AZ-301 PDF Dumps

How to use our free microsoft AZ-301 PDF Dumps

Our Free AZ-301 PDF dumps are based on the full AZ-301 mock exams which are available on our Web Site. The microsoft AZ-301 PDF consists in questions and answers with detailed explanations.
You can use the PDF AZ-301 practice exam as a study material to pass the AZ-301 exam, and don't forget to try also our AZ-301 testing engine Web Simulator.

On-Line Users: {{voteInfo.result.viewUsers}}
Subscribed Users: {{voteInfo.result.subscribedUsers}}
Thank you for your vote {{voteInfo.result.stars}} Your vote has already been submitted ({{voteInfo.result.votingPeople}} votes)

Follow us on SlideShare to see the latest available AZ-301 tests pdf.

										
											Q1.Note: This question is part of series of questions that present the same scenario. Each question in the
series contains a unique solution that might meet the stated goals. Some question sets might have
more than one correct solution, while others might not have a correct solution.
After you answer a question in this section, you will NOT be able to return to it. As a result, these
questions will not appear in the review screen. 
You have an Azure subscription named Project1. Only a group named Project1admins is assigned roles in the
Project1 subscription. The Project1 subscription contains all the resources for an application named
Application1.
Your company is developing a new application named Application2. The members of the Application2
development team belong to an Azure Active Directory (Azure AD) group named App2Dev.
You identify the following requirements for Application2:

[PIC-1]

The members of App2Dev must be prevented from changing the role assignments in Azure.

[PIC-2]

The members of App2Dev must be able to create new Azure resources required by Application2.

[PIC-3]

All the required role assignments for Application2 will be performed by the members of Project1admins.
You need to recommend a solution for the role assignments of Application2.
Solution: Create a new Azure subscription named Project2. Assign Project1admins the Owner role for the
Project2 subscription. Assign App2Dev the Contributor role for the Project2 subscription.
Does this meet the goal?
 - A:   Yes
 - B:   No

 solution: A



Q2.Note: This question is part of series of questions that present the same scenario. Each question in the
series contains a unique solution that might meet the stated goals. Some question sets might have
more than one correct solution, while others might not have a correct solution.
After you answer a question in this section, you will NOT be able to return to it. As a result, these
questions will not appear in the review screen. 
You have an Azure subscription named Project1. Only a group named Project1admins is assigned roles in the
Project1 subscription. The Project1 subscription contains all the resources for an application named
Application1.
Your company is developing a new application named Application2. The members of the Application2
development team belong to an Azure Active Directory (Azure AD) group named App2Dev.
You identify the following requirements for Application2:

[PIC-4]

The members of App2Dev must be prevented from changing the role assignments in Azure.

[PIC-5]

The members of App2Dev must be able to create new Azure resources required by Application2.


[PIC-6]
 All the required role assignments for Application2 will be performed by the members of Project1admins.
You need to recommend a solution for the role assignments of Application2.
Solution: Create a new Azure subscription named Project2. Assign Project1admins the User Access
Administrator role for the Project2 subscription. Assign App2Dev the Owner role for the Project2 subscription.
Does this meet the goal?
 - A:   Yes
 - B:   No

 solution: B



Q3.Note: This question is part of series of questions that present the same scenario. Each question in the
series contains a unique solution that might meet the stated goals. Some question sets might have
more than one correct solution, while others might not have a correct solution.
After you answer a question in this section, you will NOT be able to return to it. As a result, these
questions will not appear in the review screen. 
You have an Azure subscription named Project1. Only a group named Project1admins is assigned roles in the
Project1 subscription. The Project1 subscription contains all the resources for an application named
Application1.
Your company is developing a new application named Application2. The members of the Application2
development team belong to an Azure Active Directory (Azure AD) group named App2Dev.
You identify the following requirements for Application2:

[PIC-7]

The members of App2Dev must be prevented from changing the role assignments in Azure.

[PIC-8]

The members of App2Dev must be able to create new Azure resources required by Application2.

[PIC-9]

All the required role assignments for Application2 will be performed by the members of Project1admins.
You need to recommend a solution for the role assignments of Application2.
Solution: In Project1, create a resource group named Application2RG. Assign Project1admins the Owner role
for Application2RG. Assign App2Dev the Contributor role for Application2RG.
Does this meet the goal?
 - A:   Yes
 - B:   No

 solution: B



Q4.Note: This question is part of series of questions that present the same scenario. Each question in the
series contains a unique solution that might meet the stated goals. Some question sets might have
more than one correct solution, while others might not have a correct solution.
After you answer a question in this section, you will NOT be able to return to it. As a result, these
questions will not appear in the review screen. 
You have an Azure subscription that contains a resource group named RG1.
You create an Azure Active Directory (Azure AD) group named ResearchUsers that contains the user accounts
of all researchers.
You need to recommend a solution that meets the following requirements:

[PIC-10]

The researchers must be allowed to create Azure virtual machines.

[PIC-11]

The researchers must only be able to create Azure virtual machines by using specific Azure Resource
Manager templates.
Solution: Create a lab in Azure DevTest Lab. Configure the DevTest Labs settings. Assign the DevTest Labs
User role to the ResearchUsers group.
Does this meet the goal?
 - A:   Yes
 - B:   No

 solution: B



Q5.Note: This question is part of series of questions that present the same scenario. Each question in the
series contains a unique solution that might meet the stated goals. Some question sets might have
more than one correct solution, while others might not have a correct solution.
After you answer a question in this section, you will NOT be able to return to it. As a result, these
questions will not appear in the review screen. 
You have an Azure subscription that contains a resource group named RG1.
You create an Azure Active Directory (Azure AD) group named ResearchUsers that contains the user accounts
of all researchers.
You need to recommend a solution that meets the following requirements:

[PIC-12]

The researchers must be allowed to create Azure virtual machines.

[PIC-13]

The researchers must only be able to create Azure virtual machines by using specific Azure Resource
Manager templates.
Solution: Create an Azure DevOps Project. Configure the DevOps Project settings.
Does this meet the goal?
 - A:   Yes
 - B:   No

 solution: B



Q6.Note: This question is part of series of questions that present the same scenario. Each question in the
series contains a unique solution that might meet the stated goals. Some question sets might have
more than one correct solution, while others might not have a correct solution.
After you answer a question in this section, you will NOT be able to return to it. As a result, these
questions will not appear in the review screen. 
You have an Azure subscription that contains a resource group named RG1.
You create an Azure Active Directory (Azure AD) group named ResearchUsers that contains the user accounts
of all researchers.
You need to recommend a solution that meets the following requirements:

[PIC-14]

The researchers must be allowed to create Azure virtual machines.

[PIC-15]

The researchers must only be able to create Azure virtual machines by using specific Azure Resource
Manager templates.
Solution: On RG1, assign the Contributor role to the ResearchUsers group. Create a custom Azure Policy
definition and assign the policy to RG1.
Does this meet the goal?
 - A:   Yes
 - B:   No

 solution: A



Q7.A company named Contoso Ltd., has a single-domain Active Directory forest named contoso.com.
Contoso is preparing to migrate all workloads to Azure. Contoso wants users to use single sign-on (SSO) when
they access cloud-based services that integrate with Azure Active Directory (Azure AD).
You need to identify any objects in Active Directory that will fail to synchronize to Azure AD due to formatting
issues. The solution must minimize costs.
What should you include in the solution?
 - A:   Azure Advisor
 - B:   Microsoft Office 365 IdFix
 - C:   Azure AD Connect Health
 - D:   Password Export Server version 3.1 (PES v3.1) in Active Directory Migration Tool (ADMT)

 solution: B



Q8.You have an Azure subscription.
You need to recommend a solution to provide developers with the ability to provision Azure virtual machines.
The solution must meet the following requirements:

[PIC-16]

Only allow the creation of the virtual machines in specific regions.

[PIC-17]

Only allow the creation of specific sizes of virtual machines.
What should include in the recommendation?
 - A:   conditional access policies
 - B:   Azure Policy
 - C:   Azure Resource Manager templates
 - D:   role-based access control (RBAC)

 solution: B



Q9.Your network contains an on-premises Active Directory forest.
You discover that when users change jobs within your company, the membership of the user groups are not
being updated. As a result, the users can access resources that are no longer relevant to their job.
You plan to integrate Active Directory and Azure Active Directory (Azure AD) by using Azure AD Connect.
You need to recommend a solution to ensure that group owners are emailed monthly about the group
memberships they manage.
What should you include in the recommendation?
 - A:   Azure AD access reviews
 - B:   Tenant Restrictions
 - C:   Azure AD Identity Protection
 - D:   conditional access policies

 solution: A

Explanation:
References:
https://docs.microsoft.com/en-us/azure/active-directory/governance/access-reviews-overview


Q10.A company named Contoso, Ltd. has an Azure Active Directory (Azure AD) tenant that is integrated with
Microsoft Office 365 and an Azure subscription.
Contoso has an on-premises identity infrastructure. The infrastructure includes servers that run Active
Directory Domain Services (AD DS), Active Directory Federation Services (AD FS), Azure AD Connect, and
Microsoft Identity Manager (MIM).
Contoso has a partnership with a company named Fabrikam, Inc. Fabrikam has an Active Directory forest and
an Office 365 tenant. Fabrikam has the same on-premises identity infrastructure as Contoso.
A team of 10 developers from Fabrikam will work on an Azure solution that will be hosted in the Azure
subscription of Contoso. The developers must be added to the Contributor role for a resource in the Contoso
subscription.
You need to recommend a solution to ensure that Contoso can assign the role to the 10 Fabrikam developers.
The solution must ensure that the Fabrikam developers use their existing credentials to access resources.
What should you recommend?
 - A:   Configure a forest trust between the on-premises Active Directory forests of Contoso and Fabrikam.
 - B:   Configure an organization relationship between the Office 365 tenants of Fabrikam and Contoso.
 - C:   In the Azure AD tenant of Contoso, enable Azure Active Directory Domain Services (Azure AD DS). Create

a one-way forest trust that uses selective authentication between the Active Directory forests of Contoso
and Fabrikam.
 - D:   In the Azure AD tenant of Contoso, create guest accounts for the Fabrikam developers.

 solution: D

Explanation:
References:
https://docs.microsoft.com/en-us/azure/role-based-access-control/role-assignments-external-users