big group Flashcards
Which cloud model should be used in this instance?
A company wants to deploy multiple servers to host web applications but wants to keep hardware cost and manageable cost to a minimum. The solution should be highly scaleable
public model
Which cloud model should be used in this instance?
A company needs to implement a solution where it maintains management control over hardware and infrastructure. The solution can be physically deployed offsite
Private model
Which cloud model should be used in this instance?
A company plans to use a custom software as a service application and wants to minimize cost. The company is legally required to maintain and secure all data onsite.
Hybrid model
Which cloud model should be used in this instance?
Your company wants to create a virtual network with 10 virtual machines and no capital expenditure costs
public
Which cloud model should be used in this instance?
Your company wants to control the methods used to have a high level of security for its resources
private
Which cloud model should be used in this instance?
Your company does not have IT experts or the money to purchase its own servers
Public
A private cloud requires
the infrastructure to be on a private network
Your company plans to migrate applications and services to the cloud. You recommend for a hybrid cloud to be deployed. Why would you make this recommendation?
To augment on-premise resources by providing overflow capacity.
Your company deploys resources in Azure. According to the shared responsibility model, which task will you be required to perform?
Install critical updates on virtual machines
Benefits of moving the infrastructure to the cloud
(T/F) You can use horizontal scaling for the web server
True
Benefits of moving the infrastructure to the cloud
(T/F) You can resize the disk on demand on mail server if email messages increase
True
What is an advantage of using public cloud over a private cloud?
Costs are lower and spread among multiple tenants
Manually increasing or decreasing resources to meet a predictable workload is called
scalability
Automatically increasing or decreasing resources to meet spikes and drops in demand is called
Elasticity
Speed and flexibility in allocation and deallocation of required resources is called
Agility
(T/F) Azure active directory is used to manage API cryptographic keys
False
(T/F) Azure Storage encryption is enabled by default and cant be disabled
True
(T/F) Azure ExpressRo7ute is used to secure traffic between virtual networks
False
In infrastructure as a service cloud model, the subscriber is responsible for the management of what?
operating system
application
runtime
middleware
data
In Iaas the service provider is responsible for
virtualization
servers
storage
physical networking
(T/F) The service provider is responsible for all infrastructure hardware in SaaS, PaaS, and IaaS
True
(T/F) Creating a virtual machine running Windows server 2016 is a example of PaaS
False
(T/F) SaaS gives you a way to give users access to sophisticated applications in a pay-as-you-go enviornment
True
(T/F) IaaS allows you to rent hardware and have control over the operating system
True
(T/F) PaaS allows you to manage applications without controlling the underlying OS
True
(T/F) SaaS allows you to subscribe to software
True
In a Platform as a Service, the customer service is in responsible for
Data, application
In Platform as Service, the provider is responsible for
Operating system, storage, virtualization
Which cloud service model should be used in this instance?
A company needs to deploy an Ubuntu Linux virtual machine to run a resource-intensive data analysis application
IaaS
Which cloud service model should be used in this instance?
A company needs to make productivity applications available to all employees, including those that work from home, on a pay-as- you-go basis
SaaS
Which cloud service model should be used in this instance?
A company needs to develop a web app designed to ruin on both computers and mobile devices and manage the application lifecycle
PaaS
Which cloud service model should be used in this instance?
A company needs to transition an on-premise data center to the cloud with minimal impact on users
IaaS
(T/F) about shared responsibility in the cloud
the customer always retain responsiblity for the data
True
(T/F) about shared responsibility in the cloud
The responsibility for the management of accounts is transferred to the cloud provider
False
(T/F) about shared responsibility in the cloud
The responsibility for the operating system in Platform as a service is retained by the customer
False
You need to deploy serverless solution that meets the following requirements
-executution is triggered through an https request
-you pay only for the time that the code runs
-you do not have to manage the application infrastructure
Azure functions
with __________ developers deploy code and pay for its runtime only, without worrying about the provisioning configuration and management of the underlying infrastructure
serverless computing
(T/F) Azure IaaS provides and manages container orchestrators
False
(T/F) Resources can be allocated on a pay as you go basis whenever needed in IaaS
True
(T/F) you are responsible for managing application and middleware while azure manages operating system in Iaas
False
Which cloud service model should be used in this instance?
Use provider managed hardware to run a customized database
IaaS
Which cloud service model should be used in this instance? use a provider managed calender to schedule appointments and meetings
Software as a Service
Which cloud service model should be used in this instance? User provider managed business intelligence services to analyze marketing trends
Paas
Which cloud service model should be used in this instance?
You need to find a cloud solution that allows the highly customized web application to run without requiring management of operating system settings or services. However, the company’s web developers must be able to maintain customizations
Deploy the web app functionality using PaaS
A company is deploying a critical business application on two virtual machines. The deployment needs to support:
-highly available access
-separate fault and update zones
-minimal latency between instances
most users who needs to access the application are in Azure East US2 region
Separate availability zones
(T/F) Locking a resource group as read-only locks all resources contained in the group
True
(T/F) A resource group contain resources from the same region as the resource group only
false
(T/F) You can add a resource to remove a resource group from a resource from a resources group as long as the resource group is not locked
True
(T/F) Resources can interact with other resources in a different resource group
True
A company wants to expand its cloud presance by deploying additional resources to Azure. The company plans to use templates based on existing resources to automate the deployment process. Ensuring consistent deployment is critical. What should the company use?
Azure Resource manager
What describes regions
-regions are always paired with other regions
-regions contain one or more datacenters
-regions specify the location of resources
Description of containers
-container can be accessed over the internet by IP address or domain name
-a container can run on windows or linux
-a container can scale out as needed
-a container represents a single app and its dependencies
What is the purpose of a resource group?
it serves as a container for azure resources like virtual machines and web apps
(T/F) You can transfer an existing subscription to a new Azure active directory tenant
True
(T/F)Quotas for resource in Azure resource group are per region rather than per subscription
True
(T/F) All users and groups with role-based acces to manage the subscription lose their accesss
True
(T/F) System-assigned managed identities are re=enabled automatically
False
(T/F) moving a subscription that owns an azure kubernetes services cluster causes the cluster to lose functionality
True
You need to ensure that your resources are replicated and hosted 200 miles away within the same geographic area, to minimize impact on your solutions’ avaiability in case of disaster
Region pairs
Management groups let you organize mutiple
subscriptions as a single management entity to facilitate easier management
You want to allow inbound traffic to an azure virtual machine from only specific ip address
network security group
you want to prevent a malicious flood of http traffic to a vm that host internet information services
distributed denial of service protection
you want to create a rule that restricts network traffic across subscriptions
azure firewall
(T/F) Azure virtual desktop supports remote desktop clients on MacOS and iOS
True
(T/F) you are in charge for the use of azure virtual desktop for a monthly basis according to active users
false
(T/F) azure virtual desktop users should exisit in the same windows server active directory that is linked to azure ad
true
Which azure resource fits this scenario
migrate a workload from an on-premise hyper v host to azure, still retaining full control over the operating system
azure virtual machine
Which azure resource fits this scenario
deploy a web application using platform as a service for scalability and security
azure app services
Which azure resource fits this scenario
build an event driven solution and pay only for the time you spent running your code
azure funcitons
Which two options can you use to connect azure virtual networks to each other?
VPN Gateways
VNet Peering
_____ is a service that enables private connectivity between your on-premise network and microsoft azure or microsoft 365
Azure expressroute
_________ is a global endpoint that works at layer 7(https/’http) to enable fast, secure, and widely scalable web applications
azure front door
___________ azure traffic manager is a DNS based traffic load balancer that allows optimal distribution of traffic to azure services spread across global azure region
azure traffic manger
(T/F) Expressroute traffic is routed through a private connection
True
(T/F) Traffic between peered virtual network is routed over the public internet
False
(T/F) A vnet is created within the scope of the region
True