Practice Test Free
  • QUESTIONS
  • COURSES
    • CCNA
    • Cisco Enterprise Core
    • VMware vSphere: Install, Configure, Manage
  • CERTIFICATES
No Result
View All Result
  • Login
  • Register
Quesions Library
  • Cisco
    • 200-301
    • 200-901
      • Multiple Choice
      • Drag Drop
    • 350-401
      • Multiple Choice
      • Drag Drop
    • 350-701
    • 300-410
      • Multiple Choice
      • Drag Drop
    • 300-415
      • Multiple Choice
      • Drag Drop
    • 300-425
    • Others
  • AWS
    • CLF-C02
    • SAA-C03
    • SAP-C02
    • ANS-C01
    • Others
  • Microsoft
    • AZ-104
    • AZ-204
    • AZ-305
    • AZ-900
    • AI-900
    • SC-900
    • Others
  • CompTIA
    • SY0-601
    • N10-008
    • 220-1101
    • 220-1102
    • Others
  • Google
    • Associate Cloud Engineer
    • Professional Cloud Architect
    • Professional Cloud DevOps Engineer
    • Others
  • ISACA
    • CISM
    • CRIS
    • Others
  • LPI
    • 101-500
    • 102-500
    • 201-450
    • 202-450
  • Fortinet
    • NSE4_FGT-7.2
  • VMware
  • >>
    • Juniper
    • EC-Council
      • 312-50v12
    • ISC
      • CISSP
    • PMI
      • PMP
    • Palo Alto Networks
    • RedHat
    • Oracle
    • GIAC
    • F5
    • ITILF
    • Salesforce
Contribute
Practice Test Free
  • QUESTIONS
  • COURSES
    • CCNA
    • Cisco Enterprise Core
    • VMware vSphere: Install, Configure, Manage
  • CERTIFICATES
No Result
View All Result
Practice Test Free
No Result
View All Result
Home Practice Exam Free

AZ-900 Practice Exam Free

Table of Contents

Toggle
  • AZ-900 Practice Exam Free – 50 Questions to Simulate the Real Exam
  • Free Access Full AZ-900 Practice Exam Free

AZ-900 Practice Exam Free – 50 Questions to Simulate the Real Exam

Are you getting ready for the AZ-900 certification? Take your preparation to the next level with our AZ-900 Practice Exam Free – a carefully designed set of 50 realistic exam-style questions to help you evaluate your knowledge and boost your confidence.

Using a AZ-900 practice exam free is one of the best ways to:

  • Experience the format and difficulty of the real exam
  • Identify your strengths and focus on weak areas
  • Improve your test-taking speed and accuracy

Below, you will find 50 realistic AZ-900 practice exam free questions covering key exam topics. Each question reflects the structure and challenge of the actual exam.

Question 1

Which resources can be used as a source for a Network security group inbound security rule?

A. Service Tags only

B. IP Addresses, Service tags and Application security groups

C. Application security groups only

D. IP Addresses only

 


Suggested Answer: B

Source or destination:
Any, or an individual IP address, classless inter-domain routing (CIDR) block (10.0.0.0/24, for example), service tag, or application security group.
Reference:
https://docs.microsoft.com/en-us/azure/virtual-network/network-security-groups-overview

Question 2

HOTSPOT -
Select the answer that correctly completes the sentence.
Hot Area:
 Image

 


Suggested Answer:
Correct Answer Image

Box: network Security group (NSG)
You can use an Azure network security group to filter network traffic to and from Azure resources in an Azure virtual network. A network security group contains security rules that allow or deny inbound network traffic to, or outbound network traffic from, several types of Azure resources. For each rule, you can specify source and destination, port, and protocol.
Reference:
https://docs.microsoft.com/en-us/azure/virtual-network/network-security-groups-overview

Question 3

HOTSPOT
-
Select the answer that correctly completes the sentence.
 Image

 


Suggested Answer:
Correct Answer Image

 

Question 4

HOTSPOT -
Select the answer that correctly completes the sentence.
Hot Area:
 Image

 


Suggested Answer:
Correct Answer Image

Box: Azure Databricks –
Azure Databricks is a fast, easy, and collaborative Apache Spark-based big data analytics service designed for data science and data engineering.
Reference:
https://azure.microsoft.com/en-us/services/databricks/

Question 5

HOTSPOT -
For each of the following statements, select Yes if the statement is true. Otherwise, select No.
NOTE: Each correct selection is worth one point.
Hot Area:
 Image

 


Suggested Answer:
Correct Answer Image

Box 1: Yes –
The Pay as You Go model is billed on a per second basis and you can start or stop the service at any time ג€” paying only for what you use.
Box 2: No –
No, it is OpEx (Operational Expenditures).
OpEx: The business can achieve ROI immediately in many cases because the infrastructure is managed by the cloud provider.
CapEx: ROI is not usually realized until a long time after the purchase was made because the infrastructure needs to be set up and employees need to be trained.
Computers, servers, and other hardware needed for on-premises data centers are all examples of CapEx.
Box 3: Yes –
Operational Expenditures (OpEx) are the ongoing costs related to day-to-day operations. A subscription fee for cloud services is considered OpExג€”the cloud provider is making the infrastructure investment upfront, and you only pay for the resources you need as you need them.
Reference:
https://azure.microsoft.com/en-us/pricing/purchase-options/pay-as-you-go/
https://blogs.vmware.com/cloudhealth/capex-vs-opex-cloud-cost-management/

Question 6

DRAG DROP -
Match the Azure services benefits to the correct descriptions.
Instructions: To answer, drag the appropriate benefit from the column on the left to its description on the right. Each benefit may be used once, more than once, or not at all.
NOTE: Each correct match is worth one point.
Select and Place:
 Image

 


Suggested Answer:
Correct Answer Image

Box 1: Microsoft Sentinel –
Microsoft Sentinel is a scalable, cloud-native, security information and event management (SIEM) and security orchestration, automation, and response (SOAR) solution. Microsoft Sentinel delivers intelligent security analytics and threat intelligence across the enterprise, providing a single solution for attack detection, threat visibility, proactive hunting, and threat response.
Box 2: Microsoft Defender for Cloud
You can find your overall secure score, as well as your score per subscription, through the Azure portal. Defender for Cloud displays your secure score prominently in the portal.
Box 3: Azure Key Vault –
A favored approach to store the credentials or keys in the Azure Key Vault as secrets and reference the secrets as environment variables in our Azure functions apps.
Reference:
https://docs.microsoft.com/en-us/azure/sentinel/overview

https://docs.microsoft.com/en-us/azure/defender-for-cloud/secure-score-access-and-track
https://levelup.gitconnected.com/a-secure-way-to-use-credentials-and-secrets-in-azure-functions-7ec91813c807

Question 7

HOTSPOT -
For each of the following statements, select Yes if the statement is true. Otherwise, select No.
NOTE: Each correct selection is worth one point.
Hot Area:
 Image

 


Suggested Answer:
Correct Answer Image

Box 1: Yes –
You can use the same account to manage multiple subscriptions. You can create an additional subscription for your account in the Azure portal. You may want an additional subscription to avoid hitting subscription limits, to create separate environments for security, or to isolate data for compliance reasons.
Box 2: No –
You cannot merge two subscriptions into a single subscription. However, you can move some Azure resources from one subscription to another. You can also transfer ownership of a subscription and change the billing type for a subscription.
Box 3: Yes –
A company can have multiple subscriptions and store resources in the different subscriptions. However, a resource instance can exist in only one subscription.
Reference:
https://docs.microsoft.com/en-us/azure/cost-management-billing/manage/create-subscription

Question 8

You are planning a strategy to deploy numerous web servers and database servers to Azure.
This strategy should allow for connection types between the web servers and database servers to be controlled.
Solution: You include a local network gateway in your strategy.
Does the solution meet the goal?

A. Yes

B. No

 


Suggested Answer: B

 

Question 9

In which type of cloud model are all the hardware resources owned by a third-party and shared between multiple tenants?

A. private

B. hybrid

C. public

 


Suggested Answer: C

Microsoft Azure, Amazon Web Services and Google Cloud are three examples of public cloud services.
Microsoft, Amazon and Google own the hardware. The tenants are the customers who use the public cloud services.

Question 10

You attempt to create several managed Microsoft SQL Server instances in an Azure environment and receive a message that you must increase your Azure subscription limits.
What should you do to increase the limits?

A. Create a service health alert

B. Upgrade your support plan

C. Modify an Azure policy

D. Create a new support request

 


Suggested Answer: D

Many Azure resource have quote limits. The purpose of the quota limits is to help you control your Azure costs. However, it is common to require an increase to the default quota.
You can request a quota limit increase by opening a support request. In the support request, select ‘Service and subscription limits (quotas)’ for the Issue type, select your subscription and the service you want to increase the quota for. For this question, you would select ‘SQL Database Managed Instance’ as the quote type.
Reference:
https://docs.microsoft.com/en-us/azure/sql-database/sql-database-managed-instance-resource-limits#obtaining-a-larger-quota-for-sql-managed-instance

Question 11

What should you use to prevent traffic from an Azure virtual network from being routed to an Azure Storage account via the internet?

A. a network security group (NSG)

B. a public endpoint

C. Azure VPN Gateway

D. a service endpoint

 


Suggested Answer: A

 

Question 12

Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution.
After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen.
You have an Azure subscription named Subscription1. You sign in to the Azure portal and create a resource group named RG1.
From Azure documentation, you have the following command that creates a virtual machine named VM1. az vm create --resource-group RG1 --name VM1 --image UbuntuLTS --generate-ssh-keys
You need to create VM1 in Subscription1 by using the command.
Solution: From the Azure portal, launch Azure Cloud Shell and select PowerShell. Run the command in Cloud Shell.
Does this meet the goal?

A. Yes

B. No

 


Suggested Answer: A

The command can be run in the Azure Cloud Shell. Although this question says you select PowerShell rather than Bash, the Az commands will work in
PowerShell.
The Azure Cloud Shell is a free interactive shell. It has common Azure tools preinstalled and configured to use with your account.
To open the Cloud Shell, just select Try it from the upper right corner of a code block. You can also launch Cloud Shell in a separate browser tab by going to https://shell.azure.com/bash.
Reference:https://shell.azure.com/bash.

Reference:
https://docs.microsoft.com/en-us/azure/virtual-machines/linux/quick-create-cli

Question 13

HOTSPOT -
For each of the following statements, select Yes if the statement is true. Otherwise, select No.
NOTE: Each correct selection is worth one point.
Hot Area:
 Image

 


Suggested Answer:
Correct Answer Image

Box 1: No –
It is not true that a company must always migrate from an internal network to implement a hybrid cloud. You could start with a public cloud and then combine that with an on-premise infrastructure to implement a hybrid cloud.
Box 2: Yes –
A company can extend the computing resources of its internal network by using the public cloud. This is very common. When you need more resources, rather than pay out for new on-premises infrastructure, you can configure a cloud environment and connect your on-premises network to the cloud environment by using a VPN.
Box 3: No –
It is not true that only guest users can access cloud resources. You can give anyone with an account in Azure Active Directory access to the cloud resources.
There are many authentication scenarios but a common one is to replicate your on-premises Active Directory accounts to Azure Active Directory and provide access to the Azure Active Directory accounts. Another commonly used authentication method is ‘Federation’ where authentication for access to cloud resources is passed to another authentication provider such as an on-premises Active Directory.
Reference:
https://azure.microsoft.com/en-gb/overview/what-is-hybrid-cloud-computing/

Question 14

HOTSPOT -
For each of the following statements, select Yes if the statement is true. Otherwise, select No.
NOTE: Each correct selection is worth one point.
Hot Area:
 Image

 


Suggested Answer:
Correct Answer Image

Box 1: Yes –
Azure Monitor maximizes the availability and performance of your applications and services by delivering a comprehensive solution for collecting, analyzing, and acting on telemetry from your cloud and on-premises environments.
Box 2: Yes –
Alerts in Azure Monitor proactively notify you of critical conditions and potentially attempt to take corrective action.
Box 3: Yes –
Azure Monitor uses Target Resource, which is the scope and signals available for alerting. A target can be any Azure resource. Example targets: a virtual machine, a storage account, a virtual machine scale set, a Log Analytics workspace, or an Application Insights resource.
References:
https://docs.microsoft.com/en-us/azure/azure-monitor/overview
https://docs.microsoft.com/en-us/azure/azure-monitor/platform/alerts-overview

Question 15

This question requires that you evaluate the underlined text to determine if it is correct.
The Azure Standard support plan is the lowest cost option to receive 24x7 access to support engineers by phone.
Instructions: Review the underlined text. If it makes the statement correct, select `No change is needed`. If the statement is incorrect, select the answer choice that makes the statement correct.

A. No change is needed

B. Developer

C. Basic

D. Professional Direct

 


Suggested Answer: A

The Basic support plan is free so is therefore the cheapest. The Developer support plan is the cheapest paid-for support plan. The order of support plans in terms of cost ranging from the cheapest to most expensive is: Basic, Developer, Standard, Professional Direct, Premier.
However, 24/7 access to technical support by email and phone is only available for Standard, Professional Direct, Premier plans.
Reference:
https://azure.microsoft.com/en-gb/support/plans/

Question 16

You have 50 virtual machines hosted on-premises and 50 virtual machines hosted in Azure. The on-premises virtual machines and the Azure virtual machines connect to each other.
Which type of cloud model is this?

A. hybrid

B. private

C. public

 


Suggested Answer: A

References:
https://azure.microsoft.com/en-gb/overview/what-is-hybrid-cloud-computing/

Question 17

Your company has an Azure subscription that contains several resources.
You need to identify which department is responsible for the cost of each resource.
What should you use?

A. budgets

B. alerts

C. tags

 


Suggested Answer: A

 

Question 18

HOTSPOT -
Select the answer that correctly completes the sentence.
Hot Area:
 Image

 


Suggested Answer:
Correct Answer Image

Because of geo-distribution you can deploy apps and data to regional datacenters around the globe, thereby ensuring that your customers always have the best performance in their region.
Reference:
https://docs.microsoft.com/learn/modules/fundamental-azure-concepts/benefits-of-cloud-computing

Question 19

HOTSPOT -
To complete the sentence, select the appropriate option in the answer area.
Hot Area:
 Image

 


Suggested Answer:
Correct Answer Image

Authentication, not authorization is the process of verifying a user’s credentials.
The difference between authentication and authorization is:
✑ Authentication is proving your identity, proving that you are who you say you are. The most common example of this is logging in to a system by providing credentials such as a username and password.
✑ Authorization is what you’re allowed to do once you’ve been authenticated. For example, what resources you’re allowed to access and what you can do with those resources.

Question 20

HOTSPOT -
For each of the following statements, select Yes if the statement is true. Otherwise, select No.
NOTE: Each correct selection is worth one point.
Hot Area:
 Image

 


Suggested Answer:
Correct Answer Image

Box 1: No –
You cannot add physical servers to the public cloud. You can only deploy virtual servers in the public cloud. You can extend a private cloud by deploying virtual servers in a public cloud. This would create a hybrid cloud.
Box 2: No –
A private cloud exists in cyberspace and is accessed via the internet.
Box 3: Yes.
Reference:
https://azure.microsoft.com/en-gb/overview/what-are-private-public-hybrid-clouds/

Question 21

Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution.
After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen.
You plan to deploy several Azure virtual machines.
You need to ensure that the services running on the virtual machines are available if a single data center fails.
Solution: You deploy the virtual machines to two or more availability zones.
Does this meet the goal?

A. Yes

B. No

 


Suggested Answer: A

Availability zones expand the level of control you have to maintain the availability of the applications and data on your VMs. An Availability Zone is a physically separate zone, within an Azure region. There are three Availability Zones per supported Azure region.
Each Availability Zone has a distinct power source, network, and cooling. By architecting your solutions to use replicated VMs in zones, you can protect your apps and data from the loss of a datacenter. If one zone is compromised, then replicated apps and data are instantly available in another zone.
Reference:
https://docs.microsoft.com/en-us/azure/virtual-machine-scale-sets/availability

Question 22

DRAG DROP -
Your company intends to subscribe to an Azure support plan.
The support plan must allow for new support requests to be opened.
Which of the following are support plans that will allow this? Answer by dragging the correct option from the list to the answer area.
Select and Place:
 Image

 


Suggested Answer:
Correct Answer Image

References:
https://azure.microsoft.com/en-us/support/plans/

Question 23

You have an on-premises network that contains 100 servers.
You need to recommend a solution that provides additional resources to your users. The solution must minimize capital and operational expenditure costs.
What should you include in the recommendation?

A. a complete migration to the public cloud

B. an additional data center

C. a private cloud

D. a hybrid cloud

 


Suggested Answer: D

A hybrid cloud is a combination of a private cloud and a public cloud.
Capital expenditure is the spending of money up-front for infrastructure such as new servers.
With a hybrid cloud, you can continue to use the on-premises servers while adding new servers in the public cloud (Azure for example). Adding new servers in
Azure minimizes the capital expenditure costs as you are not paying for new servers as you would if you deployed new server on-premises.
Incorrect Answers:
A: A complete migration of 100 servers to the public cloud would involve a lot of operational expenditure (the cost of migrating all the servers).
B: An additional data center would involve a lot of capital expenditure (the cost of the new infrastructure).
C: A private cloud is hosted on on-premises servers to this would involve a lot of capital expenditure (the cost of the new infrastructure to host the private cloud).
Reference:
https://docs.microsoft.com/en-gb/learn/modules/principles-cloud-computing/4-cloud-deployment-models

Question 24

Your company has several business units.
Each business unit requires 20 different Azure resources for daily operation. All the business units require the same type of Azure resources.
You need to recommend a solution to automate the creation of the Azure resources.
What should you include in the recommendations?

A. Azure Resource Manager templates

B. virtual machine scale sets

C. the Azure API Management service

D. management groups

 


Suggested Answer: A

You can use Azure Resource Manager templates to automate the creation of the Azure resources. Deploying resource through templates is known as
‘Infrastructure as code’.
To implement infrastructure as code for your Azure solutions, use Azure Resource Manager templates. The template is a JavaScript Object Notation (JSON) file that defines the infrastructure and configuration for your project. The template uses declarative syntax, which lets you state what you intend to deploy without having to write the sequence of programming commands to create it. In the template, you specify the resources to deploy and the properties for those resources.
References:
https://docs.microsoft.com/en-us/azure/azure-resource-manager/templates/overview

Question 25

HOTSPOT -
For each of the following statements, select Yes if the statement is true. Otherwise, select No.
NOTE: Each correct selection is worth one point.
Hot Area:
 Image

 


Suggested Answer:
Correct Answer Image

Box 1: No –
A resource can interact with resources in other resource groups.
Box 2: Yes –
Deleting the resource group will remove the resource group as well as all the resources in that resource group. This can be useful for the management of resources. For example, a virtual machine has several components (the VM itself, virtual disks, network adapter etc.). By placing the VM in its own resource group, you can delete the VM along with all its associated components by deleting the resource group.
Another example is when creating a test environment. You could place the entire test environment (Network components, virtual machines etc.) in one resource group. You can then delete the entire test environment by deleting the resource group.
Box 3: Yes –
Resources from multiple different regions can be placed in a resource group. The resource group only contains metadata about the resources it contains.
References:
https://docs.microsoft.com/en-us/azure/azure-resource-manager/resource-group-overview
https://www.codeisahighway.com/effective-ways-to-delete-resources-in-a-resource-group-on-azure/

Question 26

To which cloud models can you deploy physical servers?

A. private cloud and hybrid cloud only

B. private cloud only

C. private cloud, hybrid cloud and public cloud

D. hybrid cloud only

 


Suggested Answer: A

A private cloud is on-premises so you can deploy physical servers.
A hybrid cloud is a mix of on-premise and public cloud resources. You can deploy physical servers on-premises.
Reference:
https://azure.microsoft.com/en-gb/overview/what-is-hybrid-cloud-computing/

Question 27

DRAG DROP -
You need to complete the defense-in-depth strategy used in a datacenter.
What should you do? To answer, drag the appropriate layers to the correct positions in the model. Each layer may be used once, more than once, or not at all.
You may need to drag the split bar between panes or scroll to view content.
NOTE: Each correct selection is worth one point.
Select and Place:
 Image

 


Suggested Answer:
Correct Answer Image

Defence in depth layers (from bottom to top):
✑ Data
– In almost all cases attackers are after data.
– Data can be in database, stored on disk inside VMs, on a SaaS application such as Office 365 or in cloud storage.
– Those storing and controlling access to data to ensures that it’s properly secured
– Often regulatory requirements dictates controls & processes
– to ensure confidentiality, integrity, and availability.
✑ Application
– Ensure applications are secure and free of vulnerabilities.
– Store sensitive application secrets in a secure storage medium.
– Make security a design requirement for all application development.
– Integrate security into the application development life cycle.
✑ Compute
– Secure access to virtual machines.
– Implement endpoint protection and keep systems patched and current.
– Malware, unpatched systems, and improperly secured systems open your environment to attacks.
✑ Networking
– Limit communication between resources.
– Deny by default.
– Allow only what is required
– Restrict inbound internet access and limit outbound, where appropriate.
– Implement secure connectivity to on-premises networks.
✑ Perimeter
– Use distributed denial of service (DDoS) protection to filter large-scale attacks before they can cause a denial of service for end users.
– Use perimeter firewalls to identify and alert on malicious attacks against your network.
✑ Identity and access
– Control access to infrastructure and change control.
– Access granted is only what is needed
– Use single sign-on and multi-factor authentication.
– Audit events and changes.
✑ Physical security
– Building security & controlling access to computing hardware.
– First line of defense.
Reference:
https://github.com/undergroundwires/Azure-in-bullet-points/blob/master/AZ-900%20Microsoft%20Azure%20Fundamentals/4.2.%20Defence%20in%20Depth.md

Question 28

HOTSPOT -
To complete the sentence, select the appropriate option in the answer area.
Hot Area:
 Image

 


Suggested Answer:
Correct Answer Image

Availability Zones is a high-availability offering that protects your applications and data from datacenter failures. Availability Zones are unique physical locations within an Azure region.
Reference:
https://docs.microsoft.com/en-us/azure/availability-zones/az-overview

Question 29

HOTSPOT
-
For each of the following statements, select Yes if the statement is true. Otherwise, select No.
NOTE: Each correct selection is worth one point.
 Image

 


Suggested Answer:
Correct Answer Image

 

Question 30

HOTSPOT -
You have an Azure environment that contains 10 web apps. To which URL should you connect to manage all the Azure resources? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.
Hot Area:
 Image

 


Suggested Answer:
Correct Answer Image

The Azure portal is a web-based management interface where you can view and manage all your Azure resources in one unified hub, including web apps, databases, virtual machines, virtual networks, storage and Visual Studio team projects.
The URL of the Azure portal is https://portal.azure.com.
References:https://portal.azure.com.

References:
https://azure.microsoft.com/en-gb/features/azure-portal/

Question 31

HOTSPOT -
You plan to deploy a critical line-of-business application to Azure.
The application will run on an Azure virtual machine.
You need to recommend a deployment solution for the application. The solution must provide a guaranteed availability of 99.99 percent.
What is the minimum number of virtual machines and the minimum number of availability zones you should recommend for the deployment? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.
Hot Area:
 Image

 


Suggested Answer:
Correct Answer Image

You need a minimum of two virtual machines with each one located in a different availability zone.
Availability Zones is a high-availability offering that protects your applications and data from datacenter failures. Availability Zones are unique physical locations within an Azure region. Each zone is made up of one or more datacenters equipped with independent power, cooling, and networking. To ensure resiliency, there’s a minimum of three separate zones in all enabled regions. The physical separation of Availability Zones within a region protects applications and data from datacenter failures. Zone-redundant services replicate your applications and data across Availability Zones to protect from single-points-of-failure. With Availability
Zones, Azure offers industry best 99.99% VM uptime SLA.
References:
https://docs.microsoft.com/en-us/azure/availability-zones/az-overview

Question 32

Your company has virtual machines (VMs) hosted in Microsoft Azure. The VMs are located in a single Azure virtual network named VNet1.
The company has users that work remotely. The remote workers require access to the VMs on VNet1.
You need to provide access for the remote workers.
What should you do?

A. Configure a Site-to-Site (S2S) VPN.

B. Configure a VNet-toVNet VPN.

C. Configure a Point-to-Site (P2S) VPN.

D. Configure DirectAccess on a Windows Server 2012 server VM.

E. Configure a Multi-Site VPN

 


Suggested Answer: C

A Point-to-Site (P2S) VPN gateway connection lets you create a secure connection to your virtual network from an individual client computer.
References:
https://docs.microsoft.com/en-us/azure/vpn-gateway/vpn-gateway-about-vpngateways

Question 33

HOTSPOT -
Select the answer that correctly completes the sentence.
Hot Area:
 Image

 


Suggested Answer:
Correct Answer Image

Reference:
https://docs.microsoft.com/en-us/azure/advisor/advisor-cost-recommendations
https://build5nines.com/properly-shutdown-azure-vm-to-save-money/

Question 34

HOTSPOT -
For each of the following statements, select Yes if the statement is true. Otherwise, select No.
NOTE: Each correct selection is worth one point.
Hot Area:
 Image

 


Suggested Answer:
Correct Answer Image

Box 1: No –
Virtual Machines works.
Box 2: Yes –
Simply put, cloud computing is the delivery of computing servicesג€”including servers, storage, databases, networking, software, analytics, and intelligenceג€”over the Internet (ג€the cloudג€) to offer faster innovation, flexible resources, and economies of scale.
Box 3: Yes –
Reference:
https://azure.microsoft.com/en-us/overview/what-is-cloud-computing/

Question 35

You plan to migrate a web application to Azure. The web application is accessed by external users.
You need to recommend a cloud deployment solution to minimize the amount of administrative effort used to manage the web application.
What should you include in the recommendation?

A. Software as a Service (SaaS)

B. Platform as a Service (PaaS)

C. Infrastructure as a Service (IaaS)

D. Database as a Service (DaaS)

 


Suggested Answer: B

Azure App Service is a platform-as-a-service (PaaS) offering that lets you create web and mobile apps for any platform or device and connect to data anywhere, in the cloud or on-premises. App Service includes the web and mobile capabilities that were previously delivered separately as Azure Websites and Azure Mobile
Services.
References:
https://docs.microsoft.com/en-us/azure/security/fundamentals/paas-applications-using-app-services

Question 36

HOTSPOT -
For each of the following statements, select Yes if the statement is true. Otherwise, select No.
NOTE: Each correct selection is worth one point.
Hot Area:
 Image

 


Suggested Answer:
Correct Answer Image

Box 1: No –
A subscription can have multiple administrators, but there can only be one account administrator.
Box 3: No –
A subscription can contain multiple resource groups but a resource group can only belong to one subscription. Resource groups can contain multiple resources.
Reference:
https://k21academy.com/microsoft-azure/az-900/az-900-azure-subscriptions/
https://azure.microsoft.com/en-us/blog/organizing-subscriptions-and-resource-groups-within-the-enterprise/

Question 37

HOTSPOT -
To complete the sentence, select the appropriate option in the answer area.
Hot Area:
 Image

 


Suggested Answer:
Correct Answer Image

Public Preview means that the service is in public beta and can be tried out by anyone with an Azure subscription. Services in public preview are often offered at a discount price.
Public previews are excluded from SLAs and in some cases, no support is offered.
Incorrect Answers:
Services in private preview are available only to selected people who has signed up to the private preview program.
Reference Image
✑ Services in development are not available to the public.
✑ Services provided under an Enterprise Agreement (EA) subscription are available only to the subscription owner.
Reference:
https://www.neowin.net/news/several-more-azure-services-now-available-in-private-public-preview/

Question 38

DRAG DROP -
Match the cloud service models to the appropriate solutions.
To answer, drag the appropriate cloud service model from the column on the left to its solution on the right Each cloud service model may be used once, more than once, or not at all.
NOTE: Each correct match is worth one point.
Select and Place:
 Image

 


Suggested Answer:
Correct Answer Image

Box 1: Infrastructure as a service (IaaS)
Azure Files is a simple, secure, and serverless enterprise-grade cloud file shares.
Infrastructure as a service (IaaS) is a type of cloud computing service that offers essential compute, storage, and networking resources on demand, on a pay-as- you-go basis.
Box 2: Software as a service (SaaS)
Dynamics 365 is a set of interconnected, modular Software-as-a-Service (SaaS) applications and services designed to both transform and enable your core customers, employees, and business activities. It includes Dynamics 365 Finance: use the guided, rules-based chart of accounts and no-code configuration service to simplify regulatory reporting, electronic invoicing, and global payments.
Box 3: Platform as a service (PaaS)
Platform as a service (PaaS) is a complete development and deployment environment in the cloud, with resources that enable you to deliver everything from simple cloud-based apps to sophisticated, cloud-enabled enterprise applications.
Reference:
https://azure.microsoft.com/en-us/overview/what-is-iaas

https://azure.microsoft.com/en-us/overview/what-is-paas/

Question 39

Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution.
After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen.
Your company plans to migrate all its data and resources to Azure.
The company's migration plan states that only Platform as a Service (PaaS) solutions must be used in Azure.
You need to deploy an Azure environment that meets the company migration plan.
Solution: You create Azure virtual machines, Azure SQL databases, and Azure Storage accounts.
Does this meet the goal?

A. Yes

B. No

 


Suggested Answer: B

Platform as a service (PaaS) is a complete development and deployment environment in the cloud. PaaS includes infrastructure ג€” servers, storage, and networking ג€” but also middleware, development tools, business intelligence (BI) services, database management systems, and more. PaaS is designed to support the complete web application lifecycle: building, testing, deploying, managing, and updating.
However, virtual machines are examples of Infrastructure as a service (IaaS). IaaS is an instant computing infrastructure, provisioned and managed over the internet.
References:
https://azure.microsoft.com/en-us/overview/what-is-paas/

https://azure.microsoft.com/en-us/overview/what-is-iaas/

Question 40

HOTSPOT -
For each of the following statements, select Yes if the statement is true. Otherwise, select No.
NOTE: Each correct selection is worth one point.
Hot Area:
 Image

 


Suggested Answer:
Correct Answer Image

Box 1: No –
Box 2: No –
Each resource can exist in only one resource group.
Box 3: Yes –
Resources from multiple different regions can be placed in a resource group. The resource group only contains metadata about the resources it contains.
Reference:
https://docs.microsoft.com/en-us/azure/azure-resource-manager/resource-group-overview
https://www.codeisahighway.com/effective-ways-to-delete-resources-in-a-resource-group-on-azure/

Question 41

HOTSPOT
-
For each of the following statements, select Yes if the statement is true. Otherwise, select No.
NOTE: Each correct selection is worth one point.
 Image

 


Suggested Answer:
Correct Answer Image

 

Question 42

HOTSPOT -
Select the answer that correctly completes the sentence.
Hot Area:
 Image

 


Suggested Answer:
Correct Answer Image

Microsoft’s Azure Sphere hardware and service designed to better secure Internet of Things (IoT) devices.
Azure Sphere consists of Microsoft-certified microcontrollers ג€” single-chip computers with processors, storage, memory and IoT capabilities ג€” plus the Azure
Sphere Linux-based OS and the Azure Sphere cloud security service.
Reference:
https://www.zdnet.com/article/microsofts-azure-sphere-its-linux-based-microcontroller-plus-cloud-service-hits-general-availability/

Question 43

HOTSPOT -
For each of the following statements, select Yes if the statement is true. Otherwise, select No.
NOTE: Each correct selection is worth one point.
Hot Area:
 Image

 


Suggested Answer:
Correct Answer Image

Box 1: Yes –
You can send Azure AD activity logs to Azure Monitor logs to enable rich visualizations, monitoring and alerting on the connected data.
All data collected by Azure Monitor fits into one of two fundamental types, metrics and logs (including Azure AD activity logs). Activity logs record when resources are created or modified. Metrics tell you how the resource is performing and the resources that it’s consuming.
Box 2: Yes –
Azure Monitor can consolidate log entries from multiple Azure resources, subscriptions, and tenants into one location for analysis together.
Box 3: Yes –
You can create alerts in Azure Monitor.
Alerts in Azure Monitor proactively notify you of critical conditions and potentially attempt to take corrective action. Alert rules based on metrics provide near real time alerting based on numeric values, while rules based on logs allow for complex logic across data from multiple sources.
References:
https://docs.microsoft.com/en-us/azure/active-directory/reports-monitoring/concept-activity-logs-azure-monitor
https://docs.microsoft.com/en-us/azure/azure-monitor/overview

Question 44

Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution.
After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen.
Your company has an Azure subscription that contains the following unused resources:
✑ 20 user accounts in Azure Active Directory (Azure AD)
✑ Five groups in Azure AD
✑ 10 public IP addresses
✑ 10 network interfaces
You need to reduce the Azure costs for the company.
Solution: You remove the unused groups.
Does this meet the goal?

A. Yes

B. No

 


Suggested Answer: B

You are not charged for Azure Active Directory Groups. Therefore, deleting unused groups will not reduce your Azure costs.
Reference:
https://docs.microsoft.com/en-us/azure/advisor/advisor-cost-recommendations#reduce-costs-by-deleting-or-reconfiguring-idle-virtual-network-gateways

Question 45

You have an Azure subscription.
You need to review your secure score.
What should you use?

A. Azure Monitor

B. Azure Advisor

C. Help + support

D. Microsoft Defender for Cloud

 


Suggested Answer: D

The central feature in Defender for Cloud that enables you to achieve those goals is secure score.
Reference:
https://docs.microsoft.com/en-us/azure/defender-for-cloud/secure-score-security-controls

Question 46

HOTSPOT -
Select the answer that correctly completes the sentence.
Hot Area:
 Image

 


Suggested Answer:
Correct Answer Image

Box: Microsoft Online Services Privacy Statement
Microsoft Privacy Statement –
Your privacy is important to us. This privacy statement explains the personal data Microsoft processes, how Microsoft processes it, and for what purposes.
Reference:
https://privacy.microsoft.com/en-us/privacystatement

Question 47

Which cloud computing model includes on-premises and cloud-based resources?

A. hybrid

B. public

C. private

 


Suggested Answer: A

A hybrid cloud ג€” sometimes called a cloud hybrid ג€” is a computing environment that combines an on-premises datacenter (also called a private cloud) with a public cloud, allowing data and applications to be shared between them. Some people define hybrid cloud to include ג€multicloudג€ configurations where an organization uses more than one public cloud in addition to their on-premises datacenter.
Reference:
https://azure.microsoft.com/en-us/overview/what-is-hybrid-cloud-computing/

Question 48

You plan to deploy several Azure virtual machines.
You need to control the ports that devices on the Internet can use to access the virtual machines.
What should you use?

A. a network security group (NSG)

B. an Azure Active Directory (Azure AD) role

C. an Azure Active Directory group

D. an Azure key vault

 


Suggested Answer: A

A network security group works like a firewall. You can attach a network security group to a virtual network and/or individual subnets within the virtual network.
You can also attach a network security group to a network interface assigned to a virtual machine. You can use multiple network security groups within a virtual network to restrict traffic between resources such as virtual machines and subnets.
You can filter network traffic to and from Azure resources in an Azure virtual network with a network security group. A network security group contains security rules that allow or deny inbound network traffic to, or outbound network traffic from, several types of Azure resources.
References:
https://docs.microsoft.com/en-us/azure/virtual-network/security-overview

Question 49

Which statement accurately describes the Modern Lifecycle Policy for Azure services?

A. Microsoft provides mainstream support for a service for five years.

B. Microsoft provides a minimum of 12 months’ notice before ending support for a service.

C. After a service is made generally available, Microsoft provides support for the service for a minimum of four years.

D. When a service is retired, you can purchase extended support for the service for up to five years.

 


Suggested Answer: B

For products governed by the Modern Lifecycle Policy, Microsoft will provide a minimum of 12 months’ notification prior to ending support if no successor product or service is offered ג€” excluding free services or preview releases.
Reference:
https://support.microsoft.com/en-us/help/30881/modern-lifecycle-policy

Question 50

HOTSPOT -
For each of the following statements, select Yes if the statement is true. Otherwise, select No.
NOTE: Each correct selection is worth one point.
Hot Area:
 Image

 


Suggested Answer:
Correct Answer Image

Box 1: No –
Azure creates the default rules in each network security group that you create. These rules allow some traffic.
Box 2: Yes –
A network security group contains zero, or as many rules as desired. These rules can refer to application security groups.
Box 3: Yes –
Azure creates the Inbound and OutBound default rules in each network security group that you create.
Reference:
https://docs.microsoft.com/en-us/azure/virtual-network/network-security-groups-overview

Free Access Full AZ-900 Practice Exam Free

Looking for additional practice? Click here to access a full set of AZ-900 practice exam free questions and continue building your skills across all exam domains.

Our question sets are updated regularly to ensure they stay aligned with the latest exam objectives—so be sure to visit often!

Good luck with your AZ-900 certification journey!

Share18Tweet11
Previous Post

AZ-800 Practice Exam Free

Next Post

BDS-C00 Practice Exam Free

Next Post

BDS-C00 Practice Exam Free

CAS-003 Practice Exam Free

CAS-004 Practice Exam Free

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Recommended

Network+ Practice Test

Comptia Security+ Practice Test

A+ Certification Practice Test

Aws Cloud Practitioner Exam Questions

Aws Cloud Practitioner Practice Exam

Comptia A+ Practice Test

  • About
  • DMCA
  • Privacy & Policy
  • Contact

PracticeTestFree.com materials do not contain actual questions and answers from Cisco's Certification Exams. PracticeTestFree.com doesn't offer Real Microsoft Exam Questions. PracticeTestFree.com doesn't offer Real Amazon Exam Questions.

  • Login
  • Sign Up
No Result
View All Result
  • Quesions
    • Cisco
    • AWS
    • Microsoft
    • CompTIA
    • Google
    • ISACA
    • ECCouncil
    • F5
    • GIAC
    • ISC
    • Juniper
    • LPI
    • Oracle
    • Palo Alto Networks
    • PMI
    • RedHat
    • Salesforce
    • VMware
  • Courses
    • CCNA
    • ENCOR
    • VMware vSphere
  • Certificates

Welcome Back!

Login to your account below

Forgotten Password? Sign Up

Create New Account!

Fill the forms below to register

All fields are required. Log In

Retrieve your password

Please enter your username or email address to reset your password.

Log In

Insert/edit link

Enter the destination URL

Or link to existing content

    No search term specified. Showing recent items. Search or use up and down arrow keys to select an item.