Cloud Concepts Flashcards

1
Q

Define cloud computing

A

the practice of using a network of remote servers hosted on the Internet to store, manage, and process data, rather than a local server or a personal compute.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

What is an “on-prem” resource? Provide an example vs a cloud resource.

A

A resource on the business’s premises. For example a local server racked and in use on the business site as opposed to an Azure virtual machine located in a Microsoft DC available to you through Azure portal over the internet.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

What is an availability zone?

A

A site consisting of multiple data center footprints, CO1, CO2, CO3, CO4 etc.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

What is vertical scaling?

A

Adding more virtual resources to a single virtual machine. i.e. CPUs, RAM.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

What is horizontal scaling?

A

Adding more virtual servers to a group to add overall capacity.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

What is an Azure VM Scale Set?

A

A configuration that automatically increases or decreases the number of virtual machines in response to demand or a defined schedule.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

What is a region?

A

a grouping of multiple data centers / availability zones

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

What is an Azure geography?

A

a discreet market of two or more regions that preserve data residency and compliance boundaries.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

Are all Azure cloud services available in every region?

A

No

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

What is Azure Migrate?

A

Perform assessment and migration of VMware MVs, Hyper-V VMs, cloud VMs, and physical servers, as well as databases, data, virtual desktop infrastructure, and web applications, to Azure.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

What is a Service Map?

A

Maps communicate between application components on Windows or Linux. Helps you identify dependencies when scoping what to migrate.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

What is Azure TCO Calculator?

A

Estimates your monthly running costs in Azure versus on-premises.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

What is Azure Database Migration Service?

A

Uses the Data Migration Assistant and the Azure portal to migrate database workloads to Azure.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

What is the Data Migration Tool?

A

Migrates existing databases to Azure Cosmos DB

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

What is Azure Cost Management?

A

Helps you monitor, control, and optimize ongoing Azure costs.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

What is the Azure Advisor?

A

Helps you optimize your Azure resources for high availability, performance, and cost.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
17
Q

What is the Azure Monitor?

A

Enables you to monitor your entire estate’s performance. Includes application-health monitoring via enhanced telemetry, and setting up notifications.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
18
Q

What is Azure Sentinel?

A

Provides intelligent security analytics for your applications.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
19
Q

Define Azure DNS

A

Provides ultra-fast DNS responses and ultra-high domain availability

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
20
Q

Define Azure Virtual Network (vNET)

A

A logical isolated section of the Azure network for customers to launch Azure resources within.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
21
Q

Define Azure Load Balancer

A

OSI Level 4 (Transport) load balancer

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
22
Q

Define Azure Application Gateway

A

OSI Level 7 (HTTP) load balancer, can apply a Web Application Firewall

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
23
Q

Define Network Security Groups

A

A virtual firewall at the subnet level

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
24
Q

Define Azure Front Door

A

Scalable and secure entry point for fast delivery of your global applications

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
25
Q

Define Azure Express Route

A

A connection between your on-prem to Azure cloud from 50 Mbps to 10 Gbps

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
26
Q

[T/F] Azure CLI can be installed on Windows, Mac, and Linux?

A

True

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
27
Q

Does Azure provide SLAs on Services in the Free or Shared tiers?

A

No

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
28
Q

List the four Azure support plans

A

Basic, Developer, Standard, and Professional Direct

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
29
Q

List the four Azure subscription types

A

Free, Pay as you Go, Enterprise Agreement, Student

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
30
Q

What is an Azure Region Pair?

A

A relationship between 2 Azure regions in a shared geography for DR

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
31
Q

Does an Availability zone protect against data center level failures or outages?

A

Yes

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
32
Q

Can a resource be a part of more than one resource group?

A

No. A resource can only be a member of one resource group.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
33
Q

Can a resource group belong to more than one subscription?

A

No. A resource group can only be tied or belong to a single Azure subscription.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
34
Q

What is Azure Container Instance (ACI)?

A

Runs Docker containers on-demand in a managed, serverless Azure environment. A solution for any scenario that can operate in isolated containers, without orchestration.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
35
Q

Can VMs in different VNETs communicate by default?

A

No they cannot.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
36
Q

Describe an Azure VPN Gateway

A

A virtual network gateway that sends encrypted traffic between an Azure VNET and an on-prem location over the Internet.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
37
Q

What is VNET Peering?

A

Enables seamless connection of two or more Virtual Networks in Azure.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
38
Q

What is ExpressRoute?

A

A connection that extends your on-prem networks into Azure over a private connection with the help of a connectivity provider (ISP)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
39
Q

Does traffic on an ExpressRoute traverse the internet?

A

No.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
40
Q

What is Azure Blob storage?

A

Storage optimized for storing massive amounts of unstructured data. (not a database) i.e. image or video data, or for log files.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
41
Q

What is Azure File Storage?

A

Fully managed files shares in Azure accessible via SMB or NFS

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
42
Q

What is Azure Disk Storage?

A

Azure managed disks are block-level storage volumes that are managed by Azure and used with Azure VMs.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
43
Q

What are Storage Tiers?

A

Azure storage hot, cool, and archive access tiers to store blob object data in a cost-effective manner.

44
Q

What is Table Storage?

A

A service that stores structured NoSQL data in Azure, including a schema-less key/attribute store. A table of data that does not require the relational nature of a SQL database using keys.

45
Q

What is Queue Storage?

A

A service for storing large numbers of messages, accessible from anywhere via authenticated HTTP or HTTPS calls.

46
Q

Describe CosmosDB

A

A fully managed NoSQL database for modern app development.

47
Q

Describe MS SQL

A

A fully managed PaaS database engine that handles most management functions such as upgrading, patching, backups, and monitoring.

48
Q

Describe PostgreSQL

A

A relational database service in the Microsoft cloud based on the PostgreSQL Community Edition. PaaS

49
Q

Describe MySQL

A

A PaaS relational database service in the Microsoft cloud, based on the MySQL Community Edition.

50
Q

Describe SQL Managed Instance

A

Cloud database service that combines the broadest SQL Server database engine compatibility with all the benefits of PaaS.

51
Q

Describe IoT Hub

A

A central message hub for bi-directional communication between your IoT app and the devices it manages.

52
Q

Describe IoT Central

A

An IoT application platform that simplifies the creation of IoT solutions. It is a fully managed SaaS solution.

53
Q

Describe Azure Sphere

A

A secure, high-level application platform with built-in communication and security features for internet connected devices. Created by Microsoft to run on an Azure Sphere-certified chip and to connect to the Azure Sphere Security Service.

54
Q

List the four Azure Services most closely related to Data Warehouse:

A

Data Lake, Synapse Analytics, HDInsight, and Databricks.

55
Q

Describe Data Lake

A

A technology that enables big data analytics and artificial intelligence. Provides cloud storage that is less expensive than relational databases cloud storage. Stores data from business systems and data warehouses, as well as device and sensor data. A place to store, organize, and analyze large volumes of structured and unstructured data of diverse data from diverse soruces.

56
Q

Describe Synapse Analytics

A

An integrated analytics service that accelerates time to insight across data warehouses and big data systems.

57
Q

Describe HDInsight

A

A cloud distribution of Hadoop components that makes it easy, fast, and cost-effective to process massive amounts of data. Supports popular open-source frameworks.

58
Q

Describe Databricks

A

A data analytics platform optimized for the Microsoft Azure cloud services platform. Offers two environments for developing data intensive applications: Azure Databricks SQL Analytics, and Azure Databricks Workspace.

59
Q

Describe Azure Machine Learning

A

A cloud-based environment you can use to train, deploy, automate, manage, and track ML models.

60
Q

Describe Cognitive Services

A

Cloud-based services with REST APIs and client library SDKs available to help you build cognitive intelligence into you applications. It provides cognitive understanding categorized into five main pillars: vision, speech, language, decision, and search.

61
Q

Describe Azure Bot Service

A

A managed bot development service that helps you easily connects to your users via popular channels. Provides an integrated environment that is purpose-built for bot development.

62
Q

What 3 services are associated in Azure to Serverless?

A

Logic App, Functions, and Event Grid.

63
Q

Describe Logic App

A

A cloud service that helps you schedule, automate, and orchestrate tasks, business processes, and workflows. You can choose from a gallery or hundreds of pre-built connectors for MSFT and 3rd party services.

64
Q

Describe Functions

A

An event drive, compute on demand experience that extends the existing Azure application platform with capabilities to implement code triggered events occurring in Azure as well as on-premises systems.

65
Q

Describe Event Grid

A

Enables you to easily manage events across many different Azure services and applications. Once a subscription is created, Event Grid will push events to the configured destination.

66
Q

Describe Azure DevOps

A

A single platform for implementing DevOps, deploying code using the CI/CD framework, facilitating Agile software development.

67
Q

Describe GitHub

A

GitHub is a web-based Git repository hosting service for source code management (SCM) and distributed revision control.

68
Q

Describe GitHub Actions

A

Helps you automate software development workflows from within GitHub. You can build, test, package, release, or deploy any project on GitHub with a workflow.

69
Q

Describe Azure DevTest Labs

A

Provides a self-service sandbox environment to quickly create Dev/Test environments while minimizing waste and controlling costs.

70
Q

What is Azure Cloud Shell?

A

Web based access to Azure CLI for managing Azure resources. CLI for Bash or Powershell located in browser through the portal.

71
Q

Describe Azure PowerShell

A

A set of cmdlets for managing Azure resources directly from PowerShell command line on local machine. Windows, Mac, Linux.

72
Q

Describe the Azure Mobile App

A

App for iOS and Android that enables managing, tracking health and status, and troubleshooting your Azure resources.

73
Q

Describe Azure CLI

A

The Azure command line interface is a set of commands used to create and manage Azure resources. Uses Bash, and is available on Windows, macOS, Linux, Docker, and Azure Cloud Shell.

74
Q

Describe Azure Advisor

A

Scans your Azure configuration and recommends changes to optimize deployments increase security, and save you money.

75
Q

Describe ARM Templates

A

A JavaScript Object Notation (JSON) file that defines the infrastructure and configuration for your project.

76
Q

Describe Azure Monitor

A

A service that collects monitoring telemetry from a variety of on-prem and Azure sources. Management tools, like Azure Security Center, push log data to Azure monitor. Azure Monitor aggregates and stores this telemetry in an Azure Log Analytics instance.

77
Q

Describe Azure Service Health

A

Notifies you about Azure service incidents and planned maintenance so you can take action to mitigate downtime.

78
Q

Describe Azure Security Center

A

A unified infrastructure security management system that strengthens the security posture of your data centers (cloud and on-prem). Provides security guidance and info around your adherence to compliance related policies enabled.

79
Q

Does Azure Defender provide Just In Time (JIT) VM Access?

A

Yes. For the paid version, not on the free version.

80
Q

Describe Key Vault

A

A cloud service for securely storing and accessing secrets. Such as; API keys, passwords, certificates, or cryptographic keys.

81
Q

Describe Azure Sentinel

A

A cloud-native, security information event management (SIEM) and security orchestration automated response (SOAR) solution. It has built in AI.

82
Q

Describe Dedicated Hosts

A

A service that provides dedicated physical servers able to host one or more virtual machines in one Azure subscription.

83
Q

Define “Defense in-depth”

A

A layered approach that does not rely on one method to completely protect your environment.

84
Q

Describe a Network Security Group

A

Contains security rules that allow or deny inbound network traffic to, or outbound network traffic from , several types of Azure resources. Each rule can contain source and destination, port and protocol. Can be applied to a subnet or NIC.

85
Q

Describe Azure Firewall

A

A managed, cloud-based network security service that protects your Azure Virtual Network resources. It is a fully stateful firewall as a service with built-in high availability and unrestricted cloud scalability.

86
Q

Describe Azure DDoS

A

Standard tier provides enhanced DDoS mitigation features to defend against DDoS attacks. Basic version included with all subscriptions, Standard version includes logging and alerts, with the mitigation features.

87
Q

Describe Conditional Access

A

Used by Azure AD to bring signals together, to make decisions, and enforce organizational policies.

88
Q

Describe RBAC

A

Azure RBAC helps you manage who has access to Azure resources, what they can do with those resources, and which resources/areas they have access to. It’s built on Azure resource managed that provides fine-grained access management of Azure resources.

89
Q

Define Resource Locks

A

Prevent other users in your organization from accidently deleting or modifying critical resources. Locks override any permissions a user may have.

90
Q

Define Azure Policy

A

The definition of the conditions which you want to control/govern. Used to enforce standards.

91
Q

Define Azure Initiative

A

A collection of Azure policy definitions that are grouped together towards a specific goal.

92
Q

Define Blueprint

A

A container for composing sets of standards, patterns, and requirements for implementation of Azure cloud services, security, and design.

93
Q

Describe Tags as used in Azure

A

A name and a value pair used to logically organize Azure resources, resource groups, and subscriptions into a logical taxonomy. Used to apply business policy or tracking cost for billing.

94
Q

Can you enforce tagging rules with Azure policies?

A

Yes.

95
Q

What is the Trust Center?

A

Where you can learn about the four foundational principals of trust: security, privacy, compliance, and transparency.

96
Q

What are the three main Azure Sovereign Regions?

A

Government, China, and Germany

97
Q

What is an Azure Sovereign Region?

A

Special regions that you might need for compliance or regulatory reasons.

98
Q

What are Cost Impacts in Azure?

A

Type of services/resources, services, locations, ingress and egress traffic.

99
Q

What are reserved instances?

A

Reserve virtual machines in advance and save up to 72% compared to PAYG pricing with 1-yr or 3-yr commitment.

100
Q

What is reserved Capacity?

A

Achieve significant savings on Azure SQL Database, Azure Cosmos DB, and Azure Synapse Analytics and Azure Cache for Redis.

101
Q

What is Hybrid Use Benefit?

A

Discount for running VMs by utilizing or effectively converting your on-prem software assurance enabled windows licenses on their new cloud equivalent.

102
Q

What is spot pricing?

A

Access unused Azure compute capacity at deep discounts - up to 90% compared to PAYG prices. Azure VMs only.

103
Q

Describe Azure Cost Management

A

A suite of tools provided by Microsoft that help you analyze, manage, and optimize the costs of your workloads.

104
Q

Who has access to Private Preview?

A

Only companies or users invited, and for evaluation only.

105
Q

Who has access to Public Preview?

A

Open to the public but preview limitations still apply

106
Q

What is General Availability?

A

Regularly available services.