest file
  • B. a driveset CSV file
  • C. a dataset CSV file
  • D. a PowerShell PS1 file
  • E. a JSON configuration file

Answer: BC

Explanation:
B: Modify the driveset.csv file in the root folder where the tool resides.
C: Modify the dataset.csv file in the root folder where the tool resides. Depending on whether you want to import a file or folder or both, add entries in the dataset.csv file
References: https://docs.microsoft.com/en-us/azure/storage/common/storage-import-export-data-to-files

NEW QUESTION 23

You have the Azure virtual machines shown in the following table.
AZ-104 dumps exhibit
A DNS service is install on VM1.
You configure the DNS server settings for each virtual network as shown in the following exhibit.
AZ-104 dumps exhibit
You need 10 ensure that all the virtual machines can resolve DNS names by using the DNS service on VM1. What should you do?

  • A. Add service endpoints on VNET2 and VNET3.
  • B. Configure peering between VNE11, VNETT2, and VNET3.
  • C. Configure a conditional forwarder on VM1
  • D. Add service endpoints on VNET1.

Answer: C

Explanation:
Reference:
https://docs.microsoft.com/en-us/azure/virtual-network/virtual-networks-name-resolution-for-vms-and-role-insta

NEW QUESTION 24

You create an Azure VM named VM1 that runs Windows Server 2021. VM1 is configured as shown in the exhibit. (Click the Exhibit button.)
AZ-104 dumps exhibit
You need to enable Desired State Configuration for VM1. What should you do first?

  • A. Configure a DNS name for VM1.
  • B. Start VM1.
  • C. Connect to VM1.
  • D. Capture a snapshot of VM1.

Answer: B

Explanation:
Status is Stopped (Deallocated).
The DSC extension for Windows requires that the target virtual machine is able to communicate with Azure. The VM needs to be started.
References:
https://docs.microsoft.com/en-us/azure/virtual-machines/extensions/dsc-windows

NEW QUESTION 25
......

Thanks for reading the newest AZ-104 exam dumps! We recommend you to try the PREMIUM Certifytools AZ-104 dumps in VCE and PDF here: https://www.certifytools.com/AZ-104-exam.html (0 Q&As Dumps)