Microsoft AZ-102 Microsoft Azure Administrator Certification Transition Online Training
Microsoft AZ-102 Online Training
The questions for AZ-102 were last updated at Nov 22,2024.
- Exam Code: AZ-102
- Exam Name: Microsoft Azure Administrator Certification Transition
- Certification Provider: Microsoft
- Latest update: Nov 22,2024
Note: This question is part of a series of questions that present the same scenario. Each questions in the series contains a unique solution that might meet the stated goals. Some questions sets might have more than one correct solution, while others might not have a correct solution. Determine whether the solution meets the stated goals.
You have an Azure subscription that contains 10 virtual networks. The virtual networks are hosted in separate resource groups.
Another administrator plans to create several network security groups (NSGs) in the subscription.
You need to ensure that when an NSG is created, it automatically blocks TCP port 8080 between the virtual networks.
Solution: You create a resource lock, and then you assign the lock to the subscription.
Does this meet the goal?
- A . Yes
- B . No
You have an Azure Active Directory (Azure AD) domain that contains 5,000 user accounts.
You create a new user account named AdminUser1.
You need to assign the User administrator administrative role to AdminUser1.
What should you do from the user account properties?
- A . From the Directory role blade, modify the directory role.
- B . From the Groups blade, invite the user account to a new group.
- C . From the Licenses blade, assign a new license.
- D . From the Sign-Ins blade, download a script.
Your network contains an Active Directory domain named adatum.com and an Azure Active Directory (Azure AD) tenant named adatum.onmicrosoft.com.
Adatum.com contains the user accounts in the following table.
Adatum.onmicrosoft.com contains the user accounts in the following table.
You need to implement Azure AD Connect. The solution must follow the principle of least privilege.
Which user accounts should you use? (To answer, select the appropriate options in the answer area. NOTE: Each correct selection is worth one point.)
You have an Azure subscription named Subscription1. Subscription1 contains a virtual machine named VM1.
You install and configure a web server and a DNS server on VM1.
VM1 has the effective network security rules shown in the following exhibit.
Use the drop-down menus to select the answer choice that completes each statement based on the information presented in the graphic. (NOTE: Each correct selection is worth one point.)
- A . Internet users can connect to only the DNS server on VM1.
If you delete Rule2, Internet users can connect to only the web server on VM1. - B . Internet users can connect to only the web server on VM1.
If you delete Rule2, Internet users can connect to the web server and the DNS server on VM1. - C . Internet users can connect to only the web server on VM1.
If you delete Rule2, Internet users cannot connect to the web server and the DNS server on VM1. - D . Internet users can connect to only the web server and the DNS server on VM1.
If you delete Rule2, Internet users can connect to only the DNS server on VM1. - E . Internet users cannot connect to the web server and the DNS server on VM1.
If you delete Rule2, Internet users can connect to the web server and the DNS server on VM1. - F . Internet users cannot connect to the web server and the DNS server on VM1.
If you delete Rule2, Internet users can connect to only the DNS server on VM1.
You are an administrator for your company.
You have peering configured as shown in the following exhibit.
Use the drop-down menus to select the answer choice that completes each statement based on the information presented in the graphic. (NOTE: Each correct selection is worth one point.)
- A . Hosts on VNet6 can communicate with hosts on VNet6 only
To change the status of the peering connection to VNet1 to Connected, you must first delete peering1 - B . Hosts on VNet6 can communicate with hosts on VNet6 only
To change the status of the peering connection to VNet1 to Connected, you must first modify the address space - C . Hosts on VNet6 can communicate with hosts on VNet6 and VNet1 only
To change the status of the peering connection to VNet1 to Connected, you must first modify the address space - D . Hosts on VNet6 can communicate with hosts on VNet6 and VNet1 only
To change the status of the peering connection to VNet1 to Connected, you must first add a service endpoint - E . Hosts on VNet6 can communicate with hosts on VNet6 and VNet1 and VNet2 only
To change the status of the peering connection to VNet1 to Connected, you must first add a service endpoint - F . Hosts on VNet6 can communicate with hosts on all the virtual networks in the subscription
To change the status of the peering connection to VNet1 to Connected, you must first add a subnet
You are an administrator for a company. You have an Azure subscription named Subscription1. Subscription1 contains the virtual networks in the following table.
Subscription1 contains the virtual machines in the following table:
The firewalls on all the virtual machines are configured to allow all ICMP traffic.
You add the peerings in the following table.
For each of the following statements, select Yes if the statement is true. Otherwise, select No.
(NOTE: Each correct selection is worth one point.)
Note: This question is part of a series of questions that present the same scenario. Each questions in the series contains a unique solution that might meet the stated goals. Some questions sets might have more than one correct solution, while others might not have a correct solution. Determine whether the solution meets the stated goals.
You have an Azure subscription named Subscription1. The subscription contains an Azure Active Directory (Azure AD) tenant named Adatum and a resource group named Dev. Adatum contains a group named Developers.
You need to provide the Developers group with the ability to create Azure logic apps in the Dev resource group.
Solution: On Subscription1, you assign the Logic App Operator role to the Developers group.
Does this meet the goal?
- A . Yes
- B . No
Note: This question is part of a series of questions that present the same scenario. Each questions in the series contains a unique solution that might meet the stated goals. Some questions sets might have more than one correct solution, while others might not have a correct solution. Determine whether the solution meets the stated goals.
You have an Azure subscription named Subscription1. The subscription contains an Azure Active Directory (Azure AD) tenant named Adatum and a resource group named Dev. Adatum contains a group named Developers.
You need to provide the Developers group with the ability to create Azure logic apps in the Dev resource group.
Solution: On Subscription1, you assign the DevTest Labs User role to the Developers group.
Does this meet the goal?
- A . Yes
- B . No
Note: This question is part of a series of questions that present the same scenario. Each questions in the series contains a unique solution that might meet the stated goals. Some questions sets might have more than one correct solution, while others might not have a correct solution. Determine whether the solution meets the stated goals.
You manage a virtual network named VNet1 that is hosted in the West US Azure region. VNet1 hosts two virtual machines named VM1 and VM2 that run Windows Server.
You need to inspect all the network traffic from VM1 to VM2 for a period of three hours.
Solution: From Performance Monitor, you create a Data Collector Set (DCS).
Does this meet the goal?
- A . Yes
- B . No
Note: This question is part of a series of questions that present the same scenario. Each questions in the series contains a unique solution that might meet the stated goals. Some questions sets might have more than one correct solution, while others might not have a correct solution. Determine whether the solution meets the stated goals.
You manage a virtual network named VNet1 that is hosted in the West US Azure region. VNet1 hosts two virtual machines named VM1 and VM2 that run Windows Server.
You need to inspect all the network traffic from VM1 to VM2 for a period of three hours.
Solution: From Azure Network Watcher, you create a packet capture.
Does this meet the goal?
- A . Yes
- B . No