[2021] AZ-600 PDF Questions - Perfect Prospect To Go With RealVCE Practice Exam
Microsoft AZ-600 Pdf Questions - Outstanding Practice To your Exam
NEW QUESTION 15
You have an Azure Stack Hub integrated system.
You need to delegate the management of offers to a user named User1.
Which three actions should you perform in a sequence? To answer, move the appropriate actions from the list of actions to the answer area and arrange them in the correct order.
Answer:
Explanation:
Explanation
Reference:
https://docs.microsoft.com/en-us/azure-stack/operator/azure-stack-delegated-provider?view=azs-2008
NEW QUESTION 16
You are planning the deployment of two Azure Stack Hub integrated systems that will be located in Seattle and Redmond, respectively.
Workloads will run on infrastructure as a service (IaaS) virtual machines that have a static IIS web front-end and a Microsoft SQL Server 2019 cluster backend for database storage.
You plan to leverage Azure Traffic Manager to direct DNS requests to the integrated system in Seattle by default and use the Redmond integrated system in the event of a disaster.
What should you use to replicate application consistent database changes to the Redmond site?
- A. Azure Blob storage replication
- B. Hyper-V Replica
- C. SQL Server replication
- D. Azure SQL Database replication
Answer: C
Explanation:
Reference:
https://azure.microsoft.com/en-gb/blog/protecting-applications-and-data-on-azure-stack/
NEW QUESTION 17
You have an Azure Stack Hub integrated system.
You are an operator, and you have read access to a user subscription named Fabrikam1.
Users in Fabrikam1 request help creating a custom role-based access control (RBAC) role based on an existing built-in Azure role.
You connect to the Azure subscription, create the respective role definition, and save the role definition as a JSON file.
Which three actions should you perform to create the custom role? Each correct answer presents part of the solution.
NOTE: Each correct selection is worth one point.
- A. Connect to the user management endpoint and run the
New-AzureRmRoleDefinition cmdlet. - B. Connect to the administrator management endpoint and run the
New-AzureRmRoleDefinition cmdlet. - C. Request owner access to the user subscription.
- D. Modify the custom role definition to include the target default provider subscription ID as an AssignableScope, set the IsCustom field to true, and set Id to Null.
- E. Modify the custom role definition to include the target subscription ID as an AssignableScope, set the IsCustom field to true, and set Id to Null.
Answer: A,C,E
Explanation:
Reference:
https://docs.microsoft.com/en-us/azure/role-based-access-control/tutorial-custom-role-powershell
NEW QUESTION 18
You start the update of an Azure Stack Hub integrated system. The Update run details are shown in the following exhibit.
Use the drop-down menus to select the answer choice that completes each statement based on the information presented in the graphic.
NOTE: Each correct selection is worth one point.
Answer:
Explanation:
Reference:
https://docs.microsoft.com/en-us/azure-stack/operator/azure-stack-apply-updates?view=azs-2008
NEW QUESTION 19
You need to identify the certificate for the integrated system in Chicago. The solution must meet the technical requirements.
What should you identify? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.
Answer:
Explanation:
Explanation
When deploying Azure Stack Hub in disconnected mode it is recommended to use certificates issued by an enterprise certificate authority. This is important because clients accessing Azure Stack Hub endpoints must be able to contact the certificate revocation list (CRL).
Reference:
https://docs.microsoft.com/en-us/azure-stack/operator/azure-stack-pki-certs?view=azs-2008
NEW QUESTION 20
You need to identify the authentication and authorization process for the integrated system in Chicago. The solution must meet the technical requirements.
What should you include in the solution? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.
Answer:
Explanation:
Explanation
Reference:
https://docs.microsoft.com/en-us/azure-stack/operator/azure-stack-integrate-identity?view=azs-2008
NEW QUESTION 21
You have an Azure Stack Hub integrated system that is enabled for multitenancy and uses an Azure Active Directory (Azure AD) tenant named fabrikam.com as an identity provider.
The integrated system has the following guest directory tenants onboarded and enabled for multitenancy:
* com
* onmicrosoft.com
* onmicrosoft.com
You need to verify whether all the guest directory tenants are registered properly.
How should you complete the PowerShell script? To answer, drag the appropriate cmdlet to the correct targets.
Each cmdlet may be used once, more than once, or not at all. You may need to drag the split bar between panes or scroll to view content.
NOTE: Each correct selection is worth one point.
Answer:
Explanation:
Explanation
Reference:
https://docs.microsoft.com/en-us/azure-stack/operator/azure-stack-enable-multitenancy?view=azs-2008
NEW QUESTION 22
Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution.
After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen.
You have an Azure Stack Hub integrated system.
The security department at your company wants a list of all the users who can manage the integrated system from the privileged endpoint (PEP).
You need to create the list.
Solution: From a privileged endpoint (PEP) session, you run the
Get-AzureStackStampInformation cmdlet.
Does this meet the goal?
- A. No
- B. Yes
Answer: A
NEW QUESTION 23
You need to identify the PEP information for the integrated system in Chicago. The solution must meet the technical requirements.
What should you use?
- A. the Help + support blade of the administrator portal
- B. Properties on the Region management blade of the administrator portal
- C. the Get-AzsRegistrationTokencmdlet
- D. the HLH configuration file
Answer: B
Explanation:
Explanation/Reference:
https://docs.microsoft.com/en-us/azure-stack/operator/azure-stack-privileged-endpoint?view=azs-2008 Manage Infrastructure Question Set 3
NEW QUESTION 24
You have an Azure Stack Hub integrated system that was recently moved to a new datacenter and powered on.
You need to verify whether the infrastructure components are fully operational.
Which three actions should you perform? Each correct answer presents part of the solution.
NOTE: Each correct selection is worth one point.
- A. Connect to the administrator portal
- B. Run the Test-AzureStack cmdlet
- C. Run the Get-AzureStackStampInformation cmdlet
- D. Run the Start-AzureStack cmdlet
- E. Connect to the privileged endpoint (PEP)
Answer: B,D,E
Explanation:
Reference:
https://docs.microsoft.com/en-us/azure-stack/operator/azure-stack-diagnostic-test?view=azs-2008
NEW QUESTION 25
You have an Azure Stack Hub integrated system that is disconnected from the Internet.
You need to make a new image available in Azure Stack Hub Marketplace in the disconnected environment.
From a computer that has Internet access, you download all the required tools.
Which four actions should you perform in sequence next? To answer, move the appropriate actions from the list of actions to the answer area and arrange them in the correct order.
Answer:
Explanation:
Explanation
Reference:
https://docs.microsoft.com/en-us/azure-stack/operator/azure-stack-download-azure-marketplace-item?view=azs-
NEW QUESTION 26
You need to recommend a business continuity and disaster recovery plan for the dev1 and dev2 regions that meets the technical requirements.
Which two recommendations should you make? Each correct answer presents part of the solution.
NOTE: Each correct selection is worth one point.
- A. Implement the Infrastructure Backup Service
- B. Implement Azure Site Recovery
- C. Use an Azure Marketplace backup tool in each region to protect the virtual machines that run in the other region
- D. Use Infrastructure as Code (IaC) by using Azure Resource Manager templates
Answer: C,D
Explanation:
Topic 1, Northwind Traders
To start the case study
To display the first question in this case study, click the Next button. Use the buttons in the left pane to explore the content of the case study before you answer the questions. Clicking these buttons displays information such as business requirements, existing environment, and problem statements. If the case study has an All Information tab, note that the information displayed is identical to the information displayed on the subsequent tabs. When you are ready to answer a question, click the Question button to return to the question.
Overview
A company named Northwind Traders has a main office and a datacenter. All development occurs at the main office.
Existing Environment
Identity Environment
The network contains an Active Directory forest named northwind.com. The forest and an Azure Active Directory (Azure AD) tenant named northwind.onmicrosoft.com are integrated by using Active Directory Federation Service (AD FS).
All Azure subscriptions use the northwind.onmicrosoft.com Azure AD tenant.
Northwind Traders uses an Enterprise Agreement (EA) subscription.
All operators are global administrators in northwind.onmicrosoft.com.
Azure Stack Hub Environment
Northwind Traders has the following five Azure Stack Hub integrated systems:
One integrated system that connects to an internet-facing network and has the following configurations:
- The region name is int1.
- The operators do not have access to the user subscriptions.
- The integrated system is used for customer and partner applications.
- The partners and customers of NorthWind Traders use guest user accounts to access various user resources.
Two integrated systems that connect to a private network, are accessed only from inside the company, and have the following configurations:
- The integrated systems are dedicated to research and development.
- One integrated system has a region name of priv1, and the other has a region name of priv2.
- The integrated systems are used for various data rendering, AI workloads, inference, and data visualization.
Two integrated systems that are dedicated to application development and have the following configurations:
- The integrated systems are disconnected from the Internet. The workloads in the user subscriptions have Internet access.
- One integrated system has a region name of dev1, and the other has a region name of dev2.
- Both regions are used only by developers at Northwind Traders.
The external domain name of all the integrated systems is northwind.com. All the integrated systems have Azure App Service and the Azure Kubernetes Service (AKS) engine deployed.
The computer of the operator in each region has all the prerequisite software installed for managing Azure Stack Hub.
Current Problems
You identify the following issues in the current environment:
The priv2 region recently experienced a catastrophic failure.
The developers report high chargeback costs for the dev1 region.
The int1 region runs a high number of Windows virtual machines that use pay-as-you-use images.
The Northwind Traders partners and customers report that use of the guest user accounts is too complex.
Users in the priv1 region recently deployed NCas_v4 virtual machines for various AI workload. The users discover that the virtual machines do not use GPUs.
Requirements
Planned Changes
Northwind Traders plans to implement the following changes:
Remove all guest user accounts.
Change the DNS forwarder of the priv1 region.
Change the billing model and registration name of the int1 region.
After the catastrophic failure, restore the priv2 region to its original state.
Provide each partner with its own dedicated user subscription that will use its own dedicated Azure AD tenant.
Technical Requirements
Northwind Traders identifies the following technical requirements:
Minimize hardware and software costs.
Standardize all datacenter workloads on Azure Stack Hub.
In the priv1 region, implement a disaster recovery plan for App Service.
Whenever possible, implement solutions by using the minimum amount of administrative effort.
In the dev2 region, update the AKS Base Ubuntu image to the latest version in Azure Stack Hub Marketplace.
Whenever possible, implement solutions by using built-in tools, features, and services without acquiring additional third-party tools.
For the users' virtual machines and the associated resources in the dev1 and dev2 regions, implement a business continuity and disaster recovery plan that includes an automated failback process.
If changes to the Azure Stack Hub infrastructure cause workload downtime outside of planned maintenance windows, notify all users in the region where the downtime occurred and schedule a maintenance window.
NEW QUESTION 27
You deploy an Azure Stack Hub integrated system that contains an Azure App Service deployment. The integrated system uses an Azure Active Directory (Azure AD) identity provider.
You need to provide users with the ability to deploy App Service web apps directly from their GitHub repositories.
Which three actions should you perform in sequence? To answer, move the appropriate actions from the list of actions to the answer area and arrange them in the correct order.

Answer:
Explanation:
1 - Create a GitHub action
2 - Register a GitHub application
3 - Modify the Source control configuration setting of the App Service resource provider Reference:
https://docs.microsoft.com/en-us/azure-stack/operator/azure-stack-app-service-configure-deployment-sources?view=azs-2008
NEW QUESTION 28
You plan to deploy an Azure Stack Hub integrated system that will use an Azure Active Directory (Azure AD) identity provider.
You obtain certificates for the deployment.
You need to ensure that the certificates meet the prerequisites for Azure Stack Hub.
Which PowerShell cmdlet should you run?
- A. ConvertTo-AzsPFX
- B. Test-Certificate
- C. Invoke-AzsHubDeploymentCertificateValidation
- D. New-AzsHubDeploymentCertificateSigningRequest
- E. Get-PfxCertificate
Answer: C
Explanation:
Explanation/Reference:
https://docs.microsoft.com/en-us/azure-stack/operator/azure-stack-validate-pki-certs?view=azs-2008 Manage Identity and Access Testlet 1 Case study This is a case study. Case studies are not timed separately. You can use as much exam time as you would like to complete each case. However, there may be additional case studies and sections on this exam. You must manage your time to ensure that you are able to complete all questions included on this exam in the time provided.
To answer the questions included in a case study, you will need to reference information that is provided in the case study. Case studies might contain exhibits and other resources that provide more information about the scenario that is described in the case study. Each question is independent of the other questions in this case study.
At the end of this case study, a review screen will appear. This screen allows you to review your answers and to make changes before you move to the next section of the exam. After you begin a new section, you cannot return to this section.
To start the case study
To display the first question in this case study, click the Next button. Use the buttons in the left pane to explore the content of the case study before you answer the questions. Clicking these buttons displays information such as business requirements, existing environment, and problem statements. If the case study has an All Information tab, note that the information displayed is identical to the information displayed on the subsequent tabs. When you are ready to answer a question, click the Question button to return to the question.
Overview
A company named Northwind Traders has a main office and a datacenter. All development occurs at the main office.
Existing Environment
Identity Environment
The network contains an Active Directory forest named northwind.com. The forest and an Azure Active Directory (Azure AD) tenant named northwind.onmicrosoft.com are integrated by using Active Directory Federation Service (AD FS).
All Azure subscriptions use the northwind.onmicrosoft.com Azure AD tenant.
Northwind Traders uses an Enterprise Agreement (EA) subscription.
All operators are global administrators in northwind.onmicrosoft.com.
Azure Stack Hub Environment
Northwind Traders has the following five Azure Stack Hub integrated systems:
* One integrated system that connects to an internet-facing network and has the following configurations:
- The region name is int1.
- The operators do not have access to the user subscriptions.
- The integrated system is used for customer and partner applications.
- The partners and customers of NorthWind Traders use guest user accounts to access various user resources.
* Two integrated systems that connect to a private network, are accessed only from inside the company, and have the following configurations:
- The integrated systems are dedicated to research and development.
- One integrated system has a region name of priv1, and the other has a region name of priv2.
- The integrated systems are used for various data rendering, AI workloads, inference, and data visualization.
* Two integrated systems that are dedicated to application development and have the following configurations:
- The integrated systems are disconnected from the Internet. The workloads in the user subscriptions have Internet access.
- One integrated system has a region name of dev1, and the other has a region name of dev2.
- Both regions are used only by developers at Northwind Traders.
The external domain name of all the integrated systems is northwind.com. All the integrated systems have Azure App Service and the Azure Kubernetes Service (AKS) engine deployed.
The computer of the operator in each region has all the prerequisite software installed for managing Azure Stack Hub.
Current Problems
You identify the following issues in the current environment:
* The priv2 region recently experienced a catastrophic failure.
* The developers report high chargeback costs for the dev1 region.
* The int1 region runs a high number of Windows virtual machines that use pay-as-you-use images.
* The Northwind Traders partners and customers report that use of the guest user accounts is too complex.
* Users in the priv1 region recently deployed NCas_v4 virtual machines for various AI workload. The users discover that the virtual machines do not use GPUs.
Requirements
Planned Changes
Northwind Traders plans to implement the following changes:
* Remove all guest user accounts.
* Change the DNS forwarder of the priv1 region.
* Change the billing model and registration name of the int1 region.
* After the catastrophic failure, restore the priv2 region to its original state.
* Provide each partner with its own dedicated user subscription that will use its own dedicated Azure AD tenant.
Technical Requirements
Northwind Traders identifies the following technical requirements:
* Minimize hardware and software costs.
* Standardize all datacenter workloads on Azure Stack Hub.
* In the priv1 region, implement a disaster recovery plan for App Service.
* Whenever possible, implement solutions by using the minimum amount of administrative effort.
* In the dev2 region, update the AKS Base Ubuntu image to the latest version in Azure Stack Hub Marketplace.
* Whenever possible, implement solutions by using built-in tools, features, and services without acquiring additional third-party tools.
* For the users' virtual machines and the associated resources in the dev1 and dev2 regions, implement a business continuity and disaster recovery plan that includes an automated failback process.
* If changes to the Azure Stack Hub infrastructure cause workload downtime outside of planned maintenance windows, notify all users in the region where the downtime occurred and schedule a maintenance window.
NEW QUESTION 29
You have an Azure Stack Hub integrated system that connects to the Internet. The integrated system uses an Azure Active Directory (Azure AD) identity provider.
You need to update the Azure App Service resource provider.
Which two actions should you perform? Each correct answer presents part of the solution.
NOTE: Each correct selection is worth one point.
- A. Download the App Service installer to a computer that can connect to the Azure Stack Hub endpoints
- B. From the administrator portal, select the update, download the update, and then install the update
- C. From the Updates blade of the administrator portal, select the infrastructure section
- D. From the Updates blade of the administrator portal, select the Resource providers section
- E. Run appservice.exe as a local administrator
Answer: A,E
Explanation:
Reference:
https://docs.microsoft.com/en-us/azure-stack/operator/azure-stack-app-service-update?view=azs-2008&pivots=state-connected
NEW QUESTION 30
......
Online Questions - Outstanding Practice To your AZ-600 Exam: https://www.realvce.com/AZ-600_free-dumps.html
Practice To AZ-600 - RealVCE Remarkable Practice On your Configuring and Operating a Hybrid Cloud with Microsoft Azure Stack Hub Exam: https://drive.google.com/open?id=1mlVLepPGskhiJwUx65bYbAgst0H-pqaY