Microsoft Fundamentals Flashcards

1
Q

Azure Active Directory

A

Solution for identiy management, performs user and access control

also powers single sign on

supports authrization through use of RBAC

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

Powershell

A

A PowerShell script is a file that contains PowerShell cmdlets and code. A PowerShell script needs to be run in PowerShell.

can also be used to manage Linux and MacoS

Azure Powershell is a module that can be installed locally on computer

Coonect _AZAccount

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

Azure Data Lake Analytics

A

Azure Data Lake Analytics is an on-demand analytics job service that simplifies big data. Instead of deploying, configuring, and tuning hardware, you write queries to transform your data and extract valuable insights. The analytics service can handle jobs of any scale instantly by setting the dial for how much power you need. You only pay for your job when it is running, making it more cost-effective.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

Tags

A

tags appied to a resource group are not inherited by its resources

not all azure resources support tags

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

Azure App Service

A

PaaS: App Service enables you to build and host web apps, background jobs, mobile back-ends, and RESTful APIs in the programming language of your choice without managing infrastructure. It offers automatic scaling and high availability. App Service supports Windows and Linux and enables automated deployments from GitHub, Azure DevOps, or any Git repo to support a continuous deployment model.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

Locks

A

Locks cannot be applied in the context of specific users and roles

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

Cloud shell

A

allows access to the CLI and Powershell consoles after you log into the Azure Portal

web based

interactive, browser accessbile shell environment.

New_AZVm

when running PowerShell with Cloud Shell Windows functionality is not available.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

Network Security Group

A

A network security group works like a firewall. You can attach a network security group to a virtual network and/or individual subnets within the virtual network. You can also attach a network security group to a network interface assigned to a virtual machine. You can use multiple network security groups within a virtual network to restrict traffic between resources such as virtual machines and subnets.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

HDInsight

A

Azure HDInsight is a cloud distribution of Hadoop components. Azure HDInsight makes it easy, fast, and cost-effective to process massive amounts of data. You can use the most popular open-source frameworks such as Hadoop, Spark, Hive, LLAP, Kafka, Storm, R, and more. With these frameworks, you can enable a broad range of scenarios such as extract, transform, and load (ETL), data warehousing, machine learning, and IoT.

Open source enterprise wide analytics service, used to analyze streaming or historic data, such as ELT batch processing

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

Azure Subscription

A

An Azure subscription is a container for Azure resources. It is also a boundary for permissions to resources and for billing. You are charged monthly for all resources in a subscription. A single Azure tenant (Azure Active Directory) can contain multiple Azure subscriptions.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

An initiative definition

A

collection of policy definitions that are tailored towards achieving a singular overarching goal.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

Azure Advisor

A

Azure Advisor does not provide recommendations on how to configure network settings on Azure virtual machines, the statement is false.

advice on availability, security, performance, cost

personal cloud consultant to optimize Azure deployments.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

PaaS

A

Scaling is customers’s responsibility in Paas

in severless computing you need to worry about scaling

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

Subscriptions

A

You can’t merge two subscriptions into a single subscription. However, you can move some Azure resources from one subscription to another or you can also transfer ownership of a subscription and change the billing type for a subscription.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

Azure Advisor

A

Azure Advisor displays security recommendations.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

Microsoft Azure Sentinel

A

Microsoft Azure Sentinel is a scalable, cloud-native, security information event management (SIEM) and security orchestration automated response (SOAR)solution. Azure Sentinel delivers intelligent security analytics and threat intelligence across the enterprise, providing a single solution for alert detection, threat visibility, proactive hunting, and threat response.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
17
Q

Azure Key Vault

A

Azure Key Vault is a centralized cloud service for storing your applications’ secrets in a single, central location. It provides secure access to sensitive information by providing access control and logging capabilities

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
18
Q

A network security group

A

A network security group contains security rules that allow or deny inbound network traffic to, or outbound network traffic from, several types of Azure resources. For each rule, you can specify source and destination, port, and protocol.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
19
Q

Zone

A

Geographic grouping of Azure regions used to determine billing based on data transfers.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
20
Q

Microsoft Compliance Manager

A

Free workflow based risk assessment tool within Service Trust Portal

allows you to detremine wheterh or not your services meet industry standards

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
21
Q

Azure virtual machines

A

Azure virtual machines provide hardware virtualization. Azure Virtual Machines (VM) is one of several types of on-demand, scalable computing resources that Azure offers. Typically, you choose a VM when you need more control over the computing environment than the other choices offered.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
22
Q

Azure Database for MySQL

A

Azure Database for MySQL is the logical choice for existing LAMP stack applications.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
23
Q

Azure Blob storage

A

Azure Blob storage is Microsoft’s object storage solution for the cloud. Blob storage is optimized for storing massive amounts of unstructured data, such as text or binary data. Azure Blob Storage is unstructured, meaning that there are no restrictions on the kinds of data it can hold. Blobs are stored in containers, which you can use to organize your blobs depending on your business needs.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
24
Q

PowerApps

A

PowerApps lets you quickly build business applications with little or no code. It is not used to create Azure virtual machines.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
25
Q

Azure Sentinel i

A

Azure Sentinel is Microsoft’s cloud-based SIEM (Security Information and event management. powered by Microsoft’s intelligent security analytics and threat analysis.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
26
Q

Azure SQL Database

A

fully managed platform as a service (PaaS) database

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
27
Q

Which of the following elements is considered part of the “network” layer of network security?

A

seperate servers into distinct subnets by role

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
28
Q

Azure ExpressRoute

A

Azure ExpressRoute lets you seamlessly extend your on-premises networks into the Microsoft cloud. This connection between your organization and Azure is dedicated and private. Establishing an ExpressRoute connection enables you to connect to Microsoft cloud services like Azure, Office 365, and Dynamics 365. Security is enhanced, connections are more reliable, latency is minimal, and throughput is greatly increased.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
29
Q

Azure Pipelines

A

Azure Pipelines is a CI/CD tool for building an automated toolchain. It lacks features to assign tasks for individual developers to work on. However, it can automate other tools to assign tasks to users.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
30
Q

IoT Central

A

SaaS solution that allows to build ioT solutions without development exertise.

global iOT SaaS, connect, monitor and manage ioT resources

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
31
Q

Azure DevOps

A

GitHub is “lighter weight” than Azure DevOps, with a focus on individual developers contributing to open source. Azure DevOps, on the other hand, is more focused on enterprise development with heavier project management and planning tools, and finer-grained access control.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
32
Q

Azure Synapse Analytics

A

Azure Synapse Analytics is a cloud-based Platform-as-a-Service (PaaS) offering from Microsoft. It is a large-scale, distributed, MPP (massively parallel processing) relational database technology in the same class of competitors as Amazon Redshift or Snowflake

Azure Synapse Analytics is an important component of the Modern Data Warehouse multi-platform architecture. Because Azure Synapse Analytics is an MPP system with a shared-nothing architecture across distributions, it is meant for large-scale analytical workloads which can take advantage of parallelism.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
33
Q

What operating systems does Microsoft supply Azure Virtual Machine images for?

A

Windows and Linux

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
34
Q

Azure Databricks

A

≈ Azure Databricks helps you unlock insights from all your data and build artificial intelligence (AI) solutions. You can set up your Apache Spark™ environment in minutes, then autoscale and collaborate on shared projects in an interactive workspace. Azure Databricks supports Python, Scala, R, Java, and SQL, as well as data science frameworks and libraries including TensorFlow, PyTorch, and scikit-learn

an Apache Spark based analytics platform designed to provde a collaborative analytics workflow.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
35
Q

What is the basic way of protecting an Azure Virtual Network subnet?

A

Networks Security Group

36
Q

Azure Content Delivery Network

A

Azure Content Delivery Network: Delivers high-bandwidth content to customers globally.

37
Q

Azure Synapse

A

Azure Synapse is a limitless analytics service that brings together enterprise data warehousing and Big Data analytics. It gives you the freedom to query data on your terms, using either serverless on-demand or provisioned resources—at scale. Azure Synapse brings these two worlds together with a unified experience to ingest, prepare, manage, and serve data for immediate BI and machine learning needs.

38
Q

Azure Boards

A

Azure Boards is an agile project-management tool

39
Q

Virtual Network Gateway.

A

The virtual network gateway needs to be located in a dedicated subnet in the Azure virtual network. This dedicated subnet is known as a gateway subnet and must be named “GatewaySubnet”.

40
Q

Azure Firewall

A

Azure Firewall is a stateful firewall. A stateful firewall analyzes the complete context of a network connection, not just an individual packet of network traffic. Azure Firewall features high availability and unrestricted cloud scalability.

41
Q

Azure Powershell

A

Azure PowerShell is a shell that allows developers, DevOps and IT professionals execute commands called cmdlets, or “command-lets”. These commands call the Azure Rest API to perform every possible management task in Azure. The cmdlets can be executed independently or combined into a script file and executed together to orchestrate routine setup, tear-down, and maintenance of a single resource, multiple connected resources, or orchestrate the deployment of an entire infrastructure containing dozens or hundreds of resources from imperative code. Capturing the commands in a script makes the process repeatable and automatable. Azure PowerShell is available for Windows, Linux, and Mac, and can be accessed in a web browser via the Cloud Shell.

42
Q

Azure Security Center

A

Azure Security Center is a monitoring service that provides visibility of your security posture across all of your services, both on Azure and on-premises. The term security posture refers to cybersecurity policies and controls, as well as how well you can predict, prevent, and respond to security threats.

43
Q

Azure Advisor

A

Detects threats and vulnerabilities

ensures fault tolerance

helps you reduce spending

protects data from accidental deletion

speed up your applications

does not monitor on premises services, only colud services

44
Q

Azure DevTest Labs.

A

If your aim is to automate the creation and management of test lab environments, you should chose Azure DevTest Labs. It is the only of the three tools/services that offer this functionality.

45
Q

Azure Repos

A

is a centralized source code repository where software development, DevOps engineering, and documentation professionals can publish their code for review and collaboration.

46
Q

Azure Monitor

A

Azure Monitor is used to monitor the health of Azure services. Azure Monitor maximizes the availability and performance of your applications and services by delivering a comprehensive solution for collecting, analyzing, and acting on telemetry from your cloud and on-premises environments.

Can use autoscale to add or remove resources as appropriate to minize costs and ensure performance

47
Q

Key Vault

A

helps provision, manage and deploy both public and private SSL/TLS certificates

48
Q

ARM templates

A

ARM templates are the best infrastructure-as-code option for quickly and reliably setting up your entire cloud infrastructure declaratively.

Use JSON not Powershell

49
Q

Azure SQL Database

A

Azure SQL Database is a relational database that is based on the latest stable version of the Microsoft SQL Server database engine. SQL Database is a high-performance, reliable, fully managed and secure database. You can use it to build data-driven applications and websites in the programming language of your choice without needing to manage infrastructure SQL Database can be the right choice for a variety of modern cloud applications because it enables you to process both relational data and non-relational structures, such as graphs, JSON, spatial, and XML.Azure SQL Database is a Platform as a Service Solution

50
Q

Azure Cloud Shell

A

Azure Cloud Shell allows access to the CLI and Powershell consoles in the Azure Portal

51
Q

resource group

A

A resource group is a container that holds related resources for an Azure solution. The resource group can include all the resources for the solution, or only those resources that you want to manage as a group.

52
Q

Service Health

A

Service Health tracks four types of health events that may impact your resources:

Service issues - Problems in the Azure services that affect you right now.

Planned maintenance - Upcoming maintenance that can affect the availability of your services in the future.

Health advisories - Changes in Azure services that require your attention. Examples include deprecation of Azure features or upgrade requirements (e.g upgrade to a supported PHP framework).

Security advisories - Security related notifications or violations that may affect the availability of your Azure services.

53
Q

Azure Logic Apps

A

Azure Logic Apps is intended to be a serverless orchestration service.

54
Q

Azure Cost Manager

A

provided at no cost. SaaS solution that lets your company monitor, allocate and optimizae cloud spend in a multi could environment.

55
Q

Azure IoT Hub

A

Platform as a Service solution that requires to write code to connect the ioT devices. Supports device to cloud messaging but cannot be used to analyze telemtry data

56
Q

Transfering billing ownership of a subscription from one Azure AD tenant to another

A

RBAC assignments do not carry over, all users and groups with RBAC access lose access.

57
Q

What benefit does a Content Delivery Network (CDN) provide its users?

A

allows you to reduce traffic coming into a webserver for static unchanging files such as images, pdfs

CDN is an umbrella term spanning different types of content delivery services: video streaming, software downloads, web and mobile content acceleration, licensed/managed CDN, transparent caching, and services to measure CDN performance, load balancing, Multi CDN switching and analytics and cloud intelligence

58
Q

Azure Active Directory Domain Services

A

Settings for user and computer objects in Azure Active Directory Domain Services (Azure AD DS) are often managed using Group Policy Objects (GPOs). There are some predefined built-in GPOs and you can customize these to configure Group Policy as needed for your environment.

59
Q

Big Data and Analytics

A

Azure Synapse Analytics

HD Insights

Azure Databricks

60
Q

Azure Cosmos DB

A

Azure Cosmos DB supports schema-less data, which lets you build highly responsive and Always On applications to support constantly changing data. Azure Cosmos DB stores data in atom-record-sequence (ARS) format. The data is then abstracted and projected as an API, which you specify when you are creating your database. Your choices include SQL, MongoDB, Cassandra, Tables, and Gremlin.

fast NoSQL database with open APIs for any scale. Not a big data solution. allows to store non structured information as JSON files

61
Q

Subscription

A

is a billing unit.

users can have access to one or more subscriptions

all resources consumed by a subscription will be billed to the owner

62
Q

Azure Functions

A

Azure Functions is a serverless compute service, allows to write code that executs a trigger

while Azure Logic Apps is intended to be a serverless orchestration service.

implement smal pieces of code to execute in response to triggering events without the need to deploy application infrastructure

63
Q

Cloud Services

A
64
Q

LAMP

A

The LAMP stack is the foundation for Linux hosted websites is the Linux, Apache, MySQL and PHP (LAMP) software stack.

65
Q

Azure Advisor

A

integrates with Azure Security Center to prevent, detect and respond to threats.

66
Q

Azure Files

A

the only storage option that supports persistent storage for ACI

67
Q

Disk Storage

A

stores data as a Virtual Hard disk that is available to the VM that the disk is attached to. this storage does not provide outside access

68
Q

Service Health does not:

A

allow you to receive e-mail swhen unauthorized users attempt to access a VM, this is captured in resource logs.

does not allow to view App service performance with Windows Task manager

69
Q

Application Insights

A

monitors performance, availability and usage of web applications, exposes an API so that developers can send telemetry data to Azure

A feature of Azure Monitor that allows you to visually analyze telemetry data. It is an application performance management service

70
Q

Application Security Group

A

lets you group virtual machines and define network security policies

71
Q

Azure Event Grid

A

Solution for builiding event driven architechtures that subscribe to Azure Resources and route events to different end points

72
Q

Horizontal scaling

A

add more machines. vertical scaling, add more CPU’s

73
Q

Azure Resource manager

A

integrates with Azure Portal, Powershell,CLI and RestAPI to perform deployment and management tasks

74
Q

Azure Event Grid

A

Provides a solution for building event driven architectures that subscribe to Azure resources and route events to different endpoints

75
Q

MFA and SSPR Authentication types

A

password

SMS

Voice call

76
Q

Azure DDoS

A

Standard version is not set up automatically.

detect, prevent and automatically mitigate against DDoS attacks.

Basic version is automatic

Protection is not provided for App service envirionments

77
Q

Security Center

A

provides security recommendations and suggests remediation actions

monitoring service that provides visibility of your security posture across all of your services, both on Azure and on-premises. The term security posture refers to cybersecurity policies and controls, as well as how well you can predict, prevent, and respond to security threats.

78
Q

Azure information Protection

A

AIP) is a cloud-based solution that enables organizations to discover, classify, and protect documents and emails by applying labels to content.

AIP is part of the Microsoft Information Protection (MIP) solution, and extends the labeling and classification functionality provided by Microsoft 365.

79
Q

Shared Responsibility Model

A
80
Q

Fault Tolerance

A

ability of a system to remain operational after critical failure through configurations.

81
Q

Application Gateway

A

Load balancing solution that uses routing to send HTTP traffic to a pool of backend instances

82
Q

Traffic Manager

A

allows users to access Azure reources from a datacenter that is nearest to them by using Domain Name Systems (DNS)

83
Q

Regions

A

always paired iwth other regions.

84
Q

Azure Database for PostgreSQL Hyperscale

A

PaaS that can scale horizontally by breaking up large data tables into smaller chunks so called shards. Hyperscale also enables query parallelization across multiple servers.

85
Q

Scalabiity

A

increasing or decreasing resources to meet demand