New 2022 Guaranteed Success with ITPassLeader AZ-303 Dumps Microsoft PDF Questions [Q32-Q51]

Share

New 2022 Guaranteed Success with ITPassLeader AZ-303 Dumps Microsoft PDF Questions

Exceptional Practice To Microsoft Azure Architect Technologies Pass the First Time


Career Path to Follow

The IT professionals with the Microsoft Certified: Azure Solutions Architect Expert certification have great career potential. The skills validated in the exams of this path are in high demand. Therefore, the candidates can explore robust career opportunities after getting certified. Some of the job titles that these experts can pursue include a Solution Architect, an Enterprise Engineer, and a Software Solution Architect. The average salary for the certified individuals is $101,170 per annum.


Microsoft AZ-303 will evaluate the candidates’ competence and knowledge in a range of topics. Therefore, it is recommended to go through the official website to review the updated skills that will be measured in the test. The domains that are highlighted by Microsoft are as follows:

  • Data Platforms Implementation & Management: 10-15%

    The questions from this subject area will measure your knowledge of the implementation of NoSQL databases. Therefore, you should develop competence in storage account tables’ configuration, installing replicas in CosmosDB, and selecting relevant CosmosDB APIs. It will also evaluate your expertise in implementing the managed instances of Azure SQL Database. This domain covers the examinees’ skills in configuring Azure SQL database settings and publishing Azure SQL databases.

  • Implementation of Management & Security Solutions: 25-30%

    This domain requires that the applicants have the skills in managing workloads in Azure and implementing network security and load balancing. These include the implementation of Azure Load Balancer, application gateway, Azure Firewall, Web Application Firewall, Azure Firewall Manager, and Bastion, among others. It also covers the details of the implementation and management of Azure governance solutions as well as the management of app security.

  • Implementation of Solutions for Applications: 10-15%

    Here, you must be able to implement Azure application infrastructure. It covers the skills in the creation and configuration of the Azure App Services and Application Service plan. This part also focuses on one’s ability to configure App Service and networking for App Services. The individuals should also have expertise in implementing Logic Apps and Azure Functions as well as creating and operating deployment slots. This area will also evaluate your skills in implementing the container-based applications.

  • Implementation & Monitoring of Azure Infrastructures: 50-55%

    The potential candidates should be able to demonstrate the skills in implementing Cloud infrastructure monitoring processes, such as monitoring security, performance, cost, health, and availability. This section also evaluates their expertise in configuring advanced logging and logging for workloads. It also focuses on the knowledge related to the implementation of storage accounts, VMs for Linux and Windows, Azure AD, Virtual networking, and hybrid identities. It will also measure your skills in automating the configuration and deployment of resources.

 

NEW QUESTION 32
You create a virtual machine scale set named Scale1. Scale1 is configured as shown in the following exhibit.

Use the drop-down menus to select the answer choice that completes each statement based on the information presented in the graphic.

Answer:

Explanation:

Explanation:
4 virtual machines
4 virtual machines
https://docs.microsoft.com/en-us/azure/virtual-machine-scale-sets/virtual-machine-scale-sets-autoscale-portal

 

NEW QUESTION 33
Your company hosts multiple websites by using Azure virtual machine scale sets (VMSS) that run Internet Information Server (IIS).
All network communications must be secured by using end to end Secure Socket Layer (SSL) encryption. User sessions must be routed to the same server by using cookie-based session affinity.
The image shown depicts the network traffic flow for the websites to the VMSS.

Use the drop-down menus to select the answer choice that answers each question.
NOTE: Each correct selection is worth one point.

Answer:

Explanation:

Reference:
https://docs.microsoft.com/bs-latn-ba/azure//application-gateway/tutorial-url-redirect-powershell

 

NEW QUESTION 34
You have a web app named WebApp1 that uses an Azure App Service plan named Plan1. Plan1 uses the D1 pricing tier and has an instance count of 1.
You need to ensure that all connections to WebApp1 use HTTPS.
What should you do first?

  • A. Disable anonymous access to WebApp1.
  • B. Scale up Plan1.
  • C. Scale out Plan1.
  • D. Modify the connection strings for WebApp1.

Answer: B

Explanation:
Section: [none]
Explanation:
The D1 (Shared) pricing tier does not support HTTPS.

 

NEW QUESTION 35
You have the Azure SQL Database servers shown in the following table.

You have the Azure SQL databases shown in the following table.

You create a failover group named failover1 that has the following settings:
* Primary server: sqlserver1
* Secondary server: sqlserver2
* Read/Write failover policy: Automatic
* Read/Write grace period (hours): 1 hour

Answer:

Explanation:

Explanation:
Box 1: Yes
DB1 is on the primary server
Box 2: No
DB3 is on the secondary server.
You can put all or several databases within an elastic pool into the same failover group.
Box 3: No
A failover group is a named group of databases managed by a single server or within a managed instance that can fail over as a unit to another region in case all or some primary databases become unavailable due to an outage in the primary region.
The secondary cannot be in the same region as the primary.
Reference:
https://docs.microsoft.com/en-us/azure/azure-sql/database/auto-failover-group-overview

 

NEW QUESTION 36
You have a server named Server1 that runs Windows Server 2019. Server1 is a container host.
You plan to create a container image.
You create the following instructions in a text editor.
FROM mcr.microsoft.com/windows/servercore:lts2019
LABEL maintainer="[email protected]"
RUN dism.exe /online /enable-feature /all /featurename:iis-webserver /NoRestart RUN echo "Hello World!" > c:\inetpub\wwwroot\index.html You need to be able to automate the container image creation by using the instructions.
To which file should you save the instructions?

  • A. daemon.json
  • B. Build.ini
  • C. Dockerfile
  • D. dockerconfig.json

Answer: C

Explanation:
Section: [none]
Explanation:
The Dockerfile is a text file that contains the instructions needed to create a new container image.
Reference:
https://docs.microsoft.com/en-us/virtualization/windowscontainers/manage-docker/manage-windows-dockerfile

 

NEW QUESTION 37
You have an Azure subscription that contains an Azure Sentinel workspace. Sentinel is configured to monitor several Azure resources.
You need to send notification emails to resource owners when alerts or recommendations are generated for a resource.
What should you use?

  • A. Azure Security Center
  • B. Logic Apps Designer
  • C. Azure Machine Learning Studio
  • D. Automation Runbook

Answer: B

Explanation:
Section: [none]
Explanation:
Currently there is no built-in functionality that notifies you via email if there is an incident that is generated in Azure Sentinel. However, you can set up an Azure Logic App playbook to send incident information to your email.
Reference:
https://azsec.azurewebsites.net/2020/01/19/notify-azure-sentinel-alert-to-your-email-automatically/

 

NEW QUESTION 38
SIMULATION
Click to expand each objective. To connect to the Azure portal, type https://portal.azure.com in the browser address bar.






When you are finished performing all the tasks, click the 'Next' button.
Note that you cannot return to the lab once you click the 'Next' button. Scoring occur in the background while you complete the rest of the exam.
Overview
The following section of the exam is a lab. In this section, you will perform a set of tasks in a live environment.
While most functionality will be available to you as it would be in a live environment, some functionality (e.g., copy and paste, ability to navigate to external websites) will not be possible by design.
Scoring is based on the outcome of performing the tasks stated in the lab. In other words, it doesn't matter how you accomplish the task, if you successfully perform it, you will earn credit for that task.
Labs are not timed separately, and this exam may have more than one lab that you must complete. You can use as much time as you would like to complete each lab. But, you should manage your time appropriately to ensure that you are able to complete the lab(s) and all other sections of the exam in the time provided.
Please note that once you submit your work by clicking the Next button within a lab, you will NOT be able to return to the lab.
To start the lab
You may start the lab by clicking the Next button.
You need to add a deployment slot named staging to an Azure web app named corplod10217507n4. The solution must meet the following requirements:
- When new code is deployed to staging, the code must be swapped automatically to the production slot.
- Azure-related costs must be minimized.
What should you do from the Azure portal?

Answer:

Explanation:
See explanation below.
Section: [none]
Explanation:
Step 1:
Locate and open the corplod10217507n4 web app.
1. In the Azure portal, on the left navigation panel, click Azure Active Directory.
2. In the Azure Active Directory blade, click Enterprise applications.
Step 2:
Open your app's resource blade and Choose the Deployment slots option, then click Add Slot.

Step 3:
In the Add a slot blade, give the slot a name, and select whether to clone app configuration from another existing deployment slot. Click the check mark to continue.
The first time you add a slot, you only have two choices: clone configuration from the default slot in production or not at all.
References:
https://docs.microsoft.com/en-us/azure/app-service/web-sites-staged-publishing

 

NEW QUESTION 39
You have an Azure subscription that contains the resources shown in the following table.

You need to deploy a load-balancing solution for two Azure web apps named App1 and App2 to meet the following requirements:
App1 must support command injection protection.
App2 must be able to use a static public IP address.
App1 must have a Service Level Agreement (SLA) of 99.99 percent.
App2 load balancing solution must be able to autoscale.
Which resource should you use as the load-balancing solution for each app? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.

Answer:

Explanation:

 

NEW QUESTION 40
You have an Azure virtual machine named VM1 that runs Windows Server 2016.
You install a line-to-business application on VM1.
You need to create an Azure virtual machine by using VM1 as a custom image.
Which three actions should you perform in sequence? To answer, move the appropriate actions from the list of actions to the answer area and arrange them in the correct order.

Answer:

Explanation:

1 - Run sysprep.exe on VM1.
2 - From Azure CLI, deallocate VM1 and mark VM1 as generalized
3 - Create a virtual machine scale set
References:
https://thesolving.com/server-room/when-and-how-to-use-sysprep/
https://docs.microsoft.com/en-us/azure/virtual-machine-scale-sets/tutorial-use-custom-image-powershell

 

NEW QUESTION 41
You have an Azure logic app named App1 and an Azure Service Bus queue named Queue1.
You need to ensure that App1 can read messages from Queue1. App1 must authenticate by using Azure Active Directory (Azure AD).
What should you do? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.

Answer:

Explanation:

Reference:
https://docs.microsoft.com/en-us/azure/service-bus-messaging/authenticate-application
https://docs.microsoft.com/en-us/azure/service-bus-messaging/service-bus-managed-service-identity

 

NEW QUESTION 42
You have a web server app named App1 that is hosted in three Azure regions.
You plan to use Azure Traffic Manager to distribute traffic optimally for App1.
You need to enable Real User Measurements to monitor the network latency data for App1.
What should you do? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.

Answer:

Explanation:

Reference:
https://docs.microsoft.com/en-us/azure/traffic-manager/traffic-manager-create-rum-web-pages

 

NEW QUESTION 43
You have an Azure virtual machine named VM1 and an Azure Active Directory (Azure AD) tenant named adatum.com.
D18912E1457D5D1DDCBD40AB3BF70D5D
VM1 has the following settings:
* IP address: 10.10.0.10
* System-assigned managed identity: On
You need to create a script that will run from within VM1 to retrieve the authentication token of VM1.
Which address should you use in the script?

  • A. vm1.adatum.com.onmicrosoft.com
  • B. 169.254.169.254
  • C. vm1.adatum.com
  • D. 10.10.0.10

Answer: B

Explanation:
Your code that's running on the VM can request a token from the Azure Instance Metadata Service identity endpoint, accessible only from within the VM: http://169.254.169.254/metadata/identity/oauth2/token Reference:
https://docs.microsoft.com/en-us/azure/active-directory/managed-identities-azure-resources/overview

 

NEW QUESTION 44
Your company has the groups shown in the following table.

The company has an Azure subscription that contains an Azure Active Directory (Azure AD) tenant named contoso.com.
An administrator named Admin1 attempts to enable Enterprise State Roaming for all the users in the Managers group.
Admin1 reports that the options for Enterprise State Roaming are unavailable from Azure AD.
You verify that Admin1 is assigned the Global administrator role.
You need to ensure that Admin1 can enable Enterprise State Roaming.
What should you do?

  • A. Purchase an Azure Rights Management (Azure RMS) license for each user in the Managers group.
  • B. Enforce Azure Multi-Factor Authentication (MFA) for Admin1.
  • C. Purchase an Azure AD Premium P1 license for each user in the Managers group.
  • D. Assign an Azure AD Privileged Identity Management (PIM) role to Admin1.

Answer: C

Explanation:
Enterprise State Roaming is available to any organization with an Azure AD Premium or Enterprise Mobility + Security (EMS) license.
References:
https://docs.microsoft.com/bs-latn-ba/azure/active-directory/devices/enterprise-state-roaming-enable

 

NEW QUESTION 45
Note: This question is part of series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution.
After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen.
You are planning to create a virtual network that has a scale set that contains six virtual machines (VMs).
A monitoring solution on a different network will need access to the VMs inside the scale set.
You need to define public access to the VMs.
Solution: Use Remote Desktop Protocol (RDP) to connect to the VM in the scale set.
Does the solution meet the goal?

  • A. Yes
  • B. No

Answer: A

Explanation:
Instead, deploy a standalone VM that has a public IP address to the virtual network.

 

NEW QUESTION 46
You have an Azure subscription that contains the resource groups shown in the following table.

RG1 contains the virtual machines shown in the following table.

RG2 contains the virtual machines shown in the following table.

All the virtual machines are configured to use premium disks and are accessible from the Internet.
VM1 and VM2 are in an available set named AVSET1. VM3 and VM4 are in the same availability zone and are in an availability set named AVSET2. VM5 and VM6 are in different availability zones.
For each of the following statements, select Yes if the statement is true. Otherwise, select No.
NOTE: Each correct selection is worth one point.

Answer:

Explanation:

 

NEW QUESTION 47
Note: This question is part of series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution.
After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen.
You have an Azure Active Directory (Azure AD) tenant named Adatum and an Azure Subscription named Subscription1. Adatum contains a group named Developers. Subscription1 contains a resource group named Dev.
You need to provide the Developers group with the ability to create Azure logic apps in the Dev resource group.
Solution: On Subscription1, you assign the DevTest Labs User role to the Developers group.
Does this meet the goal?

  • A. No
  • B. Yes

Answer: A

Explanation:
Section: [none]
Explanation:
The DevTest Labs User role lets you connect, start, restart, and shutdown your virtual machines in your Azure DevTest Labs.
References:
https://docs.microsoft.com/en-us/azure/role-based-access-control/built-in-roles#devtest-labs-user

 

NEW QUESTION 48
You have an Azure subscription that contains a policy-based virtual network gateway named GW1 and a virtual network named VNet1.
You need to ensure that you can configure a point-to-site connection from an on-premises computer to VNet1.
Which two actions should you perform? Each correct answer presents part of the solution.
NOTE: Each correct selection is worth one point.

  • A. Add a service endpoint to VNet1.
  • B. Add a connection to GW1.
  • C. Delete GW1.
  • D. Add a public IP address space to VNet1.
  • E. Reset GW1.
  • F. Create a route-based virtual network gateway.

Answer: C,F

Explanation:
Section: [none]
Explanation:
Need a RouteBased VPN gateway.

Reference:
https://github.com/MicrosoftDocs/azure-docs/blob/master/articles/vpn-gateway/vpn-gateway-howto-point-to- site-resource-manager-portal.md

 

NEW QUESTION 49
HOTSPOT
Your company has a virtualization environment that contains the virtualization hosts shown in the following table.

The virtual machines are configured as shown in the following table.

All the virtual machines use basic disks. VM1 is protected by using BitLocker Drive Encryption (BitLocker).
You plan to migrate the virtual machines to Azure by using Azure Site Recovery.
You need to identify which virtual machines can be migrated.
Which virtual machines should you identify for each server? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.
Hot Area:

Answer:

Explanation:

Section: [none]
Explanation:
Incorrect Answers:
VM1 cannot be migrates as it has BitLocker enabled.
VM2 cannot be migrates as the OS disk on VM2 is larger than 2TB.
VMC cannot be migrates as the Data disk on VMC is larger than 4TB.
Reference:
https://docs.microsoft.com/en-us/azure/site-recovery/hyper-v-azure-support-matrix#azure-vm-requirements

 

NEW QUESTION 50
You have an Azure subscription that contains the resource groups shown in the following table.

You create an Azure Resource Manager template named Template1 as shown in the following exhibit.

From the Azure portal, you deploy Template1 four times by using the settings shown in the following table.

What is the result of the deployment? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.

Answer:

Explanation:

 

NEW QUESTION 51
......

AZ-303 EXAM DUMPS WITH GUARANTEED SUCCESS: https://www.itpassleader.com/Microsoft/AZ-303-dumps-pass-exam.html

0
0
0
0