Configuring and Operating a Hybrid Cloud with Microsoft Azure Stack Hub (beta) v1.0 (AZ-600)

Page:    1 / 12   
Total 167 questions

DRAG DROP
-

You have an Azure subscription named sub1 linked to an Azure Active Directory (Azure AD) tenant named contoso.com

You have an Azure Stack Hub integrated system that is registered to sub1.

You need to delegate registering the Azure Stack Hub integrated system to an Azure Stack Hub operator. The solution must use the Principle of least privilege.

Which three actions should you perform in sequence? To answer, move the appropriate actions from the list of actions to the answer area and arrange them in correct order.



Answer :

DRAG DROP
-

You have an Azure Stack Hub integrated system that contains a user named User1.

You have a JSON file that contains the definition of the Reader role.

You need to create a custom role to enable User1 to manage updates for the integrated system.

Which four actions should you perform in sequence? To answer, move the appropriate actions from the list of actions to the answer area and arrange them in the correct order.



Answer :

You have a connected Azure Stack Hub integrated system that contains a user named User1.

You need to ensure that User1 can onboard a new guest tenant directory. The solution must use the principle of least privilege.

Which role should you assign to User1?

  • A. Hybrid identity administrator
  • B. Global administrator
  • C. Domain name administrator
  • D. Owner


Answer : A

HOTSPOT
-

You have a disconnected Azure Stack Hub integrated system that will be used in production.

You need to obtain a token to register the integrated system.

How should you complete the PowerShell script? To answer, select the appropriate options in the answer area

NOTE: Each correct selection is worth one point.



Answer :

DRAG DROP
-

You have an Azure Stack Hub integrated system.

You plan to enable Azure Command-Line Interface (CLI) for Azure Stack Hub users.

You create an alias template file.

You need to configure the virtual machine aliases endpoint. The solution must use the principle of least privilege.

Which three actions should you perform in sequence? To answer, move the appropriate actions from the list of actions to the answer area and arrange them in the correct order.



Answer :

You have an Azure Stack Hub integrated system that is linked to an Azure Active Directory (Azure AD) tenant named contoso.onmicrosoft.com.

The Azure Stack Hub portals are configured as shown in the following table.



You register a guest Azure AD tenant named adatum.onmicrosoft.com that contains a user named [email protected].

User1 needs to subscribe to an Azure Stack Hub integrated system offer.

Which URL should User1 use?

  • A. https://portal.eastus.contoso.com/adatum.onmicrosoft.com
  • B. https://adminportal.eastus.contoso.com/fabrikam.com
  • C. https://portal.eastus.contoso.com/
  • D. https://portal.eastus.contoso.com/fabrikam.com


Answer : A

You have 20 computers that run Linux.

You deploy a disconnected Azure Stack Hub integrated system.

You need to ensure that users on the Linux computers can manage their Azure Stack Hub resources by using Azure Command-Line Interface (CLI).

What should you do first?

  • A. For each Linux computer, request a certificate from the integrated system.
  • B. Export the root certificate of the integrated system as a P7B file.
  • C. Request a new certificate for the integrated system.
  • D. Export the root certificate of the integrated system as a CER file.


Answer : D

You have a disconnected Azure Stack Hub integrated system that contains a user named User1.

You need to ensure that User1 can assign role-based access control (RBAC) roles in Azure Stack Hub. The solution must use the principle of least privilege.

Which Azure Stack Hub built-in role should you assign to User1?

  • A. Owner
  • B. User Access Administrator
  • C. Security Admin
  • D. Managed Identity Contributor


Answer : B

HOTSPOT
-

You have an Azure Stack Hub integrated system that uses an Azure AD tenant named contoso.com as an identity provider.

An Azure Stack Hub operator named Operator1 is a global administrator for the contoso.com Azure AD tenant.

Operator1 creates a new user subscription as shown in the following exhibit.



Use the drop-down menus to select the answer choice that completes each statement based on the information presented in the graphic.

NOTE: Each correct selection is worth one point.



Answer :

HOTSPOT
-

You have an Azure Stack Hub integrated system that is enabled for multi-tenancy and contains a user subscription named fabrikam.com. Fabrikam.com contains the resources shown in the following table.



You need to ensure that User1 can request console access to VM1.



Answer :

DRAG DROP
-

You have a connected Azure Stack Hub integrated system.

You need to create a custom role-based access control (RBAC) role that meets the following requirements:

• Enables users to create, read, update, and delete objects in the Default Provider Sub-scription.
• Prevents users from granting permissions.
• Enables users to revoke permissions.

The solution must minimize administrative effort.

Which three actions should you perform in sequence? To answer, move the appropriate actions from the list of actions to the answer area and arrange them in the correct order.



Answer :

DRAG DROP
-

You have an Azure Stack Hub integrated system that contains a user named User1.

User1 creates a new virtual machine named VM01.

You need to grant User1 console access to VM01.

Which five actions should you perform in sequence? To answer, move the appropriate actions from the list of actions to the answer area and arrange them in the correct order.



Answer :

You have a disconnected Azure Stack Hub integrated system.

You deploy an Operator Access Workstation (OAW) virtual machine image.

You need to sign in to the virtual machine.

Which username should you use?

  • A. GUser
  • B. AdminUser
  • C. Administrator
  • D. CloudAdmin


Answer : B

HOTSPOT
-

You have an Active Directory Federation Services (AD FS) deployment.

You plan to deploy a disconnected Azure Stack Hub integrated system.

You install the Azure Stack Hub Readiness Checker tool.

You need to validate that the AD FS deployment can be used to manage role-based access control (RBAC) roles in Azure Stack Hub.

How should you complete the command? To answer, select the appropriate options in the answer area.

NOTE: Each correct selection is worth one point.



Answer :

DRAG DROP -
You have an Azure Stack Hub integrated system that has syslog forwarding configured.
You need to remove syslog forwarding and the associated certificate.
Which three actions should you perform in sequence? To answer, move the appropriate actions from the list of actions to the answer area and arrange them in the correct order.
Select and Place:



Answer :

Reference:
https://docs.microsoft.com/en-us/azure-stack/operator/azure-stack-integrate-security?view=azs-2008

Page:    1 / 12   
Total 167 questions