Topic 5: Misc. Questions
You have five Azure subscriptions. Each subscription is linked to a separate Azure AD tenant and contains virtual machines that run Windows Server 2022. You plan to collect Windows security events from the virtual machines and send them to a single Log Analytics workspace.
You need to recommend a solution that meets the following requirements:
• Collects event logs from multiple subscriptions
• Supports the use of data collection rules (DCRs) to define which events to collect.
What should you recommend for each requirement? To answer, select the appropriate options in the answer area. NOTE: Each correct selection is worth one point.


You need to recommend a solution that meets the application development requirements.
What should you include in the recommendation?
A.
the Azure App Configuration service
B.
Continuous Integration/Continuous Deployment (CI/CD) sources
C.
deployment slots
D.
an Azure Container Registry instance
deployment slots
You need to recommend an Azure Storage Account configuration for two applications named Application1 and Applications. The configuration must meet the following requirements:
• Storage for Application1 must provide the highest possible transaction rates and the lowest possible latency.
• Storage for Application2 must provide the lowest possible storage costs per GB.
• Storage for both applications must be optimized for uploads and downloads.
• Storage for both applications must be available in an event of datacenter failure.
What should you recommend ? To answer, select the appropriate options in the answer area NOTE: Each correct selection is worth one point.


You need to recommend a solution that meets the file storage requirements for App2.
What should you deploy to the Azure subscription and the on-premises network? To answer, drag the appropriate services to the correct locations. Each service may be used once, more than once, or not at all. You may need to drag the split bar between panes or scroll to view content.
NOTE: Each correct selection is worth one point.


You have an Azure subscription that contains a virtual network named VNET1 and 10 virtual machines. The virtual machines are connected to VNET1.
You need to design a solution to manage the virtual machines from the internet. The solution must meet the following requirements:
• Incoming connections to the virtual machines must be authenticated by using Azure Multi-Factor Authentication (MFA) before network connectivity is allowed.
• Incoming connections must use TLS and connect to TCP port 443.
• The solution must support RDP and SSH.
What should you Include In the solution? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.


You need to recommend a solution to ensure that App1 can access the third-party credentials and access strings. The solution must meet the security requirements. What should you include in the recommendation? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.


You need to recommend a solution that meets the application development requirements. What should you include in the recommendation?
A.
an Azure Container Registry instance
B.
deployment slots
C.
Continuous Integration/Continuous Deployment (CI/CD) sources
D.
the Azure App Configuration service
deployment slots
You have an Azure subscription.
You need to recommend an Azure Kubernetes service (AKS) solution that will use Linux nodes. The solution must meet the following requirements:
• Minimize the time it takes to provision compute resources during scale-out operations.
• Support autoscaling of Linux containers.
• Minimize administrative effort.
Which scaling option should you recommend?
A.
Virtual Kubetet
B.
cluster autoscaler
C.
virtual nodes
D.
horizontal pod autoscaler
cluster autoscaler
Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution.
After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen. Your company plans to deploy various Azure App Service instances that will use Azure SQL databases. The App Service instances will be deployed at the same time as the Azure SQL databases.
The company has a regulatory requirement to deploy the App Service instances only to specific Azure regions. The resources for the App Service instances must reside in the same region.
You need to recommend a solution to meet the regulatory requirement.
Solution: You recommend using an Azure Policy initiative to enforce the location of resource groups.
Does this meet the goal?
A.
Yes
B.
No
No
Explanation:
This solution does not meet the goal because an Azure Policy initiative can only enforce the location of resources, not resource groups. Resource groups are not a resource type that can be targeted by Azure Policy1. To enforce the location of resource groups, you need to use Azure Resource Manager templates2 or Azure PowerShell3 to create them in the desired regions.
References:
1: Understand scope in Azure Policy
2: Create resource groups with Azure Resource Manager templates 3: Create resource groups with Azure PowerShell.
What should you recommend to meet the monitoring requirements for App2?
A.
Microsoft Sentinel
B.
Azure Application Insights
C.
Container insights
D.
VM insights
Azure Application Insights
| Page 8 out of 28 Pages |