ExamGecko
Home / Microsoft / AZ-800 / List of questions
Ask Question

Microsoft AZ-800 Practice Test - Questions Answers, Page 5

List of questions

Question 41

Report
Export
Collapse

Your network contains an on -premises Active Directory Domain Services (AD DS) domain named contoso.com The domain contains the objects shown in the following table.

Microsoft AZ-800 image Question 12 88238 10022024015633000000

You plan to sync contoso.com with an Azure Active Directory (Azure AD) tenant by using Azure AD Connect You need to ensure that all the objects can be used in Conditional Access policies What should you do?

Change the scope of Group2 to Universal
Change the scope of Group2 to Universal
Clear the Configure device writeback option.
Clear the Configure device writeback option.
Change the scope o' Group1 and Group2 to Global
Change the scope o' Group1 and Group2 to Global
Select the Configure Hybrid Azure AD join option.
Select the Configure Hybrid Azure AD join option.
Suggested answer: D

Explanation:

Hybrid Azure AD join needs to be configured to enable Computer1 to be used in Conditional Access Policies. Synchronized users, universal groups and domain local groups can be used in Conditional Access Policies.

asked 02/10/2024
Mk Cheng
43 questions

Question 42

Report
Export
Collapse

Your network contains a multi-site Active Directory Domain Services (AD DS) forest. Each Active Directory site is connected by using manually configured site links and automatically generated connections. You need to minimize the convergence time for changes to Active Directory.

What should you do?

For each site link, modify the options attribute.
For each site link, modify the options attribute.
For each site link, modify the site link costs.
For each site link, modify the site link costs.
For each site link, modify the replication schedule.
For each site link, modify the replication schedule.
Create a site link bridge that contains all the site links.
Create a site link bridge that contains all the site links.
Suggested answer: C

Explanation:

Reference:

https://docs.microsoft.com/en-us/windows-server/identity/ad-ds/plan/determining-the-interval

asked 02/10/2024
Nicholas Roy
43 questions

Question 43

Report
Export
Collapse

Your network contains an Active Directory Domain Services (AD DS) domain- The domain contains 10 servers that run Windows Server. The servers have static IP addresses. You plan to use DHCP to assign IP addresses to the servers.

You need to ensure that each server always receives the same IP address.

Which type of identifier should you use to create a DHCP reservation for each server?

universally unique identifier (UUID)
universally unique identifier (UUID)
fully qualified domain name (FQDN)
fully qualified domain name (FQDN)
NetBIOS name
NetBIOS name
MAC address
MAC address
Suggested answer: D

Explanation:

Reference:

https://docs.microsoft.com/en-us/powershell/module/dhcpserver/adddhcpserverv4reservation?view=windowsserver2022-ps

asked 02/10/2024
Craig Reid
36 questions

Question 44

Report
Export
Collapse

You have an on-premises server named Server1 that runs Windows Server. You have an Azure virtual network that contains an Azure virtual network gateway. You need to connect only Server1 to the Azure virtual network What should you use?

Azure Network Adapter
Azure Network Adapter
a Site-to-SiteVPN
a Site-to-SiteVPN
an ExpressRoute circuit
an ExpressRoute circuit
Azure Extended Network
Azure Extended Network
Suggested answer: B

Explanation:


asked 02/10/2024
Nasser Moore
35 questions

Question 45

Report
Export
Collapse

You have a server that runs Windows Server and has the DHCP Server role installed. The server has a scope named Scope! that has the following configurations:

• Address range: 192.168.0.2 to 192.16B.1.2M . Mask 255.255.254.0

• Router: 192.168.0.1

• Lease duration: 3 days

• DNS server 172.16.0.254

You have 50 Microsoft Teams Phone devices from the same vendor. All the devices have MAC addresses within the same range. You need to ensure that all the Teams Phone devices that receive a lease from Scope1 have IP addresses in the range of 192.168.1.100 to 192.168.1.200. The solution must NOT affect other DHCP clients that receive IP configurations from Scope1.

What should you create?

a policy
a policy
a scope
a scope
a fitter
a fitter
scope options
scope options
Suggested answer: A

Explanation:

Reference:

https://docs.microsoft.com/en-us/previous-versions/windows/it-pro/windows-server-2012-R2-and-2012/dn425040(v=ws.11)

asked 02/10/2024
shylashri selvamani
46 questions

Question 46

Report
Export
Collapse

You have an on-premises Active Directory Domain Services (AD DS) domain that syncs with an Azure Active Directory (Azure AD) tenant The on-premises network is connected to Azure by using a Site-to- Site VPN. You have the DNS zones shown in the following table.

Microsoft AZ-800 image Question 17 88243 10022024015633000000

You need to ensure that names from (aDiifcam.com can be resolved from the on-premises network Which two actions should you perform? Each correct answer presents part of the solution, NOTE:

Each correct selection Is worth one point

Create a conditional forwarder for fabrikam.com on DC1.
Create a conditional forwarder for fabrikam.com on DC1.
Create a stub zone for fabrikam.com on DC1.
Create a stub zone for fabrikam.com on DC1.
Create a secondary zone for fabnlcam.com on DO.
Create a secondary zone for fabnlcam.com on DO.
Deploy an Azure virtual machine that runs Windows Server. Modify the DNS Servers settings for the virtual network.
Deploy an Azure virtual machine that runs Windows Server. Modify the DNS Servers settings for the virtual network.
Deploy an Azure virtual machine that runs Windows Server. Configure the virtual machine &s a DNS forwarder.
Deploy an Azure virtual machine that runs Windows Server. Configure the virtual machine &s a DNS forwarder.
Suggested answer: A, E

Explanation:

Reference:

https://docs.microsoft.com/en-us/azure/private-link/private-endpoint-dns#on-premises-workloadsusing-a-dns-forwarder

asked 02/10/2024
Abigail Bormann
40 questions

Question 47

Report
Export
Collapse

Your company has a main office and a branch office. The two offices are connected by using a WAN link. Each office contains a firewall that filters WAN traffic. The network in the branch office contains 10 servers that run Windows Server. All servers are administered from the main office only. You plan to manage the servers in the branch office by using a Windows Admin Center gateway.

On a server in the branch office, you install the Windows Admin Center gateway by using the defaults settings. You need to configure the firewall in the branch office to allow the required inbound connection to the Windows Admin Center gateway. Which inbound TCP port should you allow?

443
443
3389
3389
5985
5985
6516
6516
Suggested answer: A
asked 02/10/2024
Angela Rivalta
37 questions

Question 48

Report
Export
Collapse

You have an Azure subscription that contains the following resources:

• An Azure Log Analytics workspace

• An Azure Automation account

• Azure Arc.

You have an on-premises server named Server1 that is onboaraed to Azure Arc You need to manage Microsoft updates on Server! by using Azure Arc Which two actions should you perform? Each correct answer presents part of the solution.

NOTE: Each correct selection is worth one point

Add Microsoft Sentinel to the Log Analytics workspace
Add Microsoft Sentinel to the Log Analytics workspace
On Server1, install the Azure Monitor agent
On Server1, install the Azure Monitor agent
From the Automation account, enable Update Management for Server1.
From the Automation account, enable Update Management for Server1.
From the Virtual machines data source of the Log Analytics workspace, connect Server1.
From the Virtual machines data source of the Log Analytics workspace, connect Server1.
Suggested answer: B, C

Explanation:

Reference:

https://docs.microsoft.com/en-us/azure/cloud-adoption-framework/manage/hybrid/server/bestpractices/arc-update-management

asked 02/10/2024
Mark Anthony Acorda
36 questions

Question 49

Report
Export
Collapse

You have an Azure virtual machine named VM1 that has a private IP address only.

You configure the Windows Admin Center extension on VM1.

You have an on-premises computer that runs Windows 11. You use the computer for server management.

You need to ensure that you can use Windows Admin Center from the Azure portal to manage VM1.

What should you configure?

an Azure Bastion host on the virtual network that contains VM1.
an Azure Bastion host on the virtual network that contains VM1.
a VPN connection to the virtual network that contains VM1.
a VPN connection to the virtual network that contains VM1.
a network security group 1NSG) rule that allows inbound traffic on port 443.
a network security group 1NSG) rule that allows inbound traffic on port 443.
a private endpoint on the virtual network that contains VM1.
a private endpoint on the virtual network that contains VM1.
Suggested answer: B

Explanation:

Reference:

https://docs.microsoft.com/en-us/windows-server/manage/windows-admin-center/azure/managevm

asked 02/10/2024
Dirk Prinsloo
34 questions

Question 50

Report
Export
Collapse

Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution.

After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen. Your network contains an Active Directory Domain Services (AD DS) forest. The forest contains three Active Directory sites named Site1, Site2, and Site3. Each site contains two domain controllers. The sites are connected by using DEFAULTIPSITELINK.

You open a new branch office that contains only client computers.

You need to ensure that the client computers in the new office are primarily authenticated by the domain controllers in Site1. Solution: You create an organization unit (OU) that contains the client computers in the branch office. You configure the Try Next Closest Site Group Policy Object (GPO) setting in a GPO that is linked to the new OU. Does this meet the goal?

Yes
Yes
No
No
Suggested answer: B
asked 02/10/2024
Amidou Florian TOURE
33 questions
Total 234 questions
Go to page: of 24
Search

Related questions