Our pass rate is high to 98.9% and the similarity percentage between our AZ-102 Dumps and real exam is 90% based on our seven-year educating experience. Do you want achievements in the Microsoft AZ-102 exam in just one try? I am currently studying for the AZ-102 Braindumps. Latest AZ-102 Exam Questions, Try Microsoft AZ-102 Brain Dumps First.

Also have AZ-102 free dumps questions for you:

NEW QUESTION 1
You create a new replication policy in Azure for the physical servers. You successfully complete the following actions:
Create and configure a Recovery Services vault.
Ensure Internet connectivity.
Ensure that the required URLs are reachable.
Ensure that the host server requirements are met.
Ensure that the servers marked for replication comply with the requirements of the Azure virtual machines.
You need to replicate the on-premises servers to Azure.
Which four actions should you perform in sequence? To answer, move the appropriate actions from the list of actions to the answer area and arrange them in the correct order.
NOTE: More than one order of answer choices is correct. You will receive credit for any of the correct orders you select.
AZ-102 dumps exhibit

    Answer:

    Explanation: Step 2: Deploy the OVF template Set up the source environment.
    Download the OVF template for the configuration server, and import the template in VMware.
    Note: Open Virtualization Format (OVF) template is an industry standard software distribution model for virtual machine templates. Starting January 2021, configuration server for the VMware to Azure scenario will be available to all our customers as an OVF template.
    Step 3: Associate the configuration server to the replication policy Associate the replication policy with your on-premises configuration server. Step 4: Enable replication
    References:
    https://docs.microsoft.com/en-us/azure/site-recovery/vmware-azure-set-up-replication

    NEW QUESTION 2
    DRAG DROP
    You need to prepare the New York office infrastructure for the migration of the on-premises virtual machines to Azure.
    Which four actions you perform in sequence? To answer, move the appropriate actions from the list of actions to the answer area and arrange them in the correct order.
    AZ-102 dumps exhibit

      Answer:

      Explanation: Box 1:
      From the Azure portal, download the OVF file.
      In the vCenter Server, import the Collector appliance as a virtual machine using the Deploy OVF Template wizard.
      In vSphere Client console, click File > Deploy OVF Template.
      In the Deploy OVF Template Wizard > Source, specify the location for the .ovf file. Box 2: From VM1, connect to the collector virtual machine
      After you've created the Collector virtual machine, connect to it and run the Collector. Box 3: From the ASRV1 blade in the Azure portal, select a protection goal.
      Box 4: From VM1, register the configuration server. Register the configuration server in the vault
      Scenario: The Azure infrastructure and the on-premises infrastructure and the on-premises infrastructure must be prepared for the migration of the VMware virtual machines to Azure. References:
      Migrate Your Virtual Machines to Microsoft Azure, Includes guidance for optional data migration, Proof of Concept guide, September 2021 https://azuremigrate.blob.core.windows.net/publicpreview/Azure%20Migrate%20-
      %20Preview%20User%20Guide.pdf

      NEW QUESTION 3
      HOT SPOT
      You have an Azure subscription.
      You need to implement a custom policy that meet the following requirements:
      *Ensures that each new resource group in the subscription has a tag named organization set to a value of Contoso.
      *Ensures that resource group can be created from the Azure portal.
      *Ensures that compliance reports in the Azure portal are accurate.
      How should you complete the policy? To answer, select the appropriate options in the answers area.
      AZ-102 dumps exhibit

        Answer:

        Explanation: References: https://docs.microsoft.com/en-us/azure/governance/policy/concepts/definitionstructure

        NEW QUESTION 4
        You plan to automate the deployment of a virtual machine scale set that uses the Windows Server 2021 Datacenter image.
        You need to ensure that when the scale set virtual machines are provisioned, they have web server components installed.
        Which two actions should you perform? Each correct answer presents part of the solution. NOTE Each correct selection is worth one point.

        • A. Modify the extensionProfile section of the Azure Resource Manager template.
        • B. Create a new virtual machine scale set in the Azure portal.
        • C. Create an Azure policy.
        • D. Create an automation account.
        • E. Upload a configuration scrip

        Answer: AB

        Explanation: Virtual Machine Scale Sets can be used with the Azure Desired State Configuration (DSC) extension handler. Virtual machine scale sets provide a way to deploy and manage large numbers of virtual machines, and can elastically scale in and out in response to load. DSC is used to configure the VMs as they come online so they are running the production software.
        References: https://docs.microsoft.com/en-us/azure/virtual-machine-scale-sets/virtual-machinescale- sets-dsc

        NEW QUESTION 5
        You have an Azure App Service plan that hosts an Azure App Service named App1.
        You configure one production slot and four staging slots for App1.
        You need to allocate 10 percent of the traffic to each staging slot and 60 percent of the traffic to the production slot.
        What should you add to Appl1?

        • A. slots to the Testing in production blade
        • B. a performance test
        • C. a WebJob
        • D. templates to the Automation script blade

        Answer: A

        Explanation: Besides swapping, deployment slots offer another killer feature: testing in production. Just like the name suggests, using this, you can actually test in production. This means that you can route a specific percentage of user traffic to one or more of your deployment slots.
        Example:
        AZ-102 dumps exhibit
        References:
        https://stackify.com/azure-deployment-slots/

        NEW QUESTION 6
        You need to recommend an identify solution that meets the technical requirements. What should you recommend?

        • A. federated single-on (SSO) and Active Directory Federation Services (AD FS)
        • B. password hash synchronization and single sign-on (SSO)
        • C. cloud-only user accounts
        • D. Pass-through Authentication and single sign-on (SSO)

        Answer: A

        Explanation: Active Directory Federation Services is a feature and web service in the Windows Server Operating System that allows sharing of identity information outside a company’s network.
        Scenario: Technical Requirements include:
        Prevent user passwords or hashes of passwords from being stored in Azure.
        References: https://www.sherweb.com/blog/active-directory-federation-services/

        NEW QUESTION 7
        You have an Azure Active Directory (Azure AD) tenant named contosocloud.onmicrosoft.com. Your company has a public DNS zone for contoso.com.
        You add contoso.com as a custom domain name to Azure AD You need to ensure that Azure can verify the domain name. Which type of DNS record should you create?

        • A. PTR
        • B. MX
        • C. NSEC3
        • D. RRSIG

        Answer: B

        Explanation: To verify your custom domain name (example)
        Sign in to the Azure portal using a Global administrator account for the directory. Select Azure Active Directory, and then select Custom domain names.
        On the Fabrikam - Custom domain names page, select the custom domain name, Contoso.
        On the Contoso page, select Verify to make sure your custom domain is properly registered and is valid for Azure AD. Use either the TXT or the MX record type.
        AZ-102 dumps exhibit
        References:
        https://docs.microsoft.com/en-us/azure/active-directory/fundamentals/add-custom-domain

        NEW QUESTION 8
        You need to recommend a solution to automate the configuration for the finance department users. The solution must meet the technical requirements.
        What should you include in the recommended?

        • A. Azure AP B2C
        • B. Azure AD Identity Protection
        • C. an Azure logic app and the Microsoft Identity Management (MIM) client
        • D. dynamic groups and conditional access policies

        Answer: D

        Explanation: Scenario: Ensure Azure Multi-Factor Authentication (MFA) for the users in the finance department only.
        The recommendation is to use conditional access policies that can then be targeted to groups of users, specific applications, or other conditions.
        References:
        https://docs.microsoft.com/en-us/azure/active-directory/authentication/howto-mfa-userstates

        NEW QUESTION 9
        DRAG DROP
        You have an Azure Linux virtual machine that is protected by Azure Backup. One week ago, two files were deleted from the virtual machine.
        You need to restore the deleted files to an on-premises computer as quickly as possible.
        Which four actions should you perform in sequence? To answer, move the appropriate actions from the list of actions to the answer area and arrange them in the correct order.
        AZ-102 dumps exhibit

          Answer:

          Explanation: To restore files or folders from the recovery point, go to the virtual machine and choose the desired recovery point.
          Step 0. In the virtual machine's menu, click Backup to open the Backup dashboard. Step 1. In the Backup dashboard menu, click File Recovery.
          Step 2. From the Select recovery point drop-down menu, select the recovery point that holds the files you want. By default, the latest recovery point is already selected.
          Step 3: To download the software used to copy files from the recovery point, click Download Executable (for Windows Azure VM) or Download Script (for Linux Azure VM, a python script is generated).
          Step 4: Copy the files by using AzCopy
          AzCopy is a command-line utility designed for copying data to/from Microsoft Azure Blob, File, and Table storage, using simple commands designed for optimal performance. You can copy data between a file system and a storage account, or between storage accounts.
          References:
          https://docs.microsoft.com/en-us/azure/backup/backup-azure-restore-files-from-vm https://docs.microsoft.com/en-us/azure/storage/common/storage-use-azcopy

          NEW QUESTION 10
          HOT SPOT
          You have an Azure Active Directory (Azure AD) tenant that contains three global administrators named Admin1, Admin2, and Admin3.
          The tenant is associated to an Azure subscription. Access control for the subscription is configured as shown in the Access control exhibit. (Click the Exhibit tab.)
          AZ-102 dumps exhibit
          You sign in to the Azure portal as Admin1 and configure the tenant as shown in the Tenant exhibit. (Click the Exhibit tab.)
          AZ-102 dumps exhibit
          For each of the following statements, select Yes if the statement is true. Otherwise, select No. NOTE: Each correct selection is worth one point.
          AZ-102 dumps exhibit

            Answer:

            Explanation: AZ-102 dumps exhibit

            NEW QUESTION 11
            You have five Azure virtual machines that run Windows Server 2021.
            You have an Azure load balancer named LB1 that provides load balancing se
            You need to ensure that visitors are serviced by the same web server for each request. What should you configure?

            • A. Floating IP (direct server return) to Disable
            • B. Session persistence to Client IP
            • C. a health probe
            • D. Session persistence to None

            Answer: B

            Explanation: You can set the sticky session in load balancer rules with setting the session persistence as the client IP.
            References:
            https://cloudopszone.com/configure-azure-load-balancer-for-sticky-sessions/

            NEW QUESTION 12
            You have 100 Azure subscriptions. All the subscriptions are associated to the same Azure Active Directory (Azure AD) tenant named contoso.com.
            You are a global administrator.
            You plan to create a report that lists all the resources across all the subscriptions. You need to ensure that you can view all the resources in all the subscriptions. What should you do?

            • A. From the Azure portal, modify the profile settings of your account.
            • B. From Windows PowerShell, run the Add-AzureADAdministrativeUnitMember cmdlet.
            • C. From Windows PowerShell, run the New-AzureADUserAppRoleAssignment cmdlet.
            • D. From the Azure portal, modify the properties of the Azure AD tenan

            Answer: C

            Explanation: The New-AzureADUserAppRoleAssignment cmdlet assigns a user to an application role in Azure Active Directory (AD). Use it for the application report.
            References: https://docs.microsoft.com/en-us/powershell/module/azuread/newazureaduserapproleassignment? view=azureadps-2.0

            NEW QUESTION 13
            SIMULATION
            Click to expand each objective. To connect to the Azure portal, type https://portal.azure.com in the browser address bar.
            AZ-102 dumps exhibit
            AZ-102 dumps exhibit
            AZ-102 dumps exhibit
            AZ-102 dumps exhibit
            AZ-102 dumps exhibit
            AZ-102 dumps exhibit
            When you are finished performing all the tasks, click the ‘Next’ button.
            Note that you cannot return to the lab once you click the ‘Next’ button. Scoring occur in the background while you complete the rest of the exam.
            Overview
            The following section of the exam is a lab. In this section, you will perform a set of tasks in a live environment. While most functionality will be available to you as it would be in a live environment, some functionality (e.g., copy and paste, ability to navigate to external websites) will not be possible by design. Scoring is based on the outcome of performing the tasks stated in the lab. In other words, it doesn’t matter how you accomplish the task, if you successfully perform it, you will earn credit for that task.
            Labs are not timed separately, and this exam may have more than one lab that you must complete. You can use as much time as you would like to complete each lab. But, you should manage your time appropriately to ensure that you are able to complete the lab(s) and all other sections of the exam in the time provided.
            Please note that once you submit your work by clicking the Next button within a lab, you will NOT be able to return to the lab.
            To start the lab
            You may start the lab by clicking the Next button.
            You need to deploy an Azure virtual machine named VM1004a based on the Ubuntu Server 17.10 image, and then to configure VM1004a to meet the following requirements:
            The virtual machine must contain data disks that can store at least 15 TB of data. The data disks must be able to provide at least 2,000 IOPS.
            Storage costs must be minimized.
            What should you do from the Azure portal?

              Answer:

              Explanation: 1. Open the Azure portal.
              2. On the left menu, select All resources. You can sort the resources by Type to easily find your images.
              3. Select the image you want to use from the list. The image Overview page opens.
              4. Select Create VM from the menu.
              5. Enter the virtual machine information.
              Select VM1004a as the name for the first Virtual machine.
              The user name and password entered here will be used to log in to the virtual machine. When complete, select OK. You can create the new VM in an existing resource group, or choose Create new to create a new resource group to store the VM.
              6. Select a size for the VM. To see more sizes, select View all or change the Supported disk type filter. To support 15 TB of data you would need a Premium disk.
              7. Under Settings, make changes as necessary and select OK.
              8. On the summary page, you should see your image name listed as a Private image. Select Ok to start the virtual machine deployment.
              References: https://docs.microsoft.com/en-us/azure/virtual-machines/windows/create-vmgeneralized- managed

              NEW QUESTION 14
              You have an Azure subscription that contains three virtual networks named VNet1, VNet2, VNet3.
              VNet2 contains a virtual appliance named VM2 that operates as a router.
              You are configuring the virtual networks in a hub and spoke topology that uses VNet2 as the hub network.
              You plan to configure peering between VNet1 and VNet2 and between VNet2 and VNet3. You need to provide connectivity between VNet1 and VNet3 through VNet2.
              Which two configurations should you perform? Each correct answer presents part of the solution. NOTE: Each correct selection is worth one point.

              • A. On the peering connections, allow forwarded traffic.
              • B. On the peering connections, allow gateway transit.
              • C. Create route tables and assign the table to subnets.
              • D. Create a route filter.
              • E. On the peering connections, use remote gateway

              Answer: BE

              Explanation: Allow gateway transit: Check this box if you have a virtual network gateway attached to this virtual network and want to allow traffic from the peered virtual network to flow through the gateway. The peered virtual network must have the Use remote gateways checkbox checked when setting up the peering from the other virtual network to this virtual network.
              References:
              https://docs.microsoft.com/en-us/azure/virtual-network/virtual-network-managepeering# requirements-and-constraints

              NEW QUESTION 15
              You create an Azure subscription that is associated to a basic Azure Active Directory (Azure AD) tenant. You need to receive an email notification when any user activates an administrative role. What should you do?

              • A. Purchase Azure AD Premium 92 and configure Azure AD Privileged Identity Management,
              • B. Purchase Enterprise Mobility + Security E3 and configure conditional access policies.
              • C. Purchase Enterprise Mobility + Security E5 and create a custom alert rule in Azure Security Center.
              • D. Purchase Azure AD Premium PI and enable Azure AD Identity Protectio

              Answer: A

              Explanation: When key events occur in Azure AD Privileged Identity Management (PIM), email notifications are sent. For example, PIM sends emails for the following events:
              When a privileged role activation is pending approval When a privileged role activation request is completed When a privileged role is activated
              When a privileged role is assigned When Azure AD PIM is enabled References:
              https://docs.microsoft.com/en-us/azure/active-directory/privileged-identity-management/pimemail- notifications

              NEW QUESTION 16
              DRAG DROP
              You have an Azure subscription named Subscription1.
              You create an Azure Storage account named contosostorage, and then you create a file share named
              data.
              Which UNC path should you include in a script that references files from the data file share? To answer, drag the appropriate values to the correct targets. Each value may be used once, more than once, or not at all. You may need to drag the split bar between panes or scroll to view content. NOTE: Each correct selection is worth one point.
              AZ-102 dumps exhibit

                Answer:

                Explanation: Box 1: contosostorage The name of account
                Box 2: file.core.windows.net
                Box 3: data
                The name of the file share is data. Example:
                AZ-102 dumps exhibit
                References: https://docs.microsoft.com/en-us/azure/storage/files/storage-how-to-use-files-windows

                NEW QUESTION 17
                You have an Azure virtual network named VNet1 that contains a subnet named Subnet1. Subnet1 contains three Azure virtual machines. Each virtual machine has a public IP address.
                The virtual machines host several applications that are accessible over port 443 to user on the Internet.
                Your on-premises network has a site-to-site VPN connection to VNet1.
                You discover that the virtual machines can be accessed by using the Remote Desktop Protocol (RDP) from the Internet and from the on-premises network.
                You need to prevent RDP access to the virtual machines from the Internet, unless the RDP connection is established from the on-premises network. The solution must ensure that all the applications can still be accesses by the Internet users.
                What should you do?

                • A. Modify the address space of the local network gateway.
                • B. Remove the public IP addresses from the virtual machines.
                • C. Modify the address space of Subnet1.
                • D. Create a deny rule in a network security group (NSG) that is linked to Subnet1.

                Answer: D

                Explanation: You can filter network traffic to and from Azure resources in an Azure virtual network with a network security group. A network security group contains security rules that allow or deny inbound network traffic to, or outbound network traffic from, several types of Azure resources.
                References:
                https://docs.microsoft.com/en-us/azure/virtual-network/security-overview

                NEW QUESTION 18
                You need to prepare the environment to meet the authentication requirements.
                Which two actions should you perform? Each correct answer presents part of the solution. NOTE: Each correct selection is worth one point.

                • A. Allow inbound TCP port 8080 to the domain controllers in the Miami office.
                • B. Add http://autogon.microsoftazuread-sso.com to the intranet zone of each client computer in the Miamioffice.
                • C. Join the client computers in the Miami office to Azure AD.
                • D. Install the Active Directory Federation Services (AD FS) role on a domain controller in the Miami office.
                • E. Install Azure AD Connect on a server in the Miami office and enable Pass-through Authenticatio

                Answer: BE

                Explanation: B: You can gradually roll out Seamless SSO to your users. You start by adding the following Azure AD URL to all or selected users' Intranet zone settings by using Group Policy in Active Directory: https://autologon.microsoftazuread-sso.com
                E: Seamless SSO works with any method of cloud authentication - Password Hash Synchronization or Pass-through Authentication, and can be enabled via Azure AD Connect.
                References:
                https://docs.microsoft.com/en-us/azure/active-directory/hybrid/how-to-connect-sso-quick-start

                Case Study: 2
                Contoso Ltd Overview
                Contoso, Ltd. is a manufacturing company that has offices worldwide. Contoso works with partner organizations to bring products to market.
                Contoso products are manufactured by using blueprint files that the company authors and maintains. Existing Environment
                Currently, Contoso uses multiple types of servers for business operations, including the following:
                ? File servers
                ? Domain controllers
                ? Microsoft SQL Server servers
                Your network contains an Active Directory forest named contoso.com. All servers and client computers are joined to Active Directory.
                You have a public-facing application named App1. App1 is comprised of the following three tiers:
                ? A SQL database
                ? A web front end
                ? A processing middle tier
                Each tier is comprised of five virtual machines. Users access the web front end by using HTTPS only. Requirements
                Planned Changes
                Contoso plans to implement the following changes to the infrastructure: Move all the tiers of App1 to Azure.
                Move the existing product blueprint files to Azure Blob storage.
                Create a hybrid directory to support an upcoming Microsoft Office 365 migration project. Technical Requirements
                Contoso must meet the following technical requirements: Move all the virtual machines for App1 to Azure. Minimize the number of open ports between the App1 tiers.
                Ensure that all the virtual machines for App1 are protected by backups. Copy the blueprint files to Azure over the Internet.
                Ensure that the blueprint files are stored in the archive storage tier. Ensure that partner access to the blueprint files is secured and temporary.
                Prevent user passwords or hashes of passwords from being stored in Azure. Use unmanaged standard storage for the hard disks of the virtual machines.
                Ensure that when users join devices to Azure Active Directory (Azure AD), the users use a mobile phone to verify their identity.
                Minimize administrative effort whenever possible. User Requirements
                Contoso identifies the following requirements for users:
                Ensure that only users who are part of a group named Pilot can join devices to Azure AD. Designate a new user named Admin1 as the service administrator of the Azure subscription. Ensure that a new user named User3 can create network objects for the Azure subscription.

                NEW QUESTION 19
                You have an Azure subscription that contains the resources in the following table.
                AZ-102 dumps exhibit
                To which subnets can you apply NSG1?

                • A. the subnets on VNet2 only
                • B. the subnets on VNet1 only
                • C. the subnets on VNet2 and VNet3 only
                • D. the subnets on VNet1, VNet2, and VNet3
                • E. the subnets on VNet3 only

                Answer: E

                Explanation: All Azure resources are created in an Azure region and subscription. A resource can only be created in a virtual network that exists in the same region and subscription as the resource.
                References: https://docs.microsoft.com/en-us/azure/virtual-network/virtual-network-vnet-plandesign- arm

                100% Valid and Newest Version AZ-102 Questions & Answers shared by Certleader, Get Full Dumps HERE: https://www.certleader.com/AZ-102-dumps.html (New 195 Q&As)