Win IT Exam with Last Dumps 2025


Microsoft AZ-500 Exam

Page 40/45
Viewing Questions 391 400 out of 443 Questions
88.89%

Question 391
You have an Azure subscription that contains a resource group named RG1 and the network security groups (NSGs) shown in the following table.
AZ-500_391Q_1.png related to the Microsoft AZ-500 Exam
You create and assign the Azure policy shown in the following exhibit.
AZ-500_391Q_2.png related to the Microsoft AZ-500 Exam
What is the flow log status of NSG1 and NSG2 after the Azure policy is assigned?




Question 392
You need to meet the identity and access requirements for Group1.
What should you do?



When you create dynamic groups, they can either contain users or devices. Hence here we need to create two separate dynamic groups and assign those groups to an Assigned group.
Incorrect Answers:
A, C: You can create a dynamic group for devices or users, but you can't create a rule that contains both users and devices.
Scenario:
Litware identifies the following identity and access requirements: All San Francisco users and their devices must be members of Group1.
The tenant currently contains this group:
AZ-500_392E.png related to the Microsoft AZ-500 Exam
Reference:
https://docs.microsoft.com/en-us/azure/active-directory/users-groups-roles/groups-dynamic-membership
https://docs.microsoft.com/en-us/azure/active-directory/fundamentals/active-directory-groups-create-azure-portal

Question 393
HOTSPOT -
You need to ensure that the Azure AD application registration and consent configurations meet the identity and access requirements.
What should you use in the Azure portal? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.
Hot Area:
AZ-500_393Q.png related to the Microsoft AZ-500 Exam
Image AZ-500_393R.png related to the Microsoft AZ-500 Exam



Reference:
https://docs.microsoft.com/en-us/azure/active-directory/manage-apps/configure-user-consent

Question 394
HOTSPOT
-
You have an Azure subscription that contains the virtual machines shown in the following table.
AZ-500_394Q_1.png related to the Microsoft AZ-500 Exam
Subnet1 and Subnet2 have a network security group (NSG). The NSG has an outbound rule that has the following configurations:
• Port: Any
• Source: Any
• Priority: 100
• Action: Deny
• Protocol: Any
• Destination: Storage
The subscription contains a storage account named storage1.
You create a private endpoint named Private1 that has the following settings:
• Resource type: Microsoft.Storage/storageAccounts
• Resource: storage1
• Target sub-resource: blob
• Virtual network: VNet1
• Subnet: Subnet1
For each of the following statements, select Yes if the statement is true. Otherwise, select No.
NOTE: Each correct selection is worth one point.
AZ-500_394Q_2.png related to the Microsoft AZ-500 Exam
Image AZ-500_394R.png related to the Microsoft AZ-500 Exam




Question 395
HOTSPOT
-
You have an Azure subscription that contains the resources shown in the following table.
AZ-500_395Q_1.png related to the Microsoft AZ-500 Exam
VNet1 contains the subnets shown in the following table.
AZ-500_395Q_2.png related to the Microsoft AZ-500 Exam
You plan to use the Azure portal to deploy an Azure firewall named AzFW1 to VNet1.
Which resource group and subnet can you use to deploy AzFW1? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.
AZ-500_395Q_3.png related to the Microsoft AZ-500 Exam
Image AZ-500_395R.png related to the Microsoft AZ-500 Exam





Question 396
You have an Azure subscription that contains a storage account named storage1 and a virtual machine named VM1.
VM1 is connected to a virtual network named VNet1 that contains one subnet and uses Azure DNS.
You need to ensure that VM1 connects to storage1 by using a private IP address. The solution must minimize administrative effort.
What should you do?




Question 397
You have an Azure subscription that contains a web app named App1. App1 provides users with product images and videos. Users access App1 by using a URL of HTTPS://app1.contoso.com.
You deploy two server pools named Pool1 and Pool2. Pool1 hosts product images. Pool2 hosts product videos.
You need to optimize the performance of App1. The solution must meet the following requirements:
• Minimize the performance impact of TLS connections on Pool1 and Pool2.
• Route user requests to the server pools based on the requested URL path.
What should you include in the solution?




Question 398
HOTSPOT
-
You have an Azure subscription that is linked to an Azure AD tenant and contains the virtual machines shown in the following table.
AZ-500_398Q_1.png related to the Microsoft AZ-500 Exam
The subnets of the virtual networks have the service endpoints shown in the following table.
AZ-500_398Q_2.png related to the Microsoft AZ-500 Exam
You create the resources shown in the following table.
AZ-500_398Q_3.png related to the Microsoft AZ-500 Exam
For each of the following statements, select Yes if the statement is true. Otherwise, select No.
NOTE: Each correct selection is worth one point.
AZ-500_398Q_4.png related to the Microsoft AZ-500 Exam
Image AZ-500_398R.png related to the Microsoft AZ-500 Exam




Question 399
You have an Azure subscription that contains an instance of Azure Firewall Standard named AzFW1.
You need to identify whether you can use the following features with AzFW1:
• TLS inspection
• Threat intelligence
• The network intrusion detection and prevention systems (IDPS)
What can you use?




Question 400
SIMULATION
-
Use the following login credentials as needed:
To enter your username, place your cursor in the Sign in box and click on the username below.
To enter your password, place your cursor in the Enter password box and click on the password below.
Azure Username: [email protected]
Azure Password: Gp0Ae4@!Dg
-
If the Azure portal does not load successfully in the browser, press CTRL-K to reload the portal in a new browser tab.
The following information is for technical support purposes only:
Lab Instance: 28681041
-
You need to configure Azure to allow RDP connections from the Internet to a virtual machine named VM1. The solution must minimize the attack surface of VM1.
To complete this task, sign in to the Azure portal.




AZ-500_400E.png related to the Microsoft AZ-500 Exam