Implementing Microsoft Azure Infrastructure Solutions
Question No: 61
You have an Azure subscription.
You create an Azure Active Directory (Azure AD) tenant named Tenant1 You need to configure the integration of Tenant1 and Google Apps.
You perform the required configuration on the google apps tenant.
Which three actions should you perform from the Azure Management Portal? Each correct answer presents part of the solution.
Configure directory integration.
Enable application integration
Add a custom domain.
Configure Single-Sign On (SSO)
Add a multi-factor authentication provider.
Answer: A,C,D Explanation:
Question No: 62 DRAG DROP
You publish a multi-tenant application named MyApp to Azure Active Directory (Azure AD).
You need to ensure that only directory administrators from the other organizations can access MyApp#39;s web API.
How should you configure MyApp#39;s manifest JSON file? To answer, drag the appropriate PowerShell command to the correct location in the application#39;s manifest JSON file. Each value may be used once, more than once, or not at all. You may need to drag the split bar between panes or scroll to view content.
Question No: 63
Your company has a subscription to Azure. You plan to deploy 10 websites. You have the following requirements:
You need to deploy the 10 websites while minimizing costs. Which web tier plan should you recommend?
Answer: C Explanation:
Standard offers 50 GB of storage space, while Basic only gives 10 GB. References:
Question No: 64
You are designing a Windows Azure web application.
The application will be accessible at a standard cloudapp.net URL. You need to recommend a DNS resource record type that will allow you to configure access to the application through a custom domain name.
Which type should you recommend?
Question No: 65
You are designing a Windows Azure application that will use Windows Azure Table storage. You need to recommend an approach for minimizing storage costs.
What should you recommend?
Use Entity Group Transactions.
Use multiple partitions to store data.
Use a transaction scope to group all storage operations.
Use Microsoft Distributed Transaction Coordinator (MSDTC).
Question No: 66 DRAG DROP
Fourth Coffee has an on-premises, multiple-forest Activity Directory (AD) domain. The company hosts web applications and mobile application services. Fourth Coffee uses Microsoft Office 365 and uses Azure Active Directory (Azure AD).
You have the following requirements:
Which three actions should you perform in sequence? To answer, move the appropriate actions from the list of actions to the answer area and arrange them in the correct order.
Question No: 67 DRAG DROP
An organization has several web applications and uses Azure Active Directory (Azure AD). You are developing a new web application that supports sign-on using the WS-Federation to Azure AD.
You need to describe the authentication process flow to your team.
In which order are the actions performed? To answer, move all actions from the list of actions to the answer area and arrange them in the correct order.
Question No: 68
You manage the on-premises and cloud network for a company. The network includes an Azure classic virtual network (VNet) on an East US server with two subnets that must remain online until the end of the year. You update all other VNets to Azure Resource Manager (ARM) Vnets.
You need to set up communication between specific ARM VNets and the classic Vnet. What should you do?
Create a Local VPN gateway for the classic VNet. Create VPN gateways for any ARM VNets to communicate with the local gateway.
Create Local VPN gateways for the ARM VNets. Create a VPN gateway for the classic VNet to communicate with the local gateways.
Move the ARM VNets to the US East region. Update the classic VNet to use a single subnet. Add the classic VNet as a subnet to any ARM VNet that requires communication.
Move the ARM VNets to a non US East region. Update the classic VNet to use a single subnet. Add the classic VNet as a subnet to any ARM VNet that requires communication.
Set the resource group of the classic VNet to use the same resource group that you use to create any ARM VNet that requires communication.
Answer: B Explanation:
Question No: 69
Your company plans to migrate from On-Premises Exchange to Office 365.
The existing directory has numerous service accounts in your On-Premises Windows Active Directory (AD), stored in separate AD Organizational Units (OU) for user accounts.
You need to prevent the service accounts in Windows AD from syncing with Azure AD. What should you do?
Create an OU filter in the Azure AD Module for Windows PowerShell.
Configure directory partitions in miisclient.exe.
Set Active Directory ACLs to deny the DirSync Windows AD service account MSOL_AD_SYNC access to the service account OUs.
Create an OU filter in the Azure Management Portal.
Answer: B Explanation:
One customer, who was looking for OU level filtering to import selected users from On- Premises active directory to Office365.
Configure OU level filtering for Office365 directory synchronization. References:
Question No: 70
Your company plans to migrate from On-Premises Exchange to Exchange Online in Office 365.
You plan to integrate your existing Active Directory Domain Services (AD DS) infrastructure with Azure AD.
You need to ensure that users can log in by using their existing AD DS accounts and passwords. You need to achieve this goal by using minimal additional systems.
Which two actions should you perform? Each answer presents part of the solution.
Configure Password Sync.
Set up a DirSync Server.
Set up an Active Directory Federation Services Server.
Set up an Active Directory Federation Services Proxy Server.
Answer: A,B Explanation:
|Lowest Price Guarantee||Yes||No||No|
|Free VCE Simulator||Yes||No||No|