AZ-104 Microsoft Azure Administrator Flashcards
Azure’s cloud-based identity and access management service that provides authentication and authorization for users, groups, and applications.
Azure Active Directory
A dedicated instance of Azure AD that represents an organization or a single directory.
Azure AD Tenants
Custom domains that can be added to Azure AD to allow users to sign in using their organization’s domain name.
Azure Custom Domains
User accounts created in Azure AD for authentication and access control.
Azure AD Users
Groups created in Azure AD to manage and organize users for easier administration and access control.
Azure AD Groups
Subscriptions or licenses assigned to Azure AD users to grant access to specific features and services.
Azure AD Licenses
A logical grouping mechanism in Azure AD that allows for more granular administrative control over resources.
Azure Administrative Units
A feature in Azure AD that enables users to reset their passwords without the need for assistance from IT administrators.
Azure Self-Service Password Reset
A security model in Azure that assigns permissions to users based on their roles and responsibilities.
Role-based access control (RBAC)
Predefined roles in Azure that grant specific administrative permissions to users or groups.
Azure Administrative Roles
Custom-defined roles in Azure that allow for more fine-grained control over permissions by specifying specific actions and resources.
Custom RBAC Roles
The scope at which resource groups are defined and used to organize and manage Azure resources.
Resource Group Scope
Containers used to organize and manage Azure resources based on a common lifecycle or application.
Resource Groups
The main interface in the Azure portal where users can view and manage their Azure subscriptions and resources.
Subscription Dashboard
A service in Azure that helps users monitor and control their Azure spending and optimize resource usage.
Cost Management
A feature in Azure that allows users to lock resources to prevent accidental deletion or modification.
Resource Locks
A service in Azure that enables users to define and enforce rules and policies for resource compliance and governance.
Azure Policy
A secure and scalable Azure service that provides storage for various types of data.
Storage Account
The networking configuration of a storage account that allows public access to the storage resources.
Storage Account: Public Networking
The networking configuration of a storage account that restricts access to the storage resources within a virtual network.
Storage Account: Private Networking
Advanced Options: Additional configuration settings for a storage account, such as data lake storage, hierarchical namespace, etc.
Storage Account: Advanced Options
Mechanisms and features provided by Azure for ensuring the integrity and durability of data stored in a storage account.
Storage Account: Data Protection
The process of encrypting data stored in a storage account to protect it from unauthorized access.
Storage Account: Encryption
The completion and activation of a storage account after all the necessary settings and configurations have been defined.
Storage Account: Final Creation
Binary Large Objects (Blobs) are a type of storage object in Azure used for storing unstructured data.
Storage Account: Blobs
Azure Files is a storage service that provides fully managed file shares in the cloud.
Storage Account: Files
Azure Queue storage is a messaging service that enables reliable and asynchronous communication between components of distributed applications.
Storage Account: Queues
Azure Table storage is a NoSQL key-value store that provides schema-less storage of structured data.
Storage Account: Tables
Authentication keys associated with a storage account that can be used to access and manage the storage resources.
Access Keys
A secure way to provide limited access to storage resources in a storage account without sharing the account keys.
SAS (Shared Access Signature)
A feature in Azure storage that allows users to define fine-grained access permissions for shared access signatures.
Stored Access Policies
Storage redundancy options in Azure that provide data replication and fault tolerance for high availability and durability.
Redundant Storage
Different storage performance and cost options available in Azure, such as hot, cool, and archive tiers.
Access Tiers
A service in Azure that collects and analyzes log and performance data from various resources for monitoring and troubleshooting.
Log Analytics
Azure AD integration with Azure storage that enables granular access control based on user identities and groups.
Azure AD Access Control for Storage
A feature in Azure storage that automates the movement and deletion of data based on specified rules and policies.
Lifecycle Management
A virtual hard disk attached to an Azure virtual machine for storing data.
Azure Data Disk
A command-line utility used for copying data to and from Azure storage.
AzCopy
A web-based tool in the Azure portal for managing and interacting with storage accounts and their contents.
Storage Browser
A feature in Azure storage that enables automatic replication of data between storage accounts in different regions for redundancy.
Object Replication
A fully managed file share in Azure that can be accessed and shared across multiple virtual machines.
Azure file share