Exams > Microsoft > AZ-104: Microsoft Azure Administrator
AZ-104: Microsoft Azure Administrator
Page 4 out of 43 pages Questions 31-40 out of 424 questions
Question#31

You have an Azure subscription named Subscription1 that contains a virtual network named VNet1. VNet1 is in a resource group named RG1.

Subscription1 has a user named User1. User1 has the following roles:

• Reader
• Security Admin
• Security Reader

You need to ensure that User1 can assign the Reader role for VNet1 to other users.

What should you do?

  • A. Assign User1 the Network Contributor role for VNet1.
  • B. Remove User1 from the Security Reader role for Subscription1. Assign User1 the Contributor role for RG1.
  • C. Assign User1 the Owner role for VNet1.
  • D. Assign User1 the Network Contributor role for RG1.
Discover Answer Hide Answer

Answer: C

Question#32

HOTSPOT
-

You have an Azure subscription that contains the users shown in the following table.



The groups are configured as shown in the following table.



You have a resource group named RG1 as shown in the following exhibit.



For each of the following statements, select Yes if the statement is true. Otherwise, select No.

NOTE: Each correct selection is worth one point.

Discover Answer Hide Answer

Answer:

Question#33

You have an Azure subscription named Subscription1 that contains a virtual network named VNet1. VNet1 is in a resource group named RG1.

Subscription1 has a user named User1. User1 has the following roles:

• Reader
• Security Admin
• Security Reader

You need to ensure that User1 can assign the Reader role for VNet1 to other users.

What should you do?

  • A. Remove User1 from the Security Reader role for Subscript on 1. Assign User1 the Contributor role for RG1.
  • B. Assign User1 the Owner role for VNet1.
  • C. Remove User1 from the Security Reader and Reader roles for Subscription1. Assign User1 the Contributor role for Subscription 1.
  • D. Assign User1 the Contributor role for VNet1.
Discover Answer Hide Answer

Answer: B

Question#34

Your on-premises network contains a VPN gateway.

You have an Azure subscription that contains the resources shown in the following table.



You need to ensure that all the traffic from VM1 to storage1 travels across the Microsoft backbone network.

What should you configure?

  • A. Azure Application Gateway
  • B. private endpoints
  • C. a network security group (NSG)
  • D. Azure Virtual WAN
Discover Answer Hide Answer

Answer: B

Question#35

HOTSPOT
-

You have an Azure subscription that contains a user named User1 and the resources shown in the following table.



NSG1 is associated to networkinterface1.

User1 has role assignments for NSG1 as shown in the following table.



For each of the following statements, select Yes if the statement is true. Otherwise, select No.

NOTE: Each correct selection is worth one point.

Discover Answer Hide Answer

Answer:

Question#36

You have an Azure subscription named Subscription1 that contains a virtual network named VNet1. VNet1 is in a resource group named RG1.

Subscription1 has a user named User1. User1 has the following roles:

• Reader
• Security Admin
• Security Reader

You need to ensure that User1 can assign the Reader role for VNet1 to other users.

What should you do?

  • A. Remove User1 from the Security Reader role for Subscription1. Assign User1 the Contributor role for RG1.
  • B. Assign User1 the Access Administrator role for VNet1.
  • C. Remove User1 from the Security Reader and Reader roles for Subscription1. Assign User1 the Contributor role for Subscription1.
  • D. Assign User1 the Network Contributor role for RG1.
Discover Answer Hide Answer

Answer: B

Question#37

HOTSPOT
-

You have three Azure subscriptions named Sub1, Sub2, and Sub3 that are linked to an Azure AD tenant.

The tenant contains a user named User1, a security group named Group1, and a management group named MG1. User is a member of Group1.

Sub1 and Sub2 are members of MG1. Sub1 contains a resource group named RG1. RG1 contains five Azure functions.

You create the following role assignments for MG1:

• Group1: Reader
• User1: User Access Administrator

You assign User the Virtual Machine Contributor role for Sub1 and Sub2.

Discover Answer Hide Answer

Answer:

Question#38

You have an Azure subscription that contains the resources shown in the following table.



You need to assign User1 the Storage File Data SMB Share Contributor role for share1.

What should you do first?

  • A. Enable identity-based data access for the file shares in storage1.
  • B. Modify the security profile for the file shares in storage1.
  • C. Select Default to Azure Active Directory authorization in the Azure portal for storage1.
  • D. Configure Access control (IAM) for share1.
Discover Answer Hide Answer

Answer: D

Question#39

You have an Azure subscription named Subscription1 that contains a virtual network named VNet1. VNet1 is in a resource group named RG1.

Subscription1 has a user named User1. User1 has the following roles:

• Reader
• Security Admin
• Security Reader

You need to ensure that User1 can assign the Reader role for VNet1 to other users.

What should you do?

  • A. Remove User1 from the Security Reader role for Subscription1. Assign User1 the Contributor role for RG1.
  • B. Assign User1 the User Access Administrator role for VNet1.
  • C. Remove User1 from the Security Reader and Reader roles for Subscription1.
  • D. Assign User1 the Contributor role for VNet1.
Discover Answer Hide Answer

Answer: B

Question#40

HOTSPOT
-

You have an Azure AD tenant named adatum.com that contains the groups shown in the following table.



Adatum.com contains the users shown in the following table.



You assign an Azure Active Directory Premium P2 license to Group1 as shown in the following exhibit.



Group2 is NOT directly assigned a license.

For each of the following statements, select Yes if the statement is true. Otherwise, select No.

NOTE: Each correct selection is worth one point.

Discover Answer Hide Answer

Answer:

chevron rightPrevious Nextchevron right