Question 96

Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution.
After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen.
You have an Azure subscription named Sub1.
You have an Azure Storage account named Sa1 in a resource group named RG1.
Users and applications access the blob service and the file service in Sa1 by using several shared access signatures (SASs) and stored access policies.
You discover that unauthorized users accessed both the file service and the blob service.
You need to revoke all access to Sa1.
Solution: You create a lock on Sa1.
Does this meet the goal?
  • Question 97

    You have an Azure subscription that contains the following resources:
    * An Azure key vault
    * An Azure SQL database named Database1
    * Two Azure App Service web apps named AppSrv1 and AppSrv2 that are configured to use system-assigned managed identities and access Database1 You need to implement an encryption solution for Database1 that meets the following requirements:
    * The data in a column named Discount in Database1 must be encrypted so that only AppSrv1 can decrypt the data.
    * AppSrv1 and AppSrv2 must be authorized by using managed identities to obtain cryptographic keys.
    How should you configure the encryption settings fa Database1 To answer, select the appropriate options in the answer area.
    NOTE: Each correct selection is worth one point

    Question 98

    You have an Azure virtual machines shown in the following table.

    You create an Azure Log Analytics workspace named Analytics1 in RG1 in the East US region.
    Which virtual machines can be enrolled in Analytics1?
  • Question 99

    You have an Azure Active Directory (Azure AD) tenant that contains two administrative units named AU1 and AU2.
    Users are assigned to the administrative units as shown in the following table.

    Question 100

    Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution.
    After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen.
    You have a hybrid configuration of Azure Active Directory (Azure AD).
    You have an Azure HDInsight cluster on a virtual network.
    You plan to allow users to authenticate to the cluster by using their on-premises Active Directory credentials.
    You need to configure the environment to support the planned authentication.
    Solution: You deploy Azure Active Directory Domain Services (Azure AD DS) to the Azure subscription.
    Does this meet the goal?