AZ-801 Exam Question 56

You have a Site-to-Site VPN between an on-premises network and an Azure VPN gateway. BGP is disabled for the Site-to-Site VPN.
You have an Azure virtual network named Vnet1 that contains a subnet named Subnet1. Subnet1 contains a virtual machine named Server1.
You can connect to Server1 from the on-premises network.
You extend the address space of Vnet1. You add a subnet named Subnet2 to Vnet1. Subnet2 uses the extended address space. You deploy an Azure virtual machine named Server2 to Subnet2.
You cannot connect to Server2 from the on-premises network. Server1 can connect to Server2.
You need to ensure that you can connect to Subnet2 from the on-premises network.
What should you do?
  • AZ-801 Exam Question 57

    You have an on-premises Active Directory Domain Services (AD DS) domain that syncs with an Azure Active Directory (Azure AD) tenant.
    The AD DS domain contains a domain controller named DC1. DC1 does NOT have internet access.
    You need to configure password security for on-premises users. The solution must meet the following requirements:
    Prevent the users from using known weak passwords.
    Prevent the users from using the company name in passwords.
    What should you do? To answer, drag the appropriate configurations to the correct targets. Each configuration may be used once, more than once, or not at all. You may need to drag the split bar between panes or scroll to view content.
    NOTE: Each correct selection is worth one point.

    AZ-801 Exam Question 58

    You have a server that runs Windows Server.
    You plan to back up the server to an Azure Recovery Services vault once per week starting on the next Saturday.
    You need to schedule the weekly backup and perform the initial backup as soon as possible.
    In which order should you perform the actions? To answer, move all actions from the list of actions to the answer are and arrange them in the correct order.

    AZ-801 Exam Question 59

    Your network contains an Active Directory Domain Services (AD DS) domain named contoso.com. The functional level of the forest and the domain is Windows Server 2012 R2. The domain contains the domain controllers shown in the following table.
    You need to raise the forest functional level to Windows Server 2016. The solution must meet the following requirements:
    Ensure that there are three domain controllers after you raises the level.
    Minimize how long the FSMO roles are unavailable.
    Which three actions should you perform in sequence? To answer, move the appropriate actions from the list of actions to the answer area and arrange them in the correct order.

    AZ-801 Exam Question 60

    Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution.
    After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen.
    You have a server named Server1 that runs Windows Server.
    You need to ensure that only specific applications can modify the data in protected folders on Server1.
    Solution: From App & browser control, you configure the Exploit protection settings.
    Does this meet the goal?