Question 156

You have an Azure subscription that contains a storage account.
You have an on-premises server named Server1 that runs Window Server 2016. Server1 has 2 TB of data.
You need to transfer the data to the storage account by using the Azure Import/Export service.
In which order should you perform the actions? To answer, move all actions from the list of actions to the answer area and arrange them in the correct order.
NOTE: More than one order of answer choices is correct. You will receive credit for any of the correct orders you select.

Question 157

You have an Azure virtual machine named VM1.
You use Azure Backup to create a backup of VM1 named Backup1.
After creating Backup1, you perform the following changes to VM1:
* Modify the size of VM1.
* Copy a file named Budget.xls to a folder named Data.
* Reset the password for the built-in administrator account.
* Add a data disk to VM1.
An administrator uses the Replace existing option to restore VM1 from Backup1.
You need to ensure that all the changes to VM1 are restored.
Which change should you perform again?
  • Question 158

    You have an Azure subscription.
    You plan to use Azure Resource Manager templates to deploy 50 Azure virtual machines that will be part of the same availability set.
    You need to ensure that as many virtual machines as possible are available if the fabric fails or during servicing.
    How should you configure the template? To answer, select the appropriate options in the answer area.
    NOTE: Each correct selection is worth one point.

    Question 159

    Case Study 3 - Contoso, Ltd
    Overview
    Contoso, Ltd. is a consulting company that has a main office in Montreal and two branch offices in Seattle and New York.
    The Montreal office has 2,000 employees. The Seattle office has 1,000 employees. The New York office has 200 employees.
    All the resources used by Contoso are hosted on-premises.
    Contoso creates a new Azure subscription. The Azure Active Directory (Azure AD) tenant uses adomain named contoso.onmicrosoft.com. The tenant uses the P1 pricing tier.
    Existing Environment
    The network contains an Active Directory forest named contoso.com. All domain controllers are configured as DNS servers and host the contoso.com DNS zone.
    Contoso has finance, human resources, sales, research, and information technology departments. Each department has an organizational unit (OU) that contains all the accounts of that respective department. All the user accounts have the department attribute set to their respective department. New users are added frequently.
    Contoso.com contains a user named User1.
    All the offices connect by using private links.
    Contoso has data centers in the Montreal and Seattle offices. Each data center has a firewall that can be configured as a VPN device.
    All infrastructure servers are virtualized.
    The virtualization environment contains the servers in the following table.

    Contoso uses two web applications named App1 and App2. Each instance on each web application requires 1GB of memory.
    The Azure subscription contains the resources in the following table.

    The network security team implements several network security groups (NSGs).
    Planned Changes
    Contoso plans to implement the following changes:
    - Deploy Azure ExpressRoute to the Montreal office.
    - Migrate the virtual machines hosted on Server1 and Server2 to Azure.
    - Synchronize on-premises Active Directory to Azure Active Directory
    (Azure AD).
    - Migrate App1 and App2 to two Azure web apps named WebApp1 and
    WebApp2.
    Technical requirements
    Contoso must meet the following technical requirements:
    - Ensure that WebApp1 can adjust the number of instances automatically
    based on the load and can scale up to five instances.
    - Ensure that VM3 can establish outbound connections over TCP port 8080 to the applications servers in the Montreal office.
    - Ensure that routing information is exchanged automatically between
    Azure and the routers in the Montreal office.
    - Ensure Azure Multi-Factor Authentication (MFA) for the users in the
    finance department only.
    - Ensure that webapp2.azurewebsites.net can be accessed by using the
    name app2.contoso.com
    - Connect the New York office to VNet1 over the Internet by using an
    encrypted connection.
    - Create a workflow to send an email message when the settings of VM4
    are modified.
    - Create a custom Azure role named Role1 that is based on the Reader
    role.
    - Minimize costs whenever possible.
    You discover that VM3 does NOT meet the technical requirements.
    You need to verify whether the issue relates to the NSGs.
    What should you use?
  • Question 160

    You have an Azure Active Directory (Azure AD) tenant named contoso.com. Multi-factor authentication (MFA) is enabled for all users.
    You need to provide users with the ability to bypass MFA for 10 days on devices to which they have successfully signed in by using MFA.
    What should you do?