Welcome to TestSimulate

Pass Your Next Certification Exam Fast!

Everything you need to prepare, learn & pass your certification exam easily.

365 days free updates. First attempt guaranteed success.

Free 365 Days Exam Updates AZ-800 dumps with test Engine Practice [Q16-Q40]

Share

Free 365 Days Exam Updates AZ-800 dumps with test Engine Practice

Updated Verified AZ-800 dumps Q&As - 100% Pass Guaranteed

NEW QUESTION 16
You have an Azure Active Directory Domain Services (Azure AD DS) domain.
You create a new user named Admin1.
You need Admin1 to deploy custom Group Policy settings to all the computers in the domain. The solution must use the principle of least privilege.
What should you include in the solution? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point

Answer:

Explanation:

Reference:
https://docs.microsoft.com/en-us/azure/active-directory-domain-services/manage-group-policy

 

NEW QUESTION 17
You have a Windows Server container host named Server1 that has a single disk.
On Server1, you plan to start the containers shown in the following table.

Which isolation mode can you use for each container? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.

Answer:

Explanation:

Reference:
https://docs.microsoft.com/en-us/virtualization/windowscontainers/manage-containers/hyperv-container

 

NEW QUESTION 18
You have a server named Server1.
You plan to use Storage Spaces to expand the storage available to Server1. You attach eight physical disks to Server1. Four disks are HDDs and four are SSDs.
You need to create a volume on Server1 that will use the storage on all the new disks. The solution must provide the fastest read performance for frequently used files.
Which three actions should you perform in sequence? To answer, move the appropriate actions from the list of actions to the answer area and arrange them in the correct order.

Answer:

Explanation:

1 - Create a storage pool.
2 - Create a virtual disk.
3 - Create a simple volume
Reference:
https://redmondmag.com/articles/2018/07/31/storage-spaces-windows-server-2016-1.aspx
https://redmondmag.com/articles/2018/08/02/storage-spaces-windows-server-2016-2.aspx

 

NEW QUESTION 19
You have an on premises Active Directory Domain Services (AD DS) domain that syncs with an Azure Active Directory (Azure AD) tenant. The domain contains two servers named Server1 and Server2.
A user named Admin1 is a member of the local Administrators group on Server1 and Server2.
You plan to manage Server1 and Server2 by using Azure Arc. Azure Arc objects will be added to a resource group named RG1.
You need to ensure that Admin1 can configure Server1 and Server2 to be managed by using Azure Arc.
What should you do first?

  • A. Hybrid Azure AD join Server1 and Server2.
  • B. Create an Azure cloud-only account for Admin1.
  • C. Assign Admin1 the Azure Connected Machine Onboarding role for RG1.
  • D. From the Azure portal, generate a new onboarding script.

Answer: C

Explanation:
Reference:
https://docs.microsoft.com/en-us/azure/azure-arc/servers/onboard-service-principal

 

NEW QUESTION 20
Which groups can you add to Group3 and Group5? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.

Answer:

Explanation:

Reference:
https://docs.microsoft.com/en-us/windows/security/identity-protection/access-control/active-directory-security-groups

 

NEW QUESTION 21
Your company has a main office and a branch office, the two offices are connected by using a WAN link. Each office contains a firewall that filters WAN traffic.
The network in the branch office contains 10 servers that run Windows Server. All servers are administered from the mam office only.
You plan to manage the servers in the branch office by using a Windows Admin Center gateway.
On 3 server in the branch office, you install the Windows Admin Center gateway by using the defaults settings.
You need to configure the firewall in the branch office to allow the required inbound connection to the Windows Admin Center gateway.
Which inbound ICP port should you allow?

  • A. 0
  • B. 1
  • C. 2
  • D. 3

Answer: C

 

NEW QUESTION 22
Your network contains two Active Directory Domain Services (AD DS) forests named contoso.com and fabrikam.com. A two-way forest trust exists between the forests. Each forest contains a single domain. The domains contain the servers shown in the following table.

You need to configure resources based constrained delegation so that the users In contoso.com can use Windows Admin Center on Server) to connect to Server? How should you complete the command? To answer, select the appropriate options in the answer are a. NOTE: Each correct selection is worth one point.

Answer:

Explanation:

Reference:
https://docs.microsoft.com/en-us/windows-server/security/kerberos/kerberos-constrained-delegation-overview
https://docs.microsoft.com/en-us/powershell/module/activedirectory/set-adcomputer?view=windowsserver2022-ps

 

NEW QUESTION 23
You have servers that have the DNS Server role installed. The servers are configured as shown in the following table.

All the client computers in the New York office use Server2 as the DNS server.
You need to configure name resolution in the New York office to meet the following requirements:
Ensure that the client computers in New York can resolve names from contoso.com.
Ensure that Server2 forwards all DNS queries for internet hosts to 131. 107.100.200.
The solution must NOT require modifications to Server1.
Each correct answer presents part of the solution.
NOTE: Each correct selection is worth one point.

  • A. a delegation
  • B. a secondary zone
  • C. a reverse lookup zone
  • D. a conditional forwarder
  • E. a forwarder

Answer: D,E

Explanation:
A conditional forwarder is required for contoso.com.
A forwarder is required for all other domains.
When you have a conditional forwarder and a forwarder configured, the conditional forwarder will be used for the specified domain.
You could use a secondary zone for contoso.com but that would require a configuration change on Server1.

 

NEW QUESTION 24
You have an Azure virtual machine named VM1 Ilia! has a private IP address only.
You configure the Windows Admin Center extension on VM!.
You have an on-premises computer that runs Windows 11. You use the computer for server management You need to ensure that you can use Windows Admin Center from the Azure portal to manage VM1.
What should you configure?

  • A. an Azure Bastion host on the virtual network that contains VM1.
  • B. a network security group 1NSG) rule that allows inbound traffic on port 443.
  • C. a private endpoint on the virtual network that contains VM1.
  • D. a VPN connection to the virtual network that contains VM1.

Answer: A

 

NEW QUESTION 25
You have an on-premises Active Directory Domain Services (AD DS) domain that syncs with an Azure Active Directory (Azure AD) tenant You have an on-premises web app named WebApp1 that only supports Kerberos authentication.
You need to ensure that users can access WebApp1 by using their Azure AD account. The solution must minimize administrative effort.
What should you configure? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.

Answer:

Explanation:

Reference:
https://docs.microsoft.com/en-us/azure/active-directory/app-proxy/application-proxy-add-on-premises-application

 

NEW QUESTION 26
You have an Azure virtual machine named VM1 that has a private IP address only.
You configure the Windows Admin Center extension on VM1.
You have an on-premises computer that runs Windows 11. You use the computer for server management.
You need to ensure that you can use Windows Admin Center from the Azure portal to manage VM1.
What should you configure?

  • A. a network security group 1NSG) rule that allows inbound traffic on port 443.
  • B. a private endpoint on the virtual network that contains VM1.
  • C. an Azure Bastion host on the virtual network that contains VM1.
  • D. a VPN connection to the virtual network that contains VM1.

Answer: D

Explanation:
Reference:
https://docs.microsoft.com/en-us/windows-server/manage/windows-admin-center/azure/manage-vm

 

NEW QUESTION 27
Your network contains an Active Directory Domain Services (AD DS) domain named adatum.com. The domain contains a file server named Server1 and three users named User1, User2, and User3.
Server1 contains a shared folder named Share1 that has the following configurations:

The share permissions for Share1 are configured as shown in the Share Permissions exhibit.

Share1 contains a file named File1.bxt. The advanced security settings for File1.txt are configured as shown in the File Permissions exhibit.

For each of the following statements, select Yes if the statement is true. Otherwise, select No.
NOTE: Each correct selection is worth one point.

Answer:

Explanation:

 

NEW QUESTION 28
You need to configure the Group Policy settings to ensure that the Azure Virtual Desktop session hosts meet the security requirements. What should you configure?

  • A. security filtering for the link of GPO1
  • B. the Enforced property for the link of GP04
  • C. loopback processing in GPO1
  • D. security filtering for the link of GP04
  • E. the Enforced property for the link of GP01
  • F. loopback processing in GPO4

Answer: F

Explanation:
Topic 3, Mix Questions
Mix Questions
AZ-800 Mix Questions IN THIS CASE STUDY

 

NEW QUESTION 29
Which groups can you add lo Group3 and Groups? To answer, select the appropriate options in the answer are a. NOTE Each correct selection is worth one point.

Answer:

Explanation:

 

NEW QUESTION 30
You need to meet the technical requirements for VM1.
Which cmdlet should you run first? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.

Answer:

Explanation:

 

NEW QUESTION 31
Which groups can you add lo Group3 and Groups? To answer, select the appropriate options in the answer are a. NOTE Each correct selection is worth one point.

Answer:

Explanation:

 

NEW QUESTION 32
You have an Azure virtual machine named VM1 that runs Windows Server. You perform the following actions on VM1:
* Create a folder named Folder1 on volume C
* Create a folder named Folder2 on volume D.
* Add a new data disk to VM1 and create a new volume that is assigned drive letter E.
* Install an app named App1 on volume E.
You plan to resize VM1.
Which objects will present after you resize VM1 ?

  • A. Folder1, volume E, and App1 only
  • B. Folded. Folder2. App1, and volume E
  • C. Folder1 only
  • D. Folded and Folder2 only

Answer: B

 

NEW QUESTION 33
You have an on-premises server named Server1 that runs Windows Server. You have an Azure virtual network that contains an Azure virtual network gateway. You need to connect only Server1 to the Azure virtual network What should you use?

  • A. a Site-to-SiteVPN
  • B. an ExpressRoute circuit
  • C. Azure Network Adapter
  • D. Azure Extended Network

Answer: C

Explanation:
Reference:
https://docs.microsoft.com/en-us/windows-server/manage/windows-admin-center/azure/use-azure-network-adapter

 

NEW QUESTION 34
You need to configure network communication between the Seattle and New York offices. The solution must meet the networking requirements.
What should you configure? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.

Answer:

Explanation:

Reference:
https://docs.microsoft.com/en-us/azure/virtual-wan/virtual-wan-expressroute-portal

 

NEW QUESTION 35
You have an on-premises Active Directory Domain Services (AD DS) domain that syncs with an Azure Active Directory (Azure AD) tenant The on-premises network is connected to Azure by using a Site-to-Site VPN. You have the DNS zones shown in the following table.

You need to ensure that names from (aDiifcam.com can be resolved from the on-premises network Which two actions should you perform? Each correct answer presents part of the solution, NOTE: Each correct selection Is worth one point

  • A. Create a conditional forwarder for fabrikam.com on DC1.
  • B. Deploy an Azure virtual machine that runs Windows Server. Configure the virtual machine &s a DNS forwarder.
  • C. Create a secondary zone for fabnlcam.com on DO.
  • D. Deploy an Azure virtual machine that runs Windows Server. Modify the DNS Servers settings for the virtual network.
  • E. Create a stub zone for fabrikam.com on DC1.

Answer: A,B

Explanation:
Reference:
https://docs.microsoft.com/en-us/azure/private-link/private-endpoint-dns#on-premises-workloads-using-a-dns-forwarder

 

NEW QUESTION 36
You haw? a server named Host! that has the Hyper-V server role installed. Host! hosts a virtual machine named VM1.
You have a management server named Server! that runs Windows Server. You remotely manage Host1 from Server1 by using Hyper-V Manager.
You need to ensure that you can access a USB hard drive connected to Server1 when you connect to VM1 by using Virtual Machine Connection.
Which two actions should you perform? Each correct answer presents part of the solution.
NOTE: Each correct selection is worth one point.

  • A. From Disk Management on Host1, select Rescan Disks
  • B. From Virtual Machine Connection select Show Options and then select the USB hard drive.
  • C. From Disk Management on Host1. attach a virtual hard disk.
  • D. From the Hyper-V Settings of Host1, select Allow enhanced session mode
  • E. From Virtual Machine Connection, switch to a basic session.

Answer: B,D

 

NEW QUESTION 37
Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution.
After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen.
You are planning the deployment of DNS to a new network.
You have three internal DNS servers as shown in the following table.

The contoso.local zone contains zone delegations for east.conloso.local and west.contoso.local. All the DNS servers use root hints.
You need to ensure that all the DNS servers can resolve the names of all the internal namespaces and internet hosts.
Solution: On Server2 and Server3, you configure a conditional forwarder for contoso.local.
Does this meet the goal?

  • A. No
  • B. Yes

Answer: A

 

NEW QUESTION 38
Your network contains an Active Directory Domain Services (AD DS) forest named contoso.com. The forest contains a child domain named east.contoso.com.
in the contoso.com domain, you create two users named Admin1 and Admin2.
You need to ensure that the users can perform the following tasks:
* Admin1 can create and manage Active Directory sites.
* Admin2 can deploy domain controller to the easl.conloso.com domain.
The solution must use the principle of least privilege.
To which group should you add each user? To answer, select the appropriate options in the answer area.
NOTE Each correct selection is worth one point.

Answer:

Explanation:

 

NEW QUESTION 39
You need to configure remote administration to meet the security requirements. What should you use?

  • A. an Azure Bastion host
  • B. just in time (JIT) VM access
  • C. Azure AD Privileged Identity Management (PIM)
  • D. the Remote Desktop extension for Azure Cloud Services

Answer: B

 

NEW QUESTION 40
......

Provide Valid Dumps To Help You Prepare For Administering Windows Server Hybrid Core Infrastructure Exam: https://www.testsimulate.com/AZ-800-study-materials.html