AZ-104 Dumps

AZ-104 Free Practice Test

Microsoft AZ-104: Microsoft Azure Administrator (beta)

QUESTION 56

- (Exam Topic 6)
You create a Recovery Services vault backup policy named Policy1 as shown in the following exhibit.
AZ-104 dumps exhibit
AZ-104 dumps exhibit
Solution:
AZ-104 dumps exhibit

Does this meet the goal?

Correct Answer: A

QUESTION 57

- (Exam Topic 6)
You have an Azure subscription that contains 10 virtual machines, a key vault named Vault 1, and a network security group (NSG) named NSG1. All the resources are deployed to the East US Azure region.
The virtual machines are protected by using NSG1. NSG1 is configured to block all outbound traffic to the internet.
You need to ensure that the virtual machines can access Vault1. The solution must use the principle of least privilege and minimize administrative effort.
What should you configure as the destination of the outbound security rule for NSG1 ?

Correct Answer: C

QUESTION 58

- (Exam Topic 4)
You have an Azure subscription named Subscription1 that contains the resources shown in the following table.
AZ-104 dumps exhibit
You create virtual machines in Subscription1 as shown in the following table.
AZ-104 dumps exhibit
You plan to use Vault1 for the backup of as many virtual machines as possible. Which virtual machines can be backed up to Vault1?

Correct Answer: A
To create a vault to protect virtual machines, the vault must be in the same region as the virtual machines. If you have virtual machines in several regions, create a Recovery Services vault in each region.
References:
https://docs.microsoft.com/bs-cyrl-ba/azure/backup/backup-create-rs-vault

QUESTION 59

- (Exam Topic 6)
You have an Azure subscription that contains the storage accounts shown in the following table.
AZ-104 dumps exhibit
You plan to manage the data stored in the accounts by using lifecycle management rules. To which storage accounts can you apply lifecycle management rules?

Correct Answer: D
Reference:
https://docs.microsoft.com/en-us/azure/storage/blobs/storage-lifecycle-management-concepts?tabs=azure-portal

QUESTION 60

- (Exam Topic 5)
Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution.
After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen.
You have an app named App1 that is installed on two Azure virtual machines named VM1 and VM2. Connections to App1 are managed by using an Azure Load Balancer.
The effective network security configurations for VM2 are shown in the following exhibit.
AZ-104 dumps exhibit
You discover that connections to App1 from 131.107.100.50 over TCP port 443 fail. You verify that the Load Balancer rules are configured correctly.
You need to ensure that connections to App1 can be established successfully from 131.107.100.50 over TCP port 443.
Solution: You modify the priority of the Allow_131.107.100.50 inbound security rule. Does this meet the goal?

Correct Answer: B
The rule currently has the highest priority. Reference:
https://fastreroute.com/azure-network-security-groups-explained/ Allow_131.107.100.50 rule already has the highest priority.
https://docs.microsoft.com/en-us/azure/virtual-network/network-security-groups-overview