Summer Special Limited Time 65% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: myex65

Home > Microsoft > Microsoft Certified: Azure Solutions Architect Expert > AZ-305

AZ-305 Designing Microsoft Azure Infrastructure Solutions Question and Answers

Question # 4

What should you recommend lo meet the monitoring requirements for App2?

A.

Azure Application Insights

B.

Container insights

C.

Microsoft Sentinel

D.

VM insights

Full Access
Question # 5

You need to recommend a solution that meets the file storage requirements for App2.

What should you deploy to the Azure subscription and the on-premises network? To answer, drag the appropriate services to the correct locations. Each service may be used once, more than once, or not at all. You may need to drag the split bar between panes or scroll to view content.

NOTE: Each correct selection is worth one point.

Full Access
Question # 6

You need to design a storage solution for an app that will store large amounts of frequently used data. The solution must meet the following requirements:

Maximize data throughput.

Prevent the modification of data for one year.

Minimize latency for read and write operations.

Which Azure Storage account type and storage service should you recommend? To answer, select the appropriate options in the answer area.

NOTE: Each correct selection is worth one point.

Full Access
Question # 7

You need to recommend an App Service architecture that meets the requirements for Appl. The solution must minimize costs.

What should few recommend?

A.

one App Service Environment (ASE) per availability zone

B.

one App Service plan per availability zone

C.

one App Service plan per region

D.

one App Service Environment (ASE) per region

Full Access
Question # 8

What should you implement to meet the identity requirements? To answer, select the appropriate options in the answer area.

NOTE: Each correct selection is worth one point.

Full Access
Question # 9

You plan to deploy multiple instances of an Azure web app across several Azure regions.

You need to design an access solution for the app. The solution must meet the following replication requirements:

• Support rate limiting.

• Balance requests between all instances.

• Ensure that users can access the app in the event of a regional outage.

Solution: You use Azure Front Door to provide access to the app.

Does this meet the goal?

A.

Yes

B.

No

Full Access
Question # 10

You need to recommend a solution that meets the data requirements for App1.

What should you recommend deploying to each availability zone that contains an instance of App1?

A.

an Azure Cosmos DB that uses multi-region writes

B.

an Azure Data Lake store that uses geo-zone-redundant storage (GZRS)

C.

an Azure SQL database that uses active geo-replication

D.

an Azure Storage account that uses geo-zone-redundant storage (GZRS)

Full Access
Question # 11

You are evaluating whether to use Azure Traffic Manager and Azure Application Gateway to meet the connection requirements for App1.

What is the minimum numbers of instances required for each service? To answer, select the appropriate options in the answer area.

NOTE: Each correct selection is worth one point.

Full Access
Question # 12

You have 10 on-premises servers that run Windows Server.

You need to perform daily backups of the servers to a Recovery Services vault. The solution must meet the following requirements:

• Back up all the files and folders on the servers.

• Maintain three copies of the backups in Azure.

• Minimize costs.

What should you configure? To answer, select the appropriate options in the answer area.

NOTE: Each correct selection is worth one point.

Full Access
Question # 13

You plan to automate the deployment of resources to Azure subscriptions.

What is a difference between using Azure Blueprints and Azure Resource Manager templates?

A.

Azure Resource Manager templates remain connected to the deployed resources.

B.

Only Azure Resource Manager templates can contain policy definitions.

C.

Azure Blueprints remain connected to the deployed resources.

D.

Only Azure Blueprints can contain policy definitions.

Full Access
Question # 14

You have an on-premises network that uses on IP address space of 172.16.0.0/16

You plan to deploy 25 virtual machines to a new azure subscription.

You identity the following technical requirements.

All Azure virtual machines must be placed on the same subnet subnet1.

All the Azure virtual machines must be able to communicate with all on premises severs.

The servers must be able to communicate between the on-premises network and Azure by using a site to site VPN.

You need to recommend a subnet design that meets the technical requirements.

What should you include in the recommendation? To answer, drag the appropriate network addresses to the correct subnet. Each network address may be used once, more than once or not at all. You may need to drag the split bar between panes or scroll to view content.

NOTE: Each correct selection is worth one point.

Full Access
Question # 15

You plan to deploy a network-intensive application to several Azure virtual machines.

You need to recommend a solution that meets the following requirements:

Minimizes the use of the virtual machine processors to transfer data

Minimizes network latency

Which virtual machine size and feature should you use? To answer, select the appropriate options in the answer area.

NOTE: Each correct selection is worth one point.

Full Access
Question # 16

Your company has IT, security, and finance departments.

You need to implement a new Azure deployment that will include multiple Azure subscriptions and management groups. The solution must meet the following requirements:

• Ensure that all policies are assigned at the management group level.

• Ensure that all the finance department resources have specific encryption policies applied.

• Ensure that only users in the IT department can create virtual machines in any Azure region.

• Ensure that users in the finance department can create virtual machines in only the East US Azure region.

What is the minimum number of management groups you can create for the planned deployment?

A.

1

B.

2

C.

3

D.

4

Full Access
Question # 17

Your company deploys several Linux and Windows virtual machines (VMs) to Azure. The VMs are deployed with the Microsoft Dependency Agent and the Microsoft Monitoring Agent installed by using Azure VM extensions. On-premises connectivity has been enabled by using Azure ExpressRoute.

You need to design a solution to monitor the VMs.

Which Azure monitoring services should you use? To answer, select the appropriate Azure monitoring services in the answer area.

NOTE: Each correct selection is worth one point.

Full Access
Question # 18

You have an Azure AD tenant.

You plan to deploy Azure Cosmos DB databases that will use the SQL API.

You need to recommend a solution to provide specific Azure AD user accounts with read access to the Cosmos DB databases.

What should you include in the recommendation?

A.

a resource token and an Access control (IAM) role assignment

B.

certificates and Azure Key Vault

C.

master keys and Azure Information Protection policies

D.

shared access signatures (SAS) and Conditional Access policies

Full Access
Question # 19

Your network contains an on-premises Active Directory forest.

You discover that when users change jobs within your company, the membership of the user groups are not being updated. As a result, the users can access resources that are no longer relevant to their job.

You plan to integrate Active Directory and Azure Active Directory (Azure AD) by using Azure AD Connect.

You need to recommend a solution to ensure that group owners are emailed monthly about the group memberships they manage.

What should you include in the recommendation?

A.

conditional access policies

B.

Tenant Restrictions

C.

Azure AD access reviews

D.

Azure AD Identity Protection

Full Access
Question # 20

You plan to store data in Azure Blob storage for many years. The stored data will be accessed rarely.

You need to ensure that the data in Blob storage is always available for immediate access. The solution must

minimize storage costs.

Which storage tier should you use?

A.

Cool

B.

Archive

C.

Hot

Full Access
Question # 21

Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution.

After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen.

Your company deploys several virtual machines on-premises and to Azure. ExpressRoute is being deployed and configured for on-premises to Azure connectivity.

Several virtual machines exhibit network connectivity issues.

You need to analyze the network traffic to identify whether packets are being allowed or denied to the virtual machines.

Solution: Use Azure Traffic Analytics in Azure Network Watcher to analyze the network traffic.

Does this meet the goal?

A.

Yes

B.

No

Full Access
Question # 22

You have multiple on-premises networks

You have multiple Azure subscriptions. Each subscription contains a virtual network that is assigned an IP address space of 172.16.0.0/16. Each virtual network is connected to the on premises networks by using ExpressRoute.

You plan to deploy a container orchestration solution that will use multiple Azure Kubernetes Service (AKS) clusters. The clusters will be deployed to the existing virtual networks.

You need to recommend a network configuration for the AKS dusters. The solution must meet the following requirements:

• Minimize the number of IP addresses required on each virtual network.

• Support outbound connectivity to on-premises datacenters.

• Support Windows node pools

Which AKS network model should you recommend?

A.

Azure CNI Overlay

B.

kubenet

C.

Azure CNI

D.

Azure CNI Powered by Cilium

Full Access
Question # 23

You plan to use Azure Storage to store data assets.

You need to identify the procedure to fail over a general-put pose v2 account as part of a disaster recovery plan. The solution must meet the following requirements:

• Apps must be able to access the storage account after a failover.

• You must be able to fail back the storage account to the original location.

• Downtime must be minimized.

Which three actions should you perform in sequence? To answer, move the appropriate actions from the list of actions to the answer area and arrange them in the correct order.

Full Access
Question # 24

You have an Azure subscription that contains an Azure Data Lake Storage Gen2 account named storage1. Storage1 contains semi-structured sales data in Parquet files.

You ingest transform, analyze, and visualize the sales data daily. During the transformations, the data is referenced against Microsoft Dataverse and consumed by Microsoft Power Bl.

You need to deploy a new data integration and analysis solution in Microsoft Fabric. The solution must meet the following requirements:

• Minimize the duplication of data.

• Minimize how long it takes to generate reports in Power Bl.

What should you use to reference the Dataverse data and consume the transformed data from Power Bl? To answer, select the appropriate options in the answer area. NOTE; Each correct selection is worth one point.

Full Access
Question # 25

You plan to migrate data to Azure.

The IT department at your company identifies the following requirements:

The storage must support 1 PB of data.

The data must be stored in blob storage.

The storage must support three levels of subfolders.

The storage must support access control lists (ACLs).

You need to meet the requirements.

What should you use?

A.

a premium storage account that is configured for block blobs

B.

a general purpose v2 storage account that has hierarchical namespace enabled

C.

a premium storage account that is configured for page blobs

D.

a premium storage account that is configured for files shares and supports large file shares

Full Access
Question # 26

You are building an Azure web app that will store the Personally Identifiable Information (Pll) of employees.

You need to recommend an Azure SQL Database solution for the web app. The solution must meet the following requirements:

• Maintain availability in the event of a single datacenter outage.

• Support the encryption of specific columns that contain Pll.

• Automatically scale up during payroll operations.

• Minimize costs.

What should you include in the recommendation? To answer, select the appropriate options in the answer area.

NOTE: Each correct selection is worth one point.

Full Access
Question # 27

A company has an on-premises file server cbflserver that runs Windows Server 2019. Windows Admin Center manages this server. The company owns an Azure subscription. You need to provide an Azure solution to prevent data loss if the file server fails.

Solution: You decide to register Windows Admin Center in Azure and then configure Azure Backup.

Would this meet the requirement?

A.

Yes

B.

No

Full Access
Question # 28

A company has an on-premises file server cbflserver that runs Windows Server 2019. Windows Admin Center manages this server. The company owns an Azure subscription. You need to provide an Azure solution to prevent data loss if the file server fails.

Solution: You decide to create an Azure Recovery Services vault. You then decide to install the Azure Backup agent and then schedule the backup. Would this meet the requirement?

A.

Yes

B.

No

Full Access
Question # 29

A company is planning on deploying an application onto Azure. The application will be based on the .Net core programming language. The application would be hosted using Azure Web apps. Below is part of the various requirements for the application

Give the ability to correlate Azure resource usage and the performance data with the actual application configuration and performance data

Give the ability to visualize the relationships between application components

Give the ability to track requests and exceptions to specific lines of code from within the application Give the ability to actually analyse how uses return to an application and see how often they only select a particular drop-down value

Which of the following service would be best suited for fulfilling the requirement of

“Give the ability to correlate Azure resource usage and the performance data with the actual application configuration and performance data”

A.

Azure Application Insights

B.

Azure Service Map

C.

Azure Log Analytics

D.

Azure Activity Log

Full Access
Question # 30

You ate designing an Azure governance solution.

All Azure resources must be easily identifiable based on the following operational information environment, owner, department and cost center

You need 10 ensure that you can use the operational information when you generate reports for the Azure resources.

What should you include in the solution?

A.

Azure Active Directory (Azure AD) administrative units

B.

an Azure data catalog that uses the Azure REST API as a data source

C.

an Azure policy that enforces tagging rules

D.

an Azure management group that uses parent groups to create a hierarchy

Full Access
Question # 31

You need to ensure that users managing the production environment are registered for Azure MFA and must authenticate by using Azure MFA when they sign in to the Azure portal. The solution must meet the authentication and authorization requirements.

What should you do? To answer, select the appropriate options in the answer area.

NOTE: Each correct selection is worth one point.

Full Access
Question # 32

You plan to migrate App1 to Azure.

You need to recommend a high-availability solution for App1. The solution must meet the resiliency requirements.

What should you include in the recommendation? To answer, select the appropriate options in the answer area.

NOTE: Each correct selection is worth one point.

Full Access
Question # 33

How should the migrated databases DB1 and DB2 be implemented in Azure?

Full Access
Question # 34

You plan to migrate App1 to Azure.

You need to recommend a network connectivity solution for the Azure Storage account that will host the App1 data. The solution must meet the security and compliance requirements.

What should you include in the recommendation?

A.

a private endpoint

B.

a service endpoint that has a service endpoint policy

C.

Azure public peering for an ExpressRoute circuit

D.

Microsoft peering for an ExpressRoute circuit

Full Access
Question # 35

You need to recommend a data storage strategy for WebApp1.

What should you include in in the recommendation?

A.

an Azure SQL Database elastic pool

B.

a vCore-based Azure SQL database

C.

an Azure virtual machine that runs SQL Server

D.

a fixed-size DTU AzureSQL database.

Full Access
Question # 36

You need to recommend a notification solution for the IT Support distribution group.

What should you include in the recommendation?

A.

Azure Network Watcher

B.

an action group

C.

a SendGrid account with advanced reporting

D.

Azure AD Connect Health

Full Access
Question # 37

You need to recommend a solution to meet the database retention requirement. What should you recommend?

A.

Configure a long-term retention policy for the database.

B.

Configure Azure Site Recovery.

C.

Configure geo replication of the database.

D.

Use automatic Azure SQL Database backups.

Full Access
Question # 38

You need to recommend a strategy for migrating the database content of WebApp1 to Azure. What should you include in the recommendation?

A.

Use Azure Site Recovery to replicate the SQL servers to Azure.

B.

Use SQL Server transactional replication.

C.

Copy the BACPAC file that contains the Azure SQL database file to Azure Blob storage.

D.

Copy the VHD that contains the Azure SQL database files to Azure Blob storage

Full Access
Question # 39

What should you include in the identity management strategy to support the planned changes?

A.

Move all the domain controllers from corp.fabrikam.com to virtual networks in Azure.

B.

Deploy domain controllers for corp.fabrikam.com to virtual networks in Azure.

C.

Deploy a new Azure AD tenant for the authentication of new R&D projects.

D.

Deploy domain controllers for the rd.fabrikam.com forest to virtual networks in Azure.

Full Access
Question # 40

You design a solution for the web tier of WebApp1 as shown in the exhibit.

For each of the following statements, select Yes if the statement is true. Otherwise, select No.

Full Access
Question # 41

You need to recommend a strategy for the web tier of WebApp1. The solution must minimize What should you recommend?

A.

Create a runbook that resizes virtual machines automatically to a smaller size outside of business hours.

B.

Configure the Scale Up settings for a web app.

C.

Deploy a virtual machine scale set that scales out on a 75 percent CPU threshold.

D.

Configure the Scale Out settings for a web app.

Full Access
Question # 42

To meet the authentication requirements of Fabrikam, what should you include in the solution? To answer, select the appropriate options in the answer area.

NOTE: Each correct selection is worth one point.

Full Access