PrepAwayETE is responsible for our AZ-802 study materials. Every exam product of PrepAwayETE have sold to customer will enjoy considerate after-sales service. If you have problems about our AZ-802 study materials such as installation, operation and so on, we will quickly reply to you after our online workers have received your emails. We are not afraid of troubles. We warmly welcome to your questions and suggestions on the AZ-802 Exam Questions. We sincerely hope we can help you solve your problem and help you pass the AZ-802 exam.
| Section | Objectives |
|---|---|
| Topic 1: Compute, storage, and virtualization | - Storage and file services
|
| Topic 2: Networking and high availability | - High availability and disaster recovery
|
| Topic 3: Hybrid infrastructure management | - Monitoring and update management
|
| Topic 4: Secure and manage Windows Server environments | - Identity and access management
|
The second format of Administering Windows Server (AZ-802) is the web-based practice exam that can be taken online through browsers like Firefox, Chrome, Safari, MS Edge, Internet Explorer, and Microsoft Edge. You don't need to install any excessive plugins or Software to attempt the web-based Practice AZ-802 Exam. All operating systems also support the web-based practice exam.
NEW QUESTION # 191
You have three Hyper-V hosts named Server 1, Server2, and Server 3 that run Windows Server Server1 hosts a virtual machine named VM1.
You enable Hyper-V Replica to replicate VM1 to Server2 and set the replication frequency to 30 seconds.
You need to extend the replication and create a second replica of VM1.
On which Hyper-V hosts can you configure the replication, and what is the minimum replication frequency you can use? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.
Answer:
Explanation:
Explanation:
Hyper-V hosts: Server2 only. Replication frequency: 5 minutes.
Hotspot map data: < map > < m x1= " 446 " x2= " 564 " y1= " 82 " y2= " 104 " ss= " 0 " a= " 0 " / > < m x1= " 442 " x2= " 544 " y1= " 255 " y2= " 277 " ss= " 0 " a= " 0 " / > < /map > Extended replication in Hyper-V Replica can only be configured from the current Replica virtual machine, so with VM1 already replicating from Server1 (primary) to Server2 (replica), the option to extend replication to a third host is available only on Server2; it cannot be initiated from the primary host or from a host that is not yet part of the replication relationship. Extended replication also does not support the 30-second frequency available for the primary replication relationship; its replication frequency is limited to 5 minutes or 15 minutes, and the extended frequency cannot be lower than the frequency already configured between the primary and the first replica. Since the primary-to-replica frequency here is 30 seconds, the lowest frequency selectable for the extended replica is 5 minutes, and Server3 would be chosen as the destination for this second replica once the extend-replication wizard is launched from Server2. Attempting to launch that wizard from Server1 instead would not offer the extend-replication option at all, since Server1 is the primary, not the current Replica, for VM1 ' s existing replication relationship.
NEW QUESTION # 192
Your on-premises network contains an Active Directory Domain Services (AD DS) domain. The domain contains a server named Server1 that runs Windows Server. Server1 has the Web Server (IIS) role installed and hosts a web app named App1. App1 uses Windows authentication. You have an Azure subscription. You plan to migrate App1 to Azure App Service. You need to ensure that App1 can support Windows authentication in App Service. What should you configure first?
Answer: C
Explanation:
Azure App Service instances are not domain-joined and have no membership in the on-premises AD DS domain, so App Service cannot honor classic Windows Integrated Authentication against AD DS the way IIS on Server1 currently does; the Microsoft-documented supported path for this migration is to move App1 ' s authentication mechanism to Microsoft Entra ID instead, using App Service ' s built-in Easy Auth integration with the Microsoft Entra identity provider. For that authentication transition to preserve the existing on- premises user identities and credentials that App1 ' s users already rely on, rather than forcing everyone to be issued brand-new cloud-only accounts, the AD DS user accounts must first be synchronized into the Microsoft Entra tenant using directory synchronization, typically Microsoft Entra Connect with password hash synchronization enabled, which is the foundational step performed before App1 is reconfigured to authenticate against Microsoft Entra ID inside App Service. Configuring HTTPS bindings and SSL, plain port bindings, or COM and COM+ components addresses hosting compatibility and application-runtime concerns on the App Service side, but none of them does anything to enable a Windows-authentication-equivalent experience in a platform that fundamentally has no domain membership to authenticate against.
NEW QUESTION # 193
You have 200 Azure virtual machines. You create a recovery plan in Azure Site Recovery to fail over all the virtual machines to an Azure region. The plan has three manual actions. You need to replace one of the manual actions with an automated process. What should you use?
Answer: B
Explanation:
Azure Site Recovery recovery plans support inserting automated steps before or after each failover group within the plan, and the mechanism used to run that automation is an Azure Automation runbook invoked directly from the recovery plan. Runbooks can call Azure Resource Manager operations, PowerShell workflows, or other custom orchestration logic, which makes them a natural fit for replacing a manual step such as reconfiguring a load balancer, updating DNS records, or validating application health once the 200 virtual machines have failed over. An Azure Desired State Configuration virtual machine extension enforces configuration state on a running VM rather than integrating with the recovery plan ' s action framework, an Azure PowerShell function run outside of Automation has no native hook point within a recovery plan, and a Custom Script Extension executes a script inside a VM rather than as an orchestrated recovery-plan action.
Because Azure Automation runbooks are the specific, documented integration point Site Recovery recovery plans use for automating manual actions, that is the correct choice for automating one of the plan ' s three manual steps.
NEW QUESTION # 194
You have a failover cluster named Cluster1 that contains the nodes shown in the following table.
A File Server for general use cluster role named HAFS is configured as shown in the General exhibit (Click the General tab.)
Exhibit
Answer:
Explanation:
Explanation:
If you select Move, and then Best Possible Node, HAFS will move to Node3: Yes. If you stop and start Cluster1, HAFS will come online on Node1: Yes. If you select Move, Select Node, and then Node2, HAFS will move to Node2: No.
HAFS ' s General tab lists its Preferred Owners in priority order as Node1 first, then Node3, with Node2 not included in that list at all. Because Node1 is the highest-priority preferred owner, HAFS comes online on Node1 by default whenever the cluster, or the role itself, (re)starts with no failover already in progress, making the second statement true. When an administrator instead uses Move followed by Best Possible Node, Failover Clustering selects the next-highest-priority available node from that same preferred-owners list rather than picking an arbitrary node, and since Node1 is presumably unavailable or being moved away from, the next node on the list is Node3, making the first statement true as well. Node2, however, is excluded entirely from HAFS ' s preferred-owners list, and while Failover Clustering does allow a manual Move > Select Node action to target a non-preferred node in principle, prior guidance and the cluster ' s own owner-list restriction for this role prevent HAFS from actually running on a node not present in its Preferred Owners list, so a manual move targeting Node2 does not succeed, making the third statement false.
NEW QUESTION # 195
You are remediating the firewall security risks to meet the security requirements. What should you configure to reduce the risks?
Answer: B
Explanation:
Server administrators can be prevented from configuring Windows Defender Firewall rules by defining firewall policy centrally in a Group Policy Object and linking it to the servers ' organizational unit(s); domain- based GPO firewall policy overrides any local, administrator-configured Windows Defender Firewall rules on the domain-joined servers, since Group Policy-delivered firewall settings take precedence over local policy.
Adaptive network hardening in Microsoft Defender for Cloud only generates recommendations to tighten network security group (NSG) rules protecting Azure resources -- it has no visibility into or control over host- based Windows Defender Firewall configuration on on-premises servers. A network security group (NSG) in Sub1 filters traffic at the Azure virtual network boundary and has no bearing on the on-premises Chicago office servers described in the scenario. An Azure Firewall policy governs the centrally managed Azure Firewall network virtual appliance, not the host-based Windows Defender Firewall running locally on each on- premises server. Because the servers in question are on-premises and domain-joined, only a Group Policy Object can centrally enforce and lock down their local Windows Defender Firewall configuration, preventing server administrators from modifying the rules directly on each machine. Therefore, configuring a GPO is the correct way to reduce this security risk.
NEW QUESTION # 196
......
Another great way to pass the AZ-802 exam in the first attempt is by doing a selective study with valid AZ-802 braindumps. If you already have a job and you are searching for the best way to improve your current AZ-802 test situation, then you should consider the AZ-802 Exam Dumps. By using our updated AZ-802 products, you will be able to get reliable and relative AZ-802 exam prep questions, so you can pass the exam easily. You can get one-year free Administering Windows Server exam updates from the date of purchase.
Real AZ-802 Exam Dumps: https://www.prepawayete.com/Microsoft/AZ-802-practice-exam-dumps.html