Download Microsoft.AZ-300.NewDumps.2019-08-29.116q.tqb

Download Exam

File Info

Exam Microsoft Azure Architect Technologies
Number AZ-300
File Name Microsoft.AZ-300.NewDumps.2019-08-29.116q.tqb
Size 7 MB
Posted Aug 29, 2019
Download Microsoft.AZ-300.NewDumps.2019-08-29.116q.tqb

How to open VCEX & EXAM Files?

Files with VCEX & EXAM extensions can be opened by ProfExam Simulator.

Purchase

Coupon: MASTEREXAM
With discount: 20%






Demo Questions

Question 1

You have an Azure Active Directory (Azure AD) tenant. 
You have an existing Azure AD conditional access policy named Policy1. Policy1 enforces the use of Azure AD-joined devices when members of the Global Administrators group authenticate to Azure AD from untrusted locations. 
You need to ensure that members of the Global Administrators group will also be forced to use multi-factor authentication when authenticating from untrusted locations. 
What should you do?


  1. From the Azure portal, modify session control of Policy1.
  2. From multi-factor authentication page, modify the user settings.
  3. From multi-factor authentication page, modify the service settings.
  4. From the Azure portal, modify grant control of Policy1.
Correct answer: D



Question 2

You have an Azure subscription named Subscription1 that contains an Azure virtual machine named VM1. VM1 is in a resource group named RG1. 
VM1 runs services that will be used to deploy resources to RG1. 
You need to ensure that a service running on VM1 can manage the resources in RG1 by using the identity of VM1. 
What should you do first?


  1. From the Azure portal, modify the Access control (IAM) settings of RG1.
  2. From the Azure portal, modify the Policies settings of RG1.
  3. From the Azure portal, modify the Access control (IAM) settings of VM1.
  4. From the Azure portal, modify the value of the Managed Service Identity option for VM1.
Correct answer: D
Explanation:
References:https://docs.microsoft.com/en-us/azure/active-directory/managed-identities-azure-resources/overview
References:
https://docs.microsoft.com/en-us/azure/active-directory/managed-identities-azure-resources/overview



Question 3

You configure Azure AD Connect for Azure Active Directory Seamless Single Sign-On (Azure AD Seamless SSO) for an on-premises network. 
Users report that when they attempt to access myapps.microsoft.com, they are prompted multiple times to sign in and are forced to use an account name that ends with onmicrosoft.com. 
You discover that there is a UPN mismatch between Azure AD and the on-premises Active Directory. 
You need to ensure that the users can use single-sign on (SSO) to access Azure resources. 
What should you do first?


  1. From on-premises network, deploy Active Directory Federation Services (AD FS).
  2. From Azure AD, add and verify a custom domain name.
  3. From on-premises network, request a new certificate that contains the Active Directory domain name.
  4. From the server that runs Azure AD Connect, modify the filtering options.
Correct answer: B









CONNECT US

Facebook

Twitter

PROFEXAM WITH A 20% DISCOUNT

You can buy ProfExam with a 20% discount!



HOW TO OPEN VCEX FILES

Use ProfExam Simulator to open VCEX files