AZ-305 Dumps

AZ-305 Free Practice Test

Microsoft AZ-305: Designing Microsoft Azure Infrastructure Solutions

QUESTION 51

- (Exam Topic 5)
Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution.
After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen.
Your company plans to deploy various Azure App Service instances that will use Azure SQL databases. The App Service instances will be deployed at the same time as the Azure SQL databases.
The company has a regulatory requirement to deploy the App Service instances only to specific Azure regions. The resources for the App Service instances must reside in the same region.
You need to recommend a solution to meet the regulatory requirement.
Solution: You recommend creating resource groups based on locations and implementing resource locks on the resource groups.
Does this meet the goal?

Correct Answer: B
Resource locks are not used for compliance purposes. Resource locks prevent changes from being made to resources.
Reference:
https://docs.microsoft.com/en-us/azure/azure-resource-manager/management/lock-resources

QUESTION 52

- (Exam Topic 1)
You plan to migrate App1 to Azure.
You need to recommend a storage solution for App1 that meets the security and compliance requirements. Which type of storage should you recommend, and how should you recommend configuring the storage? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.
AZ-305 dumps exhibit
Solution:
Text, table Description automatically generated
Box 1: Standard general-purpose v2
Standard general-purpose v2 supports Blob Storage.
Azure Storage provides data protection for Blob Storage and Azure Data Lake Storage Gen2. Scenario:
Litware identifies the following security and compliance requirements:
AZ-305 dumps exhibit Once App1 is migrated to Azure, you must ensure that new data can be written to the app, and the modification of new and existing data is prevented for a period of three years.
AZ-305 dumps exhibit On-premises users and services must be able to access the Azure Storage account that will host the data in App1.
AZ-305 dumps exhibit Access to the public endpoint of the Azure Storage account that will host the App1 data must be prevented.
AZ-305 dumps exhibit All Azure SQL databases in the production environment must have Transparent Data Encryption (TDE) enabled.
AZ-305 dumps exhibit App1 must NOT share physical hardware with other workloads. Box 2: NFSv3
Scenario: Plan: Migrate App1 to Azure virtual machines.
Blob storage now supports the Network File System (NFS) 3.0 protocol. This support provides Linux file system compatibility at object storage scale and prices and enables Linux clients to mount a container in Blob storage from an Azure Virtual Machine (VM) or a computer on-premises. Reference:
https://docs.microsoft.com/en-us/azure/storage/blobs/data-protection-overview

Does this meet the goal?

Correct Answer: A

QUESTION 53

- (Exam Topic 5)
You store web access logs data in Azure Blob storage. You plan to generate monthly reports from the access logs.
You need to recommend an automated process to upload the data to Azure SQL Database every month. What should you include in the recommendation?

Correct Answer: A
Azure Data Factory is the platform that solves such data scenarios. It is the cloud-based ETL and data integration service that allows you to create data-driven workflows for orchestrating data movement and transforming data at scale. Using Azure Data Factory, you can create and schedule data-driven workflows (called pipelines) that can ingest data from disparate data stores. You can build complex ETL processes that transform data visually with data flows or by using compute services such as Azure HDInsight Hadoop, Azure Databricks, and Azure SQL Database.
Reference:
https://docs.microsoft.com/en-gb/azure/data-factory/introduction

QUESTION 54

- (Exam Topic 5)
You have five Azure subscriptions. Each subscription is linked to a separate Azure AD tenant and contains virtual machines that run Windows Server 2022.
You plan to collect Windows security events from the virtual machines and send them to a single Log Analytics workspace.
You need to recommend a solution that meets the following requirements:
• Collects event logs from multiple subscriptions
• Supports the use of data collection rules (DCRs) to define which events to collect
What should you recommend for each requirement? To answer, select the appropriate options in the answer area. NOTE: Each correct selection is worth one point.
AZ-305 dumps exhibit
Solution:
AZ-305 dumps exhibit

Does this meet the goal?

Correct Answer: A

QUESTION 55

- (Exam Topic 5)
Your network contains an on-premises Active Directory forest.
You discover that when users change jobs within your company, the membership of the user groups are not being updated. As a result, the users can access resources that are no longer relevant to their job.
You plan to integrate Active Directory and Azure Active Directory (Azure AD) by using Azure AD Connect. You need to recommend a solution to ensure that group owners are emailed monthly about the group
memberships they manage.
What should you include in the recommendation?

Correct Answer: C
Reference:
https://docs.microsoft.com/en-us/azure/active-directory/governance/access-reviews-overview