Microsoft Microsoft Certifications AZ-104 Questions & Answers
Question 61:
You have five Azure virtual machines that run Windows Server 2016. The virtual machines are configured as web servers.
You have an Azure load balancer named LB1 that provides load balancing services for the virtual machines.
You need to ensure that visitors are serviced by the same web server for each request.
What should you configure?
A. Session persistence to Client IP and protocol
B. Protocol to UDP
C. Session persistence to None
D. Floating IP (direct server return) to Disabled
Correct Answer: A
Azure Load Balancer supports the following distribution modes for routing connections to instances in the backend pool:
*
Session persistence: Client IP
Traffic from the same client IP is routed to the same backend instance.
*
Hash based
Traffic from the same client IP routed to any healthy instance in the backend pool.
Note: Session persistence Session persistence is also known session affinity, source IP affinity, or client IP affinity. This distribution mode uses a two-tuple (source IP and destination IP) or three-tuple (source IP, destination IP, and protocol type) hash to route to backend instances. When using session persistence, connections from the same client will go to the same backend instance within the backend pool.
Incorrect:
* Floating IP Floating IP is Azure's terminology for a portion of what is known as Direct Server Return (DSR). DSR consists of two parts: a flow topology and an IP address mapping scheme. At a platform level, Azure Load Balancer always operates in a DSR flow topology regardless of whether Floating IP is enabled or not. This means that the outbound part of a flow is always correctly rewritten to flow directly back to the origin.
With the default rule type, Azure exposes a traditional load balancing IP address mapping scheme for ease of use. Enabling Floating IP changes, the IP address mapping scheme to allow for more flexibility.
https://learn.microsoft.com/en-us/azure/virtual-network/ip-services/configure-public-ip-firewall Azure Firewall is a cloud-based network security service that protects your Azure Virtual Network resources. Azure Firewall requires at least one public static IP address to be configured. This IP or set of IPs are used as the external connection point to the firewall. Azure Firewall supports standard SKU public IP addresses. Basic SKU public IP address and public IP prefixes aren't supported.
Question 63:
You have an Azure subscription that contains a storage account named storage1 in the North Europe Azure region.
You need to ensure that when blob data is added to storage1, a secondary copy is created in the East US region. The solution must minimize administrative effort.
What should you configure?
A. operational backup
B. object replication
C. geo-redundant storage (GRS)
D. a lifecycle management rule
Correct Answer: B
Question 64:
You have an Azure subscription.
You need to receive an email alert when a resource lock is removed from any resource in the subscription.
What should you use to create an activity log alert in Azure Monitor?
A. a resource, a condition, and an action group
B. a resource, a condition, and a Microsoft 365 group
C. a Log Analytics workspace, a resource, and an action group
D. a data collection endpoint, an application security group, and a resource group
Correct Answer: A
Setting up alert on accidental removal of Resource locks Configure alerts This can be achieved in 3 simple steps
1.
Configure Alert Rule for the resource
2.
Create Action group for notification
3.
Test the configuration
Following are the detailed steps Configure Alert Rule for the resource
1.
Select the Resource Group wherein deletion of lock needs to be monitored. Select "Alerts" and create a "New alert rules"
2.
Check the scope, click "Add condition" and type lock in search to select "Delete management locks (Microsoft Authorization/locks)
Create Action Group for notification
3.
Click "Add action groups" and "Create action group"
4.
Enter "Action group name" and "Display name" and click "Next: Notifications". Action group is a collection of notification preferences defined by the owner of an Azure subscription.
5.
Enter "Notification name" and "Email" to provide notification. Once done click on "Review + create". Please note -- In your case this could be an email group as well.
6.
Enter "Alert rule name", "Description" and select "Enable alert rule upon creation"
Note - Please wait for few minutes for changes to be shown.
You plan to deploy the Azure container instances shown in the following table.
Which instances can you deploy to a container group?
A. Instance1 only
B. Instance2 only
C. Instance1 and Instance2 only
D. Instance3 and Instance4 only
Correct Answer: D
https://learn.microsoft.com/en-us/azure/container-instances/container-instances-container-groups Multi-container groups currently support only Linux containers. For Windows containers, Azure Container Instances only supports deployment of a single container instance. While we are working to bring all features to Windows containers, you can find current platform differences in the service
Question 66:
You have an Azure subscription named Subscription1.
You have 5 TB of data that you need to transfer to Subscription1.
You plan to use an Azure Import/Export job.
What can you use as the destination of the imported data?
A. Azure Blob Storage
B. Azure Data Lake Store
C. Azure SQL Database
D. a virtual machine
Correct Answer: A
Azure Import/Export service is used to securely import large amounts of data to Azure Blob storage and Azure Files by shipping disk drives to an Azure datacenter. This service can also be used to transfer data from Azure Blob storage to disk drives and ship to your on-premises sites. Data from one or more disk drives can be imported either to Azure Blob storage or Azure Files.
You have an Azure subscription that contains 10 virtual machines and the resources shown in the following table.
You need to ensure that Bastion1 can support 100 concurrent SSH users. The solution must minimize administrative effort. What should you do first?
A. Resize the subnet of Bastion1
B. Configure host scaling.
C. Create a network security group (NSG)
D. Upgrade Bastion1 to the Standard SKU
Correct Answer: D
Need to configure host scaling (see below). Azure Bastion supports up to 50 host instances. This feature is available for the Azure Bastion Standard SKU only. Incorrect:
*
Resize the subnet of Bastion1
First updated to the Standard SKU, then increase the subnet size.
Note: With a subnet size of /26 you have 64 hosts, but in fact only 62 useable hosts.
If the network size is increased to /25, you will have 112 hosts, and 110 useable hosts.
*
Configure host scaling Host scaling Azure Bastion supports manual host scaling. You can configure the number of host instances (scale units) in order to manage the number of concurrent RDP/SSH connections that Azure Bastion can support. Increasing the number of host instances lets Azure Bastion manage more concurrent sessions. Decreasing the number of instances decreases the number of concurrent supported sessions. Azure Bastion supports up to 50 host instances. This feature is available for the Azure Bastion Standard SKU only.
Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only Microsoft exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your AZ-104 exam preparations and Microsoft certification application, do not hesitate to visit our Vcedump.com to find your solutions here.