Weekend Sale Special Limited Time 75% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: CFsave75

Pass the Microsoft Microsoft Certified: Windows Server Hybrid Administrator Associate AZ-802 Questions and answers with CertsForce

Viewing page 5 out of 8 pages
Viewing questions 41-50 out of questions
Questions # 41:

You have two on-premises Hyper-V hosts named Server1and Served Server 1 hosts a virtual machine named VM1 that uses a static IP address. VM1 replicates to Server2 by using Hyper-V Replica.

You plan to perform a failover test for VM1.

You need to configure the Failover TCP/IP settings and the virtual switch for the failover.

Where should you configure the Failover TCP/IP settings, and where should you configure the virtual switch? To answer, select the appropriate options in the answer area.

NOTE: Each correct selection is worth one point.

Question # 41

Exhibit


Expert Solution
Questions # 42:

You have a server named Server1 that runs Windows Server. Server1 has a just-a-bunch-of-disks (JBOD) enclosure attached. You plan to create a storage pool on Server1 and a virtual disk that will use a mirror layout. You are considering whether to use a two-way or a three-way mirror layout. What is the minimum number of disks required for each type of mirror layout? To answer, select the appropriate options in the answer area. NOTE: Each correct selection is worth one point.

Question # 42


Expert Solution
Questions # 43:

Your network contains an Active Directory Domain Services (AD DS) domain. The functional level of the domain is Windows Server 2016. All domain controllers run Windows Server 2025. You need to prevent cached credentials and older authentication protocols, such as NTLM, from being used by highly privileged user accounts. What should you do?

Options:

A.

Add the highly privileged users to the Protected Users group.


B.

Raise the domain functional level to Windows Server 2025.


C.

Enable Store password using reversible encryption for each user.


D.

Create an authentication policy silo.


Expert Solution
Questions # 44:

Your on-premises datacenter contains physical servers and Hyper-V virtual machines.

You have an Azure subscription.

You plan to use Azure Migrate to perform the following tasks:

• Migrate the physical servers to Azure virtual machines.

• Migrate the Hyper-V virtual machines to Azure.

What should you use for each task? To answer, select the appropriate options in the answer area. NOTE: Each correct selection is worth one point.

Question # 44


Expert Solution
Questions # 45:

Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Your network contains an Active Directory Domain Services (AD DS) domain named contoso.com. The domain contains a domain controller named DC1 and a member server named Server1. Users cannot sign in to Server1 by using domain credentials and receive the following error message: The trust relationship between this workstation and the primary domain failed. You need to restore domain authentication on Server1 without removing Server1 from the domain. Solution: From Server1, you run Set-ADAccountPassword -Identity " Server1$ " -Reset. Does this meet the goal?

Options:

A.

Yes


B.

No


Expert Solution
Questions # 46:

You have a Hyper-V host named Server1 that runs Windows Server. Server1 hosts a virtual machine named VM1 that runs Windows Server and has multiple file shares. You have an Azure subscription. You need to migrate the file shares to Azure Storage by using Azure Storage Mover. The solution must minimize downtime and administrative effort. What should you do on the on-premises network first?

Options:

A.

On Server1, install the Azure Storage Mover agent.


B.

On VM1, install the Azure Storage Mover agent.


C.

On VM1, install the Azure Connected Machine agent.


D.

On Server1, install the Azure Connected Machine agent.


Expert Solution
Questions # 47:

Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution. After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen. You have an on-premises server named Server1 that runs Windows Server. You have a Microsoft Sentinel instance. You add the Windows Firewall data connector in Microsoft Sentinel. You need to ensure that Microsoft Sentinel can collect Windows Firewall logs from Server1. Solution: You onboard Server1 to Microsoft Defender for Endpoint. Does this meet the goal?

Options:

A.

Yes


B.

No


Expert Solution
Questions # 48:

You have an on-premises Active Directory Domain Services (AD DS) domain that syncs with a Microsoft Entra tenant. The on-premises network is connected to Azure by using a Site-to-Site VPN. You have the DNS zones shown in the following table: contoso.com is hosted on a domain controller named DC1 on the on-premises network and provides name resolution on-premises; fabrikam.com is an Azure private DNS zone that provides name resolution for all Azure virtual networks. You need to ensure that names from fabrikam.com can be resolved from the on-premises network. Which two actions should you perform? Each correct answer presents part of the solution. NOTE: Each correct selection is worth one point.

Question # 48

DNS zones

Options:

A.

Create a conditional forwarder for fabrikam.com on DC1.


B.

Create a stub zone for fabrikam.com on DC1.


C.

Create a secondary zone for fabrikam.com on DC1.


D.

Deploy an Azure virtual machine that runs Windows Server. Modify the DNS Servers settings for the virtual network.


E.

Deploy an Azure virtual machine that runs Windows Server. Configure the virtual machine as a DNS forwarder.


Expert Solution
Questions # 49:

Your network contains an Active Directory domain. The domain contains a domain controller named DC1 and a server named Server1 that runs Windows Server.

You need to enable event log subscriptions to forward events from DC1 to Server1.

Which command should you run to enable the Windows Event Collector service, and on which servers should you run the command? To answer, select the appropriate options in the answer area.

NOTE: Each correct selection is worth one point.

Question # 49

Exhibit


Expert Solution
Questions # 50:

You have an Azure subscription that contains an Azure key vault named Vault 1.

You deploy Azure Disk Encryption.

You configure Vault to support Azure Disk Encryption.

You need to ensure that you can encrypt Azure Disk Encryption artifacts before they are written to Vault 1. The solution must provide the highest level of encryption.

How should you complete the command? To answer, select the appropriate options in the answer area.

NOTE: Each correct selection is worth one point.

Question # 50


Expert Solution
Viewing page 5 out of 8 pages
Viewing questions 41-50 out of questions