[Latest Version] Easily Pass AZ-102 Exam With CertBus Updated Microsoft AZ-102 Preparation Materials

CertBus 2020 Newest Microsoft AZ-102 Microsoft Azure Exam VCE and PDF Dumps for Free Download!

AZ-102 Microsoft Azure Exam PDF and VCE Dumps : 256QAs Instant Download: https://www.certbus.com/az-102.html [100% AZ-102 Exam Pass Guaranteed or Money Refund!!]
☆ Free view online pdf on CertBus free test AZ-102 PDF: https://www.certbus.com/online-pdf/az-102.pdf

Following AZ-102 256QAs are all new published by Microsoft Official Exam Center

100% candidates have passed the Microsoft Azure Hotest AZ-102 exam questions exam by the help of CertBus pass guaranteed Microsoft Azure Apr 13,2020 Hotest AZ-102 free download preparation materials. The CertBus Microsoft PDF and VCEs are the latest and cover every knowledge points of Microsoft Azure Hotest AZ-102 pdf Microsoft Azure Administrator Certification Transition certifications. You can try the Q and As for an undeniable success in Newest AZ-102 free download exam.

CertBus free certification AZ-102 exam | CertBus practice AZ-102 exams | CertBus test AZ-102 questions. CertBus AZ-102 certification exam portal. CertBus – help candidates on all AZ-102 certification exams preparation. pass AZ-102 certification exams, get AZ-102 certifications easily. CertBus – latest update source for all AZ-102 certification exams.

We CertBus has our own expert team. They selected and published the latest AZ-102 preparation materials from Microsoft Official Exam-Center: https://www.certbus.com/az-102.html

Question 1:

Note: This question is part of a series questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while

others might not have a correct solution.

After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen.

You manage a virtual network named Vnet1 that is hosted in the West US Azure region.

VNet hosts two virtual machines named VM1 and VM2 run Windows Server.

You need to inspect all the network traffic from VM1 to VM2 for a period of three hours.

Solution: From Azure Network Watcher, you create a connection monitor.

Does this meet the goal?



Correct Answer: A

Azure Network Watcher provides tools to monitor, diagnose, view metrics, and enable or disable logs for resources in an Azure virtual network.

Capture packets to and from a VM

Advanced filtering options and fine-tuned controls, such as the ability to set time and size limitations, provide versatility. The capture can be stored in Azure Storage, on the VM\’s disk, or both. You can then analyze the capture file using

several standard network capture analysis tools.

Network Watcher variable packet capture allows you to create packet capture sessions to track traffic to and from a virtual machine. Packet capture helps to diagnose network anomalies both reactively and proactivity.



Question 2:

You are the global administrator for an Azure Active Directory (Azure AD) tenet named adatum.com.

You need to enable two-step verification for Azure users.

What should you do?

A. Create a sign-in risk policy in Azure AD Identity Protection

B. Enable Azure AD Privileged Identity Management.

C. Create and configure the Identity Hub.

D. Configure a security policy in Azure Security Center.

Correct Answer: A

With Azure Active Directory Identity Protection, you can:

require users to register for multi-factor authentication handle risky sign-ins and compromised users References: https://docs.microsoft.com/en-us/azure/active-directory/identity-protection/flows

Question 3:

You have an Azure subscription named Subscription1 and two Azure Active Directory (Azure AD) tenants named Tenant1 and Tenant2.

Subscnption1 is associated to Tenant1 Multi-factor authentication (MFA) is enabled for all the users in Tenant1.

You need to enable MFA for the users in Tenant2. The solution must maintain MFA forTenant1.

What should you do first?

A. Transfer the administration of Subscription1 to a global administrator of Tenants.

B. Configure the MFA Server setting in Tenant1.

C. Create and link a subscription to Tenant2.

D. Change the directory for Subscription1.

Correct Answer: C

Question 4:

You create an Azure subscription that is associated to a basic Azure Active Directory (Azure AD) tenant. You need to receive an email notification when any user activates an administrative role. What should you do?

A. Purchase Azure AD Premium 92 and configure Azure AD Privileged Identity Management,

B. Purchase Enterprise Mobility Security E3 and configure conditional access policies.

C. Purchase Enterprise Mobility Security E5 and create a custom alert rule in Azure Security Center.

D. Purchase Azure AD Premium PI and enable Azure AD Identity Protection.

Correct Answer: A

When key events occur in Azure AD Privileged Identity Management (PIM), email notifications are sent. For example, PIM sends emails for the following events: When a privileged role activation is pending approval When a privileged role activation request is completed When a privileged role is activated When a privileged role is assigned When Azure AD PIM is enabled



Question 5:

You have an Azure Active Directory (Azure AD) tenant.

You have an existing Azure AD conditional access policy named Policy1. Policy1 enforces the use of Azure AD-joined devices when members of the Global Administrators group authenticate to Azure AD from untrusted locations.

You need to ensure that members of the Global Administrators group will also be forced to use multi-factor authentication when authenticating from untrusted locations.

What should you do?

A. From the multi-factor authentication page, modify the service settings.

B. From the multi-factor authentication page, modify the user settings.

C. From the Azure portal, modify grant control of Policy1.

D. From the Azure portal, modify session control of Policy1.

Correct Answer: C

References: https://blog.lumen21.com/2017/12/15/conditional-access-in-azure-active-directory/

Latest AZ-102 DumpsAZ-102 PDF DumpsAZ-102 Braindumps

Question 6:

You are the global administrator for an Azure Active Directory (Azure AD) tenant named adatum.com. From the Azure Active Directory blade, you assign the Conditional Access Administrator role to a user You need to ensure that Admin1 has just-in-time access as a conditional access administrator.

What should you do next?

A. Enable Azure AD Multi-Factor Authentication (MFA).

B. Set Admin1 as Eligible for the Privileged Role Administrator role.

C. Admin1 as Eligible for the Conditional Access Administrator role.

D. Enable Azure AD Identity Protection.

Correct Answer: A

Require MFA for admins is a baseline policy that requires MFA for the following directory roles: Global administrator SharePoint administrator Exchange administrator Conditional access administrator Security administrator



Question 7:

Another administrator reports that she is unable to configure a web app named corplod7509086n3 to prevent all connections from an IP address of You need to modify corplod7509086n3 to successfully prevent the connections from the IP address. The solution must minimize Azure-related costs.

What should you do from the Azure portal?

A. Check the answer in explanantion.

Correct Answer: A

See explanation below.

Step 1:

Find and select application corplod7509086n3:


In the Azure portal, on the left navigation panel, click Azure Active Directory.


In the Azure Active Directory blade, click Enterprise applications.

Step 2:

To add an IP restriction rule to your app, use the menu to open Network>IP Restrictions and click on Configure IP Restrictions

Step 3:

Click Add rule

You can click on [ ] Add to add a new IP restriction rule. Once you add a rule, it will become effective immediately.

Step 4:

Add name, IP address of, select Deny, and click Add Rule

References: https://docs.microsoft.com/en-us/azure/app-service/app-service-ip-restrictions

Question 8:

You plan to grant the member of a new Azure AD group named crop 75099086 the right to delegate administrative access to any resource in the resource group named 7509086.

You need to create the Azure AD group and then to assign the correct to e to the group. The solution must use the principle of least privilege and minimize the number of role assignments.

What should you do from the Azure portal?

A. Check the answer in explanantion.

Correct Answer: A

See explanation below.

Step 1:

Click Resource groups from the menu of services to access the Resource Groups blade

Step 2:

Click Add ( ) to create a new resource group. The Create Resource Group blade appears. Enter corp7509086 as the Resource group name, and click the Create button.

Step 3:

Select Create.

Your group is created and ready for you to add members.

Now we need to assign a role to this resource group scope.

Step 4:

Choose the newly created Resource group, and Access control (IAM) to see the current list of role assignments at the resource group scope. Click Add to open the Add permissions pane.

Step 5:

In the Role drop-down list, select a role Delegate administration, and select Assign access to: resource group corp7509086


https://docs.microsoft.com/en-us/azure/role-based-access-control/role-assignments-portal https://www.juniper.net/documentation/en_US/vsrx/topics/task/multi-task/security-vsrx-azure-marketplace-resource-group.html

Question 9:

You need to create a function app named corp7509086nl that supports sticky sessions. The solution must minimize the Azure-related costs of the App Service plan. What should you do from the Azure portal?

A. Check the answer in explanation.

Correct Answer: A

See explanation below.

Step 1:

Select the New button found on the upper left-hand corner of the Azure portal, then select Compute > Function App.

Step 2:

Use the function app settings as listed below.

App name: corp7509086n1

Hosting plan: Azure App Service plan

(need this for the sticky sessions)

Pricing tier of the the App Service plan: Shared compute: Free

Step 3:

Select Create to provision and deploy the function app.



Question 10:

You plan to connect a virtual network named VNET1017 to your on-premises network by using both an Azure ExpressRoute and a site-to-site VPN connection. You need to prepare the Azure environment for the planned deployment. The solution must maximize the IP address space available to Azure virtual machines.

What should you do from the Azure portal before you create the ExpressRoute are the VPN gateway?

A. Check the answer in explanation.

Correct Answer: A

See explanation below.

We need to create a Gateway subnet

Step 1:

Go to More Services > Virtual Networks

Step 2:

Then click on the VNET1017, and click on subnets. Then click on gateway subnet.

Step 3:

In the next window define the subnet for the gateway and click OK It is recommended to use /28 or /27 for gateway subnet.

As we want to maximize the IP address space we should use /27.


https://blogs.technet.microsoft.com/canitpro/2017/06/28/step-by-step-configuring-a-site-to-site-vpn-gateway-between-azure-and-on-premise/ Topic 8, Mix Questions Set E (Security Identities)

CertBus exam braindumps are pass guaranteed. We guarantee your pass for the AZ-102 exam successfully with our Microsoft materials. CertBus Microsoft Azure Administrator Certification Transition exam PDF and VCE are the latest and most accurate. We have the best Microsoft in our team to make sure CertBus Microsoft Azure Administrator Certification Transition exam questions and answers are the most valid. CertBus exam Microsoft Azure Administrator Certification Transition exam dumps will help you to be the Microsoft specialist, clear your AZ-102 exam and get the final success.

AZ-102 Microsoft exam dumps (100% Pass Guaranteed) from CertBus: https://www.certbus.com/az-102.html [100% Exam Pass Guaranteed]

Why select/choose CertBus?

Millions of interested professionals can touch the destination of success in exams by certbus.com. products which would be available, affordable, updated and of really best quality to overcome the difficulties of any course outlines. Questions and Answers material is updated in highly outclass manner on regular basis and material is released periodically and is available in testing centers with whom we are maintaining our relationship to get latest material.

Brand Certbus Testking Pass4sure Actualtests Others
Price $45.99 $124.99 $125.99 $189 $69.99-99.99
Up-to-Date Dumps
Free 365 Days Update
Real Questions
Printable PDF
Test Engine
One Time Purchase
Instant Download
Unlimited Install
100% Pass Guarantee
100% Money Back
Secure Payment
Privacy Protection