AZ-104 Microsoft Azure Administrator Flashcards

(104 cards)

1
Q

Azure’s cloud-based identity and access management service that provides authentication and authorization for users, groups, and applications.

A

Azure Active Directory

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

A dedicated instance of Azure AD that represents an organization or a single directory.

A

Azure AD Tenants

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

Custom domains that can be added to Azure AD to allow users to sign in using their organization’s domain name.

A

Azure Custom Domains

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

User accounts created in Azure AD for authentication and access control.

A

Azure AD Users

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

Groups created in Azure AD to manage and organize users for easier administration and access control.

A

Azure AD Groups

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

Subscriptions or licenses assigned to Azure AD users to grant access to specific features and services.

A

Azure AD Licenses

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

A logical grouping mechanism in Azure AD that allows for more granular administrative control over resources.

A

Azure Administrative Units

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

A feature in Azure AD that enables users to reset their passwords without the need for assistance from IT administrators.

A

Azure Self-Service Password Reset

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

A security model in Azure that assigns permissions to users based on their roles and responsibilities.

A

Role-based access control (RBAC)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

Predefined roles in Azure that grant specific administrative permissions to users or groups.

A

Azure Administrative Roles

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

Custom-defined roles in Azure that allow for more fine-grained control over permissions by specifying specific actions and resources.

A

Custom RBAC Roles

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

The scope at which resource groups are defined and used to organize and manage Azure resources.

A

Resource Group Scope

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

Containers used to organize and manage Azure resources based on a common lifecycle or application.

A

Resource Groups

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

The main interface in the Azure portal where users can view and manage their Azure subscriptions and resources.

A

Subscription Dashboard

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

A service in Azure that helps users monitor and control their Azure spending and optimize resource usage.

A

Cost Management

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

A feature in Azure that allows users to lock resources to prevent accidental deletion or modification.

A

Resource Locks

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
17
Q

A service in Azure that enables users to define and enforce rules and policies for resource compliance and governance.

A

Azure Policy

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
18
Q

A secure and scalable Azure service that provides storage for various types of data.

A

Storage Account

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
19
Q

The networking configuration of a storage account that allows public access to the storage resources.

A

Storage Account: Public Networking

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
20
Q

The networking configuration of a storage account that restricts access to the storage resources within a virtual network.

A

Storage Account: Private Networking

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
21
Q

Advanced Options: Additional configuration settings for a storage account, such as data lake storage, hierarchical namespace, etc.

A

Storage Account: Advanced Options

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
22
Q

Mechanisms and features provided by Azure for ensuring the integrity and durability of data stored in a storage account.

A

Storage Account: Data Protection

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
23
Q

The process of encrypting data stored in a storage account to protect it from unauthorized access.

A

Storage Account: Encryption

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
24
Q

The completion and activation of a storage account after all the necessary settings and configurations have been defined.

A

Storage Account: Final Creation

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
25
Binary Large Objects (Blobs) are a type of storage object in Azure used for storing unstructured data.
Storage Account: Blobs
26
Azure Files is a storage service that provides fully managed file shares in the cloud.
Storage Account: Files
27
Azure Queue storage is a messaging service that enables reliable and asynchronous communication between components of distributed applications.
Storage Account: Queues
28
Azure Table storage is a NoSQL key-value store that provides schema-less storage of structured data.
Storage Account: Tables
29
Authentication keys associated with a storage account that can be used to access and manage the storage resources.
Access Keys
30
A secure way to provide limited access to storage resources in a storage account without sharing the account keys.
SAS (Shared Access Signature)
31
A feature in Azure storage that allows users to define fine-grained access permissions for shared access signatures.
Stored Access Policies
32
Storage redundancy options in Azure that provide data replication and fault tolerance for high availability and durability.
Redundant Storage
33
Different storage performance and cost options available in Azure, such as hot, cool, and archive tiers.
Access Tiers
34
A service in Azure that collects and analyzes log and performance data from various resources for monitoring and troubleshooting.
Log Analytics
35
Azure AD integration with Azure storage that enables granular access control based on user identities and groups.
Azure AD Access Control for Storage
36
A feature in Azure storage that automates the movement and deletion of data based on specified rules and policies.
Lifecycle Management
37
A virtual hard disk attached to an Azure virtual machine for storing data.
Azure Data Disk
38
A command-line utility used for copying data to and from Azure storage.
AzCopy
39
A web-based tool in the Azure portal for managing and interacting with storage accounts and their contents.
Storage Browser
40
A feature in Azure storage that enables automatic replication of data between storage accounts in different regions for redundancy.
Object Replication
41
A fully managed file share in Azure that can be accessed and shared across multiple virtual machines.
Azure file share
42
A service that enables synchronization of on-premises file servers with Azure file shares for seamless access and backup.
Azure File Sync
43
A high-performance storage offering in Azure for storing and accessing large amounts of unstructured data.
Premium Storage: Blobs
44
A high-performance storage offering in Azure for hosting file shares with low latency and high throughput.
Premium Storage: Files
45
A virtualized computing instance in Azure that runs an operating system and applications.
Virtual Machine
46
Different disk options available for Azure virtual machines, such as managed disks, unmanaged disks, and premium disks.
Azure VM Disk Options
47
Networking configurations and options available for Azure virtual machines, such as virtual networks, subnets, and network security groups.
Azure VM Networking Options
48
The process of provisioning, configuring, monitoring, and maintaining Azure virtual machines.
Azure VM Management
49
The level of availability and resilience provided by Azure for virtual machines through features like availability sets and availability zones.
VM Availability
50
Additional storage disks attached to an Azure virtual machine for data storage.
VM Additional Disks
51
A fully managed service in Azure that provides secure and seamless RDP and SSH access to virtual machines.
Azure Bastion Service
52
A feature in Azure that allows for the deployment and management of a set of identical virtual machines.
Virtual Machine Scale Sets (VMSS)
53
The process of manually adjusting the number of virtual machines in a virtual machine scale set based on workload requirements.
VMSS Manual Scaling
54
A repository of pre-built virtual machine images and templates available in Azure for easy deployment.
Azure Compute Gallery
55
Azure Resource Manager (ARM) templates are JSON files used to define and deploy Azure resources and configurations.
ARM Template
56
A domain-specific language (DSL) for defining Azure resources that provides a cleaner and more concise syntax compared to ARM templates.
Azure Bicep
57
An open-source infrastructure as code (IaC) tool that can be used to define and provision infrastructure resources in Azure.
Terraform
58
A feature in Azure that allows running custom scripts on virtual machines during deployment or after provisioning.
ARM Custom Script Extensions
59
A file format used for representing virtual machine disks in Azure.
VHD (Virtual Hard Disk)
60
Encryption of virtual machine disks at the server level for enhanced security.
VM Server-Side Encryption (SSE)
61
A feature in Azure that enables encryption of virtual machine disks at the OS level.
Azure Disk Encryption (ADE)
62
Scheduled or manual processes in Azure for backing up virtual machines and their data.
VM Backup Jobs
63
The process of recovering and restoring a virtual machine from a backup to its previous state.
VM Restores
64
A service in Azure that allows for hosting and managing web applications.
Web App
65
A fully managed platform in Azure for building, deploying, and scaling web, mobile, and API applications.
App Service
66
An integration between Azure and GitHub that allows for automating workflows and CI/CD pipelines.
GitHub Actions
67
A managed container orchestration service in Azure that simplifies the deployment, management, and scaling of Kubernetes clusters.
Azure Kubernetes Services (AKS)
68
Lightweight, isolated units of software packaging that encapsulate applications and their dependencies.
Containers
69
A Kubernetes cluster managed by Azure Kubernetes Service (AKS).
AKS Cluster
70
A command-line tool used to interact with and manage Kubernetes clusters.
Kubectl
71
Different storage options available for persistent data storage in AKS, such as Azure Disks, Azure Files, and Azure Blob storage.
AKS Storage Options
72
A tool that allows for running and managing Docker containers on a local machine for development and testing.
Docker Desktop
73
A serverless container offering in Azure that allows for running containers without managing underlying infrastructure.
ACI (Azure Container Instances)
74
A collection of containers managed and deployed together as a group in Azure Container Instances.
ACI Container Groups
75
A service in Azure that simplifies the deployment and management of containerized applications using Azure Container Registry and Azure Container Instances.
Azure Container Apps
76
A logically isolated network in Azure that allows for secure communication between Azure resources.
VNet (Virtual Network)
77
A smaller address space within a virtual network where resources can be deployed.
Virtual Network Subnet
78
A virtual or physical network interface attached to a virtual machine or other Azure resources for network connectivity.
Network Interface Card
79
Remote Desktop Protocol (RDP) is a protocol used to access and control Windows-based virtual machines.
RDP Access
80
Secure connections established over the internet that allow users to access private networks remotely.
VPNs (Virtual Private Networks)
81
A dedicated and private network connection between on-premises infrastructure and Azure data centers for secure and reliable communication.
ExpressRoute
82
The process of connecting two virtual networks in Azure to enable resources in one virtual network to communicate with resources in another.
VNet Peering
83
A feature in Azure that allows virtual networks in different Azure regions to be connected for global-scale deployments.
Global Peering
84
A service in Azure that enables secure and encrypted communication between virtual networks in Azure.
Azure-to-Azure Virtual Network Gateway
85
A connection established between an on-premises network and an Azure virtual network using a VPN or ExpressRoute.
Network Gateway Connection
86
Services in Azure that provide domain name system (DNS) management for translating domain names to IP addresses.
Azure DNS Services
87
A DNS zone in Azure that resolves names to private IP addresses within a virtual network.
Private DNS Zone
88
A DNS zone in Azure that resolves names to public IP addresses accessible over the internet.
Public DNS Zone
89
Security groups in Azure that act as a virtual firewall for controlling inbound and outbound traffic to Azure resources.
NSGs (Network Security Groups)
90
Rules defined within a network security group that allow or deny specific types of network traffic.
NSG Rules
91
The process of distributing incoming network traffic across multiple resources or servers for improved performance and availability.
Load Balancing
92
A load balancer service in Azure that provides application-level load balancing and other advanced traffic management capabilities.
Application Gateway
93
A monitoring and diagnostic service in Azure that provides insights into network traffic and helps troubleshoot network issues.
Network Watcher
94
A feature in Azure Network Watcher that enables monitoring and troubleshooting of network connectivity between resources.
Connection Monitor
95
A feature in Azure Network Watcher that helps verify network traffic flow between resources.
IP Flow Verify
96
Logs generated by Network Security Groups (NSGs) that capture information about inbound and outbound network traffic.
NSG Flow Logs
97
Logs generated by Azure resources that provide diagnostic information about network-related activities.
Network Diagnostic Logs
98
A network architecture in Azure where a central "hub" virtual network is connected to multiple "spoke" virtual networks.
Hub and Spoke Network Design
99
A service in Azure that provides monitoring and analytics capabilities for applications, infrastructure, and networks.
Azure Monitor
100
Diagnostic information collected from the guest operating system of virtual machines for troubleshooting purposes.
Guest OS Host Diagnostics
101
Queries written in the Kusto Query Language (KQL) used to analyze and retrieve data from Azure Monitor logs.
Kusto Queries on Logs
102
A disaster recovery solution in Azure that provides replication and recovery services for on-premises and Azure virtual machines.
Azure Site Recovery
103
Site-to-Site replication using Azure Site Recovery (ASR) to replicate data between on-premises sites for disaster recovery.
ASR to Site-to-Site Replication
104
A feature in Azure Site Recovery that allows for testing the failover process without impacting production environments.
ASR Test Failover