لا تريد أن تفوت شيئا؟

نصائح اجتياز امتحان الشهادة

آخر أخبار الامتحانات ومعلومات الخصم

برعاية وحديثة من قبل خبرائنا

نعم، أرسل لي النشرة الإخبارية

خذ اختبارات أخرى عبر الإنترنت

السؤال #1
You have an Azure virtual machine named VM1 that runs Windows Server. You need to ensure that administrators request access to VM1 before establishing a Remote Desktop connection. What should you configure?
A. zure Front Door
B. icrosoft Defender for Cloud
C. zure AD Privileged Identity Management (PIM)
D. network security group (NSG)
عرض الإجابة
اجابة صحيحة: B
السؤال #2
You have an on-premises server named Server1 that runs Windows Server.You have an Azure virtual network that contains an Azure virtual network gateway.You need to connect only Server1 to the Azure virtual network.What should you use?
A. a Site-to-Site VPN
B. Azure Network Adapter
C. an ExpressRoute circuit
D. Azure Extended Network
عرض الإجابة
اجابة صحيحة: B
السؤال #3
Note: This question is part of a series of questions that present the same scenario. Each question in the series contains aunique solution that might meet the stated goals. Some question sets might have more than one correct solution, whileothers might not have a correct solution.After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear inthe review screen.You are planning the deployment of DNS to a new network.You have three internal DNS
A. Yes
B. No
عرض الإجابة
اجابة صحيحة: B
السؤال #4
Your network contains an Active Directory Domain Services (AD DS) domain. The domain contains 10 servers that runWindows Server. The servers have static IP addresses.You plan to use DHCP to assign IP addresses to the servers.You need to ensure that each server always receives the same IP address.Which type of identifier should you use to create a DHCP reservation for each server?
A. NetBIOS name
B. MAC address
C. fully qualified domain name (FQDN)
D. universally unique identifier (UUID)
عرض الإجابة
اجابة صحيحة: B
السؤال #5
You have an Azure virtual machine named VM1 that contains the drives shown in the following table. On VM1, you plan to install an app named App1. The data for App1 must be stored on a persistent data disk assigned to drive D. You need assign the data disk to drive D. What should you do on VM1 first?
A. hange the drive letter of the Temporary Storage drive to F
B. ove pagefile
C. top (deallocate) VM1
D. xpand the Temporary Storage drive
عرض الإجابة
اجابة صحيحة: C
السؤال #6
Note: This question is part of a series of questions that present the same scenario. Each question in the series contains aunique solution that might meet the stated goals. Some question sets might have more than one correct solution, whileothers might not have a correct solution.After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear inthe review screen.You are planning the deployment of DNS to a new network.You have three internal DNS
A. Yes
B. No
عرض الإجابة
اجابة صحيحة: A
السؤال #7
You have servers that have the DNS Server role installed. The servers are configured as shown in the following table.All the client computers in the New York office use Server2 as the DNS server.You need to configure name resolution in the New York office to meet the following requirements:Ensure that the client computers in New York can resolve names from contoso.com.Ensure that Server2 forwards all DNS queries for internet hosts to 131. 107.100.200.The solution must NOT require modifications to Server1.Ea
A. a forwarder
B. a conditional forwarder
C. a delegation
D. a secondary zone
E. a reverse lookup zone
عرض الإجابة
اجابة صحيحة: A B
السؤال #8
You have an Azure virtual machine named VM1 that runs Windows Server.You need to configure the management of VM1 to meet the following requirements:Require administrators to request access to VM1 before establishing a Remote Desktop connection.Limit access to VM1 from specific source IP addresses. Limit access to VM1 to a specific management port.What should you configure?
A. a network security group (NSG)
B. Azure Active Directory (Azure AD) Privileged Identity Management (PIM)
C. Microsoft Defender for Cloud
D. Azure Front Door
عرض الإجابة
اجابة صحيحة: C
السؤال #9
Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution. After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen. You are planning the deployment of DNS to a new network. You have three intern
A. Yes
B. No
عرض الإجابة
اجابة صحيحة: A
السؤال #10
You plan to deploy an Azure virtual machine that will run Windows Server. You need to ensure that an Azure Active Directory (Azure AD) user nameduserl@contoso.com can connect 10 the virtual machine by using the Azure Serial Console. What should you do? To answer, select the appropriate options in the answer area. NOTE: Each correct selection is worth one point.
A. Mastered
B. Not Mastered
عرض الإجابة
اجابة صحيحة: A
السؤال #11
You have an Azure virtual machine named VM1 that has a private IP address only. You configure the Windows Admin Center extension on VM1. You have an on-premises computer that runs Windows 11. You use the computer for server management. You need to ensure that you can use Windows Admin Center from the Azure portal to manage VM1. What should you configure?
A. an Azure Bastion host on the virtual network that contains VM1
B. a VPN connection to the virtual network that contains VM1
C. a network security group 1NSG) rule that allows inbound traffic on port 443
D. a private endpoint on the virtual network that contains VM1
عرض الإجابة
اجابة صحيحة: A
السؤال #12
Task 1 You need to prevent domain users from saving executable files in a share named \\SRVl\Dat a. The users must be able to save other files to the share. One possible solution to prevent domain users from saving executable files in a share named \SRVl\Data is to use file screening on the file server. File screening allows you to block certain files from being saved based on their file name extension. Here are the steps to configure file screening: On the file server, openFile Server Resource Managerfrom
A. ee the solution o fthis Task below
عرض الإجابة
اجابة صحيحة: A
السؤال #13
You have an on-premises Active Directory Domain Services (AD DS) domain that syncs with an Azure Active Directory(Azure AD) tenant. The on-premises network is connected to Azure by using a Siteto-Site VPN.You have the DNS zones shown in the following table.You need to ensure that names from fabrikam.com can be resolved from the on-premises network.Which two actions should you perform? Each correct answer presents part of the solution.NOTE: Each correct selection is worth one point.
A. Create a stub zone for fabrikam
B. Create a conditional forwarder for fabrikam
C. Create a secondary zone for fabrikam
D. Deploy an Azure virtual machine that runs Windows Server
E. Deploy an Azure virtual machine that runs Windows Server
عرض الإجابة
اجابة صحيحة: B E
السؤال #14
Your network contains an Active Directory Domain Services (AD DS) domain named contoso.com. The domain contains the VPN servers shown in the following table. You have a server named NPS1 that has Network Policy Server (NPS) installed. NPS1 has the following RADIUS clients: VPN1, VPN2, and VPN3 use NPS1 for RADIUS authentication. All the users in contoso.com are allowed to establish VPN connections. For each of the following statements, select Yes If the statement is true. Otherwise, select No. NOTE: Each co
A. Mastered
B. Not Mastered
عرض الإجابة
اجابة صحيحة: E
السؤال #15
Note: This question is part of a series of questions that present the same scenario. Each question in the series contains aunique solution that might meet the stated goals. Some question sets might have more than one correct solution, whileothers might not have a correct solution.After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear inthe review screen.You are planning the deployment of DNS to a new network.You have three internal DNS
A. Yes
B. No
عرض الإجابة
اجابة صحيحة: B
السؤال #16
You have an Active Directory Domain Services (AD DS) domain. The domain contains three servers named Server 1, Server2, and Server3 that run Windows Server. You sign in to Server1 by using a domain account and start a remote PowerShell session to Server2. From the remote PowerShell session, you attempt to access a resource on Server3. but access to the resource is denied. You need to ensure that your credentials are passed from Server1 to Server3. The solution must minimize administrative effort. What shoul
A. onfigure Kerberos constrained delegation
B. onfigure Just Enough Administration (JEA)
C. onfigure selective authentication for the domain
D. isable the Enforce user logon restrictions policy setting for the domain
عرض الإجابة
اجابة صحيحة: A
السؤال #17
Task 12 You need to create a Group Policy Object (GPO) named GPO1 that only applies to a group named MemberServers. To create a GPO named GPO1 that only applies to a group named MemberServers, you can follow these steps: On a domain controller or a computer that has the Remote Server Administration Tools (RSAT) installed, openGroup Policy Managementfrom theAdministrative Toolsmenu or by typinggpmc.mscin the Run box. In the left pane, expand your domain and right-click onGroup Policy Objects. SelectNewto cre
A. ee the solution o fthis Task below
عرض الإجابة
اجابة صحيحة: A
السؤال #18
Your network contains an Active Directory Domain Services (AD DS) domain named contoso.com. The domain contains aDNS server named Server1. Server1 hosts a DNS zone named fabrikam.com that was signed by DNSSEC.You need to ensure that all the member servers in the domain perform DNSSEC validation for the fabrikam.com namespace.What should you do?
A. On Server1, run the Add-DnsServerTrustAnchor cmdlet
B. On each member server, run the Add-DnsServerTrustAnchor cmdlet
C. From a Group Policy Object (GPO), add a rule to the Name Resolution Policy Table (NRPT)
D. From a Group Policy Object (GPO), modify the Network List Manager policies
عرض الإجابة
اجابة صحيحة: C
السؤال #19
You have an on-premises server named Server1 that runs Windows Server and has internet connectivity. You have an Azure subscription. You need to monitor Server1 by using Azure Monitor. Which resources should you create in the subscription, and what should you install on Server1? To answer, select the appropriate options in the answer area. NOTE: Each correct selection is worth one point.
A. Mastered
B. Not Mastered
عرض الإجابة
اجابة صحيحة: A
السؤال #20
You need to meet the technical requirements for VM3.On which volumes can you enable Data Deduplication?
A. C and D only
B. D only
C. C, D, E, and F
D. D and E only
E. D, E, and F only
عرض الإجابة
اجابة صحيحة: D

عرض الإجابات بعد التقديم

يرجى إرسال البريد الإلكتروني الخاص بك والواتس اب للحصول على إجابات الأسئلة.

ملحوظة: يرجى التأكد من صلاحية معرف البريد الإلكتروني وWhatsApp حتى تتمكن من الحصول على نتائج الاختبار الصحيحة.

بريد إلكتروني:
رقم الواتس اب/الهاتف: