HOTSPOT
A company uses Azure Site Recovery for their on-premises Hyper-V servers. The company manages servers by using System Center Virtual Machine Manager (SCVMM).
An administrator reports that replication to the secondary site has failed.
You need to inspect the SCVMM logs and configuration files.
Which PowerShell cmdlets should you use?
Hot Area:
HOTSPOT
A company uses Azure Backup Agent to back up specific files and folders from an on- premises virtual machine (VM).
An administrator reports that the backup job is transferring files slowly. You determine that the backup job is verifying changes in directories by scanning the entire volume.
You need to determine the state of the backup job.
Hot Area:
HOTSPOT
A company named Contoso connects to Azure PaaS services using Azure Private Link. The company has a virtual network named contoso-vn in a resource group named contoso- rg.
An engineer modifies the Private Link service by using Azure CLI. They are unable to use a source IP address from a subnet named default.
You need to resolve the issue.
How should you complete the command?
Hot Area:
A company enables just-in-time (JIT) virtual machine (VM) access in Azure.
An administrator observes a list of VMs on the Unsupported tab of the JIT VM access page in the Microsoft Defender for Cloud portal.
You need to determine why some VMs are not supported for JIT VM access.
What should you conclude?
A. The administrator is using the Microsoft Defender for Cloud free tier.
B. The VMs were provisioned by using a classic deployment.
C. The VMs were recently provisioned by using an Azure Resource Manager deployment.
D. The administrator does not have the SecurityReader role.
A company has an Azure tenant. The company deploys an Azure Firewall named FW1 using the Standard SKU. You configure FW1 using classic firewall rules.
The company creates an application rule collection with the following settings:
Priority: 100
Action: Deny
Rule type: FQDN
Source type: IP address
Source: *
Protocol: http:80,https:443
Target FQDN: *.cloud.contoso.com
An engineer observes that traffic to console.cloud.conotoso.com is still allowed by FW1.
You need to determine why the traffic is allowed.
What should you review?
A. Network rules
B. Web categories
C. Infrastructure rules
D. Application rules
A company uses Azure AD Connect. The company plans to implement self-service password reset (SSPR).
An administrator receives an error that password writeback cloud not be enabled during the Azure AD Connect configuration. The administrator observes the following event log error:
Error getting auth token
You need to resolve the issue.
Solution: Use a global administrator account with a password that is less than 256 characters to configure Azure AD Connect.
Does the solution meet the goal?
A. Yes
B. No
A company enables just-in-time (JIT) virtual machine (VM) access in Azure.
An administrator observes a list of VMs on the Unsupported tab of the JIT VM access page in the Microsoft Defender for Cloud portal.
You need to determine why some VMs are not supported for JIT VM access.
What should you conclude?
A. The administrator does not have the SecurityReader role.
B. The administrator is using the Microsoft Defender for Cloud free tier.
C. The client firewall does not allow port 22 on the VMs.
D. A network security group is not associated with the VMs.
You manage an Azure subscription that contains the following resources:
An on-premises environment is connected to VNet1 by using ERGW1.
An administrator measures network latency for on-premises traffic that targets VM1 and VM2 by using the front-end IP address of the load balancer. The administrator enables ExpressRoute FastPath on ERGW1 and observes that the
latency has not changed.
You need to resolve the issue that is preventing the network latency improvements offered by ExpressRoute FastPath from taking effect.
What should you do?
A. Redeploy the load balancer as a Standard SKU.
B. Change the SKU for the ExpressRoute gateway.
C. Resize VM1 and VM2.
D. Enable accelerated networking on VM1 and VM2
A company deploys an Azure Virtual Network gateway. The company connects to the gateway by using a site-to-site VPN connection.
The company's on-premises VPN gateway is reporting an issue with the Phase 1 proposal from the Azure Virtual Network gateway.
You need to resolve the issue reported by the sales team employees.
What should you do?
A. Download the Azure VPN client configuration.
B. Enable IKEv2 on the virtual network gateway.
C. Configure custom routes for the client VPN.
D. Upgrade the virtual network gateway to the VpnGw2 SKU.
E. Install the certificate exported from another client computer.
You need to resolve the VM2 routing issue. What should you do?
A. Modify the IP configuration setting of the Azure network interface resource of VM1.
B. Add a network interface to VM1.
C. Add a network interface to VM2.
D. Modify the IP configuration setting of the Azure network interface resource of VM2.