Summer Goodies - 55% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: av5rz84q

Exact2Pass Menu

Question # 4

A company migrates an on-premises Windows virtual machine (VM) to Azure. An administrator enables backups for the VM by using the Azure portal.

The company reports that the Azure VM backup job is failing.

You need to troubleshoot the issue.

Solution: Configure the retention range for the current VM backup policy.

Does the solution meet the goal?

A.

Yes

B.

No

Full Access
Question # 5

A company has an Azure tenant. The company deploys an Azure Firewall named FW1 using the Standard SKU. You configure FW1 using classic firewall rules.

The company creates an application rule collection with the following settings:

Priority: 100

Action: Deny

Rule type: FQDN

Source type: IP address

Source: *

Protocol: http:80,https:443

Target FQDN: *.cloud.contoso.com

An engineer observes that traffic to console.cloud.conotoso.com is still allowed by FW1.

You need to determine why the traffic is allowed.

What should you review?

A.

Network rules

B.

Web categories

C.

Infrastructure rules

D.

Application rules

Full Access
Question # 6

A company migrates existing Ubuntu Linux servers from their on-premises vSphere infrastructure to Azure.

The virtual machines (VMs) are experiencing a low network throughput of 20 Mbps. The VMs are expected to sustain 300 Mbps.

You need to ensure that the VMs are compatible with Azure.

Which change should you make?

A.

Install a kernel name that ends with -azure.

B.

Configure the network interfaces to 1000 Mbps/full duplex.

C.

Redeploy the VM with Accelerated Networking enabled.

D.

Increase the TCP buffers and window size kernel parameters.

Full Access
Question # 7

A company has an ExpressRoute gateway between their on-premises site and Azure. The ExpressRoute gateway is on a virtual network named VNet1. The company enables FastPath on the gateway. You associate a network security group (NSG) with all of the subnets.

Users report issues connecting to VM1 from the on-premises environment. VM1 is on a virtual network named VNet2. Virtual network peering is enabled between VNet1 and VNet2.

You create a flow log named FlowLog1 and enable it on the NSG associated with the gateway subnet.

You discover that FlowLog1 is not reporting outbound flow traffic.

You need to resolve the issue with FlowLog1.

What should you do?

A.

Enable FlowLog1 in a network security group associated with the subnet of VM1.

B.

Configure the FlowTimeoutInMinutes property on VNet2 to a non-null value.

C.

Configure the FlowTimeoutInMinutes property on VNet1 to a non-null value.

D.

Configure FlowLog1 for version 2.

Full Access
Question # 8

A company manages a solution that uses Azure Functions.

A function returns the following error: Azure Function Runtime is unreachable.

You need to troubleshoot the issue.

What are two possible causes of the issue?

A.

The execution quota is full.

B.

The company did not configure a timer trigger.

C.

The storage account application settings were deleted.

D.

The function key was deleted.

E.

The storage account for the function was deleted.

Full Access
Question # 9

A company attempts to implement just-in-time (JIT) access for a virtual machine (VM) named VM1.

The company reports that they are unable to complete the process.

You need to implement JIT access and test the deployment.

Which PowerShell cmdlets should you run?

Full Access
Question # 10

A company uses an Azure Virtual Network (VNet) gateway named VNetGW1. VNetGW1 connects to a partner site by using a site-to-site VPN connection with dynamic routing.

The company observes that the VPN disconnects from time to time.

You need to troubleshoot the cause for the disconnections.

What should you verify?

A.

The partner's VPN device and VNetGW1 are configured using the same shared key.

B.

VNetGW1 has exceeded the subnet Security Association pairs.

C.

The partner's VPN device and VNetGW1 are configured with the same virtual network address space.

D.

The public IP address of the partner's VPN device is configured in the local network gateway address space on VNetGW1.

Full Access
Question # 11

A company deploys an Azure Virtual Network gateway. The company connects to the gateway by using a site-to-site VPN connection.

The company's on-premises VPN gateway is reporting an issue with the Phase 1 proposal from the Azure Virtual Network gateway.

You need to troubleshoot the issue by reviewing the logs.

Which log should you analyze?

A.

P2SDiagnosticLog

B.

GatewayDiagnosticLog

C.

IKEDiagnosticLog

D.

RouteDiagnosticLog

Full Access
Question # 12

A company named Contoso connects to Azure PaaS services using Azure Private Link. The company has a virtual network named contoso-vn in a resource group named contoso-rg.

An engineer modifies the Private Link service by using Azure CLI. They are unable to use a source IP address from a subnet named default.

You need to resolve the issue.

How should you complete the command?

Full Access