AZ-801 Exam Question 21
Your network contains an Active Directory Domain Services (AD DS) domain. The domain contains servers that run Windows Server as shown in the following table.

Server1 has the connection security rules shown in the following table.

Server2 has the connection security rules shown in the following table.
.


Server1 has the connection security rules shown in the following table.

Server2 has the connection security rules shown in the following table.
.

AZ-801 Exam Question 22
You have two physical servers named AppSrv1 and AppSrv2 and an unconfigured server named Server1. All the servers run Windows Server. Only Server1 can access the internet.
You plan to use Azure Site Recovery to replicate AppSrv1 and AppSrv2 to Azure.
You need to deploy the required components to AppSrv1, AppSrv2, and Server1.
Which components should you deploy? To answer, drag the appropriate components to the correct servers.
Each component may be used once, more than once, or not at all. You may need to drag the split bar between panes or scroll to view content.
NOTE: Each correct selection is worth one point.

You plan to use Azure Site Recovery to replicate AppSrv1 and AppSrv2 to Azure.
You need to deploy the required components to AppSrv1, AppSrv2, and Server1.
Which components should you deploy? To answer, drag the appropriate components to the correct servers.
Each component may be used once, more than once, or not at all. You may need to drag the split bar between panes or scroll to view content.
NOTE: Each correct selection is worth one point.

AZ-801 Exam Question 23
Your network contains an Active Directory Domain Services (AD DS) domain. The domain contains three servers named Server1, Server2, and Server3 that run Windows Server. All the servers are on the same network and have network connectivity.
On Server1, Windows Defender Firewall has a connection security rule that has the following settings:
* Rule Type: Server-to-server
* Endpoint 1: Any IP address
* Endpoint 2: Any IP address
* Requirements: Require authentication for inbound connections and request authentication for outbound connections
* Authentication Method: Computer (Kerberos V5)
* Profile: Domain, Private, Public
* Name: Rule1
For each of the following statements, select Yes if the statement is true. Otherwise, select No. NOTE: Each correct selection is worth one point.

On Server1, Windows Defender Firewall has a connection security rule that has the following settings:
* Rule Type: Server-to-server
* Endpoint 1: Any IP address
* Endpoint 2: Any IP address
* Requirements: Require authentication for inbound connections and request authentication for outbound connections
* Authentication Method: Computer (Kerberos V5)
* Profile: Domain, Private, Public
* Name: Rule1
For each of the following statements, select Yes if the statement is true. Otherwise, select No. NOTE: Each correct selection is worth one point.

AZ-801 Exam Question 24
You have 50 on-premises servers that run Windows Server.
You have an Azure subscription that contains a Microsoft Sentinel workspace.
You plan to monitor the servers by using Microsoft Sentinel.
You need to perform the following actions in Microsoft Sentinel;
* Add the Windows Forwarded Events data connector.
* Create a playbook that has an incident trigger.
Which two settings should you use? To answer, select the appropriate settings in the answer area.
NOTE: Each correct selection is worth one point.

You have an Azure subscription that contains a Microsoft Sentinel workspace.
You plan to monitor the servers by using Microsoft Sentinel.
You need to perform the following actions in Microsoft Sentinel;
* Add the Windows Forwarded Events data connector.
* Create a playbook that has an incident trigger.
Which two settings should you use? To answer, select the appropriate settings in the answer area.
NOTE: Each correct selection is worth one point.

AZ-801 Exam Question 25
You have two Azure virtual networks named Vnet1 and Vnet2.
You have a Windows 10 device named Client1 that connects to Vnet1 by using a Point-to-Site (P2S) IKEv2 VPN.
You implement virtual network peering between Vnet1 and Vnet2. Vnet1 allows gateway transit Vnet2 can use the remote gateway.
You discover that Client1 cannot communicate with Vnet2.
You need to ensure that Client1 can communicate with Vnet2.
Solution: You enable BGP on the gateway of Vnet1.
Does this meet the goal?
You have a Windows 10 device named Client1 that connects to Vnet1 by using a Point-to-Site (P2S) IKEv2 VPN.
You implement virtual network peering between Vnet1 and Vnet2. Vnet1 allows gateway transit Vnet2 can use the remote gateway.
You discover that Client1 cannot communicate with Vnet2.
You need to ensure that Client1 can communicate with Vnet2.
Solution: You enable BGP on the gateway of Vnet1.
Does this meet the goal?







