Tüm alıştırma soruları
1198 soru
An organization is deploying a high-performance computing (HPC) application on Azure Linux Virtual Machines. The application requires a shared storage volume that supports the NFS v4.1 protocol and POSIX-compliant file system permissions. The storage must survive a zone failure within the primary Azure region while maintaining sub-millisecond latency. Which Azure storage configuration should you design to meet these requirements?
A healthcare provider is designing the database infrastructure for a new reporting application. The database has the following requirements:
- Must run scheduled data aggregation tasks using SQL Server Agent.
- Requires SQL Server Common Language Runtime (CLR) integration.
- The database administration team must not be responsible for operating system patching, updates, or virtual machine management.
Which database service should you recommend?
A multinational retail chain is transitioning its legacy supply chain management platform to Microsoft Azure. The current platform relies on a SQL Server environment hosting three interconnected databases. These databases execute frequent cross-database updates using three-part object names (e.g., querying 'InventoryDB.dbo.Stock' from the 'SalesDB' database). Additionally, the system runs native SQL Server Agent jobs for nightly inventory reconciliation.
The target Azure architecture must satisfy the following constraints:
- Maintain native support for SQL Server Agent and three-part naming without refactoring the application code.
- Eliminate host operating system maintenance, engine patching, and database backup infrastructure management.
- Deliver sub-millisecond write latency specifically for database transaction logs to support high-throughput checkout events.
- Provide a read-only endpoint replica to offload heavy reporting queries from the primary transactional node.
- Protect all automated database backups against the loss of a primary datacenter.
Which Azure SQL deployment option should you recommend?
A manufacturing company is planning the migration of two on-premises databases to Azure. The migration requirements for each database are as follows:
* **Database (Operations)**: Requires native SQL Server Agent for scheduling jobs, cross-database queries to databases on the same server, and support for Common Language Runtime (CLR) modules.
* **Database (Telemetry)**: Requires storage that can scale up to . The database experiences high-frequency write operations, and backups must finish in less than without impacting application performance.
Which two database solutions should you recommend to meet these requirements? (Select two.)
Geçerli olan tümünü seçin
You are designing a storage solution for database backup files in Azure. The solution must meet the following requirements:
* Ensure the backup files remain available if a single datacenter within the primary Azure region experiences an outage.
* Minimize storage costs.
* Provide sub-second retrieval times for the backups.
Which two configurations should you select for the storage account? (Choose two.)
Geçerli olan tümünü seçin
An organization is designing the storage architecture for a new multi-tier financial analytics solution in Azure. The solution has the following design requirements:
* Database logs: The transactional database tier requires a dedicated disk for write-intensive logs. The disk must support up to IOPS and sub-millisecond write latency. The logs must survive local hardware failures within a single datacenter, but do not require zone-wide protection.
* Profile images: The web tier requires shared storage for user-uploaded profile images. The storage must survive a zone-wide datacenter outage. Access URLs must be valid for months, and the security team must be able to immediately revoke access to all active URLs in the event of a security breach.
* Audit logs: The compliance tier requires archiving audit logs for years. The audit logs must be immediately readable with sub-second latency when queried, though they are rarely accessed.
Which combination of storage configurations and features should you recommend?
A fintech company is designing a privileged access and governance model to secure their Azure subscriptions and comply with regulatory requirements. The model must satisfy the following requirements:
- Developers require temporary, just-in-time (JIT) access to the Contributor role on subscriptions for troubleshooting, with a maximum duration of 4 hours.
- The administrative overhead for managing user-to-role mappings must be minimized.
- Access paths must be fully auditable.
Which of the following actions should you recommend to meet these requirements? (Select TWO.)
Geçerli olan tümünü seçin
An organization is designing a governance strategy for its Azure subscriptions. The strategy must satisfy the following compliance requirements:
- Automatically deploy a diagnostic setting to any newly created Azure Key Vault if it is missing, without blocking the creation of the Key Vault itself.
- Block the creation of virtual networks that do not comply with corporate IP address space allocations.
Which of the following Azure Policy effects should you include in the design? (Select TWO.)
Geçerli olan tümünü seçin
An enterprise is designing a hybrid and multi-tenant identity solution to integrate their on-premises Active Directory Domain Services (AD DS) forest with Microsoft Entra ID. The solution must support various user populations, access control policies, and authentication methods. Match each business and security requirement on the left to the most appropriate Microsoft Entra identity technology or feature on the right that satisfies it.
Soldaki öğeye tıklayın, sonra eşleşen sağdaki öğeye tıklayın
Öğeler
Eşleşmeler
A company is planning to migrate an on-premises database that supports a mission-critical financial ledger application to Azure. The migration must meet the following requirements:
- Support native SQL Server Agent jobs and cross-database queries between databases on the same database engine instance.
- Provide storage latency of less than 2 milliseconds for database transaction log writes.
- Minimize administrative effort for operating system and database engine patching.
- Provide a read-only replica to offload reporting queries without incurring additional licensing or compute costs.
Which two options should you recommend? (Choose two.)
Geçerli olan tümünü seçin
You are designing an Azure Cosmos DB NoSQL API database to support a global shopping cart service. The database must support a write-heavy workload consisting of 90% writes and 10% reads, provide a 99.999% write availability SLA, and survive a regional outage. You need to recommend a design configuration that prevents hot partitions, meets the SLA, and secures the data access. Which of the following design configurations should you recommend?
An enterprise is designing a subscription governance and access control strategy for a multi-region Azure environment. The environment is organized under a root-level management group containing two child management groups: Production-MG and Development-MG.
The operations team has the following requirements:
1. Security auditors must be able to view the configuration of all resources across all subscriptions under Production-MG at all times.
2. A team of site reliability engineers (SREs) requires temporary administrative permissions on virtual machines inside Production-MG subscriptions only when responding to active incidents.
3. Any virtual machine deployed in Production-MG subscriptions must have Azure Backup configured automatically.
4. Administrative overhead must be minimized, and permissions must adhere to the principle of least privilege.
Which design strategy should you recommend?
A financial services company is setting up a new multi-subscription environment in Azure. The compliance team requires that a security group of external security auditors be granted read-only access to verify resource configurations across all current and future subscriptions. The company must enforce the principle of least privilege and ensure that when auditors join or leave the audit team, their access is automatically updated without requiring manual modifications to the Azure role assignments. Which of the following approaches should you recommend?
A media company is designing a monitoring and log routing architecture for a new application. The application developers require Kusto Query Language (KQL) access to application performance telemetry for real-time debugging. The compliance team requires that raw HTTP access logs be retained for seven years for auditing purposes, though they will rarely be read. The security architecture must minimize ingestion and retention costs. Which diagnostic log routing and storage strategy should you recommend?
An organization is designing a shared storage solution for a Linux-based high-performance computing (HPC) cluster deployed on Azure Virtual Machines. The application running on the cluster requires a shared file system that supports POSIX-compliant file permissions and the NFS v4.1 protocol. The shared storage must also be able to survive a primary datacenter outage within the region. Which two configuration options should you recommend to meet these requirements? (Select TWO.)
Geçerli olan tümünü seçin
Vanguard Energy Services is designing an identity and access management solution for a new Microsoft Entra ID tenant. The tenant must synchronize with an on-premises Active Directory Domain Services (AD DS) environment.
The solution must meet the following business and technical requirements:
- User passwords must be validated directly in the cloud to minimize reliance on on-premises infrastructure.
- Leaked credentials published on the public internet must be automatically detected.
- Just-in-time administrative access must be enforced for administrative roles.
- Administrative access must be maintainable even during a tenant-wide multi-factor authentication (MFA) service outage.
Which identity and access design should the architect recommend?
A digital forensics firm is designing the cloud architecture for a new evidence tracking system. The solution will utilize multiple relational databases and must meet the following requirements:
* Support native cross-database queries across multiple database catalogs using standard three-part naming conventions.
* Enable automated database maintenance tasks scheduled and executed natively using the SQL Server Agent.
* Run custom .NET assemblies directly within the database engine using SQL Server Common Language Runtime (CLR).
* Eliminate the administrative overhead of managing, patching, and maintaining the underlying operating system.
Which Azure SQL deployment option should you recommend?
Nebula Genomics is designing a hybrid identity and governance solution to integrate their on-premises Active Directory Domain Services (AD DS) forest of 12,000 users with Microsoft Entra ID.
The solution must satisfy the following constraints:
- Users must be able to authenticate to cloud applications even if the network connection between the on-premises datacenter and Azure is temporarily offline.
- Users must be able to use self-service password reset (SSPR) in the cloud, with changes automatically updating the on-premises AD DS.
- Azure resource administrative access must support just-in-time (JIT) activation and prevent users from having persistent administrative privileges.
Which identity synchronization and governance configuration should you recommend?
You are designing the storage configuration for a SQL Server database hosted on an Azure Virtual Machine. The database transaction logs require consistent, sub-millisecond write latencies and high IOPS performance. Which Azure managed disk type should you select for the drive that hosts these transaction logs?
An organization is designing a cloud storage solution for a database application hosted on Azure Virtual Machines. The solution must satisfy the following requirements:
* The database transaction logs must be stored on a dedicated virtual disk that supports high IOPS and sub-millisecond latency.
* Database backups must be copied to a separate storage repository that can survive a primary Azure region outage.
* External auditors must be granted temporary, read-only access to specific backup blobs for up to 180 days, and this access must be immediately revocable in the event of a credential leak.
Which storage design should you recommend to meet these requirements?