AZ-900 Exam Part 2 Flashcards
You have an on-premises network that contains several servers. You plan to migrate all the servers to Azure. You need to recommend a solution to ensure that some of the servers are available if a single Azure data center goes offline for an extended period. What should you include in the recommendation?
- Availability Set
- Fault Tolerance
- Scalability
- Elasticity
- Low Latency
Fault Tolerance
- Fault Tolerance is the ability of a system to continue to function in the event of a failure of some of its components
In Azure what do you understand by Application availability?
1. Application is available to high end users
2. The individual SLA of each resource
3. Overall time that the system is functional and working
Overall time that the system is functional and working
Your company plans to start using Azure and will migrate all its network resources to Azure. You need to start the planning process by exploring Azure. What should you create first?
1. A subscription
2. A resource group
3. Virtual network
4. A management group
A subscription
You plan to build an enterprise data warehouse in Axure to perform business data analysis. The requirement is to build an integrated environment that will support the development of end to end analytical solutions. Which service should you use for this?
1. Azure Machine Learning
2. Azure Synapse Analytics
3. Azure Database for PostGreSQL
Azure Synapse Analytics
- Azure Machine Learning is incorrect because it does not provide enterprise data warehouse services. Azure Machine Learning is a development platform for coding machine learning.
- Azure Synapse Analytics is a data analytics platform that combines data integration, enterprise data warehousing, and big data analytics. Also supports the development of end to end analytical solutions.
- Azure Database for PostgreSQL is a relational database service based on Postgres database engine. Cannot be used to build a data warehouse
You are the data engineer for your company. An application uses a NoSQL database to store data. The database uses the key value and wide column NoSQL database type. Developers need to access the data in the database using an API. You need to determine which API to use for the database model and type. Which two APIs should you use?
1. Cassandra API
2. Table API
3. SQL API
4. Gremlin API
5. MongoDB API
Cassandra API and MongoDB API
- Cassandra API and MongoDB API both have key value pair
Hybrid Cloud is part of Public Cloud. True or False?
False
- A public cloud is part of Hybrid cloud. Many customers take advantage of the hybrid cloud to achieve global scale, increased reliability
Define availability set.
1. Group of instances of your application in an availability zone.
2. A logical grouping of VMs that allows Azure to understand how your application is built to provide for redundancy and availability.
3. Set of resources
A logical grouping of VMs that allows Azure to understand how your application is built to provide for redundancy and availability.
Your company plans to deploy an AI solution to Azure. What should the company use to build, test, and deploy predictive analytics solutions?
1. Azure Logic Apps
2. Azure Machine Learning Studio
3. Azure Batch
4. Azure Cosmos DB
Azure Machine Learning Studio
Which Azure service should you use to correlate events from multiple resources into a centralized repository?
1. Azure Event Hubs
2. Azure Analysis Services
3. Azure Monitor
4. Azure Log Analytics
Azure Log Analytics
Your Azure environment contains multiple Azure virtual machines. You need to ensure that a virtual machine VM1 is accessible from the internet over HTTP. You propose Azure firewall as a solution. Does this meet the goal?
Yes
Your Azure environment contains multiple Azure virtual machines. You need to ensure that a virtual named VM1 is accessible from the Internet over HTTP. As a solution you modify the DDoS protection plan. Does this meet the goal?
No
- Correct answer is Azure Firewall
Your Azure environment contains multiple Azure virtual machines. You need to ensure that a virtual named VM1 is accessible from the Internet over HTTP. As a solution you modify an Azure Traffic Manager profile. Does this meet the goal?
No
- Azure Traffic manager allows you to distribute traffic to your public facing applications across the global Azure regions. Traffic Manager also provides your public endpoints with high availability and quick responsiveness.
Which of the following correctly defines Edge computing?
1. Edge Computing allows you to secure your application on multiple locations
2. Edge computing allows customers to run VMs, containers and data services at edge locations
3. Edge computing allows you to create scalable web apps
Edge computing allows customers to run VMs, containers and data services at edge locations
From Azure Cloud Shell, you can track your company’s regulatory standards and regulations, such as ISO 27001. True or False?
False.
- Trust Center is the correct answer to this. The Trust Center can be used to track your company’s compliance
The only way to use Azure resources is to purchase an Azure account before you can use them?
False
You need an Azure subscription before using Azure resources. But you can have a free Azure account
Azure AD can be used to grant or deny access based on the originating IP Address. True or False?
False
Azure Firewall can be used to grant or deny access based on the originating IP Address. True or False?
True
Your company plans to deploy several million sensors that will upload data to Azure. You need to identify which Azure resources must be created to support the planned solution. Which two Azure resources should you identify?
1. Azure Data Lake
2. Azure Queue storage
3. Azure File Storage
4. Azure IoT Hub
Azure Data Lake and Azure IoT Hub
- Azure Data Lake can be used to store the data from devices and sensors.
- Azure Queue storage is exclusively for messages, but here we’re collecting data
- Azure Files is a cloud storage service designed for sharing files, development or debugging tools, and applications that rely on native file systems.
- IoT Hub does the data processing.
Which Azure service you can use for quickly sending miilions of notifications to IOS, Android, Windows, or Kindle devices, working with APNs (Apple Push Notification service), GCM (Google Cloud Messaging), WNS (Windows Push Notification Service), and more.
1. IoT Hub
2. Azure Notification Hubs
3. Azure Machine Learning
4. Azure Monitor
Azure Notification Hubs
To what should an application connect to retrieve security tokens?
1. Azure Storage account
2. Azure AD
3. Azure security center
4. Azure Key Vault
Azure AD
Azure AD authenticates users and provides access tokens. An access token is a security token that is issued by an authentication server. Security Token is not a Secret, Password, Private Key, Certificate, etc. Plus tokens are not static so there is no point in storing them (they’re only valid for a short duration).
You need to be aware of the latest Azure security standards to protect your data. Which of the following services should you use to ensure this?
1. Azure Government
2. Online Terms of Service
3. Trust Center
4. Azure Compliance Documentation
Azure Trust Center
- Azure Government addresses the security and compliance needs of US federal agencies, state and local governemnts, and their solution providers
- Online Terms of Service is an agreement between Microsoft and you. Details the obligations and both parties regarding the processing and security of customer data
- Trust Center implements Microsoft’s principles for maintaining data integrity in the cloud and Microsoft implements security, privacy, and compliance, and transparency in all Microsoft cloud products and services.
- Compliance Documentation provides detail on Azure legal and regulatory standard and compliance.
Azure Reserved VM instances are an example of OpEx. True or False?
False
- You pay up front for the use of a virtual machine for a period of time (1 or 3 years). Can save you money. Because it’s an up front cost, it is Capex.
Azure Cosmos DB is an example of which cloud offering?
1. PAAS
2. IAAS
3. Serverless
4. SAAS
PAAS
Your network contains an Active Directory forest. The forest contains 5000 User Accounts. Your company plans to migrate all network resources to Azure and to decommission the on-premises data center. You need to recommend a solution to minimize the impact on users after the planned migration. What should you recommend?
1. Implement Azure MFA
2. Sync all the Active Directory user accounts to Azure Active Directory (Azure AD)
3. Instruct all users to change their password
4. Create a guest user account in Azure AD for each user
Sync all the Active Directory user accounts to Azure Active Directory (Azure AD)
- Azure AD is Microsoft’s cloud based identity and access management service, which helps your employees sign in and access resources in
- External: Microsoft Office 365, Azure Portal, and thousands of other SaaS applications.
- Internal: Apps on your corporate network and intranet. Along with cloud apps developed by your organization
Which of the following best explains cloud computing?
1. Delivery of computing services over the internet
2. Setting up your own datacenter
3. Scalable computing
Delivery of computing services over the internet
Which of the following is NOT a feature of cloud computing?
1. Latest technology
2. Limited pool of services
3. Flexible resources
4. Economies of sale
Limited pool of services
You plan to extend your company’s network to Azure. The network contains a VPN appliance that uses an IP Address of 131.107.200.1. You need to create an Azure resource that identifies the VPN appliance. Which resource should you create?
1. Virtual Networks
2. Load balancers
3. Virtual Network Gateways
4. DNS Zones
5. Local Network Gateway
6. ExpressRoute circuits
Local Network Gateway
If Microsoft plans to end support for an Azure service that does NOT have a successor service, Microsoft will provide notification at least 12 months before. True or False?
True
When you need to delegate permissions to several Azure virtual machines simulatanously, you must deploy Azure VM to which of the following?
1. Azure Region
2. Azure Availability Zone
3. Azure resource group
4. Azure resource manager template
Azure resource group