Get AZ-800 Braindumps & AZ-800 Real Exam Questions [Q76-Q98]

Share

Get AZ-800 Braindumps & AZ-800 Real Exam Questions

Microsoft AZ-800 Actual Questions and Braindumps

NEW QUESTION # 76
You have a disaggregated cluster deployment. The deployment contains a scale-out file server (SOFS) cluster that runs Windows Server and a compute duster that has the Hyper-V role enabled.
You need to implement Storage Quality of Service (QoS). The solution must ensure that you can control the bandwidth usage between the SOFS cluster and the Hyper-V cluster.
Which cmdlet should you run on each cluster? To answer, drag the appropriate cmdlets to the correct clusters. Each cmdlet may be used once, more than once, or not at all. You may need to drag the split bar between panes or scroll to view content.
NOTE: Each correct selection is worth one point.

Answer:

Explanation:


NEW QUESTION # 77
You have an Azure subscription that contains a virtual machine named VM1 as shown in the following exhibit.

The subscription has the disks shown in the following table.

Which disks can you attach as data disks to VM1?

  • A. Disk1 and Disk2 only
  • B. Disk1, Disk2, Disk3. and Disk4
  • C. Disk2 only
  • D. Disk2 and Disk4 only
  • E. Disk1, Disk3, and Disk4 only
  • F. Disk4 only

Answer: A


NEW QUESTION # 78
You have an Active Directory Domain Services (AD DS) domain that contains the domain controllers shown in the following table.

The domain contains an app named App1 that uses a custom application partition to store configuration data.
You decommission App1.
When you attempt to remove the custom application partition, the process fails.
Which domain controller is unavailable?

  • A. DC4
  • B. DC3
  • C. DC2
  • D. DC1

Answer: B


NEW QUESTION # 79
Hotspot Question
Your network contains a two-domain on-premises Active Directory Domain Services (AD DS) forest named contoso.com. The forest contains the domain controllers shown in the following table.

All domain controllers are backed up by using Azure Backup.
You create an Active Directory site named Site3. Site1, Site2, and Site3 each has a dedicated site link to the Hub site.
In Site3, you install a new server named Server1.
You need to promote Server1 to an RODC in child.contoso.com by using the Install from Media (IFM) option. The solution must minimize network traffic.
What should you do? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.

Answer:

Explanation:

Explanation:
Box 1: DC2
You create IFM by using Windows Azure Backup on DC2.
Box 1: Ntdsutil.exe
Windows Server 2008 and Windows Server 2008 R2 include an improved version of the Ntdsutil tool that you can use to create installation media for an additional domain controller. You can use Ntdsutil.exe to create installation media for additional domain controllers that you are creating in a domain. The IFM method uses the data in the installation media to install AD DS, which eliminates the need to replicate every object from a partner domain controller.
https://social.technet.microsoft.com/wiki/contents/articles/8630.active-directory-step-by-step- guide-to-install-an-additional-domain-controller-using-ifm.aspx
https://www.windowstechno.com/deploy-domain-controller-using-install-from-media-ifm/


NEW QUESTION # 80
You have an on-premises server named Server1 that runs Windows Server and has internet connectivity.
You have an Azure subscription.
You need to monitor Server1 by using Azure Monitor.
Which resources should you create in the subscription, and what should you install on Server1? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.

Answer:

Explanation:

Reference:
https://docs.microsoft.com/en-us/windows-server/manage/windows-admin-center/azure/azure-monitor


NEW QUESTION # 81
Your network contains an Active Directory Domain Services (AD DS) forest named contoso.com.
The root domain contains the domain controllers shown in the following table.

A failure of which domain controller will prevent you from creating application partitions?

  • A. DC4
  • B. DC2
  • C. DC1
  • D. DC5
  • E. DC3

Answer: C

Explanation:
Initial replication and connectivity requirements
This FSMO role holder is only active when the role owner has inbound replicated the configuration NC successfully since the Directory Service started.
Domain members of the forest only contact the FSMO role holder when they update the cross- references. DCs contact the FSMO role holder when:
Domains are added or removed in the forest.
New instances of application directory partitions on DCs are added. For example, a DNS server has been enlisted for the default DNS application directory partitions.
https://docs.microsoft.com/en-us/troubleshoot/windows-server/identity/fsmo- roles#domain%20naming


NEW QUESTION # 82
Your on-premises network contains an Active Directory Domain Services (AD DS) domain.
You plan to sync the domain with a Microsoft Entra tenant by using Microsoft Entra Connect cloud sync.
You need to meet the following requirements:
* Install the software required to sync the domain and Microsoft Entra ID.
* Enable password hash synchronization.
What should you install, and what should you use to enable password hash synchronization? To answer, select the appropriate options in the answer area.

Answer:

Explanation:


NEW QUESTION # 83
You have a server named Server1 that runs Windows Server and contains two drives named C and D.
Server1 hosts multiple file shares.
You enable Data Deduplication on drive D and select the General purpose file server workload.
You need to minimize the space consumed by files that were recently modified or deleted.
What should you do?

  • A. Run the Set-DedupSchedule cmdlet and configure the Optimization job.
  • B. Run the Set-DedupVolume cmdlet and configure the Scrubbing job.
  • C. Run the Set-DedupVolume cmdlet and configure the InputOutputScale settings.
  • D. Run the Set-DedupSchedule cmdlet and configure a GarbageCollection job.

Answer: D

Explanation:
Garbage Collection The Garbage Collection job reclaims disk space by removing unnecessary chunks that are no longer being referenced by files that have been recently modified or deleted.
https://learn.microsoft.com/en-us/windows-server/storage/data-deduplication/understand#job-info


NEW QUESTION # 84
Your on-premises network contains a single-domain Active Directory Domain Services (AD DS) forest. You have an Azure AD tenant named contoso.com. The AD DS forest syncs with the Azure AD tenant by using Azure AD Connect.
You need to ensure that users in the forest that have a custom attribute of NoSync are excluded from synchronization.
How should you configure the Azure AD Connect cloudFiltered attribute, and which tool should you use? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.

Answer:

Explanation:


NEW QUESTION # 85
You have 10 on-premises servers that run Windows Server.
You plan to use Azure Network Adapter to connect the servers to the resources in Azure.
Which prerequisites do you require on-premises and in Azure? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.

Answer:

Explanation:

Explanation:

In the Administering Windows Server Hybrid Core Infrastructure materials, Azure Network Adapter (ANA) is presented as a Windows Admin Center (WAC) capability used to connect on-premises Windows Server computers to Azure. The guidance states that Windows Admin Center provides an Azure Network Adapter workflow that creates a point-to-site (P2S) VPN from the selected on-premises server to an Azure virtual network. The server-side configuration (VPN profile, certificates, and routes) is pushed directly from WAC; therefore, you use Windows Admin Center-not Server Manager, Azure CLI, or RRAS-to configure the on-premises servers.
On the Azure side, the same module explains that the P2S connection terminates on an Azure VPN Gateway deployed in the target virtual network. ANA either uses an existing gateway or helps you provision one by ensuring a GatewaySubnet exists and configuring Point-to-Site settings. The study content emphasizes that "Azure Network Adapter establishes a point-to-site VPN to an Azure VNet by using an Azure VPN gateway; other Azure services such as Bastion, Firewall, Private Endpoints, or Load Balancers are not used for this tunnel." Consequently, the required Azure component is an Azure virtual network gateway.
Putting it together: to set up ANA you configure the on-premises servers with Windows Admin Center, and to connect to Azure you use an Azure virtual network gateway as the VPN termination point.


NEW QUESTION # 86
Your network contains two Active Directory Domain Services (AD DS) forests as shown in the following exhibit.

The forests contain the domain controllers shown in the following table.

You perform the following actions on DO:
* Create a user named User1.
* Extend the schema with a new attribute named Attributed
To which domain controllers are User1 and Attribute1 replicated? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.

Answer:

Explanation:

Explanation:


NEW QUESTION # 87
Your network contains an Active Directory Domain Services (AD DS) forest named contoso.com. The forest contains a child domain named east.contoso.com.
in the contoso.com domain, you create two users named Admin1 and Admin2.
You need to ensure that the users can perform the following tasks:
* Admin1 can create and manage Active Directory sites.
* Admin2 can deploy domain controller to the easl.conloso.com domain.
The solution must use the principle of least privilege.
To which group should you add each user? To answer, select the appropriate options in the answer area.
NOTE Each correct selection is worth one point.

Answer:

Explanation:

Explanation:

Reference:
https://docs.microsoft.com/en-us/windows-server/remote/remote-access/ras/multisite/configure/step-2-configure-


NEW QUESTION # 88
You deploy a single-domain Active Directory Domain Services (AD DS) forest named contoso.com.
You deploy five servers to the domain. You add the servers to a group named iTFarmHosts.
You plan to configure a Network Load Balancing (NIB) cluster named NLBCluster.contoso.com that will contain the five servers.
You need to ensure that the NLB service on the nodes of the cluster can use a group managed service account (gMSA) to authenticate.
Which three PowerShell cmdlets should you run in sequence? To answer, move the appropriate cmdiets from the list of cmdlets to the answer area and arrange them in the correct order.

Answer:

Explanation:

1 - Add-KdsRootKey
2 - New-ADServiceAccount
3 - Install-ADServiceAccount
Reference:
https://docs.microsoft.com/en-us/windows-server/security/group-managed-service-accounts/create-the-key-distribution-services-kds-root-key
https://docs.microsoft.com/en-us/windows-server/security/group-managed-service-accounts/getting-started-with-group-managed-service-accounts


NEW QUESTION # 89
Hotspot Question
Your network contains an Active Directory Domain Services (AD DS) domain named contoso.com.
The network contains the servers shown in the following table.

You plan to implement IP Address Management (IPAM).
You need to use the Group Policy based provisioning method for managed servers. The solution must support server discovery.
What should you do? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.

Answer:

Explanation:

Explanation:
IPAM must be installed on a domain member computer. You cannot install IPAM on a domain controller.
IPAM installation on a DHCP server is not recommended. The IPAM server discovery feature will not be able to discover DHCP roles if DHCP Server is installed on the same computer.
IPAM supports only domain joined DHCP, DNS and NPS servers in a single Active Directory forest.
https://learn.microsoft.com/en-us/previous-versions/windows/it-pro/windows-server-2012-r2-and-
2012/jj878312(v=ws.11)


NEW QUESTION # 90
You deploy a single-domain Active Directory Domain Services (AD DS) forest named contoso.com.
You deploy a server to the domain and configure the server to run a service.
You need to ensure that the service can use a group managed service account (gMSA) to authenticate.
Which three PowerShell cmdlets should you run in sequence? To answer, move the appropriate cmdlets from the list of cmdlets to the answer area and arrange them in the correct order.

Answer:

Explanation:

Explanation


NEW QUESTION # 91
You have an Azure virtual machine named VM1 that runs Windows Server.
You have an Azure subscription that has Microsoft Defender for Cloud enabled.
You need to ensure that you can use the Azure Policy guest configuration feature to manage VM1.
What should you do?

  • A. Add the Custom Script Extension to VM1.
  • B. Add the PowerShell Desired State Configuration (DSC) extension to VM1.
  • C. Configure VM1 to use a user-assigned managed identity.
  • D. Configure VM1 to use a system-assigned managed identity.

Answer: D

Explanation:
For the machine to authenticate to the Guest Configuration service, the machine must have a System-Assigned Managed Identity.
https://docs.microsoft.com/en-us/azure/virtual-machines/extensions/guest-configuration


NEW QUESTION # 92
You need to meet the technical requirements for the site links. Which users can perform the required tasks?

  • A. Admin1 only
  • B. Admin3 only
  • C. Admin1 and Admin2 only
  • D. Admin1, Adrrun2. and Admin3
  • E. Admin1 and Admin3 only

Answer: C

Explanation:
Membership in the Enterprise Admins group or the Domain Admins group in the forest root domain is required.
Topic 1, Contoso Ltd
AD DS Environment
The network contains an on-premises Active Directory Domain Services (AD DS) forest named contoso.com. The forest contains two domains named contoso.com and canada.contoso.com. The forest contains the domain controllers shown in the following table.

All the domain controllers are global catalog servers.
Server Infrastructure
The network contains the servers shown in the following table.

A server named Server4 runs Windows Server and is in a workgroup. Windows Firewall on Servei4 uses the private profile.
Server2 hosts three virtual machines named VM1. VM2, and VM3.
VM3 is a file server that stores data in the volumes shown in the following table.

Group Policies
The contoso.com domain has the Group Policies Objects (GPOs) shown in the following table.

Existing Identities
The forest contains the users shown in the following table.

The forest contains the groups shown in the following table.

Current Problems
When an administrator signs in to the console of VM2 by using Virtual Machine Connection, and then disconnects from the session without signing out another administrator can connect to the console session as the currently signed-in user.
Requirements
Contoso identifies the following technical requirements:
* Change the replication schedule for all site links to 30 minutes.
* Promote Server1 to a domain controller in canada.contoso.com.
* Install and authorize Server3 as a DHCP server.
* Ensure that User! can manage the membership of all the groups in Contoso\OU3.
* Ensure that you can manage Server4 from Server1 by using PowerShell removing.
* Ensure that you can run virtual machines on VM1.
* Force users to provide credentials when they connect to VM2.
* On VM3, ensure that Data Deduplication on all volumes is possible.


NEW QUESTION # 93
You need to configure network communication between the Seattle and New York offices. The solution must meet the networking requirements.
What should you configure? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.

Answer:

Explanation:

Reference:
https://docs.microsoft.com/en-us/azure/virtual-wan/virtual-wan-expressroute-portal


NEW QUESTION # 94
Your network contains an Active Directory Domain Services (AD DS) domain named contoso.com.
The network contains the servers shown in the following table.

You plan to implement IP Address Management (IPAM).
You need to use the Group Policy based provisioning method for managed servers. The solution must support server discovery.
What should you do? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.

Answer:

Explanation:

Explanation:


NEW QUESTION # 95
You plan to deploy an Azure virtual machine that will run Windows Server.
You need to ensure that an Azure Active Directory (Azure AD) user [email protected] can connect 10 the virtual machine by using the Azure Serial Console.
What should you do? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.

Answer:

Explanation:

Explanation

Reference:
https://docs.microsoft.com/en-us/troubleshoot/azure/virtual-machines/serial-console-overview


NEW QUESTION # 96
Drag and Drop Question
You have a server named Server1 that runs Windows Server and has the Active Directory Federation Services role installed.
You plan to deploy Web Application Proxy to a server named Server2.
You export the Active Directory Federation Services (AD FS) certificate from Server1.
Which actions should you perform on Server2 in sequence? To answer, drag the appropriate actions to the correct order. Each action may be used once, more than once, or not at all. You may need to drag the split bar between panes or scroll to view content.
NOTE: Each correct selection is worth one point.

Answer:

Explanation:


NEW QUESTION # 97
While creating a new container image on Windows Admin Center, which of the following options would you use to create a new container image using the IIS base image?

  • A. IIS web application/static web application folder
  • B. Use an existing Dockerfile
  • C. IIS web application/Visual Studio solution (ASP.NET)
  • D. IIS web application/Web Deploy (exported Zip file)

Answer: A

Explanation:
IIS web application/static web application folder option is used for creating a new container image utilizing the IIS base image. The content of the folder is copied to the container image to include it as a website. It adds no framework.
Reference:
https://docs.microsoft.com/en-us/virtualization/windowscontainers/wac-tooling/wac-images


NEW QUESTION # 98
......

AZ-800 Dumps To Pass Microsoft Exam in 24 Hours - Dumps4PDF: https://pass4sure.dumps4pdf.com/AZ-800-valid-braindumps.html