Microsoft AZ-102 Exam Questions 2019

★ Pass on Your First TRY ★ 100% Money Back Guarantee ★ Realistic Practice Exam Questions

Free Instant Download NEW AZ-102 Exam Dumps (PDF & VCE):
Available on: https://www.certleader.com/AZ-102-dumps.html


We provide AZ-102 Dumps which are the best for clearing AZ-102 test, and to get certified by Microsoft Microsoft Azure Administrator Certification Transition. The AZ-102 Dumps covers all the knowledge points of the real AZ-102 exam. Crack your Microsoft AZ-102 Exam with latest dumps, guaranteed!

Free demo questions for Microsoft AZ-102 Exam Dumps Below:

NEW QUESTION 1
You have an Azure subscription that contains two resource groups named RG1 and RG2. RG2 does not contain any resources. RG1 contains the resources in the following table.
AZ-102 dumps exhibit
Which resource can you move to RG2?

  • A. W10_OsDisk
  • B. VNet1
  • C. VNet3
  • D. W10

Answer: B

Explanation: When moving a virtual network, you must also move its dependent resources. For example, you must move gateways with the virtual network. VM W10, which is in Vnet1, is not a dependent resource.
Incorrect Answers:
A: Managed disks don't support move.
C: Virtual networks (classic) can't be moved.
D: Virtual machines with the managed disks cannot be moved.
References: https://docs.microsoft.com/en-us/azure/azure-resource-manager/resource-groupmove- resources#virtual-machines-limitations

NEW QUESTION 2
Note: This questions is part of a series of questions that present the same scenario. Each questions in the series contains a unique solution that might meet the stated goals. Some questions sets might have more than one correct solution, while others might not have a correct solution. After you answer a questions in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen.
You have an Azure subscription that contains 10 virtual networks. The virtual networks are hosted in separate resource groups.
Another administrator plans to create several network security groups (NSGs) in the subscription. You need to ensure that when an NSG is created, it automatically blocks TCP port 8080 between the virtual networks.
Solution: You configure a custom policy definition, and then you assign the policy to the subscription. Does this meet the goal?

  • A. Yes
  • B. No

Answer: A

Explanation: Resource policy definition used by Azure Policy enables you to establish conventions for resources in your organization by describing when the policy is enforced and what effect to take. By defining conventions, you can control costs and more easily manage your resources.
References: https://docs.microsoft.com/en-us/azure/azure-policy/policy-definition

NEW QUESTION 3
Note: This question is part of a series of questions that present the same scenario goals. Some question sets might have more than one correct solution, while others
ion in the series contains a unique solution that might meet the stated not have a correct solution. After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen.
You have an Azure web app named Appl. App1 runs in an Azure App Service plan named Plan1. Plan1 is associated to the Free pricing tier.
You discover that App1 stops each day after running continuously for 60 minutes. You need to ensure that App1 can run continuously for the entire day.
Solution: You add a triggered WebJob to App1. Does this meet the goal?

  • A. Yes
  • B. No

Answer: B

Explanation: You need to change to Basic pricing Tier.
Note: The Free Tier provides 60 CPU minutes / day. This explains why App1 is stops. The Basic tier has no such cap.
References:
https://azure.microsoft.com/en-us/pricing/details/app-service/windows/

NEW QUESTION 4
HOT SPOT
You have an Azure subscription named Subscrption1 that is associated to an Azure Active Directory (Azure AD) tenant named AAD1.
Subscription1 contains the objects in the following table:
AZ-102 dumps exhibit
You plan to create a single backup policy for Vault1. To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.
AZ-102 dumps exhibit

    Answer:

    Explanation: Box 1: RG1 only Box 2: 99 years
    With the latest update to Azure Backup, customers can retain their data for up to 99 years in Azure. Note: A backup policy defines a matrix of when the data snapshots are taken, and how long those snapshots are retained.
    The backup policy interface looks like this:
    AZ-102 dumps exhibit
    References: https://docs.microsoft.com/en-us/azure/backup/backup-azure-vms-first-lookarm# defining-a-backup-policy
    https://blogs.microsoft.com/firehose/2015/02/16/february-update-to-azure-backup-includes-dataretention- up-to-99-years-offline-backup-and-more/

    NEW QUESTION 5
    You have two Azure Active Directory (Azure AD) tenants named contoso.com and fabrikam.com. You have a Microsoft account that you use to sign in to both tenants.
    You need to configure the default sign-in tenant for the Azure portal. What should you do?

    • A. From the Azure portal, configure the portal settings.
    • B. From the Azure portal, change the directory.
    • C. From Azure Cloud Shell, run Set-AzureRmContext.
    • D. From Azure Cloud Shell, run Set-AzureRmSubscriptio

    Answer: B

    Explanation: Change the subscription directory in the Azure portal.
    The classic portal feature Edit Directory, that allows you to associate an existing subscription to your Azure Active Directory (AAD), is now available in Azure portal. It used to be available only to Service Admins with Microsoft accounts, but now it's available to users with AAD accounts as well.
    To get started:
    Go to Subscriptions. Select a subscription. Select Change directory. Incorrect Answers:
    C: The Set-AzureRmContext cmdlet sets authentication information for cmdlets that you run in the current session. The context includes tenant, subscription, and environment information. References: https://azure.microsoft.com/en-us/updates/edit-directory-now-in-new-portal/

    NEW QUESTION 6
    HOT SPOT
    You have an Azure subscription.
    You need to implement a custom policy that meet the following requirements:
    *Ensures that each new resource group in the subscription has a tag named organization set to a value of Contoso.
    *Ensures that resource group can be created from the Azure portal.
    *Ensures that compliance reports in the Azure portal are accurate.
    How should you complete the policy? To answer, select the appropriate options in the answers area.
    AZ-102 dumps exhibit

      Answer:

      Explanation: References: https://docs.microsoft.com/en-us/azure/governance/policy/concepts/definitionstructure

      NEW QUESTION 7
      Your company recently hired a user named janet-7509087@ExamUsers.com.
      You need to ensure that janet-7509087@ ExamUsers.com can connect to load balancer named Web- LAB. The solution must ensure that janet-7509087@ ExamUsers.com can modify the backend pools. What should you do from the Azure portal?

        Answer:

        Explanation: Step 1:
        In the navigation list, choose Load Balancer.
        AZ-102 dumps exhibit
        Step 2:
        Locate the load balancer named Web-ALB, and click the Access icon. Step3:
        In the Users blade, click Roles. In the Roles blade, click Add to add permissions for the user Janet- 7509087@ExamUsers.com.
        Step 4:
        Add permission to modify backend pools References:
        https://docs.microsoft.com/en-us/azure/azure-stack/azure-stack-manage-permissions

        NEW QUESTION 8
        You have two Azure virtual networks named VNet1 and VNet2. VNet1 contains an Azure virtual
        machine named VM1. VNet2 contains an Azure virtual machine named VM2. VM1 hosts a frontend application that connects to VM2 to retrieve data. Users report that the frontend application is slower than usual.
        You need to view the average round-trip time (RTT) of the packets from VM1 to VM2. Which Azure Network Watcher feature should you use?

        • A. NSG flow logs
        • B. Connection troubleshoot
        • C. IP flow verify
        • D. Connection monitor

        Answer: D

        Explanation: The Connection Monitor feature in Azure Network Watcher is now generally available in all public regions. Connection Monitor provides you RTT values on a per-minute granularity. You can monitor a direct TCP connection from a virtual machine to a virtual machine, FQDN, URI, or IPv4 address. References:
        https://azure.microsoft.com/en-us/updates/general-availability-azure-network-watcher-connectionmonitor- in-all-public-regions/

        NEW QUESTION 9
        You have an Azure subscription that contains a virtual machine named VM1. VM1 hosts a line-ofbusiness application that is available 24 hours a day. VM1 has one network interface and one
        managed disk. VM1 uses the D4s v3 size.
        You plan to make the following changes to VM1: Change the size to D8s v3.
        Add a 500-GB managed disk. Add the Puppet Agent extension.
        Attach an additional network interface. Which change will cause downtime for VM1?

        • A. Add a 500-GB managed disk.
        • B. Attach an additional network interface.
        • C. Add the Puppet Agent extension.
        • D. Change the size to D8s v3.

        Answer: D

        Explanation: While resizing the VM it must be in a stopped state.
        References: https://azure.microsoft.com/en-us/blog/resize-virtual-machines/

        NEW QUESTION 10
        HOT SPOT
        You have an Azure subscription named Subscription1 that contains a virtual network named VNet1. You add the users in the following table.
        AZ-102 dumps exhibit
        Which user can perform each configuration? To answer, select the appropriate options in the answer area.
        NOTE: Each correct selection is worth one point.
        AZ-102 dumps exhibit

          Answer:

          Explanation: Box 1: User1 and User3 only.
          The Owner Role lets you manage everything, including access to resources. The Network Contributor role lets you manage networks, but not access to them. Box 2: User1 and User2 only
          The Security Admin role: In Security Center only: Can view security policies, view security states, edit security policies, view alerts and recommendations, dismiss alerts and recommendations.
          References:
          https://docs.microsoft.com/en-us/azure/role-based-access-control/built-in-roles

          NEW QUESTION 11
          You have an Azure subscription named Subscription1 that is used be several departments at your company. Subscription1 contains the resources in the following table:
          AZ-102 dumps exhibit
          Another administrator deploys a virtual machine named VM1 and an Azure Storage account named Storage2 by using a single Azure Resource Manager template.
          You need to view the template used for the deployment.
          From which blade can you view the template that was used for the deployment?

          • A. RG1
          • B. VM1
          • C. Storage1
          • D. Container1

          Answer: A

          Explanation: 1. View template from deployment history
          Go to the resource group for your new resource group. Notice that the portal shows the result of the last deployment. Select this link.
          AZ-102 dumps exhibit
          2. You see a history of deployments for the group. In your case, the portal probably lists only one deployment. Select this deployment.
          AZ-102 dumps exhibit
          The portal displays a summary of the deployment. The summary includes the status of the deployment and its operations and the values that you provided for parameters. To see the template that you used for the deployment, select View template.
          AZ-102 dumps exhibit
          References: https://docs.microsoft.com/en-us/azure/azure-resource-manager/resource-managerexport- template

          NEW QUESTION 12
          You have a public load balancer that balancer ports 80 and 443 across three virtual machines. You need to direct all the Remote Desktop protocol (RDP) to VM3 only.
          What should you configure?

          • A. an inbound NAT rule
          • B. a load public balancing rule
          • C. a new public load balancer for VM3
          • D. a new IP configuration

          Answer: A

          Explanation: To port forward traffic to a specific port on specific VMs use an inbound network address translation (NAT) rule.
          Incorrect Answers:
          B: Load-balancing rule to distribute traffic that arrives at frontend to backend pool instances. References:
          https://docs.microsoft.com/en-us/azure/load-balancer/load-balancer-overview

          NEW QUESTION 13
          HOT SPOT
          You need to implement App2 to meet the application? To answer, select the appropriate options in the answer area.
          NOTE: Each correct selection is worth one point.
          AZ-102 dumps exhibit

            Answer:

            Explanation: Box 1: Standard
            Not Shared: A Shared plan does not support Always on. Box 2: Always on
            If your function app is on the Consumption plan, there can be up to a 10-minute delay in processing new blobs if a function app has gone idle. To avoid this cold-start delay, you can switch to an App Service plan with Always On enabled, or use a different trigger type.
            Scenario: A newly developed API must be implemented as an Azure function named App2. App2 will use a blob storage trigger. App2 must process new blobs immediately.
            App2 must be able to connect directly to the private IP addresses of the Azure virtual machines. App2 will be deployed directly to an Azure virtual network.
            The cost of App1 and App2 must be minimized. References:
            https://docs.microsoft.com/en-us/azure/azure-functions/functions-bindings-storage-blob https://azure.microsoft.com/en-us/pricing/details/app-service/plans/

            Case Study: 13 Mix Questions Set F

            NEW QUESTION 14
            You have an Azure subscription.
            You plan to use Azure Resource Manager templates to deploy 50 Azure virtual machines that will be part of the same availability set.
            You need to ensure that as many virtual machines as possible are available if the fabric fails or during servicing.
            How should you configure the template? To answer, select the appropriate options in the answer area.
            NOTE: Each correct selection is worth one point.
            AZ-102 dumps exhibit
            Select two alternatives below.

            • A. platformFaultDomainCount: 0
            • B. platformFaultDomainCount: 1
            • C. platformFaultDomainCount: 2
            • D. platformFaultDomainCount: 3
            • E. platformFaultDomainCount: 4
            • F. platformUpdateDomainCount: 10
            • G. platformUpdateDomainCount: 20
            • H. platformUpdateDomainCount: 25
            • I. platformUpdateDomainCount: 30
            • J. platformUpdateDomainCount: 40
            • K. platformUpdateDomainCount: 50

            Answer: CG

            Explanation: Use two fault domains.
            2 or 3 is max, depending on which region you are in. Use 20 for platformUpdateDomainCount
            Increasing the update domain (platformUpdateDomainCount) helps with capacity and availability planning when the platform reboots nodes. A higher number for the pool (20 is max) means that fewer of their nodes in any given availability set would be rebooted at once.
            References:
            https://www.itprotoday.com/microsoft-azure/check-if-azure-region-supports-2-or-3-fault-domainsmanaged- disks
            https://github.com/Azure/acs-engine/issues/1030

            NEW QUESTION 15
            SIMULATION
            Click to expand each objective. To connect to the Azure portal, type https://portal.azure.com in the browser address bar.
            AZ-102 dumps exhibit
            AZ-102 dumps exhibit
            AZ-102 dumps exhibit
            When you are finished performing all the tasks, click the ‘Next’ button.
            Note that you cannot return to the lab once you click the ‘Next’ button. Scoring occur in the background while you complete the rest of the exam.
            Overview
            The following section of the exam is a lab. In this section, you will perform a set of tasks in a live environment. While most functionality will be available to you as it would be in a live environment, some functionality (e.g., copy and paste, ability to navigate to external websites) will not be possible by design. Scoring is based on the outcome of performing the tasks stated in the lab. In other words, it doesn’t matter how you accomplish the task, if you successfully perform it, you will earn credit for that task.
            Labs are not timed separately, and this exam may have more than one lab that you must complete. You can use as much time as you would like to complete each lab. But, you should manage your time appropriately to ensure that you are able to complete the lab(s) and all other sections of the exam in the time provided.
            Please note that once you submit your work by clicking the Next button within a lab, you will NOT be able to return to the lab.
            To start the lab
            You may start the lab by clicking the Next button.
            You plan to protect on-premises virtual machines and Azure virtual machines by using Azure Backup. You need to prepare the backup infrastructure in Azure. The solution must minimize the cost of storing the backups in Azure.
            What should you do from the Azure portal?

              Answer:

              Explanation: First, create Recovery Services vault.
              Step 1: On the left-hand menu, select All services and in the services list, type Recovery Services. As you type, the list of resources filters. When you see Recovery Services vaults in the list, select it to open the Recovery Services vaults menu.
              AZ-102 dumps exhibit
              Step 2: In the Recovery Services vaults menu, click Add to open the Recovery Services vault menu.
              AZ-102 dumps exhibit
              Step 3: In the Recovery Services vault menu, for example, Type myRecoveryServicesVault in Name.
              The current subscription ID appears in Subscription. If you have additional subscriptions, you could choose another subscription for the new vault.
              For Resource group select Use existing and choose myResourceGroup. If myResourceGroup doesn't exist, select Create new and type myResourceGroup.
              From the Location drop-down menu, choose West Europe. Click Create to create your Recovery Services vault.
              References: https://docs.microsoft.com/en-us/azure/backup/tutorial-backup-vm-at-scale

              NEW QUESTION 16
              You plan to connect a virtual network named VNET1017 to your on-premises network by using both an Azure ExpressRoute and a site-to-site VPN connection.
              You need to prepare the Azure environment for the planned deployment. The solution must maximize the IP address space available to Azure virtual machines.
              What should you do from the Azure portal before you create the ExpressRoute are the VPN gateway?

                Answer:

                Explanation: We need to create a Gateway subnet Step 1:
                Go to More Services > Virtual Networks Step 2:
                Then click on the VNET1017, and click on subnets. Then click on gateway subnet.
                Step 3:
                In the next window define the subnet for the gateway and click OK
                AZ-102 dumps exhibit
                It is recommended to use /28 or /27 for gateway subnet.
                As we want to maximize the IP address space we should use /27. References:
                https://blogs.technet.microsoft.com/canitpro/2017/06/28/step-by-step-configuring-a-site-to-sitevpn- gateway-between-azure-and-on-premise/

                100% Valid and Newest Version AZ-102 Questions & Answers shared by Surepassexam, Get Full Dumps HERE: https://www.surepassexam.com/AZ-102-exam-dumps.html (New 195 Q&As)