Implementing Microsoft Azure Infrastructure Solutions

Question No: 81

You are designing a Windows Azure application. The application includes two web roles

and three instances of a worker role. The web roles will send requests to the worker role through one or more Windows Azure Queues. You have the following requirements:

-Ensure that each request is processed exactly one time.

-Minimize the idle time of each worker role instance.

-Maximize the reliability of request processing.

You need to recommend a queue design for sending requests to the worker role. What should you recommend?

  1. Create a queue for each combination of web roles and worker role instances. Send requests to all worker role instances based on the sending web role.

  2. Create a single queue. Send all requests on the single queue.

  3. Create a queue for each worker role instance. Send requests on each worker queue by using a round robin rotation.

  4. Create a queue for each web role. Send requests on all queues at the same time.

Answer: B Explanation:

To communicate with the worker role, a web role instance places messages on to a queue. A worker role instance polls the queue for new messages, retrieves them, and processes them. There are a couple of important things to know about the way the queue service works in Azure. First, you reference a queue by name, and multiple role instances can share a single queue. Second, there is no concept of a typed message; you construct a message from either a string or a byte array. An individual message can be no more than 64 kilobytes (KB) in size.



http://azure.microsoft.com/en-gb/documentation/articles/cloud-services-dotnet-multi-tier- app-using-service-bus-queues/

Question No: 82 HOTSPOT

You plan to deploy an Azure SQL Database instance.

After deployment, the solution must meet the following requirements:

  • You must be able to restore the database to any point in time for the last 30 days.

  • In the event of a restore, data must be recovered by using the fastest available method.

  • SQL backups must be stored in up four secondary regions.

  • You must minimize costs when configuring the databases. You need to configure the secondary databases.

Which storage tier and method should you use? To answer, select the appropriate options in the answer area.

NOTE: Each correct selection is worth one point.

Question No: 83

You are the administrator for three Azure subscriptions named Dev, Test, and Prod. Your Azure Power Shell profile is configured with the Dev subscription as the default.

You need to create a new virtual machine in the Test subscription by using the least administrative effort.

Which Power Shell command should you use?

  1. Option A

  2. Option B

  3. Option C

  4. Option D

Answer: A Explanation:

Example: Set the current subscription

This command makes Test the current subscription.

Windows PowerShell

C:\PSgt; Select-AzureSubscription -SubscriptionName Test -Current



Question No: 84

You have an Azure subscription that contains a backup vault named BV1. BV1 contains five protected servers. Backups run daily. You need to modify the storage replication settings for the backups.

What should you do first?

  1. Create a new backup vault.

  2. Modify the policies associated to BV1.

  3. Uninstall the backup agent from the five servers.

  4. Run the Remove-OBFileSpec cmdlet.

Answer: B Explanation:


Question No: 85

You have an application that needs to use single sign-on (SSO) between the company’s Azure Active Directory (Azure AD) and the on-premises Windows Server 2012 R2 Active Directory. You configure the application to use Integrated Windows Authentication (IWA). You install an Application Proxy connector in the same domain as the server that is publishing the application.

You need to configure the published application in Azure AD to enable SSO. What should you do?

  1. Set the external authentication method to IWA.

  2. Set the preauthenticated method to Pass through.

  3. Set the internal authentication method to IWA.

  4. Enable an access rule to require Multi-Factor Authentication.

Answer: C Explanation:

https://docs.microsoft.com/en-us/azure/active-directory/active-directory-application-proxy- sso-using-kcd

Question No: 86

Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution. After you answer a question in this sections, you will NOT be able to return to it. As a result, these questions will not appear in the review screen.

You manage an Azure SQL Database. The database has weekly backups that are stored in an Azure Recovery Services vault. You need to maximize the time that previous backup versions are stored.

Solution: You configure a retention policy that is set to 20 years. Does the solution meet the goal?

  1. Yes

  2. No

Answer: B

Explanation: Store Azure SQL Database backups for up to 10 years. Many applications have regulatory, compliance, or other business purposes that require you to retain database backups beyond the 7-35 days provided by Azure SQL Database automatic backups. By using the long-term backup retention feature, you can store your SQL database backups in an Azure Recovery Services vault for up to 10 years.

Question No: 87

You create an Azure Recovery Services vault and download the backup agent installation file. You need to complete the installation of the backup agent. What should you do first?

  1. Configure network throttling.

  2. Set the storage replication option.

  3. Download the vault credentials file.

  4. Select the data to back up.

Answer: C

Explanation: After you have created the vault, prepare your infrastructure to back up files and folders by downloading and installing the Microsoft Azure Recovery Services agent, downloading vault credentials, and then using those credentials to register the agent with the vault. You can install the agent after you have downloaded the vault credentials.

Question No: 88

You are evaluating a Windows Azure application. The application uses one instance of a web role. The role instance size is set to Medium.

The application does not use SQL Azure.

You have the following requirements for scaling the application:

-> Maximize throughput.

-> Minimize downtime while scaling.

-> Increase system resources.

You need to recommend an approach for scaling the application. What should you recommend?

  1. Set up vertical partitioning.

  2. Set up horizontal partitioning.

  3. Increase the number of role instances.

  4. Change the role instance size to Large.

Answer: C

Question No: 89

You administer a DirSync server configured with Azure Active Directory (Azure AD).

You need to provision a user in Azure AD without waiting for the default DirSync synchronization interval.

What are two possible ways to achieve this goal? Each correct answer presents a complete solution.

  1. Restart the DirSync server.

  2. Run the Start-OnlineCoexistenceSync PowerShell cmdlet.

  3. Run the Enable-SyncShare PowerShell cmdlet.

  4. Run the Azure AD Sync tool ConfigurationWizard.

  5. Replicate the Directory in Active Directory Sites and Services.

Answer: B,D Explanation:

If you don’t want to wait for the recurring synchronizations that occur every three hours, you can force directory synchronization at any time.

B: Force directory synchronization using Windows PowerShell

You can use the directory synchronization Windows PowerShell cmdlet to force synchronization. The cmdlet is installed when you install the Directory Sync tool.

On the computer that is running the Directory Sync tool, start PowerShell, type Import- Module DirSync, and then press ENTER.

Type Start-OnlineCoexistenceSync, and then press ENTER.

D: Azure Active Directory Sync Services (AAD Sync)

In September 2014 the Microsoft Azure AD Sync tool was released. This changed how manual sync requests are issued.

To perform a manual update we now use the DirectorySyncClientCmd.exe tool. The Delta and Initial parameters are added to the command to specify the relevant task.

This tool is located in: C:\Program Files\Microsoft Azure AD Sync\Bin

You can use the directory synchronization Windows PowerShell cmdlet to force synchronization. The cmdlet is installed when you install the Directory Sync tool.

On the computer that is running the Directory Sync tool, start PowerShell, type Import- Module DirSync, and then press ENTER.

Type Start-OnlineCoexistenceSync, and then press ENTER.

References: https://azure.microsoft.com/en-us/documentation/articles/active-directory- aadconnect/

Question No: 90

You purchase an Azure subscription. You plan to deploy an application that requires four Azure virtual machines (VMs). All VMs use Azure Resource Management (ARM) mode.

You need to minimize the time that it takes for VMs to communicate with each other. What should you do?

  1. Create a multi-site virtual network.

  2. Create a regional virtual network.

  3. Create a site-to-site virtual network.

  4. Add the VMs to the same affinity group.

Answer: B Explanation:

Affinity groups are no longer available in ARM mode. Regional network is the new way of doing it.


https://azure.microsoft.com/en-gb/documentation/articles/virtual-machines-windows- compare-deployment-models/

