New Year Sale - Special 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: 70dumps

AZ-800 Questions and Answers

Question # 6

DC1 fails.

You need to meet the technical requirements for the schema master.

Yourunntdsutil.exe.

Which five commands should you run in sequence? To answer, move the appropriate commands from the list of commands to the answer area and arrange them in the correct order?

Full Access
Question # 7

You need to implement the planned changes for Microsoft Entra users to sign in to Server1.

Which PowerShell cmdlet should you run?

A.

Add-ADComputerServiceAccount

B.

Set-AzVM

C.

Set-AzVMExtension

D.

New-ADComputer

Full Access
Question # 8

You need to ensure that Automanage meets the technical requirements.

On which Azure virtual machines should you enable Automanage?

A.

Server1 only

B.

Server2 only

C.

Server1 and Server2 only

D.

Server2 and Server3 only

E.

Server1 and Server4 only

Full Access
Question # 9

You need to ensure that VM3 meets the technical requirements.

What should you install first?

A.

Enhanced Storage

B.

File Server Resource Manager (FSRM)

C.

Windows Standards-Based Storage Management

D.

the iSNS Server service

Full Access
Question # 10

You need to ensure that data availability on SSPace1 meets the technical requirements.

What is the maximum number of physical disks that can fail on each disk? To answer, select the appropriate options in the answer area.

NOTE: Each correct selection is worth one point.

Full Access
Question # 11

You are planning the implementation Azure Arc to support the planned changes. You need to configure the environment to support configuration management policies. What should you do?

A.

Hybrid Azure AD join all the servers.

B.

Create a hybrid runbook worker m Azure Automation.

C.

Deploy the Azure Connected Machine agent to all the servers.

D.

Deploy the Azure Monitor agent to all the servers.

Full Access
Question # 12

You need to configure network communication between the Seattle and New York offices. The solution must meet the networking requirements.

What should you configure? To answer, select the appropriate options in the answer area.

NOTE: Each correct selection is worth one point.

Full Access
Question # 13

Which three actions should you perform in sequence to meet the security requirements for Webapp1? To answer, move the appropriate actions from the list of actions to the answer area and arrange them in the correct order.

Full Access
Question # 14

You need to implement the planned change for Data1.

Which actions should you perform in sequence? To answer, drag the appropriate actions to the correct order. Each action may be used once, more than once, or not at all. You may need to drag the split bar between panes or scroll to view content.

NOTE: Each correct selection is worth one point.

Full Access
Question # 15

You need to configure the Group Policy settings to ensure that the Azure Virtual Desktop session hosts meet the security requirements. What should you configure?

A.

security filtering for the link of GP04

B.

security filtering for the link of GPO1

C.

loopback processing in GPO4

D.

the Enforced property for the link of GP01

E.

loopback processing in GPO1

F.

the Enforced property for the link of GP04

Full Access
Question # 16

You need to meet the technical requirements for VM2.

What should you do?

A.

Implement shielded virtual machines.

B.

Enable the Guest services integration service.

C.

Implement Credential Guard.

D.

Enable enhanced session mode.

Full Access
Question # 17

You need to meet the technical requirements for VM3

On which volumes can you enable Data Deduplication?

A.

D and E only

B.

C, D, E, and F

C.

D only

D.

D and E only

E.

D, E, and F only

Full Access
Question # 18

You need to meet the technical requirements for Server1. Which users can currently perform the required tasks?

A.

Admin1 only

B.

Admin3 only

C.

Admin1 and Admin3 only

D.

Admin1 Admin2. and Admm3

Full Access
Question # 19

You need to meet the technical requirements for the site links. Which users can perform the required tasks?

A.

Admin1 only

B.

Admin1 and Admin3 only

C.

Admin1 and Admin2 only

D.

Admin3 only

E.

Admin1, Adrrun2. and Admin3

Full Access
Question # 20

You need to meet the technical requirements for VM1.

Which cmdlet should you run first? To answer, select the appropriate options in the answer area.

NOTE: Each correct selection is worth one point.

Full Access
Question # 21

You need to meet the technical requirements for Server4.

Which cmdlets should you run on Server1 and Server4? To answer, select the appropriate options in the answer area.

NOTE: Each correct selection is worth one point.

Full Access
Question # 22

Task 8

You need to create an Active Directory Domain Services (AD DS) site named Site2 that is associated to an IP address range of 192.168.2.0 to 192.168.2.255.

Full Access
Question # 23

For each of the following statements, select Yes if the statement is true. Otherwise, select No.

NOTE: Each correct selection is worth one point.

Full Access
Question # 24

Which groups can you add lo Group3 and Groups? To answer, select the appropriate options in the answer area. NOTE Each correct selection is worth one point.

Full Access
Question # 25

Which groups can you add to Group3 and Group5? To answer, select the appropriate options in the answer area.

NOTE: Each correct selection is worth one point.

Full Access
Question # 26

Task 1

You need to create a group-managed service account (gMSA) named gMSA1 and make gMSA1 available on SRV1.

Full Access
Question # 27

Task2

You need to ensure that the Azure file share named share1 can sync to on-premises servers.

The required source files are located in a folder named \\dc1.contoso.com\install.

You do NOT need to specify the on-premises servers at this time.

Full Access
Question # 28

Task 5

You need to ensure that a DHCP scope named scope! on SRV1 can service client requests.

Full Access
Question # 29

Task 1

You need to prevent domain users from saving executable files in a share named \\SRVl\Data. The users must be able to save other files to the share.

Full Access
Question # 30

Task 8

You need to deploy a new primary DNS zone named fabrikam.com to DC1. The zone must be signed.

Full Access
Question # 31

Task 3

You need to configure SRV1 as a DNS server. SRV1 must be able resolve names from the contoso.com domain by using DC1. All other names must be resolved by using the root hint servers.

Full Access
Question # 32

Task 2

You need to ensure that you can manage SRV1 remotely by using PowerShell

Full Access
Question # 33

Task 9

You plan to create group managed service accounts (gMSAs).

You need to configure the domain to support the creation of gMSAs.

Full Access
Question # 34

Task 7

You need to collect the recommended Windows Performance Counters from SRV1 in a Log Analytics workspace.

The required tiles are stored in a shared folder named \dc\install.

Full Access
Question # 35

Task 11

You need to ensure that all DHCP clients that get an IP address from SRV1 will be configured to use DC1 as a DNS server.

Full Access
Question # 36

Task 3

You need to run a container that uses the mcr.microsoft.com/windows/servercore/iis image on SRV1. Pott 60 on the container must be published to port 5001 on SRV1 and the container must run in the background.

Full Access
Question # 37

Task 10

You need to configure Hyper-V to ensure that running virtual machines can be moved between SRV1 and SRV2 without downtime.

You do NOT need to move any virtual machines at this time.

Full Access
Question # 38

Task 10

You use a Group Policy preference to map \\dd.contoso.com\instal1 as drive H for all users. If a user already has an existing drive mapping for H. the new drive mapping must take precedence.

Full Access
Question # 39

Your network contains two Active Directory forests and a domain trust as shown in the following exhibit.

The domain trust has the following configurations:

• Name: adatum.com

• Type: External

• Direction: One-way. outgoing

• Outgoing trust authentication level: Domain-wide authentication

The forests contain the network shares shown in the following table.

For each of the following statements, select Yes if the statement is true. Otherwise, select No. NOTE: Each correct selection is worth one point.

Full Access
Question # 40

Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution.

After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen.

Your network contains an Active Directory Domain Services (AD DS) domain named contoso.com.

You need to identify which server is the PDC emulator for the domain.

Solution: From Active Directory Domains and Trusts, you right-click Active Directory Domains and Trusts in the console tree, and then select Operations Master.

Does this meet the goal?

A.

Yes

B.

No

Full Access
Question # 41

You need to sync files from an on-premises server named Server1 to Azure by using Azure File Sync

You have a cloud tiering policy that is configured for 30 percent free space and 70 days.

Volume f on Server1 is 500 GB.

A year ago. you configured E:\Oata on Server1 to sync by using Azure File Sync. The files that are visible in E:\Data are shown in the following table.

Volume E does NOT contain any other files.

Where are File1 and flle3 located? To answer, select the appropriate options In the answer area.

Full Access
Question # 42

Your on-premises network contains an Active Directory domain named contoso.com. You have an Azure AD tenant. You plan to sync contoso.com with the Azure AD tenant by using Azure AD Connect cloud sync. You need to create an account that will be used by Azure AD Connect cloud sync. Which type of account should you create?

A.

system-assigned managed identity

B.

group managed service account (gMSA)

C.

user

D.

InetOrgPerson

Full Access
Question # 43

Your network contains an Active Directory Domain Services (AD DS) domain.

You have a Group Policy Object (GPO) named GPO1 that contains Group Policy preferences.

You plan to link GPO1 to the domain.

You need to ensure that the preference in GPO1 apply only to domain member servers and NOT to domain controllers or client computers. All the other Group Policy settings in GPO1 must apply to all the computers. The solution must minimize administrative effort.

Which type of item level targeting should you use?

A.

Domain

B.

Operating System

C.

Security Group

D.

Environment Variable

Full Access
Question # 44

You have an Azure virtual machine named VM1 that contains the drives shown in the following table.

On VM1, you plan to install an app named App1. The data for App1 must be stored on a persistent data disk assigned to drive D.

You need assign the data disk to drive D.

What should you do on VM1 first?

A.

Change the drive letter of the Temporary Storage drive to F.

B.

Move pagefile.sys to the Operating System drive.

C.

Stop (deallocate) VM1.

D.

Expand the Temporary Storage drive.

Full Access
Question # 45

You have a server that runs Windows Server and has the DHCP Server role installed. The server has a scope named Scope! that has the following configurations:

• Address range: 192.168.0.2 to 192.16B.1.2M . Mask 255.255.254.0

• Router: 192.168.0.1

• Lease duration: 3 days

• DNS server 172.16.0.254

You have 50 Microsoft Teams Phone devices from the same vendor. All the devices have MAC addresses within the same range.

You need to ensure that all the Teams Phone devices that receive a lease from Scope1 have IP addresses in the range of 192.168.1.100 to 192.168.1.200. The solution must NOT affect other DHCP clients that receive IP configurations from Scope1.

What should you create?

A.

a policy

B.

a scope

C.

a fitter

D.

scope options

Full Access
Question # 46

Your network contains an Active Directory domain named contoso.com. The domain contains the computers shown in the following table.

On Server3, you create a Group Policy Object (GPO) named GP01 and link GPOI to contoso.com. GP01 includes a shortcut preference named Shortcut1 that has item-level targeting configured as shown in the following exhibit.

To which computer will Shortcut1 be applied?

A.

Server3 only

B.

Computer1 and Server3 only

C.

Server2 and Server3 only

D.

Server1, Server2, and Server3 only

Full Access
Question # 47

Your network contains an Active Directory Domain Services (AD DS) domain. The domain contains the domain controllers shown in the following table.

You need to ensure that if an attacker compromises the computer account of RODC1, the attacker cannot view the Employee-Number AD DS attribute. Which partition should you modify?

A.

configuration

B.

global catalog

C.

domain

D.

schema

Full Access
Question # 48

Your network contains an Active Directory Domain Services (AD DS) domain named contoso.com. The domain contains the VPN servers shown in the following table.

You have a server named NPS1 that has Network Policy Server (NPS) installed. NPS1 has the following RADIUS clients:

VPN1, VPN2, and VPN3 use NPS1 for RADIUS authentication. All the users in contoso.com are allowed to establish VPN connections. For each of the following statements, select Yes If the statement is true. Otherwise, select No. NOTE: Each correct selection is worth one point.

Full Access
Question # 49

You have an Azure virtual machine named Served that runs a network management application. Server1 has the following network configurations:

• Network interface: Nic1

• IP address. 10.1.1.1/24

• Connected to: VnetVSubnet1

You need to connect Server1 to an additional subnet named Vnet1/Subnet2.

What should you do?

A.

Modify the IP configurations of Nic1.

B.

Add a network interface to Server1.

C.

Add an IP configuration to Nic1.

D.

Create a private endpoint on Subnet2

Full Access
Question # 50

Your network contains an Active Directory Domain Services (AD DS) domain named contoso.com. The domain contains a server named Server1 that has the DFS Namespaces role service installed. Server! hosts a domain-based Distributed File System (DFS) Namespace named Files.

The domain contains a tile server named Server2. Seiver2 contains a shared folder named Share1. Share1 contains a subfolder named Folder 1.

In the Files namespace, you create a folder named Folder! that has a target of \\Server2.contoso.com\Share1\Folder1.

You need to configure a logon script that will map drive letter M to Folder1. The solution must use the path of the DFS Namespace.

How should you complete the command to map the drive letter? To answer, select the appropriate options in the answer area.

NOTE: Each correct selection is worth one point.

Full Access
Question # 51

Your network contains an Active Directory Domain Services (AD DS) domain named contoso.com. The domain contains two servers named Server1 and Server2.

Server1 contains a disk named Disk2. Disk2 contains a folder named UserData. UserData is shared to the Domain Users group. Disk2 is configured for deduplication. Server1 is protected by using Azure Backup.

Server1 fails.

You connect Disk2 to Server2.

You need to ensure that you can access all the files on Disk2 as quickly as possible.

What should you do?

A.

Create a storage pool.

B.

Restore files from Azure Backup.

C.

Install the File Server Resource Manager server role.

D.

Install the Data Deduplication server role.

Full Access
Question # 52

Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution.

After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen.

You have a server named Server1 that runs Windows Server 2022 and has the DHCP Server role. Server1 contains a single DHCP scope named Scope1.

You deploy five printers to the network.

You need to ensure that the printers are always assigned the same IP address.

Solution: You create a DHCP reservation for each printer.

Does this meet the requirement?

A.

Yes

B.

No

Full Access