[6-Aug-2020 Update] Exam AZ-104 VCE Dumps and AZ-104 PDF Dumps from PassLeader

Valid AZ-104 Dumps shared by PassLeader for Helping Passing AZ-104 Exam! PassLeader now offer the newest AZ-104 VCE dumps and AZ-104 PDF dumps, the PassLeader AZ-104 exam questions have been updated and ANSWERS have been corrected, get the newest PassLeader AZ-104 dumps with VCE and PDF here: https://www.passleader.com/az-104.html (270 Q&As Dumps –> 310 Q&As Dumps –> 421 Q&As Dumps)

BTW, DOWNLOAD part of PassLeader AZ-104 dumps from Cloud Storage: https://drive.google.com/open?id=1ms1PBdUaeBViEHIq26Ry2_bjnBBmO9PL

NEW QUESTION 257
You have an Azure subscription named Subscription1 that contains a virtual network named VNet1. VNet1 is in a resource group named RG1. Subscription1 has a user named User1. User1 has the following roles:
– Reader
– Security Admin
– Security Reader
You need to ensure that User1 can assign the Reader role for VNet1 to other users. What should you do?

A.    Remove User 1 from the Security Reader role for Subscription1. Assign User1 the Contributor role for RG1.
B.    Assign User1 the Owner role for VNet1.
C.    Remove User1 from the Security Reader and Reader roles for Subscription1.
D.    Assign User1 the Network Contributor role for RG1.

Answer: B
Explanation:
Has full access to all resources including the right to delegate access to others.
https://docs.microsoft.com/en-us/azure/role-based-access-control/overview

NEW QUESTION 258
You have an Azure subscription that contains a storage account named account1. You plan to upload the disk files of a virtual machine to account1 from your on-premises network. The on-premises network uses a public IP address space of 131.107.1.0/24. You plan to use the disk files to provision an Azure virtual machine named VM1. VM1 will be attached to a virtual network named VNet1. VNet1 uses an IP address space of 192.168.0.0/24. You need to configure account1 to meet the following requirements:
– Ensure that you can upload the disk files to account1.
– Ensure that you can attach the disks to VM1.
– Prevent all other access to account1.
Which two actions should you perform? (Each correct answer presents part of the solution. Choose two.)

A.    From the Firewalls and virtual networks blade of account1, select Selected networks.
B.    From the Firewalls and virtual networks blade of account1, select Allow trusted Microsoft services to access this storage account.
C.    From the Firewalls and virtual networks blade of account1, add the 131.107.1.0/24 IP address range.
D.    From the Firewalls and virtual networks blade of account1, add VNet1.
E.    From the Service endpoints blade of VNet1, add a service endpoint.

Answer: AE
Explanation:
A: By default, storage accounts accept connections from clients on any network. To limit access to selected networks, you must first change the default action.
E: Grant access from a Virtual Network. Storage accounts can be configured to allow access only from specific Azure Virtual Networks. By enabling a Service Endpoint for Azure Storage within the Virtual Network, traffic is ensured an optimal route to the Azure Storage service. The identities of the virtual network and the subnet are also transmitted with each request.
https://docs.microsoft.com/en-us/azure/storage/common/storage-network-security

NEW QUESTION 259
You have an Azure virtual machine named VM1 that runs Windows Server 2016. You need to create an alert in Azure when more than two error events are logged to the System event log on VM1 within an hour.
Solution: You create an Azure Log Analytics workspace and configure the data settings. You add the Microsoft Monitoring Agent VM extension to VM1. You create an alert in Azure Monitor and specify the Log Analytics workspace as the source.
Does this meet the goal?

A.    Yes
B.    No

Answer: B
Explanation:
Instead: You create an Azure Log Analytics workspace and configure the data settings. You install the Microsoft Monitoring Agent on VM1. You create an alert in Azure Monitor and specify the Log Analytics workspace as the source.
https://docs.microsoft.com/en-us/azure/azure-monitor/platform/agents-overview

NEW QUESTION 260
You have an Azure virtual machine named VM1 that runs Windows Server 2016. You need to create an alert in Azure when more than two error events are logged to the System event log on VM1 within an hour.
Solution: You create an Azure Log Analytics workspace and configure the data settings. You install the Microsoft Monitoring Agent on VM1. You create an alert in Azure Monitor and specify the Log Analytics workspace as the source.
Does this meet the goal?

A.    Yes
B.    No

Answer: A
Explanation:
Alerts in Azure Monitor can identify important information in your Log Analytics repository. They are created by alert rules that automatically run log searches at regular intervals, and if results of the log search match particular criteria, then an alert record is created and it can be configured to perform an automated response. The Log Analytics agent collects monitoring data from the guest operating system and workloads of virtual machines in Azure, other cloud providers, and on-premises. It collects data into a Log Analytics workspace.
https://docs.microsoft.com/en-us/azure/azure-monitor/learn/tutorial-response
https://docs.microsoft.com/en-us/azure/azure-monitor/platform/agents-overview

NEW QUESTION 261
You have a deployment template named Template1 that is used to deploy 10 Azure web apps. You need to identify what to deploy before you deploy Template1. The solution must minimize Azure costs. What should you identify?

A.    5 Azure Application Gateways
B.    one App Service plan
C.    10 App Service plans
D.    one Azure Traffic Manager
E.    one Azure Application Gateway

Answer: B
Explanation:
You create Azure web apps in an App Service plan.
https://docs.microsoft.com/en-us/azure/app-service/overview-hosting-plans

NEW QUESTION 262
You have an Azure subscription that contains a virtual machine named VM1. VM1 hosts a line-of-business application that is available 24 hours a day. VM1 has one network interface and one managed disk. VM1 uses the D4s v3 size. You plan to make the following changes to VM1:
– Change the size to D8s v3.
– Add a 500-GB managed disk.
– Add the Puppet Agent extension.
– Enable Desired State Configuration Management.
Which change will cause downtime for VM1?

A.    Enable Desired State Configuration Management.
B.    Add a 500-GB managed disk.
C.    Change the size to D8s v3.
D.    Add the Puppet Agent extension.

Answer: C
Explanation:
While resizing the VM it must be in a stopped state.
https://azure.microsoft.com/en-us/blog/resize-virtual-machines/

NEW QUESTION 263
You need to deploy an Azure virtual machine scale set that contains five instances as quickly as possible. What should you do?

A.    Deploy five virtual machines. Modify the Availability Zones settings for each virtual machine.
B.    Deploy five virtual machines. Modify the Size setting for each virtual machine.
C.    Deploy one virtual machine scale set that is set to VM (virtual machines) orchestration mode.
D.    Deploy one virtual machine scale set that is set to ScaleSetVM orchestration mode.

Answer: D
Explanation:
https://docs.microsoft.com/en-us/azure/virtual-machine-scale-sets/orchestration-modes

NEW QUESTION 264
Your company has three offices. The offices are located in Miami, Los Angeles, and New York. Each office contains datacenter. You have an Azure subscription that contains resources in the East US and West US Azure regions. Each region contains a virtual network. The virtual networks are peered. You need to connect the datacenters to the subscription. The solution must minimize network latency between the datacenters. What should you create?

A.    three Azure Application Gateways and one on-premises data gateway
B.    three virtual hubs and one virtual WAN
C.    three virtual WANs and one virtual hub
D.    three on-premises data gateways and one Azure Application Gateway

Answer: C
Explanation:
https://docs.microsoft.com/en-us/azure/virtual-wan/virtual-wan-about

NEW QUESTION 265
You have an Azure subscription that contains a virtual network named VNet1. VNet1 contains four subnets named Gateway, Perimeter, NVA, and Production. The NVA subnet contains two network virtual appliances (NVAs) that will perform network traffic inspection between the Perimeter subnet and the Production subnet. You need to implement an Azure load balancer for the NVAs. The solution must meet the following requirements:
– The NVAs must run in an active-active configuration that uses automatic failover.
– The NVA must load balance traffic to two services on the Production subnet. The services have different IP addresses.
Which three actions should you perform? (Each correct answer presents part of the solution. Choose three.)

A.    Deploy a basic load balancer.
B.    Deploy a standard load balancer.
C.    Add two load balancing rules that have HA Ports and Floating IP enabled.
D.    Add two load balancing rules that have HA Ports enabled and Floating IP disabled.
E.    Add a frontend IP configuration, a backend pool, and a health probe.
F.    Add a frontend IP configuration, two backend pools, and a health probe.

Answer: BCF
Explanation:
A standard load balancer is required for the HA ports. Two backend pools are needed as there are two services with different IP addresses. Floating IP rule is used where backend ports are reused.
Incorrect:
Not E: HA Ports are not available for the basic load balancer.
https://docs.microsoft.com/en-us/azure/load-balancer/load-balancer-standard-overview
https://docs.microsoft.com/en-us/azure/load-balancer/load-balancer-multivip-overview

NEW QUESTION 266
You have an Azure subscription named Subscription1 that contains two Azure virtual networks named VNet1 and VNet2. VNet1 contains a VPN gateway named VPNGW1 that uses static routing. There is a site-to-site VPN connection between your on-premises network and VNet1. On a computer named Client1 that runs Windows 10, you configure a point-to-site VPN connection to VNet1. You configure virtual network peering between VNet1 and VNet2. You verify that you can connect to VNet2 from the on-premises network. Client1 is unable to connect to VNet2. You need to ensure that you can connect Client1 to VNet2. What should you do?

A.    Download and re-install the VPN client configuration package on Client1.
B.    Select Allow gateway transit on VNet1.
C.    Select Allow gateway transit on VNet2.
D.    Enable BGP on VPNGW1.

Answer: A
Explanation:
https://docs.microsoft.com/en-us/azure/vpn-gateway/vpn-gateway-about-point-to-site-routing

NEW QUESTION 267
Hotspot
You have an Azure virtual network named VNet1 that connects to your on-premises network by using a site-to-site VPN. VNet1 contains one subnet named Sunet1. Subnet1 is associated to a network security group (NSG) named NSG1. Subnet1 contains a basic internal load balancer named ILB1. ILB1 has three Azure virtual machines in the backend pool. You need to collect data about the IP addresses that connects to ILB1. You must be able to run interactive queries from the Azure portal against the collected data. What should you do? (To answer, select the appropriate options in the answer area.)
AZ-104-Exam-Questions-2671

Answer:
AZ-104-Exam-Questions-2672
Explanation:
https://docs.microsoft.com/en-us/azure/log-analytics/log-analytics-quick-create-workspace
https://docs.microsoft.com/en-us/azure/load-balancer/load-balancer-standard-diagnostics

NEW QUESTION 268
Drag and Drop
You have an Azure subscription that contains two virtual networks named VNet1 and VNet2. Virtual machines connect to the virtual networks. The virtual networks have the address spaces and the subnets configured as shown in the following table:
AZ-104-Exam-Questions-2681
You need to add the address space of 10.33.0.0/16 to VNet1. The solution must ensure that the hosts on VNet1 and VNet2 can communicate. Which three actions should you perform in sequence? (To answer, move the appropriate actions from the list of actions to the answer area and arrange them in the correct order.)
AZ-104-Exam-Questions-2682

Answer:
AZ-104-Exam-Questions-2683
Explanation:
https://docs.microsoft.com/en-us/azure/virtual-network/virtual-network-manage-peering

NEW QUESTION 269
……


Get the newest PassLeader AZ-104 VCE dumps here: https://www.passleader.com/az-104.html (270 Q&As Dumps –> 310 Q&As Dumps –> 421 Q&As Dumps)

And, DOWNLOAD the newest PassLeader AZ-104 PDF dumps from Cloud Storage for free: https://drive.google.com/open?id=1ms1PBdUaeBViEHIq26Ry2_bjnBBmO9PL