ExamGecko
Home / Microsoft / AZ-500 / List of questions
Ask Question

Microsoft AZ-500 Practice Test - Questions Answers, Page 47

Add to Whishlist

List of questions

Question 461

Report Export Collapse

HOTSPOT

You have an Azure subscription that uses Microsoft Defender for Cloud.

Defender for Cloud has the security alerts shown in the following exhibit.

Microsoft AZ-500 image Question 19 6388217983298029402775


Become a Premium Member for full access
  Unlock Premium Member

Question 462

Report Export Collapse

HOTSPOT

You have an Azure subscription named Sub1 and use Microsoft Defender for Cloud. Sub1 contains a user named User1 and a resource group named RG1. RG1 contains a Log Analytics workspace named Workspace1.

You need to ensure that User1 can modify Azure Logic Apps workflows triggered in response to security incidents. The solution must follow the principle of least privilege.

Which role should you assign to User1. and to which resource should you assign the role? To answer, select the appropriate options in the answer area.

NOTE; Each correct selection is worth one point.


Become a Premium Member for full access
  Unlock Premium Member

Question 463

Report Export Collapse

You have an Azure subscription that contains the resources shown in the following table.

Microsoft AZ-500 image Question 21 6388217983298029402775

App1 uses Function 1, SQL1, and storage 1.

You need to secure the traffic between App1, Function1, SQL1. and storage1, by using private endpoints.

With which resources can App1 communicate by using a private endpoint?

Become a Premium Member for full access
  Unlock Premium Member

Question 464

Report Export Collapse

You have an Azure subscription that contains the Azure App Service apps shown in the following table.

Microsoft AZ-500 image Question 22 6388217983298029402775

You purchase custom SSL certificates from a trusted third-party authority.

To which apps can you assign the custom SSL certificates?

Become a Premium Member for full access
  Unlock Premium Member

Question 465

Report Export Collapse

You have an Azure subscription that contains an Azure SQL server named sqlsrv1 and an Azure SQL database named DB1. Sqlsrv1 is configured for Microsoft Entra authentication only.

You have the Microsoft Entra identities shown in the following table.

Microsoft AZ-500 image Question 23 63882179832995918566894

Which users can create scoped credentials for DB1?

Become a Premium Member for full access
  Unlock Premium Member

Question 466

Report Export Collapse

HOTSPOT

Your company uses cloud-based resources from the following platforms:

* Azure

* Amazon Web Services (AWS)

* Google Cloud Platform (GCP)

You plan to implement Microsoft Defender for Cloud.

On which platforms can you use Defender for Cloud to protect containers and storage? To answer, select the appropriate options in the answer area.

NOTE: Each correct selection is worth one point.


Become a Premium Member for full access
  Unlock Premium Member

Question 467

Report Export Collapse

HOTSPOT

You have an Azure subscription that contains a virtual network named VNet1. VNet1 contains the subnets shown in the following table.

Microsoft AZ-500 image Question 25 63882179833011543231014

The subscription contains the virtual machines shown in the following table.

Microsoft AZ-500 image Question 25 63882179833011543231014

VM3 contains a service that listens for connections on port 8080.

For VM1, you configure just-in-time (JIT) VM access as shown in the following exhibit.

Microsoft AZ-500 image Question 25 63882179833011543231014

For each of the following statements, select Yes if the statement is true. Otherwise, select No.

NOTE; Each correct selection is worth one point.


Become a Premium Member for full access
  Unlock Premium Member

Question 468

Report Export Collapse

Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution.

After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen.

You have an Azure subscription that contains an Azure Kubernetes Service (AKS) cluster named AKS1 and an Azure container registry named AZCR1.

You need to ensure that AKS1 can deploy container images stored in AZCR1.

Solution: You assign the AcrPush role-based access control (RBAC) role to the system-assigned managed identity of AKS1.

Does this meet the requirement?

Become a Premium Member for full access
  Unlock Premium Member

Question 469

Report Export Collapse

Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution.

After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen.

You have an Azure subscription that contains an Azure Kubernetes Service (AKS) cluster named AKS1 and an Azure container registry named AZCR1.

You need to ensure that AKS1 can deploy container images stored in AZCR1.

Solution: You assign the Kubernetes Agentless Operator role to the system-assigned managed identity of the agent pool for AKS1.

Does this meet the requirement?

Become a Premium Member for full access
  Unlock Premium Member

Question 470

Report Export Collapse

Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution.

After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen.

You have an Azure subscription that contains an Azure Kubernetes Service (AKS) cluster named AKS1 and an Azure container registry named AZCR1.

You need to ensure that AKS1 can deploy container images stored in AZCR1.

Solution: You configure AKS1 to use a user-assigned managed identity and assign the Azure Kubernetes Service Cluster Admin Role to the managed identity.

Does this meet the requirement?

Become a Premium Member for full access
  Unlock Premium Member
Total 473 questions
Go to page: of 48
Search

Related questions