ExamGecko
Home Home / Microsoft / AZ-500

Microsoft AZ-500 Practice Test - Questions Answers, Page 40

Question list
Search
Search

List of questions

Search

Related questions











You have an Azure Active Directory (Azure AD) tenant.You need to prevent nonprivileged Azure AD users from creating service principals in Azure AD.What should you do in the Azure Active Directory admin center of the tenant?

A.
From the Properties Wade, set Enable Security defaults to Yes.
A.
From the Properties Wade, set Enable Security defaults to Yes.
Answers
B.
From the Properties blade, set Access management fen Azure resources to No
B.
From the Properties blade, set Access management fen Azure resources to No
Answers
C.
From the User settings blade, set Users can register applications to No
C.
From the User settings blade, set Users can register applications to No
Answers
D.
From the User settings blade, set Restrict access to Azure AD administration portal to Yes.
D.
From the User settings blade, set Restrict access to Azure AD administration portal to Yes.
Answers
Suggested answer: C

HOTSPOT

You have an Azure subscription named Sub 1 that is associated to an Azure AD Tenant named contoso.com. The tenant contains the users shown in the following table.

Each user is assigned an Azure AD Premium P2 license.

You plan to onboard and configure Azure AD Identity Protection.

Which users can onboard Azure AD Identity Protection, remediate users, and configure policies? To answer, select the appropriate options in the answer area.

NOTE: Each correct selection is worth one point.


Question 392
Correct answer: Question 392

HOTSPOT

You are implementing an Azure Application Gateway web application firewall (WAF) named WAF1.

You have the following Bicep code snippet.

For each of The following statements, select Yes if the statement is true. Otherwise. Select No.

NOTE: Each correct selection is worth one point.


Question 393
Correct answer: Question 393

HOTSPOT

You have an Azure SQL database named DB1 that contains a table named Table.

You need to configure DB1 to meet the following requirements;

* Sensitive data in Table1 must be identified automatically.

* Only the first character and last character of the sensitive data must be displayed in query results.

Which two features should you configure? To answer, select the features in the answer area.

NOTE: Each correct selection is worth one point.


Question 394
Correct answer: Question 394

DRAG DROP

You have an Azure AD Tenant and an application named App1.

You need to ensure that App1 can use Microsoft Entra Verified ID to verify credentials.

Which three actions should you perform in sequence? To answer, move the appropriate actions from the list of actions to the answer area and arrange them in the correct order.


Question 395
Correct answer: Question 395

Explanation:

Create an Azure key vault.

Configure the Verified ID service.

Register App1 in Azure AD and grant permissions.


You have an Azure AD tenant.

You plan to implement an authentication solution to meet the following requirements:

* Require number matching.

* Display the geographical location when signing in.

Which authentication method should you include in the solution?

A.
SMS
A.
SMS
Answers
B.
Temporary Access Pass
B.
Temporary Access Pass
Answers
C.
Microsoft Authenticator
C.
Microsoft Authenticator
Answers
D.
FID02 security key
D.
FID02 security key
Answers
Suggested answer: B

HOTSPOT

You have an Azure Subscription that is connected to an on-premises datacenter and contains the resources shown in the following table.

You need to configure virtual network service endpoints for VNet1 and VNet2. The solution must meet the following requirements:

* The virtual machines that connect to the subnet of VNet1 must access storage1, storage2, and Azure AD by using the Microsoft backbone network.

* The virtual machines that connect to the subnet of VNet2 must access storage1 and KeyVault1 by using the Microsoft backbone network.

* The virtual machines must use the Microsoft backbone network to communicate between VNet1 and VNet2.

How many service endpoints should you configure for each virtual network? To answer, select the appropriate options in the answer area.

NOTE: Each correct selection is worth one point.


Question 397
Correct answer: Question 397

You have an Azure subscription that contains a resource group named RG1 and the identities shown in the following table.

You assign Group4 the Contributor role for RG1.

Which identities can you add to Group4 as members?

A.
User1 only
A.
User1 only
Answers
B.
User1 and Group3 only
B.
User1 and Group3 only
Answers
C.
User1, Group1, and Group3 only
C.
User1, Group1, and Group3 only
Answers
D.
User1, Group2, and Group3 only
D.
User1, Group2, and Group3 only
Answers
E.
User1, Group1, Group2, and Group3
E.
User1, Group1, Group2, and Group3
Answers
Suggested answer: B

You have an Azure subscription that contains an Azure Key Vault Standard key vault named Vault1. Vault1 hosts a 2048-bit RSA key named key1.

You need to ensure that key1 is rotated every 90 days.

What should you do first?

A.
Create a key rotation policy.
A.
Create a key rotation policy.
Answers
B.
Modify the Access policies settings of Vault1.
B.
Modify the Access policies settings of Vault1.
Answers
C.
Upgrade Vault1 to Key Vault Premium.
C.
Upgrade Vault1 to Key Vault Premium.
Answers
D.
Recreate key1 as an EC key.
D.
Recreate key1 as an EC key.
Answers
Suggested answer: A

HOTSPOT

You have an Azure subscription that contains the virtual networks shown in the following table.

NSG1 and NSG2 both have default rules only.

The subscription contains the virtual machines shown in the following table.

The subscription contains the web apps shown in the following table.

For each of the following statements, select Yes if the statement is true. Otherwise, select No.

NOTE: Each correct selection is worth one point.


Question 400
Correct answer: Question 400
Total 439 questions
Go to page: of 44