[2020.5.8] Microsoft Azure certification journey easier: Practicing with AZ-103 Exam Dumps

To make your Microsoft Azure certification journey easier and more fun, you can use the Pass4itsure website and its most effective and up-to-date exam dump to prepare you for the AZ-103 test. https://www.pass4itsure.com/az-103.html Therefore, please do not delay the opportunity to obtain certification and build a dream career!

Microsoft Azure certification AZ-103 Pdf Dumps https://drive.google.com/open?id=19Coh2duUHRtgWifZBcT7r4fcTnagcS_a

Microsoft Azure AZ-103: What Is It?

Microsoft Azure AZ-103 is one of the most popular certificates in Microsoft. After completing the exam, you will get an Azure certification. Get a good position, you can earn about 74,000 US dollars per year.

All You Need to Know About Microsoft Azure AZ-103 Practice Question

You need to configure the Azure ExpressRoute circuits.
How should you configure Azure ExpressRoute routing? To answer, drag the appropriate configurations to the correct
locations. Each configuration may be used once, more than once, or not at all.
You may need to drag the split bar between panes or scroll to view content.
NOTE: Each correct selection is worth one point.
Select and Place:

Alnaba AZ-103 exam questions-q1

Correct Answer:

Alnaba AZ-103 exam questions-q1-2

You have an Azure subscription that contains 10 virtual machines. You need to ensure that you receive an email
message when any virtual machines are powered off, restarted, or deallocated. What is the minimum number of rules
and action groups that you require?
A. three rules and three action groups
B. one rule and one action group
C. three rules and one action group
D. one rule and three action groups
Correct Answer: C
An action group is a collection of notification preferences defined by the user. Azure Monitor and Service
Health alerts are configured to use a specific action group when the alert is triggered. Various alerts may use the same
action group or different action groups depending on the user\\’s requirements.
References: https://docs.microsoft.com/en-us/azure/monitoring-and-diagnostics/monitoring-action-groups

You have a public load balancer that balancer ports 80 and 443 across three virtual machines.
You need to direct all the Remote Desktop protocol (RDP) to VM3 only.
What should you configure?
A. an inbound NAT rule
B. a load public balancing rule
C. a new public load balancer for VM3
D. a new IP configuration
Correct Answer: A
To port forward traffic to a specific port on specific VMs use an inbound network address translation (NAT) rule.
Incorrect Answers:
B: Load-balancing rule to distribute traffic that arrives at frontend to backend pool instances.
References: https://docs.microsoft.com/en-us/azure/load-balancer/load-balancer-overview

Note: This question is part of a series of questions that present the same scenario. Each question in the series contains
a unique solution that might meet the stated goals. Some question sets might have more than one correct solution,
others might not have a correct solution.
After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not
appear in the review screen.
You have an Azure subscription named Subscription1. Subscription1 contains a resource group named RG1. RG1
contains resources that were deployed by using templates. You need to view the date and time when the resources
created in RG1.
Solution: From the RG1 blade, you click Deployments.
Does this meet the goal?
A. Yes
B. No
Correct Answer: A

You need to recommend a solution for App1. The solution must meet the technical requirements.
What should you include in the recommendation? To answer, select the appropriate options in the answer area;
NOTE: Each correct selection is worth one point.
Hot Area:

Alnaba AZ-103 exam questions-q5

Correct Answer:

Alnaba AZ-103 exam questions-q5-2

This reference architecture shows how to deploy VMs and a virtual network configured for an N-tier application, using
SQL Server on Windows for the data tier.

Alnaba AZ-103 exam questions-q5-3

Scenario: You have a public-facing application named App1. App1 is comprised of the following three tiers:
A SQL database
A web front end
A processing middle tier
Each tier is comprised of five virtual machines. Users access the web front end by using HTTPS only.
Technical requirements include:
Move all the virtual machines for App1 to Azure.
Minimize the number of open ports between the App1 tiers.
References: https://docs.microsoft.com/en-us/azure/architecture/reference-architectures/n-tier/n-tier-sql-server

You are the global administrator for an Azure Active Directory (Azure AD) tenet named adatum.com.
You need to enable two-step verification for Azure users.
What should you do?
A. Create a sign-in risk policy in Azure AD Identity Protection
B. Enable Azure AD Privileged Identity Management.
C. Create and configure the Identity Hub.
D. Configure a security policy in Azure Security Center.
Correct Answer: A
With Azure Active Directory Identity Protection, you can: require users to register for multi-factor authentication handle
risky sign-ins and compromised users
References: https://docs.microsoft.com/en-us/azure/active-directory/identity-protection/flows

You have two subscriptions named Subscription1 and Subscription2. Each subscription is associated to a different
Azure AD tenant.
Subscription1 contains a virtual network named VNet1.VNet1 contains an Azure virtual machine named VM1 and has
an IP address space of
Subscription2 contains a virtual network named VNet2. VNet2 contains an Azure virtual machine named VM2 and has
an IP address space of
You need to connect VNet1 to VNet2.
What should you do first?
A. Move VNet1 to Subscription2.
B. Modify the IP address space of VNet2.
C. Provision virtual network gateways.
D. Move VM1 to Subscription2.
Correct Answer: C
The virtual networks can be in the same or different regions, and from the same or different subscriptions. When
connecting VNets from different subscriptions, the subscriptions do not need to be associated with the same Active
Configuring a VNet-to-VNet connection is a good way to easily connect VNets. Connecting a virtual network to another
virtual network using the VNet-to-VNet connection type (VNet2VNet) is similar to creating a Site-to-Site IPsec
to an on-premises location. Both connectivity types use a VPN gateway to provide a secure tunnel using IPsec/IKE, and
both function the same way when communicating.
The local network gateway for each VNet treats the other VNet as a local site. This lets you specify additional address
space for the local network gateway in order to route traffic.
References: https://docs.microsoft.com/en-us/azure/vpn-gateway/vpn-gateway-howto-vnet-vnet-resource-managerportal

You have an Azure Active Directory (Azure AD) tenant named contoso.onmicrosoft.com that contains 100 user
You purchase 10 Azure AD Premium P2 licenses for the tenant.
You need to ensure that 10 users can use all the Azure AD Premium features.
What should you do?
A. From the Groups blade of each user, invite the users to a group.
B. From the Licenses blade of Azure AD, assign a license.
C. From the Directory role blade of each user, modify the directory role.
D. From the Azure AD domain, add an enterprise application.
Correct Answer: B
To assign a license, under Azure Active Directory > Licenses > All Products, select one or more products, and then
select Assign on the command bar.
References: https://docs.microsoft.com/en-us/azure/active-directory/fundamentals/license-users-groups

You have a computer named Computer1 that has a point-to-site VPN connection to an Azure virtual network named
VNet1. The point-to-site connection uses a self-signed certificate. From Azure, you download and install the VPN client
configuration package on a computer named Computer2.
You need to ensure that you can establish a point-to-site VPN connection to VNet1 from Computer2. Solution: You join
Computer2 to Azure Active Directory (Azure AD).
Does this meet this goal?
A. Yes
B. No
Correct Answer: B

You have an Azure subscription that contains an Azure file share.
You have an on-premises server named Server1 that runs Windows Server 2016.
You plan to set up Azure File Sync between Server1 and the Azure file share.
You need to prepare the subscription for the planned Azure File Sync.
Which two actions should you perform in the Azure subscription? To answer, drag the appropriate actions to the correct
targets. Each action may be used once, more than once, or not at all. You may need to drag the split bar between
or scroll to view content.
Select and Place:

Alnaba AZ-103 exam questions-q10

Correct Answer:

Alnaba AZ-103 exam questions-q10-2

First action: Create a Storage Sync Service
The deployment of Azure File Sync starts with placing a Storage Sync Service resource into a resource group of your
selected subscription.
Second action: Run Server Registration
Registering your Windows Server with a Storage Sync Service establishes a trust relationship between your server (or
cluster) and the Storage Sync Service. A server can only be registered to one Storage Sync Service and can sync with
other servers and Azure file shares associated with the same Storage Sync Service.
The Server Registration UI should open automatically after installation of the Azure File Sync agent.

Alnaba AZ-103 exam questions-q10-3

You have an Azure subscription that contains three virtual networks named VNet1, VNet2, VNet3.
VNet2 contains a virtual appliance named VM2 that operates as a router. You are configuring the virtual networks in a
hub and spoke topology that uses VNet2 as the hub network.
You plan to configure peering between VNet1 and VNet2 and between VNet2 and VNet3. You need to provide
connectivity between VNet1 and VNet3 through VNet2.
Which two configurations should you perform? Each correct answer presents part of the solution.
NOTE: Each correct selection is worth one point.
A. On the peering connections, allow forwarded traffic.
B. On the peering connections, allow gateway transit.
C. Create route tables and assign the table to subnets.
D. Create a route filter.
E. On the peering connections, use remote gateways.
Correct Answer: BE
Allow gateway transit: Check this box if you have a virtual network gateway attached to this virtual network and want to
allow traffic from the peered virtual network to flow through the gateway. The peered virtual network must have the Use remote gateways checkbox checked when setting up the peering from the other virtual network to this virtual network.

You have two Azure virtual machines named VM1 and VM2. VM1 has a single data disk named Disk1. You need to
attach Disk1 to VM2. The solution must minimize downtime for both virtual machines. Which four actions should you
perform in sequence? To answer, move the appropriate actions from the list of actions to the answer area and arrange
them in the correct order.
Select and Place:

Alnaba AZ-103 exam questions-q12

Correct Answer:

Alnaba AZ-103 exam questions-q12-2

Step 1: Stop VM1.
Step 2: Detach Disk1 from VM1.
Step 3: Start VM1.
Detach a data disk using the portal
In the left menu, select Virtual Machines.
Select the virtual machine that has the data disk you want to detach and click Stop to deallocate the VM.
In the virtual machine pane, select Disks.
At the top of the Disks pane, select Edit.
In the Disks pane, to the far right of the data disk that you would like to detach, click the Detach button image detach
After the disk has been removed, click Save on the top of the pane.
In the virtual machine pane, click Overview and then click the Start button at the top of the pane to restart the VM.
The disk stays in storage but is no longer attached to a virtual machine.
Step 4: Attach Disk1 to VM2
Attach an existing disk
Follow these steps to reattach an existing available data disk to a running VM.
Select a running VM for which you want to reattach a data disk.
10.From the menu on the left, select Disks.
11. Select Attach existing to attach an available data disk to the VM.
12.From the Attach existing disk pane, select OK.
References: https://docs.microsoft.com/en-us/azure/virtual-machines/windows/detach-disk

The following section of the exam is a lab. In this section, you will perform a set of tasks in a live environment. While
most functionality will be available to you as it would be in a live environment, some functionality (e.g., copy and paste,
to navigate to external websites) will not be possible by design.
Scoring is based on the outcome of performing the tasks stated in the lab. In other words, it doesn\\’t matter how you
accomplish the task, if you successfully perform it, you will earn credit for that task. Labs are not timed separately, and
exam may have more than one lab that you must complete. You can use as much time as you would like to complete
each lab. But, you should manage your time appropriately to ensure that you are able to complete the lab(s) and all
sections of the exam in the time provided.
Please note that once you submit your work by clicking the Next button within a lab, you will NOT be able to return to
the lab.
To start the lab
You may start the lab by clicking the Next button.
You plan to host several secured websites on Web01.
You need to allow HTTPS over TCP port 443 to Web01 and to prevent HTTP over TCP port 80 to Web01.
What should you do from the Azure portal?
A. Answer: See below.
Correct Answer: A
You can filter network traffic to and from Azure resources in an Azure virtual network with a network security group. A
network security group contains security rules that allow or deny inbound network traffic to, or outbound network traffic
several types of Azure resources. A network security group contains security rules that allow or deny inbound network
traffic to, or outbound network traffic from, several types of Azure resources.
Step A: Create a network security group
A1. Search for and select the resource group for the VM, choose Add, then search for and select Network security
A2. Select Create.

Alnaba AZ-103 exam questions-q13

The Create network security group window opens.
A3. Create a network security group
Enter a name for your network security group.
Select or create a resource group, then select a location.
A4. Select Create to create the network security group.
Step B: Create an inbound security rule to allows HTTPS over TCP port 443 B1. Select your new network security
B2. Select Inbound security rules, then select Add.
B3. Add inbound rule
B4. Select Advanced.
From the drop-down menu, select HTTPS.
You can also verify by clicking Custom and selecting TCP port, and 443.
B5. Select Add to create the rule.
Repeat step B2-B5 to deny TCP port 80
B6. Select Inbound security rules, then select Add.
B7. Add inbound rule
B8. Select Advanced.
Clicking Custom and selecting TCP port, and 80.
B9. Select Deny.
Step C: Associate your network security group with a subnet
Your final step is to associate your network security group with a subnet or a specific network interface.
C1. In the Search resources, services, and docs box at the top of the portal, begin typing Web01.
When the Web01 VM appears in the search results, select it.
C2. Under SETTINGS, select Networking. Select Configure the application security groups, select the Security Group
you created in Step A, and then select Save, as shown in the following picture:

Alnaba AZ-103 exam questions-q13-2

Latest Microsoft Azure AZ-103 dumps Practice test Questions and answers


Pass4itsure offers exclusive discounts 12%


Free download Azure AZ-103 Pdf Dumps

[2020 Free] AZ-103 Pdf Dumps https://drive.google.com/open?id=19Coh2duUHRtgWifZBcT7r4fcTnagcS_a \

Want to pass the AZ-103 exam happily? You need to make choices, https://www.pass4itsure.com/az-103.html use AZ-103 practice tests and other resources (AZ-103 dumps) for effective preparation, and expand your career opportunities!