Microsoft Azure Administrator: AZ-104

Microsoft AZ-104 FAQs

Question #1

Your company has serval departments. Each department has a number of virtual machines (VMs).

The company has an Azure subscription that contains a resource group named RG1.

All VMs are located in RG1.

You want to associate each VM with its respective department.

What should you do?

A. Create Azure Management Groups for each department.

B. Create a resource group for each department.

C. Assign tags to the virtual machines.

D. Modify the settings of the virtual machines.

Correct Answer: C

Question #2

Note: The Question #is included in a number of Question # # #s that depicts the identical set-up. However, every Question #has a distinctive result.

Establish if the solution satisfies the requirements.

Your company’s Azure solution makes use of Multi-Factor Authentication for when users are not in the office. The Per Authentication option has been configured as the usage model.

After the acquisition of a smaller business and the addition of the new staff to Azure Active Directory (Azure AD) obtains a different company and adding the new employees to Azure Active Directory (Azure AD), you are informed that these employees should also make use of Multi-Factor

Authentication.

To achieve this, the Per Enabled User setting must be set for the usage model.

Solution: You create a new Multi-Factor Authentication provider with a backup from the existing Multi-Factor Authentication provider data.

Does the solution meet the goal?

A. Yes

B. No

Correct Answer: A

Question #3  

Note: The Question #is included in a number of Question # # #s that depicts the identical set-up. However, every Question #has a distinctive result.

Establish if the solution satisfies the requirements.

Your company has an Azure Active Directory (Azure AD) tenant named weyland.com that is configured for hybrid coexistence with the on-premises

Active

Directory domain.

You have a server named DirSync1 that is configured as a DirSync server.

You create a new user account in the on-premise Active Directory. You now need to replicate the user information to Azure AD immediately.

Solution: You restart the NetLogon service on a domain controller.

Does the solution meet the goal?

A. Yes

B. No

Correct Answer: B

Question #4

Your company has three virtual machines (VMs) that are included in an availability set.

You try to resize one of the VMs, which returns an allocation failure message.

It is imperative that the VM is resized.

Which of the following actions should you take?

A. You should only stop one of the VMs.

B. You should stop two of the VMs.

C. You should stop all three VMs.

D. You should remove the necessary VM from the availability set.

Correct Answer: C

Question #5  

Your company has an Azure Active Directory (Azure AD) tenant that is configured for hybrid coexistence with the on-premises Active Directory domain.

You plan to deploy several new virtual machines (VMs) in Azure. The VMs will have the same operating system and custom software requirements.

You configure a reference VM in the on-premise virtual environment. You then generalize the VM to create an image.

You need to upload the image to Azure to ensure that it is available for selection when you create the new Azure VMs.

Which PowerShell cmdlets should you use?

A. Add-AzVM

B. Add-AzVhd

C. Add-AzImage

D. Add-AzImageDataDisk

Correct Answer: B

Question #6  

DRAG DROP –

Your company has an Azure subscription that includes a number of Azure virtual machines (VMs), which are all part of the same virtual network.

Your company also has an on-premises Hyper-V server that hosts a VM, named VM1, which must be replicated to Azure.

Which of the following objects that must be created to achieve this goal? Answer by dragging the correct option from the list to the answer area.

Select and Place:

Correct Answer:

Question #7

Your company has an Azure Active Directory (Azure AD) subscription.

You need to deploy five virtual machines (VMs) to your company’s virtual network subnet.

The VMs will each have both a public and private IP address. Inbound and outbound security rules for all of these virtual machines must be identical.

Which of the following is the least amount of security groups needed for this configuration?

A. 4

B. 3

C. 2

D. 1

Correct Answer: D

Question #8

Note: This Question #is part of a series of Question # # #s that present the same scenario. Each Question #in the series contains a unique solution that might meet the stated goals. Some Question #sets might have more than one correct solution, while others might not have a correct solution.

After you answer a Question #in this section, you will NOT be able to return to it. As a result, these Question # # #s will not appear in the review screen.

You have an Azure Active Directory (Azure AD) tenant named contoso.com.

You have a CSV file that contains the names and email addresses of 500 external users.

You need to create a guest user account in contoso.com for each of the 500 external users.

Solution: From Azure AD in the Azure portal, you use the Bulk create user operation.

Does this meet the goal?

A. Yes

B. No

Correct Answer: B

Question #9

HOTSPOT –

You have an Azure subscription named Subscription1 that contains a resource group named RG1.

In RG1, you create an internal load balancer named LB1 and a public load balancer named LB2.

You need to ensure that an administrator named Admin1 can manage LB1 and LB2. The solution must follow the principle of least privilege.

Which role should you assign to Admin1 for each task? To answer, select the appropriate options in the answer area.

NOTE: Each correct selection is worth one point.

Hot Area:

Correct Answer:

Question #10  

You have an Azure policy as shown in the following exhibit:

What is the effect of the policy?

A. You are prevented from creating Azure SQL servers anywhere in Subscription 1.

B. You can create Azure SQL servers in ContosoRG1 only.

C. You are prevented from creating Azure SQL Servers in ContosoRG1 only.

D. You can create Azure SQL servers in any resource group within Subscription 1.

Correct Answer: B

Question #11

You have an Azure Active Directory (Azure AD) tenant named contoso.onmicrosoft.com that contains 100 user accounts.

You purchase 10 Azure AD Premium P2 licenses for the tenant.

You need to ensure that 10 users can use all the Azure AD Premium features.

What should you do?

A. From the Licenses blade of Azure AD, assign a license

B. From the Groups blade of each user, invite the users to a group

C. From the Azure AD domain, add an enterprise application

D. From the Directory role blade of each user, modify the directory role

Correct Answer: A

Question # 12

You have an Azure subscription that contains a resource group named RG26.

RG26 is set to the West Europe location and is used to create temporary resources for a project. RG26 contains the resources shown in the following table.

SQLDB01 is backed up to RGV1.

When the project is complete, you attempt to delete RG26 from the Azure portal. The deletion fails.

You need to delete RG26.

What should you do first?

A. Delete VM1

B. Stop VM1

C. Stop the backup of SQLDB01

D. Delete sa001

Correct Answer: C

Question #13

DRAG DROP –

You have an Azure subscription that is used by four departments in your company. The subscription contains 10 resource groups. Each

department uses resources in several resource groups.

You need to send a report to the finance department. The report must detail the costs for each department.

Which three actions should you perform in sequence? To answer, move the appropriate actions from the list of actions to the answer area and

arrange them in the correct order.

Select and Place:

Correct Answer:

Question # 14

You have an Azure subscription named Subscription1. Subscription1 contains the resource groups in the following table

RG1 has a web app named WebApp1. WebApp1 is located in West Europe.

You move WebApp1 to RG2.

What is the effect of the move?

A. The App Service plan for WebApp1 remains in West Europe. Policy2 applies to WebApp1.

B. The App Service plan for WebApp1 moves to North Europe. Policy2 applies to WebApp1.

C. The App Service plan for WebApp1 remains in West Europe. Policy1 applies to WebApp1.

D. The App Service plan for WebApp1 moves to North Europe. Policy1 applies to WebApp1.

Correct Answer: A

Question #15

HOTSPOT –

You have a hybrid deployment of Azure Active Directory (Azure AD) that contains the users shown in the following table.

You need to modify the JobTitle and UsageLocation attributes for the users.

For which users can you modify the attributes from Azure AD? To answer, select the appropriate options in the answer area.

NOTE: Each correct selection is worth one point.

Hot Area:

Correct Answer:

Question #16

You have an Azure subscription that contains a user named User1.

You need to ensure that User1 can deploy virtual machines and manage virtual networks. The solution must use the principle of least privilege.

Which role-based access control (RBAC) role should you assign to User1?

A. Owner

B. Virtual Machine Contributor

C. Contributor

D. Virtual Machine Administrator Login

Correct Answer: C

Question #17

DRAG DROP –

You have an Azure Active Directory (Azure AD) tenant that has the contoso.onmicrosoft.com domain name.

You have a domain name of contoso.com registered at a third-party registrar.

You need to ensure that you can create Azure AD users that have names containing a suffix of @contoso.com.

Which three actions should you perform in sequence? To answer, move the appropriate actions from the list of actions to the answer area and arrange them in the correct order.

Select and Place:

Correct Answer:

Question #18

HOTSPOT –

You have the Azure resources shown on the following exhibit.

You plan to track resource usage and prevent the deletion of resources.

To which resources can you apply locks and tags? To answer, select the appropriate options in the answer area.

NOTE: Each correct selection is worth one point.

Hot Area:

Correct Answer:

Question # 19 .

Note: This Question #is part of a series of Question # # #s that present the same scenario. Each Question #in the series contains a unique solution that

might meet the stated goals. Some Question #sets might have more than one correct solution, while others might not have a correct solution.

After you answer a Question #in this section, you will NOT be able to return to it. As a result, these Question # # #s will not appear in the review screen.

You have an Azure Directory (Azure AD) tenant named Adatum and an Azure Subscription named Subscription1. Adatum contains a group named

Developers.

Subscription1 contains a resource group named Dev.

You need to provide the Developers group with the ability to create Azure logic apps in the Dev resource group.

Solution: On Dev, you assign the Logic App Contributor role to the Developers group.

Does this meet the goal?

A. Yes

B. No

Correct Answer: B

Question #20  

You have an Azure subscription that contains a storage account named storage1. The storage1 account contains a file share named share1.

The subscription is linked to a hybrid Azure Active Directory (Azure AD) tenant that contains a security group named Group1.

You need to grant Group1 the Storage File Data SMB Share Elevated Contributor role for share1.

What should you do first?

A. Enable Active Directory Domain Service (AD DS) authentication for storage1.

B. Grant share-level permissions by using File Explorer.

C. Mount share1 by using File Explorer.

D. Create a private endpoint.

Correct Answer: A

Pages: 1 2 3 4