Which Azure service can use autoscale to add or remove resources as appropriate to minimize?
Are you preparing for the Microsoft AZ-305 exam ? – then this article helps you in preparing for the Designing Microsoft Azure Infrastructure Solutions [AZ-305] certification exam. We provide 25 free questions on various exam domains to give you an overview of the actual exam. Show
By trying out these free questions and answers with detailed explanations on the AZ-305 certification exam, you will be able to face the actual exam with full confidence. Let us try exploring these AZ-305 exam questions! Domain : Design data storage solutionsQ1 : A company needs a data store created in Azure for an application. Below are the key requirements for the data store.
Which of the following would you consider as the data store?A. Azure BLOB storage Correct Answer: B Explanation You can use CosmosDB to provide low latency access to data. You can use the SQL API to store JSON based objects. The Microsoft documentation mentions the following. Option A is incorrect since this
is used for object level storage. For more information on how to use SQL queries, please visit the below URL: https://docs.microsoft.com/en-us/azure/cosmos-db/how-to-sql-query Domain : Design business continuity solutionsQ2 : A company has set up a storage account in Azure. They have the following storage requirements.
Which of the following feature of Azure storage could be used for this requirement?A. CORS Correct Answer: D Explanation You have to use the feature of Soft Delete. The Microsoft documentation mentions the following. Since this is clearly mentioned in the documentation, all other options are incorrect. For more information on Azure BLOB soft delete, please visit the below URL: https://docs.microsoft.com/en-us/azure/storage/blobs/storage-blob-soft-delete Domain : Design business continuity solutionsQ3 : You are going to be creating the following Availability set which has the following
details |
Name | Requirements |
whizlab-app1 | Should be able to send and receive messages based on First-in First out message pattern |
whizlab-app2 | Should be able to receive and process millions of messages at a time. |
whizlab-app3 | This application needs to listen and process events that are emitted from other Azure services |
Which of the following would you use as a messaging service for whizlab-app2?
A. Azure Event Hubs
B. Azure Service Bus
C. Azure Event Grid
D. Azure Notification Hubs
Correct Answer: A
Explanation
You can use Azure Event Hubs for this requirement
The Microsoft documentation mentions the following
Since this is clearly given in the Microsoft documentation, all other options are incorrect
For more information on Azure Event Hubs , you can visit the below link: https://docs.microsoft.com/en-us/azure/event-hubs/event-hubs-about
Domain : Design identity, governance, and monitoring solutions
Q19 : A company currently has an on-premise infrastructure that consists of
An Active Directory domain named whizlab.com
Active Directory Federation Services
Application Proxy servers for external connection
The company has recently set up an Azure AD tenant and implemented Azure AD Connect to synchronize users from the on-premise AD to Azure AD. It has the following additional requirements
Ability to monitor the solutions that integrate with Azure AD
Identify any potential issues in AD FS
Identify any directory synchronization issues
Your task is to identify the proper monitoring solution for each type of server.
Which of the following would you use to monitor the AD Connect Servers?
A. Azure Security
Center
B. Azure AD Connect Health
C. Active Directory Health Check solution in Azure Log Analytics
D. Active Directory Federation Services Health Check solution in Azure Log Analytics
Correct Answer: B
Explanation
The previous question asks to monitor AD FS servers whereas this question asks to monitor the AD Connect Servers.
Azure AD Connect Health has the ability to monitor all AD Connect Servers and check for any synchronization issues.
Businesses and organizations use the Azure AD Connect service to accomplish the hybrid identity goals. The service includes password hash synchronization, pass-through authentication, federation integration, synchronization, and health service monitoring. As an Azure administrator, you can monitor the health of the Azure AD Connect services by using the Azure AD Connect Health monitoring tools. Azure AD Connect Health portal presents alerts, performance monitoring, and usage analytics. The portal also provides insights into on-premises identity infrastructure.
You can review these options on the Azure Connect Health screen (Number 1). On the menu to the left, you have access to the information about the Azure AD Connect Sync services and errors (Number 2), monitoring of AD FS services (Number 3), and AD DS Services (Number 4). For service health data collection, you must install the Azure AD Connect Health Agent on-premises (Number 5). Suppose the organization uses Active Directory Federation Services. In that case, you need to install Azure AD Connect Health Agent for AD FS or Azure AD Connect Health Agent for AD DS for Active Directory Domain Services.
All other options are incorrect.
For more information about Azure AD Connect, please visit the below URL: https://docs.microsoft.com/en-us/azure/active-directory/hybrid/whatis-azure-ad-connect
Domain : Design identity, governance, and monitoring solutions
Q20 : A team is planning on deploying Azure resources by
using Resource Manager templates. The templates need to reference secrets that are stored in Azure Key vault. You need to ensure deployments can be made accordingly.
Which of the following would you use to restrict access to the secrets in the key vault?
A. Access policies for the Key vault
B. An Azure policy
C. Role Based access
D.
Advanced access policy for the Key vault
Correct Answer: C
Explanation
The Microsoft documentation clearly gives the steps for this. One of them is to ensure the identity deploying the template has the right permissions. This can be done with the help of Role based access.
Since this is clearly given in the documentation, all other options are invalid
For more information on accessing secrets from Resource Manager templates, please visit the below URL: https://docs.microsoft.com/en-us/azure/azure-resource-manager/resource-manager-keyvault-parameter
Domain : Design business continuity solutions
Q21 : A company needs to host a set of applications on Azure virtual machines. There are different requirements for each of the applications
Maintain reliable performance on a set of virtual machines
Ensure application is running in the event of a data center failure
Which of the following services can you recommend for the “Maintain reliable performance on a set of virtual machines” requirement?
A. Azure Availability Zones
B. Azure Application Gateway
C. Azure Scale
Sets
D. Azure Traffic Manager
Correct Answer: C
Explanation
To ensure the reliable performance of the applications running on the set of virtual machines, you need to use Azure Scale Sets. Azure Virtual Machine Scale Sets service helps create and manage a group of VMs behind a load balancer. The configuration of these machines must be the same, and they should run on the same base OS image. The VM scale sets can automatically increase or decrease VM instances depending on the scaling rules and resource demand. Scale sets provide high availability for your applications. You can use scale sets for large-scale services, like compute, big data, and containers.
All other options are incorrect.
For more information about Azure Virtual Machine Scale Sets, please visit the following URL: https://docs.microsoft.com/en-us/azure/virtual-machine-scale-sets/overview
Domain : Design infrastructure solutions
Q22 : A company has the following on-premise data stores
A Microsoft SQL Server 2012 database
A Microsoft SQL Server 2008 database
The data needs to be migrated to Azure.
Requirement 1 – The data in the Microsoft SQL Server 2012 database needs to be migrated to an Azure SQL database
Requirement 2 – The data in a table in the Microsoft SQL Server 2008 database needs to be migrated to an Azure CosmosDB account that uses the SQL API
Which of the following should be used to accomplish Requirement1?
A. AzCopy
B. Azure CosmosDB Data Migration tool
C. Data Management Gateway
D. Data Migration Assistant
Correct Answer: D
Explanation
The Data Migration assistant can be used to migrate the data. It has support for various versions of Microsoft SQL Server as shown below
Option A is incorrect since this works with data in Azure storage accounts
Option B is incorrect since this is used for migration of data to CosmosDB
Option C is incorrect since this is used for building a gateway with the on-premise infrastructure
For more information on the data migration assistant, please visit the below URL: https://docs.microsoft.com/en-us/sql/dma/dma-overview?view=sql-server-2017
Domain : Design identity, governance, and monitoring solutions
Q23 : A company has an Azure subscription that contains two Azure AD administrative user accounts and two virtual machines. You have to ensure that both administrators are notified
when more than five events are added to the security log of both virtual machines during a period of 120 seconds.
The solution needs to minimize administrative tasks.
Which of the following would you create for this requirement?
A. two action groups and two alert rules
B. one action group and one alert rule
C. five action groups and one
alert rule
D. two action groups and one alert rule
Correct Answer: B
Explanation
To alert both administrators about events on both VMs, you need to create one action group with the email ids of both administrators.
In the Notifications section of the action group, you can provide the emails ids of the administrators.
Then you need to create one alert rule for the notification of events.
All other options are incorrect.
For more information about Azure Monitor alerts, please visit the following URL: https://docs.microsoft.com/en-us/azure/azure-monitor/platform/alerts-overview
Domain : Design identity, governance, and monitoring solutions
Q24 : Your company has an Azure subscription that contains multiple resource groups. You have to design a resource governance solution that would meet the following requirements
Ensure that all ExpressRoute resources are created in a resource group named whizlabs-rg
Ensure that creation of ExpressRoute resources is delegated to an Azure AD resource group named whizlab-admin
Use the principle of least privilege
Which of the following needs to be included in the solution to meet the following requirement?
“Ensure that all ExpressRoute resources are created in a resource group named whizlabs-rg”
A. A custom RBAC role assignment at the level of the resource group – whizlabs-rg
B. A custom RBAC role
assignment at the subscription level
C. An Azure Policy at the subscription level that has an exclusion
D. Multiple Azure Policy assignments at the resource group level except for whizlabs-rg
Correct Answer: C
Explanation
Here we can add a policy at the subscription level which does not allow the deployment of Azure ExpressRoute resources. But we can exclude the whizlabs-rg so that the ExpressRoute resources can be deployed to these resource groups.
Options A and B are incorrect because RBAC roles are used to provide access to resources
Option D is incorrect since this would be an in-efficient process to add policies to all resource groups
For more information on Azure policies, one can go to the following URL: https://docs.microsoft.com/en-us/azure/governance/policy/overview
Domain : Design business continuity solutions
Q25 : A company wants to migrate its relation data to Azure CosmosDB. The management is worried about CosmosDB high availability.
What are two primary ways how Azure CosmosDB provides
high availability?
A. Replicates data across regions
B. Uses Azure scale sets
C. Uses Azure Traffic Manager
D. Replicates data four times in a region
E. Replicates data six times in a region
Correct Answers: A and D
Explanation
Azure Cosmos DB is a multi-model globally distributed NoSQL database. Cosmos DB stores data in atom-record-sequence (ARS) format. It unites under one roof several data management systems and exposes them as APIs. You can select between the Core (SQL) API and MongoDB API (document model), Cassandra API (column-oriented model), Gremlin API (graph model), and Table API (key-value model).
Azure CosmosDB provides high availability in two primary ways: replication data across regions and storing four copies of the data in a region. By default, Azure CosmosDB is distributed in all Azure regions. You can change the number of regions in your CosmosDB account. Suppose you associate five Azure regions with your data, and every region will have four copies of the data. There will be twenty copies of your data available to use.
All other options are incorrect.
For more information about Azure CosmosDB high availability, please visit the below URL: https://docs.microsoft.com/en-us/azure/cosmos-db/high-availability
Summary
We hope you have enjoyed this article and tried out the free questions on the AZ-305 exam. These sample questions may have given you a clear outline of the actual certification exam. It is recommended to prepare more with practice tests which are a set of mock questions to identify your skill gaps on the AZ-305 exam. Until you are fully confident to face the real exam, keep learning!
- About the Author
- More from Author