Microsoft AZ-304 Microsoft Azure Architect Design Online Training
Microsoft AZ-304 Online Training
The questions for AZ-304 were last updated at Nov 23,2024.
- Exam Code: AZ-304
- Exam Name: Microsoft Azure Architect Design
- Certification Provider: Microsoft
- Latest update: Nov 23,2024
You have an on-premises Hyper-V cluster. The cluster contains Hyper-V hosts that run Windows Server 2016 Datacenter. The hosts are licensed under a Microsoft Enterprise Agreement that has Software Assurance.
The Hyper-V cluster hosts 3 virtual machines that run Windows Server 2012 R2. Each virtual machine runs a different workload. The workloads have predictable consumption patterns.
You plan to replace the virtual machines with Azure virtual machines that run Windows
Server 2016. The virtual machines will be sized according to the consumption pattern of each workload.
You need to recommend a solution to minimize the compute costs of the Azure virtual machines.
Which two recommendations should you include in the solution? Each correct answer presents part of the solution. NOTE: Each correct selection is worth one point.
- A . Purchase Azure Reserved Virtual Machine Instances for the Azure virtual machines
- B . Create a virtual machine scale set that uses autoscaling
- C . Configure a spending limit in the Azure account center
- D . Create a lab in Azure DevTest Labs and place the Azure virtual machines in the lab
- E . Activate Azure Hybrid Benefit for the Azure virtual machines
HOTSPOT
You plan to deploy logical Azure SQL Database servers to the East US Azure region and the West US Azure region. Each server will contain 20 databases. Each database will be accessed by a different user who resides in a different on-premises location. The databases will be configured to use active geo-replication.
You need to recommend a solution that meets the following requirements:
✑ Restricts user access to each database
✑ Restricts network access to each database based on each user’s respective location
✑ Ensures that the databases remain accessible from client applications if the local Azure region fails
What should you include in the recommendation? To answer, select the appropriate options in the answer area. NOTE: Each correct selection is worth one point.
Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution.
After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen.
Your company has deployed several virtual machines (VMs) on-premises and to Azure.
Azure ExpressRoute has been deployed and configured for on-premises to Azure connectivity.
Several VMs are exhibiting network connectivity issues.
You need to analyze the network traffic to determine whether packets are being allowed or denied to the VMs.
Solution: Install and configure the Microsoft Monitoring Agent and the Dependency Agent on all VMs. Use the Wire Data solution in Azure Monitor to analyze the network traffic.
Does the solution meet the goal?
- A . Yes
- B . No
DRAG DROP
Your company has users who work remotely from laptops.
You plan to move some of the applications accessed by the remote users to Azure virtual machines. The users will access the applications in Azure by using a point-to-site VPN connection. You will use certificates generated from an on-premises-based certification authority (CA).
You need to recommend which certificates are required for the deployment.
What should you include in the recommendation? To answer, drag the appropriate certificates to the correct targets. Each certificate may be used once, more than once, or not at all. You may need to drag the split bar between panes or scroll to view content. NOTE: Each correct selection is worth one point.
Your company wants to use an Azure Active Directory (Azure AD) hybrid identity solution.
You need to ensure that users can authenticate if the internet connection to the on-premises Active Directory is unavailable. The solution must minimize authentication prompts for the users.
What should you include in the solution?
- A . an Active Directory Federation Services (AD FS) server
- B . pass-through authentication and Azure AD Seamless Single Sign-On (Azure AD Seamless SSO)
- C . password hash synchronization and Azure AD Seamless Single Sign-On (Azure AD Seamless SSO)
You have 100 Microsoft SQL Server integration Services (SSIS) packages that are configured to use 10 on-premises SQL Server databases as their destinations.
You plan to migrate the 10 on-premises databases to Azure SQL Database
You need to recommend a solution to host the SSlS packages in Azure. The solution must ensure that the packages can target the SQL Database instances as their destinations.
What should you include in the recommendation?
- A . SQL Server Migration Assistant (SSMA)
- B . Azure Data Catalog
- C . Data Migration Assistant
- D . Azure Data Factory
The developers at your company are building a containerized Python Django app.
You need to recommend platform to host the app.
The solution must meet the following requirements:
✑ Support autoscaling.
✑ Support continuous deployment from an Azure Container Registry.
✑ Provide built-in functionality to authenticate app users by using Azure Active Directory (Azure AD).
Which platform should you include in the recommendation?
- A . Azure Container instances
- B . an Azure App Service instance that uses containers
- C . Azure Kubernetes Service (AKS)
Your company purchases an app named App1.
You need to recommend a solution 10 ensure that App 1 can read and modify access reviews.
What should you recommend?
- A . From the Azure Active Directory admin center, register App1. and then delegate permissions to the Microsoft Graph API.
- B . From the Azure Active Directory admin center, register App1. from the Access control (IAM) blade, delegate permissions.
- C . From API Management services, publish the API of App1. and then delegate
permissions to the Microsoft Graph API. - D . From API Management services, publish the API of App1 From the Access control (IAM) blade, delegate permissions.
You need to design a highly available Azure SQL database that meets the following requirements:
• Failover between replicas of the database must occur without any data loss.
• The database must remain available In the event of a zone outage.
• Costs must be minimized.
Which deployment option should you use?
- A . Azure SQL Database Hyperscale
- B . Azure SQL Database Premium
- C . Azure SQL Database Serverless
- D . Azure SQL Database Managed Instance General Purpose
HOTSPOT
You plan to deploy the backup policy shown in the following exhibit.
Use the drop-down menus to select the answer choice that completes each statement based on the information presented in the graphic. NOTE: Each correct selection is worth one point.