AZ-900 Flashcards

1
Q

What is cloud computing?

A

delivery of services over the internet

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

What is a private cloud?

A

A cloud used by a single entity

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

What is a public cloud?

A

a cloud that is built, controlled, and maintained by a third party provider

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

What is a multi-cloud model?

A

Where you use multiple public cloud providers

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

What is the set of technologies that helps to manage your environment called?

A

Azure Arc

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

What is CapEx?

A

Capital Expenditures

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

What is OpEx?

A

Operational Expenditures

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

Which cloud model uses some datacenters focused on providing cloud services to anyone that wants them, and some data centers that are focused on a single customer?

A

Hybrid Cloud

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

According to the shared responsibility model, which cloud service type places the most responsibility on the customer?

A

IaaS

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

What is vertically scaling in a cloud environment?

A

Gaining new features

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

What is horizontal scaling in a cloud environment?

A

Creating more of what you have deployed

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

Which type of scaling involves adding or removing resources (such as virtual machines or containers) to meet demand?

A

Horizontal Scaling

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

What is characterized as the ability of a system to recover from failures and continue to function?

A

Reliability

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

In IaaS, what is the cloud provider responsible for?

A

physical security, networking, hardware

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

What more does the cloud provider maintain in PaaS when compared to IaaS?

A

operating systems, middleware, development tools, and business intelligence services

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

Which cloud service type is most suited to a lift and shift migration from an on-premises datacenter to a cloud deployment?

A

IaaS

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
17
Q

What type of cloud service type would a Finance and Expense tracking solution typically be in?

A

SaaS

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
18
Q

Can Bash be used to control Azure?

A

Yes

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
19
Q

Can PowerShell be used to control Azure?

A

Yes

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
20
Q

What is Azure CLI interactive mode?

A

a way to interact with CLI in a way that more resembles an IDE

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
21
Q

What is a region?

A

a geographical area that contains at least one datacenter

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
22
Q

What are availability zones?

A

physically separate datacenters within an Azure region

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
23
Q

Does each availability zone have independent cooling, power, and networking?

A

Yes

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
24
Q

What is a resource in Azure?

A

a basic building block of Azure. Anything you create is a resource

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
25
Q

Are all resources required to be in a resource group?

A

Yes

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
26
Q

How many resource groups can a resource be a part of?

A

1

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
27
Q

What is an Azure subscription?

A

a unit of management, billing, and scale

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
28
Q

Must every Azure account have a subscription?

A

Yes

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
29
Q

Can an account have multiple subscriptions?

A

Yes

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
30
Q

What are the two types of subscription boundaries?

A

Billing boundary and access control boundary

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
31
Q

What are resource groups grouped under?

A

subscriptions

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
32
Q

What can manage subscriptions?

A

Management groups

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
33
Q

What happens to the resources within a resource group when an action or setting at the Resource Group level is applied?

A

The setting is applied to current and future resources

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
34
Q

What Azure feature replicates resources across regions that are at least 300 miles away from each other?

A

Region Pairs

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
35
Q

Are VM’s IaaS, PaaS, or SaaS?

A

IaaS

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
36
Q

What are VM scale sets?

A

Allows you to create and manage a group of identical load balanced VM’s

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
37
Q

What are VM availability sets?

A

allows you to build a more resilient, highly available environment by staggering updates and having different power and network sources

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
38
Q

What are the two domains in an availability set

A

Update domain and fault domain

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
39
Q

What is Azure Virtual Desktop?

A

A type of virtual machine that is a desktop and application virtualization service

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
40
Q

What should you use if you want to run multiple instances of an application on a single host machine?

A

Containers

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
41
Q

What are containers?

A

A virtualization enviroment

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
42
Q

What is Azure’s container orchestration service?

A

Axure Kubernetes Service

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
43
Q

What is Azure’s container service that has load balancing and scaling?

A

Azure Container Apps

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
44
Q

What is Azure functions?

A

an event driven, serverless compute option that doesn’t require maintaining virtual machines or containers

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
45
Q

What does it mean for a Function to be stateless?

A

Every time it is triggered, it acts as if it is restarted

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
46
Q

What does it mean for a Function to be stateful?

A

Durable functions track prior activity

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
47
Q

What is Azure App Service?

A

enables you to build and host web apps, background jobs, mobile back-ends, and RESTful APIs in the programming language of your choice without managing infrastructure

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
48
Q

What is Azure virtual networking?

A

enable Azure resources, such as VMs, web apps, and databases, to communicate with each other, with users on the internet, and with your on-prem client computers

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
49
Q

What does a VPN do?

A

creates an encrypted tunnel in an untrusted network for two or more trusted networks to commuincate

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
50
Q

What is a VPN gateway?

A

a type of virtual network gateway

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
51
Q

How many VPN gateways can you provision in a virtual network?

A

one

52
Q

What authentication type is employed for Azure VPN’s?

A

a pre-shared key

53
Q

What are the two types of VPN’s in Azure?

A

policy based and route based

54
Q

What is Azure ExpressRoute?

A

lets you extend your on-prem networks into the microsoft cloud over a private connection

55
Q

Does your data travel over the public internet with ExpressRoute?

A

No

56
Q

What is Azure DNS?

A

Azure DNS is a hosting service for DNS domains that provides name resolution by using MS Azure infrastructure

57
Q

Which Azure Virtual Machine feature staggers updates across VMs based on their update domain and fault domain?

A

Availability sets

58
Q

Which Azure service allows users to use a cloud hosted version of Windows from any location and connect from most modern browsers?

A

Azure Virtual Desktop

59
Q

What is Microsoft Entra ID?

A

a directory service that enables you to sign in and access both Microsoft cloud applications and cloud applications that you develop

60
Q

True or False: Azure always stores multiple copies of your data

A

True

61
Q

How many times is data replicated in the primary region?

A

three times

62
Q

What is LRS?

A

Locally redundant storage replicates your data three times in a single datacenter

63
Q

How many nines of durability is LRS?

A

11

64
Q

What is the lowest redundancy storage option?

A

LRS

65
Q

What is ZRS?

A

Zone redundant storage replicates your data across three different availability zones

66
Q

How many nines of durability does ZRS have?

A

12 nines

67
Q

What is GRS?

A

Geo-redudant storage is when there is a LRS in two regions

68
Q

How many nines of durability is GRS?

A

16 nines

69
Q

What is GZRS?

A

Geo-zone redundant storage is ZRS in the primary region and LRS in the secondary

70
Q

How many nines of durability is GZRS?

A

16 nines

71
Q

What is an Azure blob?

A

a massively scalable object store for text and binary data. Also includes support for big data analytics through Data Lake Storage Gen2

72
Q

What is Azure Files?

A

managed file share for cloud and on-prem

73
Q

What is Azure Queues?

A

A messaging store for reliable messaging between applications

74
Q

What is Azure Disks?

A

block level storage volumes for VMs

75
Q

What is Azure Tables?

A

A noSQL table option for structured, nonrelational data

76
Q

What are the 4 storage tiers of blob storage?

A

Hot, cool, cold, and archive

77
Q

What are services that can help you migrate your data to Azure?

A

Azure migrate or Azure Databox

78
Q

Which is a physical migration service: Azure migrate or Azure Databox?

A

Azure databox

79
Q

What is AzCopy?

A

a command line utility that you can use to copy blobs or files

80
Q

Which tool automatically keeps files between an on-premises Windows server and an Azure cloud environment updated?

A

Azure File Sync

81
Q

What provides a graphical user interface to manage storage solutions?

A

Azure storage explorer

82
Q

Which Azure Storage service supports big data analytics, as well as handling text and binary data types?

A

Azure Blob

83
Q
A
84
Q

What is the on prem identity and access management service on Window servers?

A

Active Directory

85
Q

Can Active Directory and Entra ID connect?

A

Yes

86
Q

What is the service that provides managed domain services such as domain join, group policy lightweight directory access protocol (LDAP), and Kerberos/NTLM authentication?

A

Entra Domain Service

87
Q

Define authentication

A

the process of establishing the identity of a person, service, or device

88
Q

What is an external identity?

A

a person, device, service, etc. that is outside of your organization

89
Q

What is the tool Entra ID can leverage to allow or deny access to resources based on identity signals?

A

Conditional access

90
Q

What is zero trust?

A

a security model that assumes the worst case scenario and protects resources with that expectation.

91
Q

What are the three guiding principles of Zero Trust?

A

Verify Explicitly, use least privilege access, assume breach

92
Q

What are all the layers of the Defense in Depth framework?

A

Physical Security, Identity Access, Perimeter, Network, Compute, Application, Data

93
Q

What is Microsoft Defender for Cloud?

A

a monitoring tool for security posture management and threat protection.

94
Q

True or False: Microsoft Defender for Cloud can monitor on-prem, hybrid, and multi-cloud environments as well as non-azure resources and resources in other Cloud environments

A

True

95
Q

Which Microsoft Entra tool can vary the credentials needed to log in based on signals, such as where the user is located?

A

Conditional Access

96
Q

Which security model assumes the worst-case security scenario, and protects resources accordingly?

A

Zero Trust

97
Q

A user is simultaneously assigned multiple roles that use role-based access control. What are their actual permissions? The role permissions are: Role 1 - read || Role 2 - write || Role 3 - read and write.

A

Read and Write

98
Q

What is the pricing calculator?

A

designed to give you an estimated cost for provisioning resources in Azure

99
Q

What is the Total Cost of Ownership (TCO) calculator?

A

designed to help you compare the costs for running an on-premises infrastructure compared to an Azure Cloud Infrastructure

100
Q

What is Cost Management?

A

a tool that provides the ability to quickly check Azure resource costs, create alerts based on resource spend, and create budgets that can be used to automate managent of resources

101
Q

What are the three types of cost alerts?

A

Budget alerts, credit alerts, and department spending quota alerts

102
Q

What are resource tags?

A

A way to organize resources

103
Q

What Azure feature can help stay organized and track usage based on metadata associated with resources?

A

Tags

104
Q

What’s the best method to estimate the cost of migrating to the cloud while incurring minimal costs?

A

Use the total cost of ownership calculator to estimate expected costs

105
Q

What is microsoft purview?

A

a family of data governance, risk, and compliance solutions that help you get a single, unified view into your data

106
Q

What service allows you to create, manage, and assign policies that control or audit your resources?

A

Azure Policy

107
Q

What is a something that will prevent resources from being altered or deleted?

A

Resource locks

108
Q

What portal provides access to various content, tools, and other resources about Microsoft security, privacy, and compliance practices?

A

Microsoft Service Trust Portal

109
Q

How can you prevent creation of non-compliant resources, without having to manually evaluate each resource?

A

Azure Policy

110
Q

What’s the best way to prevent inadvertent deletion of a resource?

A

Azure resource locks

111
Q

What allows you to extend your Azure compliance and monitoring to your hybrid and multi-cloud configurations?

A

Azure Arc

112
Q

What are ARM templates?

A

Azure resource manager templates allow you to create resources that are identical to other created from the same JSON template

113
Q

What service helps you manage your Azure, on-premises, and multicloud environments?

A

Azure Arc

114
Q

What two components could you use to implement a “infrastructure as code” deployment?

A

Bicep and ARM templates

115
Q

What service evaluates your Azure resources and makes recommendations to help improve reliability, security, performance, and reduce costs?

A

Azure advisor

116
Q

What is Azure Service Health?

A

gives you a complete view of your Azure environemnt

117
Q

What is Azure Monitor?

A

platform for collecting data on your resources, analyzing the data, visualizing the information, and acting on the results

118
Q

What five categories does Azure Advisor address?

A

reliability, security, performance, operational excellence, cost

119
Q

You receive an email notification that virtual machines (VMs) in an Azure region where you have VMs deployed is experiencing an outage. Which component of Azure Service Health will let you know if your application is impacted?

A

Resource Health

120
Q

What operating systems does Microsoft supply Azure Virtual Machine images for?

A

Windows and Linux

121
Q

What is a public endpoint?

A

Enables access to your data or application form outside the virtual network

122
Q

True or False: Azure PowerShell scripts and Command line Interface scripts are entirely compatible with each other

A

False

123
Q

True or False: An Azure Storage Account can have both a public endpoint and a private endpoint at the same time.

A

True

124
Q

What type of documents does the Microsoft Service Trust Portal provide?

A

A list of documents that Microsoft follows, pen test results, security assessments, white papers, faqs, and other documents that can be used to show Microsoft compliance efforts

125
Q

What affect does using a “read only” resource lock on a Azure Storage Account have?

A

The storage account cannot have its properties altered but it doesnt affect the data itself

126
Q

What is the purpose of Azure Blueprints?

A

Allows you to create new subscriptions that already have policies, roles, resource groups, and ARM templates