AZ-103 Real Exam Dumps Questions and answers 11-20

Get Full Version of the Exam
http://www.EnsurePass.com/AZ-103.html

Question No.11

You have an Azure subscription named Subscription1. Subscription1 contains the resource groups in the following table.

image

RG1 has a web app named WebApp1. WebApp1 is located in West Europe. You move WebApp1 to RG2. What is the effect of the move?

A.

The App Service plan to WebApp1 moves to North Europe. Policy2 applies to WebApp1.

B.

The App Service plan to WebApp1 moves to North Europe. Policy1 applies to WebApp1.

C.

The App Service plan to WebApp1 remains to West Europe. Policy2 applies to WebApp1.

D.

The App Service plan to WebApp1 remains to West Europe. Policy1 applies to WebApp1.

Answer: C

Explanation:

You can move an app to another App Service plan, as long as the source plan and the target plan are in the same resource group and geographical region.

The region in which your app runs is the region of the App Service plan it#39;s in. However, you cannot change an App Service plan#39;s region.

References:

https://docs.microsoft.com/en-us/azure/app-service/app-service-plan-manage

Question No.12

Your company has an Azure subscription named Subscription1.

The company also has two on-premises servers named Server1 and Server2 that run Windows Server 2016. Server1 is configured as a DNS server that has a primary DNS zone named adatum.com. Adatum.com contains 1,000 DNS records.

You manage Server1 and Subscription1 from Server2. Server2 has the following tools installed: The DNS Manager console

image

Azure PowerShell

image

Azure CLI 2.0

image

You need to move the adatum.com zone to Subscription1. The solution must minimize administrative effort.

What should you use?

A.

Azure PowerShell

B.

Azure CLI

C.

the Azure portal

D.

the DNS Manager console

Answer: B

Explanation:

Azure DNS supports importing and exporting zone files by using the Azure command-line interface (CLI). Zone file import is not currently supported via Azure PowerShell or the Azure

portal.

References:

https://docs.microsoft.com/en-us/azure/dns/dns-import-export

Question No.13

Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution.

After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen.

You have an Azure subscription that contains 10 virtual networks. The virtual networks are hosted in separate resource groups.

Another administrator plans to create several network security groups (NSGs) in the subscription.

You need to ensure that when an NSG is created, it automatically blocks TCP port 8080 between the virtual networks.

Solution: You assign a built-in policy definition to the subscription. Does this meet the goal?

A.

Yes

B.

No

Answer: B

Question No.14

You have an Azure subscription that contains the resources in the following table.

image

Subnet1 is associated to VNet1. NIC1 attaches VM1 to Subnet1. You need to apply ASG1 to VM1.

What should you do?

A.

Modify the properties of NSG1.

B.

Modify the properties of ASG1.

C.

Associate NIC1 to ASG1.

Answer: B

Explanation:

When you deploy VMs, make them members of the appropriate ASGs. You associate the ASG with a subnet.

References:

https://azure.microsoft.com/en-us/blog/applicationsecuritygroups/

Question No.15

Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution.

After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen.

Your company registers a domain name of contoso.com.

You create an Azure DNS zone named contoso.com, and then you add an A record to the zone for a host named www that has an IP address of 131.107.1.10.

You discover that Internet hosts are unable to resolve www.contoso.com to the 131.107.1.10 IP address.

You need to resolve the name resolution issue.

Solution: You create a PTR record for www in the contoso.com zone. Does this meet the goal?

A.

Yes

B.

No

Answer: B

Explanation:

Modify the Name Server (NS) record.

References:

https://docs.microsoft.com/en-us/azure/dns/dns-delegate-domain-azure-dns

Question No.16

You plan to automate the deployment of a virtual machine scale set that uses the Windows Server 2016 Datacenter image.

You need to ensure that when the scale set virtual machines are provisioned, they have web

server components installed.

Which two actions should you perform? Each correct answer presents part of the solution. NOTE Each correct selection is worth one point.

A.

Modify the extensionProfile section of the Azure Resource Manager template.

B.

Create a new virtual machine scale set in the Azure portal.

C.

Create an Azure policy.

D.

Create an automation account.

E.

Upload a configuration script.

Answer: AB

Explanation:

Virtual Machine Scale Sets can be used with the Azure Desired State Configuration (DSC) extension handler. Virtual machine scale sets provide a way to deploy and manage large numbers of virtual machines, and can elastically scale in and out in response to load. DSC is used to configure the VMs as they come online so they are running the production software.

References:

https://docs.microsoft.com/en-us/azure/virtual-machine-scale-sets/virtual-machine-scale-sets-dsc

Question No.17

Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution.

After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen.

You have an Azure subscription that contains 10 virtual networks. The virtual networks are hosted in separate resource groups.

Another administrator plans to create several network security groups (NSGs) in the subscription.

You need to ensure that when an NSG is created, it automatically blocks TCP port 8080 between the virtual networks.

Solution: From the Resource providers blade, you unregister the Microsoft.ClassicNetwork provider.

Does this meet the goal?

A.

Yes

B.

No

Answer: B

Question No.18

You have an Azure subscription that contains a virtual machine named VM1. VM1 hosts a line-of- business application that is available 24 hours a day. VM1 has one network interface and one managed disk. VM1 uses the D4s v3 size.

You plan to make the following changes to VM1: Change the size to D8s v3.

image

Add a 500-GB managed disk.

image

Add the Puppet Agent extension.

image

Attach an additional network interface.

image

Which change will cause downtime for VM1?

A.

Add a 500-GB managed disk.

B.

Attach an additional network interface.

C.

Add the Puppet Agent extension.

D.

Change the size to D8s v3.

Answer: D

Explanation:

While resizing the VM it must be in a stopped state.

References:

https://azure.microsoft.com/en-us/blog/resize-virtual-machines/

Question No.19

You have 100 Azure subscriptions. All the subscriptions are associated to the same Azure Active Directory (Azure AD) tenant named contoso.com.

You are a global administrator.

You plan to create a report that lists all the resources across all the subscriptions. You need to ensure that you can view all the resources in all the subscriptions.

What should you do?

A.

From the Azure portal, modify the profile settings of your account.

B.

From Windows PowerShell, run the Add-AzureADAdministrativeUnitMember cmdlet.

C.

From Windows PowerShell, run the New-AzureADUserAppRoleAssignment cmdlet.

D.

From the Azure portal, modify the properties of the Azure AD tenant.

Answer: C

Explanation:

The New-AzureADUserAppRoleAssignment cmdlet assigns a user to an application role in Azure Active Directory (AD). Use it for the application report.

References:

https://docs.microsoft.com/en-us/powershell/module/azuread/new- azureaduserapproleassignment?view=azureadps-2.0

Question No.20

You have an Azure Active Directory (Azure AD) tenant named contoso.onmicrosoft.com.

You hire a temporary vendor. The vendor uses a Microsoft account that has a sign-in of user1@outlook.com.

A.

From Windows PowerShell, run the New-AzureADUser cmdlet and specify the – UserPrincipalName user1@outloo

B.

From the Azure portal, add a custom domain name, create a new Azure AD user, and then specify user1@outlook.

C.

From Azure Cloud Shell, run the New-AzureADUser cmdlet and specify the -UserPrincipalName user1@outlook.co

D.

From the Azure portal, add a new guest user, and then specify user1@outlook.com as the email address.

You need to ensure that the vendor can authenticate to the tenant by using user1@outlook.com. What should you do?

Answer: A

Explanation:

UserPrincipalName – contains the UserPrincipalName (UPN) of this user. The UPN is what the user will use when they sign in into Azure AD. The common structure is @, so for Abby Brown in Contoso.com, the UPN would be AbbyB@contoso.com

Example:

To create the user, call the New-AzureADUser cmdlet with the parameter values:

powershell New-AzureADUser -AccountEnabled $True -DisplayName quot;Abby Brownquot; – PasswordProfile $PasswordProfile -MailNickName quot;AbbyBquot; -UserPrincipalName quot;AbbyB@contoso.comquot;

References:

https://docs.microsoft.com/bs-cyrl-ba/powershell/azure/active-directory/new-user- sample?view=azureadps-2.0

Get Full Version of AZ-103 Dumps

Leave a Reply

Your email address will not be published. Required fields are marked *