image


AZ-600 Dumps

AZ-600 Braindumps AZ-600 Real Questions AZ-600 Practice Test

AZ-600 Actual Questions


Microsoft


AZ-600


Configuring and Operating a Hybrid Cloud with Microsoft Azure Stack Hub


https://killexams.com/pass4sure/exam-detail/AZ-600


Question: 66


DRAG DROP


You have an Azure Stack Hub integrated system linked to an Azure AD tenant named contoso.onmicrosoft.com.


You need to allow users in an Azure AD tenant named adatum.onmicrosoft.com to access Azure Stack Hub resources.


Which three actions should you perform in sequence? To answer, move the appropriate actions from the list of actions to the answer area and arrange them in the correct order.


image


Answer:

image


Explanation:


Graphical user interface, text, application Description automatically generated Register a guest directory

To register a guest directory for multi-tenancy, you need to configure both the home Azure Stack Hub directory and the guest directory. Configure Azure Stack Hub directory

The first step is to make your Azure Stack Hub system aware of the guest directory. In this example, the directory from Mary’s company, Adatum, is called adatum.onmicrosoft.com.


Question: 67


Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution.

After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen.


You have an Azure Stack Hub integrated system that connects to the Internet. The integrated system uses an Enterprise Agreement (EA) for licensing.


You are creating an Azure Resource Manager template to generate a marketplace item for a virtual machine that runs Windows Server 2019 Datacenter and a custom application.


You need to ensure that Windows Server is licensed by using the bring-your-own-license model. Solution: You add OsType: Windows to the Azure Resource Manager template.

Does this meet the goal?

  1. Yes

  2. No


Answer: B Question: 68 DRAG DROP

You have an Azure Stack Hub integrated system.


You install the Azure Gallery Packager (.azpkg) tool on a management workstation.


You need to define a custom Azure Stack Hub Marketplace item that will provision a virtual machine from a base image.


Which file should you configure for each requirement? To answer, drag the appropriate files to the correct requirements. Each file may be used once, more than once, or not at all. You may need to drag the split bar between panes or scroll to view content.


image


Answer:

image


Question: 69


You and a Microsoft Support Engineer are troubleshooting an Azure Stack Hub integrated system. The security team at your company requires an audit trail whenever management actions are performed on the integrated system.

You unlock the privileged endpoint (PEP) and perform several troubleshooting tasks that resolve the issue. Which cmdlet should you run next?

  1. Invoke-AzureStackOnDemandLog

  2. Close-PrivilegedEndpoint

  3. Get-AzureStackLog

  4. Exit-PSSession

Answer: B Explanation:

Reference: https://docs.microsoft.com/en-us/azure-stack/operator/azure-stack-privileged-endpoint?view=azs-2008


Question: 70

You need to configure name resolution to support the planned changes. Which PowerShell cmdlet should you run?

  1. Sec-DnsServer

  2. Regiscer-CuscomDnsServer

  3. Set-AzSDnsForwarder

  4. Set-DNSClientServerAddress


Answer: B Explanation:

Configure the integrated system to resolve external names by using a DNS Server that has an IP address of 10.100.100.100. Resolving external DNS names from Azure Stack Hub

To resolve DNS names for endpoints outside Azure Stack Hub (for example: www.bing.com), you need to provide DNS servers that Azure Stack Hub can use to forward DNS requests for which Azure Stack Hub isn’t authoritative. For deployment, DNS servers that Azure Stack Hub forwards requests to are required in the Deployment Worksheet (in the DNS Forwarder field). Provide at least two servers in this field for fault tolerance. Without these values, Azure Stack Hub deployment fails. You can edit the DNS Forwarder values with the Set-AzSDnsForwarder cmdlet after deployment.


Configure conditional DNS forwarding Important

This only applies to an AD FS deployment.


To enable name resolution with your existing DNS infrastructure, configure conditional forwarding. To add a conditional forwarder, you must use the privileged endpoint.

For this procedure, use a computer in your datacenter network that can communicate with the privileged endpoint in Azure Stack Hub.


Question: 71


HOTSPOT


You need to create the planned changes and meet the business requirements.


Which subscription should you use to host the SQL Server instance, and what should you configure on the instance? To answer, select the appropriate options in the answer area. NOTE: Each correct selection is worth one point.

image


Answer:

image


Explanation:


Graphical user


interface, text, application, chat or text message Description automatically generated

Box 1: The Default Provider Subscription


A default Microsoft SQL Server instance will host the database of the App Service resource provider.


In Azure Stack Hub Subscriptions, select the Default Provider Subscription. Azure App Service on Azure Stack Hub must be deployed in the Default Provider Subscription.


Box 2:


Enter the SQL Server details for the server instance used to host the App Service resource provider database and then select Next. The installer validates the SQL connection properties.

image


Graphical user interface, website Description automatically generated Question: 72

You provision a new certificate to support the planned changes.


You need to validate the certificate.


Which PowerShell module should you install first?

  1. Az.Websites

  2. AzureRM.TemplateValidator

  3. AzureStack

  4. Microsoft.AzureStack.ReadinessChecker


Answer: D Explanation:

Use the Azure Stack Hub Readiness Checker tool to validate that generated public key infrastructure (PKI) certificates which are suitable for pre- deployment. Validate certificates by leaving enough time to test and reissue certificates if necessary.


The Readiness Checker tool performs the following certificate validations:



Note: Perform core services certificate validation


Use these steps to validate the Azure Stack Hub PKI certificates for deployment and secret rotation:


Question: 73


DRAG DROP


You have an Azure Stack Hub integrated system.


The retention period for storage accounts is set to 7 days.


A user reports that a storage account named hr12943 was deleted accidentally two days ago. You need to restore hr12943.

Which four actions should you perform in sequence? To answer, move the appropriate actions from the list of actions to the answer area and arrange them in the correct order.


image


Answer:

image


Explanation:

Step 1: Connect to the administrator portal Find a storage account

The list of storage accounts in the region can be viewed in Azure Stack Hub by following these steps:


Question: 74


DRAG DROP


You have an Azure Stack Hub integrated system.


The retention period for storage accounts is set to 7 days.


A user reports that a storage account named hr12943 was deleted accidentally two days ago. You need to restore hr12943.

Which four actions should you perform in sequence? To answer, move the appropriate actions from the list of actions to the answer area and arrange them in the correct order.


image


Answer:

image


Explanation:


Step 1: Connect to the administrator portal

Find a storage account


The list of storage accounts in the region can be viewed in Azure Stack Hub by following these steps:


Question: 75


HOTSPOT


You need to identify the authentication and authorization process for the integrated system in Chicago. The solution must meet the technical requirements.


What should you include in the solution? To answer, select the appropriate options in the answer area. NOTE: Each correct selection is worth one point.


image


Answer:

image


Question: 76

You need to support the planned changes for User1. Which service should you include?

  1. Microsoft.Subscriptions

  2. Microsoft.KeyVault

  3. Microsoft.Storage

  4. Microsoft.Compute


Answer: A Explanation:

Assign the delegated provider role to User1. Delegation steps

There are two steps to setting up delegation:


Question: 77

You need to resolve the performance issue reported by the users in the priv1 region. What should you do?

  1. Redeploy the virtual machines to a new Azure Stack Hub node

  2. Install the NVIDIA drivers on the virtual machines

  3. Install the AMD drivers on the virtual machines

  4. Add an additional scale unit node

Answer: C Explanation:

Reference: https://docs.microsoft.com/en-us/azure/virtual-machines/windows/n-series-amd-driver-setup


Question: 78


DRAG DROP


You schedule a planned maintenance window.


You need to perform an Azure Stack Hub update in the dev1 region. The solution must meet the technical requirements.


Which three actions should you perform in sequence? To answer, move the appropriate actions from the list of actions to the answer area and arrange them in the correct order.


image


Answer:

image


Explanation:


Graphical user interface, text, application, chat or text message Description automatically generated

Question: 79

You need to configure the log forwarding. The solution must meet the Azure Stack Hub requirements. What should you do?

  1. Connect to 192.168.101.101 and run the Set-EventLogLevel and Add-AzLogProfile cmdlets.

  2. Connect to 192.168.100.224 and run the Set-SyslogServer and Set-SyslogClient cmdlets.

  3. Connect to 192.168.100.224 and run the Set-EventLogLevel and Add-AzLogProfile cmdlets.

  4. Connect to 192.168.101.101 and run the Set-SyslogServer and Set-SyslogClient cmdlets.


Answer: D Explanation:

Integrate Azure Stack Hub with monitoring solutions using syslog forwarding


The syslog channel exposes audits, alerts, and security logs from all the components of the Azure Stack Hub infrastructure. Use syslog forwarding to integrate with security monitoring solutions and to retrieve all audits, alerts, and security logs to store them for retention.


Cmdlets to configure syslog forwarding


Configuring syslog forwarding requires access to the privileged endpoint (PEP). Two PowerShell cmdlets have been added to the PEP to configure the syslog forwarding:


### cmdlet to pass the syslog server information to the client and to configure the transport protocol, the encryption and the authentication between the client and the server


Set-SyslogServer [-ServerName <String>] [-ServerPort <UInt16>] [-NoEncryption] [-SkipCertificateCheck] [-SkipCNCheck] [-UseUDP] [- Remove]


### cmdlet to configure the certificate for the syslog client to authenticate with the server Set-SyslogClient [-pfxBinary <Byte[]>] [-CertPassword <SecureString>]

Reference: https://learn.microsoft.com/en-us/azure-stack/operator/azure-stack-integrate-security


image

6$03/( 48(67,216


7KHVH TXHVWLRQV DUH IRU GHPR SXUSRVH RQO\ )XOO YHUVLRQ LV XS WR GDWH DQG FRQWDLQV DFWXDO TXHVWLRQV DQG DQVZHUV


.LOOH[DPV FRP LV DQ RQOLQH SODWIRUP WKDW RIIHUV D ZLGH UDQJH RI VHUYLFHV UHODWHG WR FHUWLILFDWLRQ H[DP SUHSDUDWLRQ 7KH SODWIRUP SURYLGHV DFWXDO TXHVWLRQV H[DP GXPSV DQG SUDFWLFH WHVWV WR KHOS LQGLYLGXDOV SUHSDUH IRU YDULRXV FHUWLILFDWLRQ H[DPV ZLWK FRQILGHQFH +HUH DUH VRPH NH\ IHDWXUHV DQG VHUYLFHV RIIHUHG E\ .LOOH[DPV FRP


$FWXDO ([DP 4XHVWLRQV .LOOH[DPV FRP SURYLGHV DFWXDO H[DP TXHVWLRQV WKDW DUH H[SHULHQFHG LQ WHVW FHQWHUV 7KHVH TXHVWLRQV DUH XSGDWHG UHJXODUO\ WR HQVXUH WKH\ DUH XS WR GDWH DQG UHOHYDQW WR WKH ODWHVW H[DP V\OODEXV %\ VWXG\LQJ WKHVH DFWXDO TXHVWLRQV FDQGLGDWHV FDQ IDPLOLDUL]H WKHPVHOYHV ZLWK WKH FRQWHQW DQG IRUPDW RI WKH UHDO H[DP


([DP 'XPSV .LOOH[DPV FRP RIIHUV H[DP GXPSV LQ 3') IRUPDW 7KHVH GXPSV FRQWDLQ D FRPSUHKHQVLYH FROOHFWLRQ RI TXHVWLRQV DQG DQVZHUV WKDW FRYHU WKH H[DP WRSLFV %\ XVLQJ WKHVH GXPSV FDQGLGDWHV FDQ HQKDQFH WKHLU NQRZOHGJH DQG LPSURYH WKHLU FKDQFHV RI VXFFHVV LQ WKH FHUWLILFDWLRQ H[DP


3UDFWLFH 7HVWV .LOOH[DPV FRP SURYLGHV SUDFWLFH WHVWV WKURXJK WKHLU GHVNWRS 9&( H[DP VLPXODWRU DQG RQOLQH WHVW HQJLQH 7KHVH SUDFWLFH WHVWV VLPXODWH WKH UHDO H[DP HQYLURQPHQW DQG KHOS FDQGLGDWHV DVVHVV WKHLU UHDGLQHVV IRU WKH DFWXDO H[DP 7KH SUDFWLFH WHVWV FRYHU D ZLGH UDQJH RI TXHVWLRQV DQG HQDEOH FDQGLGDWHV WR LGHQWLI\ WKHLU VWUHQJWKV DQG ZHDNQHVVHV


*XDUDQWHHG 6XFFHVV .LOOH[DPV FRP RIIHUV D VXFFHVV JXDUDQWHH ZLWK WKHLU H[DP GXPSV 7KH\ FODLP WKDW E\ XVLQJ WKHLU PDWHULDOV FDQGLGDWHV ZLOO SDVV WKHLU H[DPV RQ WKH ILUVW DWWHPSW RU WKH\ ZLOO UHIXQG WKH SXUFKDVH SULFH 7KLV JXDUDQWHH SURYLGHV DVVXUDQFH DQG FRQILGHQFH WR LQGLYLGXDOV SUHSDULQJ IRU FHUWLILFDWLRQ H[DPV


8SGDWHG &RQWHQW .LOOH[DPV FRP UHJXODUO\ XSGDWHV LWV TXHVWLRQ EDQN DQG H[DP GXPSV WR HQVXUH WKDW WKH\ DUH FXUUHQW DQG UHIOHFW WKH ODWHVW FKDQJHV LQ WKH H[DP V\OODEXV 7KLV KHOSV FDQGLGDWHV VWD\ XS WR GDWH ZLWK WKH H[DP FRQWHQW DQG LQFUHDVHV WKHLU FKDQFHV RI VXFFHVV


7HFKQLFDO 6XSSRUW .LOOH[DPV FRP SURYLGHV IUHH [ WHFKQLFDO VXSSRUW WR DVVLVW FDQGLGDWHV ZLWK DQ\ TXHULHV RU LVVXHV WKH\ PD\ HQFRXQWHU ZKLOH XVLQJ WKHLU VHUYLFHV 7KHLU FHUWLILHG H[SHUWV DUH DYDLODEOH WR SURYLGH JXLGDQFH DQG KHOS FDQGLGDWHV WKURXJKRXW WKHLU H[DP SUHSDUDWLRQ MRXUQH\


'PS .PSF FYBNT WJTJU IUUQT LJMMFYBNT DPN WFOEPST FYBN MJTU

.LOO \RXU H[DP DW )LUVW $WWHPSW *XDUDQWHHG