Summer Sale Special - Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: sntaclus

You have an Azure virtual machine named VM1.

You need to capture all the network traffic of VM1 by using Azure Network Watcher. To which locations can the capture be written?

A.

a file path on VM1 only

B.

General purpose v2 standard only

C.

a Block blob premium account only

D.

General purpose v2 standard and a file path on VM1 only

E.

General purpose v2 standard and a Block blob premium account only

F.

blob storage, a file path on VM1, and a Block blob premium account

Your company has offices in and Amsterdam. The company has an Azure subscription. Both offices connect to Azure by using a Site-to-Site VPN connection.

The office in Amsterdam uses resources in the North Europe Azure region. The office in New York uses resources in the East US Azure region.

You need to implement ExpressRoute circuits to connect each office to the nearest Azure region. Once the ExpressRoute circuits are connected, the on-premises computers in the Amsterdam office must be able to connect to the on-premises servers in the New York office by using the ExpressRoute circuits.

Which ExpressRoute option should you use?

A.

ExpressRoute Local

B.

ExpressRoute FastPath

C.

ExpressRoute Direct

D.

ExpressRoute Global Reach

Task 10

You need to configure VNET1 to log all events and met rics. The solution must ensure that you can query the events and metrics directly from the Azure portal by using KQL.

You register a DNS domain with a third-party registrar.

You need to host the DNS zone on Azure.

Which three actions should you perform in sequence? To answer, move the appropriate actions from the list of actions to the answer area and arrange them in the correct order.

Task 2

You need to create an Azure Firewall instance named FW1 that meets the following requirements:

• Has an IP address from the address range of 10.1.255.0/24

• Uses a new Premium firewall policy named FW-pohcy1

• Routes traffic directly to the internet

You have an Azure subscription that contains a user named User1 and the resources shown in the following table.

You need to ensure that User1 can associate Policy1 to FW1 by using Azure Firewall Manager. The solution must follow the principle of least privilege.

Which role should you assign to User1 for each resource group? To answer, select the appropriate options in the answer area.

NOTE: Each correct selection is worth one point.

You have an Azure subscription that contains a virtual network named VNet1. VNet1 has a subnet mask of /24. You plan to implement an Azure application gateway that will have the following configurations:

• Public endpoints: 1

• Private endpoints: 1

• Minimum instances: 1

• Maximum instances: 10

You need to configure the address space for the subnet of the application gateway. The solution must minimize the number of IP addresses allocated to the application gateway subnet.

What is the minimum number of assignable IP addresses required?

A.

1

B.

2

C.

11

D.

12

E.

20

You have an Azure subscription that contains the resource groups shown in the following table.

You have the virtual networks shown in the following table.

You have the subnets shown in the following table.

For each of the following statements, select Yes if the statement is true. Otherwise, select No.

NOTE: Each correct selection is worth one point.

You have an Azure virtual machine named VM1.

You need to capture all the network traffic of VM1 by using Azure Network Watcher. To which locations can the capture be written?

A.

a file system path on VM1 only

B.

General purpose v2 standard storage account only

C.

a Block blob premium storage account only

D.

General purpose v2 path on VM1 only

E.

General purpose v2 standard storage account and a Block blob premium account only

You have an Azure subscription that contains the resources shown in the following table.

Policy1 has the following settings:

• Service: Microsoft.Storage

• Allowed Resources: storage1

Subnet1 has the following settings:

• Name: Subnet1

• Subnet address range: 10.0.0.0/24

• NAT gateway: None

• Network security group: None

• Route table: None

• Service Endpoints

o Services: 0 selected

• Subnet Delegation

o Delegate subnet to a service: None

For each of the following statements, select yes if the statement is true. Otherwise, select No.

NOTE: Each correct selection is worth one point.