June 6, 2017

Drag and Drop Question
You plan to deploy a cloud service named contosoapp that has a web role named contosoweb and a worker role named contosoimagepurge.
You need to ensure the service meets the following requirements:

– Contosoweb can be accessed over the Internet by using http.
– Contosoimagepurge can only be accessed through tcp port 5001 from contosoweb.
– Contosoimagepurge cannot be accessed directly over the Internet.

Which configuration should you use? To answer, drag the appropriate configuration setting to the correct location in the service configuration file. Each configuration setting may be used once, more than once, or not at all. You may need to drag the split bar between panes or scroll to view content.




Your company network includes two branch offices.
Users at the company access internal virtual machines (VMs).
You want to ensure secure communications between the branch offices and the internal VMs and network.
You need to create a site-to-site VPN connection.
What are two possible ways to achieve this goal? Each correct answer presents a complete solution.

A.    a private IPv4 IP address and a compatible VPN device
B.    a private IPv4 IP address and a RRAS running on Windows Server 2012
C.    a public-facing IPv4 IP address and a compatible VPN device
D.    a public-facing IPv4 IP address and a RRAS running on Windows Server 2012

Answer: CD
C (not A): VPN Device IP Address – This is public facing IPv4 address of your on-premises VPN device that you’ll use to connect to Azure. The VPN device cannot be located behind a NAT.
D (Not B): At least one or preferably two publicly visible IP addresses: One of the IP addresses is used on the Windows Server 2012 machine that acts as the VPN device by using RRAS.
The other optional IP address is to be used as the Default gateway for out-bound traffic from the on-premises network. If the second IP address is not available, it is possible to configure network address translation (NAT) on the RRAS machine itself, to be discussed in the following sections. It is important to note that the IP addresses must be public.
They cannot be behind NAT and/or a firewall.

You manage a large datacenter that has limited physical space.
You plan to extend your datacenter to Azure.
You need to create a connection that supports a multiprotocol label switching (MPLS) virtual private network.
Which connection type should you use?

A.    Site-to-site
B.    VNet-VNet
C.    ExpressRoute.
D.    Site-to-peer

Answer: C
ExpressRoute provides even richer capabilities by allowing a dedicated MPLS connection to Azure.

You manage a cloud service named fabrikam Reports that is deployed in an Azure data center.
You deploy a virtual machine (VM) named fabrikamSQL into a virtual network named fabrikamVNet.
FabrikamReports must communicate with fabrikamSQL.
You need to add fabrikam Reports to fabrikamVNet.
Which file should you modify?

A.    the network configuration file for fabrikamVNet
B.    the service definition file (.csdef) for fabnkamReports
C.    the service definition file (.csdef) for fabrikamSQL
D.    the service configuration file (.cscfg) for fabrikamReports
E.    the service configuration file (.cscfg) fabrikamSQL

Answer: B
Azure Service Definition Schema (.csdef File) The service definition file defines the service model for an application. The file contains the definitions for the roles that are available to a cloud service, specifies the service endpoints, and establishes configuration settings for the service.
not D, not E: The service configuration file (.cscfg) specifies the number of role instances to deploy for each role in the service, the values of any configuration settings, and the thumbprints for any certificates associated with a role.

You manage an application deployed to virtual machines (VMs) on an Azure virtual network named corpVnet1.
You plan to hire several remote employees who will need access to the application on corpVnet1.
You need to ensure that new employees can access corpVnet1.
You want to achieve this goal by using the most cost effective solution.
Which two actions should you perform? Each correct answer presents part of the solution.

A.    Create a VPN subnet.
B.    Enable point-to-point connectivity for corpVnet1.
C.    Enable point-to-site connectivity for corpVnet1.
D.    Create a gateway subnet.
E.    Enable site-to-site connectivity for corpVnet1.
F.    Convert corpVnet1 to a regional virtual network.

Answer: CD
Add gateway subnet – The gateway subnet is required for a point-to-site VPN. Click to add the gateway subnet.
The gateway subnet is used only for the virtual network gateway.

Drag and Drop Question
You have an Azure Virtual Network named fabVNet with three subnets named Subnet-1, Subnet-2 and Subnet-3. You have a virtual machine (VM) named fabVM running in the fabProd service.
You need to modify fabVM to be deployed into Subnet-3. You want to achieve this goal by using the least amount of time and while causing the least amount of disruption to the existing deployment.
What should you do? To answer, drag the appropriate Power Shell cmdlet to the correct location in the Power Shell command. Each cmdlet may be used once, more than once, or not at all. You may need to drag the split bar between panes or scroll to view content.




Hotspot Question
You manage an Azure Web Site named contosoweb.
Some users report that they receive the following error when they access contosoweb:
“http Status 500.0 – Internal Server Error.”
You need to view detailed diagnostic information in XML format.
Which option should you enable? To answer, select the appropriate option in the answer area.



Request-based tracing is available both in stand-alone IIS Servers and on Windows Azure Web Sites (WAWS) and provides a way to determine what exactly is happening with your requests and why, provided that you can reproduce the problem that you are experiencing. Problems like poor performance on some requests, or authentication-related failures on other requests, or the server 500 error from ASP or ASP.NET can often be difficult to troubleshoot–unless you have captured the trace of the problem when it occurs.

Drag and Drop Question
You manage an Azure Web Site named contososite.
You download the subscription publishing credentials named Contoso-Enterprise.publishsettings.
You need to use Azure Power Shell to achieve the following:

– Connect to the Contoso-Enterprise subscription.
– Create a new App Setting named CustomSetting with a value of True.
– Restart the website.

Which commands should you use? To answer, drag the appropriate Azure PowerShell command to the correct location in the solution. Each command may be used once, more than once, or not at all. You may need to drag the split bar between panes or scroll to view content.




Your company has a subscription to Azure.
You plan to deploy 10 websites.
You have the following requirements:

– Each website has at least 15 GB of storage.
– All websites can use azurewebsite.net.

You need to deploy the 10 websites while minimizing costs.
Which web tier plan should you recommend?

A.    Free
B.    Small Business
C.    Standard
D.    Basic

Answer: C
Standard offers 50 GB of storage space, while Basic only gives 10 GB:

Drag and Drop Question
You manage a solution deployed in two Azure subscriptions for testing and production. Both subscriptions have virtual networks named fabVNet.
You plan to add two new virtual machines (VMs) in a new subnet
You have the following requirements:

– Deploy the new VMs to the virtual network in the testing subscription.
– Minimize any errors in defining the network changes.
– Minimize the work that will be required  when the change is made to the production virtual network.

Which three steps should you perform in sequence? To answer, move the appropriate actions from the list of actions to the answer area and arrange them in the correct order.




You administer an Azure Web Site named contoso.
The development team has implemented changes to the website that need to be validated.
You need to validate and deploy the changes with minimum downtime to users.
What should you do first?

A.    Create a new Linked Resource.
B.    Configure Remote Debugging on contoso.
C.    Create a new website named contosoStaging.
D.    Create a deployment slot named contosoStaging.
E.    Back up the contoso website to a deployment slot.

Answer: D
When you deploy your application to Azure Websites, you can deploy to a separate deployment slot instead of the default production slot, which are actually live sites with their own hostnames.
Furthermore, you can swap the sites and site configurations between two deployment slots, including the production slot. Deploying your application to a deployment slot has the following benefits:
* You can validate website changes in a staging deployment slot before swapping it with the production slot.
* After a swap, the slot with previously staged site now has the previous production site. If the changes swapped into the production slot are not as you expected, you can perform the same swap immediately to get your “last known good site” back.
* Deploying a site to a slot first and swapping it into production ensures that all instances of the slot are warmed up before being swapped into production. This eliminates downtime when you deploy your site. The traffic redirection is seamless, and no requests are dropped as a result of swap operations.

You manage an Azure Web Site that is running in Shared mode.
You discover that the website is experiencing increased average response time during periods of heavy user activity.
You need to update the website configuration to address the performance issues as they occur.
What should you do?

A.    Set the website to Standard mode and configure automatic scaling based on CPU utilization.
B.    Configure automatic seating during specific dates.
C.    Modify the website instance size.
D.    Configure automatic scaling based on memory utilization.
E.    Set the website to Basic mode and configure automatic scaling based on CPU utilization.

Answer: A
Scaling to Standard Plan Mode
Selecting Standard expands the Capacity section to reveal the Instance Size and Instance Count options, which are also available in Basic mode. The Edit Scale Settings for Schedule and Scale by Metric options are available only in Standard mode.


* For increased performance and throughput for your websites on Microsoft Azure, you can use the Azure Management Portal to scale your Web Hosting Plan mode from Free to Shared, Basic, or Standard.

* There are 2 options for scaling:
Based on a Schedule
Based on CPU usage

Drag and Drop Question
You manage an Azure Web Site in Standard mode at the following address:
Your company has a new domain for the site that needs to be accessible by Secure Socket Layer (SSL) encryption.
You need to be able to add a custom domain to the Azure Web Site and assign an SSL certificate.
Which three steps should you perform next in sequence? To answer, move the appropriate actions from the list of actions to the answer area and arrange them in the correct order. More than one order of answer choices may be correct You will receive credit for any of the correct




You manage an Azure Web Site named contosoweb. Logging is enabled for contosoweb.
You need to view only errors from your log files in a continuous stream as they occur.
Which Windows Power Shell command should you execute?

A.    Get-AzureWebSiteLog -Name contosoweb -OutBuffer Error
B.    Save-AzureWebSiteLog -Name contosoweb -Output Errors
C.    Get-AzureWebSlteLog -Name contosoweb -Tail -Message Error
D.    Get-Azure WebSiteLog -Name contosoweb -Message Error

Answer: C
This example starts log streaming and show error logs only.

Windows PowerShell
C:\PS>Get-AzureWebsiteLog -Tail -Message Error


You administer a solution deployed to a virtual machine (VM) in Azure.
The VM hosts a web service that is used by several applications.
You are located in the US West region and have a worldwide user base.
Developers in Asia report that they experience significant delays when they execute the services.
You need to verify application performance from different locations.
Which type of monitoring should you configure?

A.    Disk Read
B.    Endpoint
C.    Network Out
D.    CPU
E.    Average Response Time

Answer: E


Not B: Health Endpoint Monitoring Pattern is used for checking the health of the program:
Implement functional checks within an application that external tools can access through exposed endpoints at regular intervals. This pattern can help to verify that applications and services are performing correctly.

