Azure Architecture and Services Flashcards

1
Q

The Azure free account includes free access to popular Azure products for how long?

A

12 Months

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

What is a geographical area on the planet that contains at least one, but potentially multiple datacenters that are nearby and networked together with a low-latency network?

A

A region

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

Availability zones are connected through what?

A

High-speed, private fiber-optic networks

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

To ensure resiliency, how many separate availability zones are present in all availability zone-enabled regions?

A

At least three.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

What can you use to run mission-critical applications and build high-availability into your application architecture?

A

Availability Zones

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

When you pin a resource to a specific zone, you’re using what kind of Azure service?

A

A zonal service

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

Zone-redundant services do what?

A

Replicate automatically across zones

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

Services that are always available from Azure geographies are known as what?

A

Non-regional services

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

What provides a level of scope above subscriptions?

A

Azure management groups

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

Resource groups are gathered into what?

A

Subscriptions

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

How many management groups can be supported in a single directory?

A

10,000

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

How many levels of depth can a management group tree support?

A

Six, not including the root level or the subscription level.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

How many parents can a management group have?

A

One

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

How many parents can a subscription have?

A

One

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

How many resource groups can a resource be in at the same time?

A

One

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

What happens to the resources within a resource group when an action or setting at the Resource Group level is applied?

A

The setting is applied to current and future resources.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
17
Q

What Azure feature replicates resources across regions that are at least 300 miles away from each other?

A

Region pairs

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
18
Q

Data in an Azure Storage account is replicated how many times in the primary region?

A

Three

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
19
Q

What are the two options for how your data is replicated in the primary region?

A

Locally redundant storage (LRS) and zone-redundant storage (ZRS)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
20
Q

What replicates your data three times within a single data center in the primary region?

A

Locally redundant storage (LRS)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
21
Q

What is the lowest-cost redundancy option for Azure storage?

A

Locally redundant storage (LRS)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
22
Q

What replicates your Azure Storage data synchronously across three Azure availability zones in the primary region?

A

Zone-redundant storage (ZRS)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
23
Q

What are two storage options for copying your data to a secondary region?

A

Geo-redundant storage (GRS) and geo-zone-redundant storage (GZRS)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
24
Q

What copies your data asynchronously to a single physical location in a secondary region, from a single physical location in the primary region?

A

Geo-redundant storage (GRS)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
25
Q

What is a massively scalable object store for text and binary data?

A

Azure Blobs

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
26
Q

What manages file shares for cloud or on-premises deployments?

A

Azure Files

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
27
Q

What is a messaging store for reliable messaging between application components?

A

Azure Queues

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
27
Q

What is a messaging store for reliable messaging between application components?

A

Azure Queues

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
28
Q

What are block-level storage volumes for Azure VMs?

A

Azure Disks

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
29
Q

Data in Azure Storage is accessible from anywhere in the world over what?

A

HTTP or HTTPS

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
30
Q

What storage type has multiple access tiers?

A

Blob storage

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
31
Q

What access tiers for Blob storage can be set at the account level?

A

Hot and cool

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
32
Q

What is a service that helps you migrate from an on-premises environment to the cloud?

A

Azure Migrate

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
33
Q

Which Azure Migrate tool is a stand-alone tool to assess SQL Servers?

A

Data Migration Assistant

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
34
Q

Which tool is used to migrate on-premises databases to Azure VMs running SQL Server, Azure SQL Database, or SQL Managed Instances?

A

Azure Database Migration Service

35
Q

What tool is used to migrate VMware VMs, Hyper-V VMs, physical servers, other virtualized servers, and public cloud VMs to Azure?

A

Azure Migrate: Server Migration

36
Q

What is a standalone tool to assess on-premises websites for migration to Azure App Service?

A

Web app migration assistant

37
Q

What is used to discover and assess on-premises servers running on VMware, Hyper-V, and physical servers in preparation for migration to Azure?

A

Azure Migrate: Discovery and assessment

38
Q

Which product is used to move large amounts of offline data to Azure?

A

Azure Data Box

39
Q

What is a command-line utility that you can use to copy blobs or files to or from your storage account?

A

AzCopy

40
Q

What is a standalone app that provides a graphical interface to manage files and blobs in your Azure Storage Account?

A

Azure Storage Explorer

41
Q

What is a tool that lets you centralize your file shares in Azure Files and keep the flexibility, performance, and compatibility of a Windows file server?

A

Azure File Sync

42
Q

Which tool automatically keeps files between an on-premises Windows server and an Azure cloud environment updated?

A

Azure File Sync

43
Q

Which storage redundancy option provides the highest degree of durability, with 16 nines of durability?

A

Geo-redundant storage and Geo-zone-redundant-storage

44
Q

Which Azure Storage service supports big data analytics, as well as handling text and binary data types?

A

Azure Blobs

45
Q

What allows you to centrally manage, configure, and update a large number of VMs in minutes?

A

Virtual machine scale sets

46
Q

What groups VMs that can be rebooted at the same time?

A

Update domain grouping

47
Q

What groups VMs by common power source and network switch?

A

Fault domain grouping

48
Q

What are designed to ensure that VMs stagger updates and have varied power and network connectivity, preventing you from losing all your VMs with a single network or power failure?

A

Virtual machine availability sets

49
Q

What is a desktop and application virtualization service that runs on the cloud?

A

Azure Virtual Desktop

50
Q

What provides centralized security management for users’ desktops with Azure Active Directory (Azure AD)?

A

Azure Virtual Desktop

51
Q

What are a platform as a service (PaaS) offering and offer the fastest and simplest way to run a container in Azure?

A

Azure Container Instances

52
Q

What is an event-driven, serverless compute option that doesn’t require maintaining virtual machines or containers?

A

Azure Functions

53
Q

What are commonly used when you need to perform work in response to an event (often via a REST request), timer, or message from another Azure service?

A

Azure Functions

54
Q

What enables you to build and host web apps, background jobs, mobile back-ends, and RESTful APIs in the programming language of your choice without managing infrastructure?W

A

App Service

55
Q

What enables Azure resources, such as VMs, web apps, and databases, to communicate with each other, with users on the internet, and with your on-premises client computers?

A

Azure Virtual Networking

56
Q

What network connections are from a computer outside your organization back into your corporate network?

A

Point-to-site virtual private network connections

57
Q

What links on-premises VPN devices or gateways to the Azure VPN gateway in a virtual network?

A

Site-to-site virtual private networks

58
Q

What provides a dedicated private connectivity to Azure that doesn’t travel over the internet?

A

Azure ExpressRoute

59
Q

What are typically deployed to connect two or more trusted private networks to one another over an untrusted network (typically the public internet)?

A

Virtual private networks (VPNs)

60
Q

Dynamic routing between your network and Microsoft via Border Gateway Protocol (BGP) is a benefit of what?

A

Azure ExpressRoute

61
Q

You have an office in Asia and a datacenter in Europe, both with ExpressRoute circuits connecting them to the Microsoft network. What do you use to connect those two facilities, allowing them to communicate without transferring data over the public internet?

A

ExpressRoute Global Reach

62
Q

What protocol is used to exchange routes between on-premises networks and resources running in Azure?

A

Border Gateway Protocol (BGP)

63
Q

What refers to your datacenter, office, or other facility being physically co-located at a cloud exchange, such as an ISP?

A

CloudExchange colocation

63
Q

What refers to your datacenter, office, or other facility being physically co-located at a cloud exchange, such as an ISP?

A

CloudExchange colocation

64
Q

What integrates your wide area network (WAN) with Azure by providing connections to your offices and datacenters?

A

An Any-to-any connection

65
Q

What is a hosting service that provides name resolution by using Microsoft Azure infrastructure?

A

Azure DNS

66
Q

Azure DNS is based on what?

A

Azure Resource Manager

67
Q

Which Azure Virtual Machine feature staggers updates across VMs based on their update domain and fault domain?

A

Availability sets

68
Q

Which Azure service allows users to use a cloud hosted version of Windows from any location and connect from most modern browsers?

A

Azure Virtual Desktop

69
Q

What is a directory service that enables you to sign in and access both Microsoft cloud applications and cloud applications that you develop?

A

Azure Active Directory (Azure AD)

70
Q

What is Microsoft’s cloud-based identity and access management service?

A

Azure AD

71
Q

What is a service that provides managed domain services such as domain join, group policy, lightweight directory access protocol (LDAP), and Kerberos/NTLM authentication?

A

Azure Active Directory Domain Services (Azure AD DS)

72
Q

What enables a user to sign in one time and use that credential to access multiple resources and applications from different providers?

A

Single sign-on (SSO)

73
Q

What is the process of prompting a user for an extra form (or factor) of identification during the sign-in process?

A

Multifactor authentication

74
Q

What is a Microsoft service that provides multifactor authentication capabilities?

A

Azure AD Multi-Factor Authentication

75
Q

Fast Identity Online (FIDO) is an open standard for what?

A

Passwordless authentication

76
Q

What allows users and organizations to leverage the standard to sign-in to their resources without a username or password by using an external security key or a platform key built into a device?

A

FIDO (Fast IDentity Online)

77
Q

What refers to all the ways you can securely interact with users outside of your organization?

A

Azure AD External Identities

78
Q

What is a tool that Azure Active Directory uses to allow (or deny) access to resources based on identity signals?

A

Conditional Access

79
Q

What is a security model that assumes the worst case scenario and protects resources with that expectation?

A

Zero Trust

80
Q

What strategy uses a series of mechanisms to slow the advance of an attack that aims at acquiring unauthorized access to data?

A

A defense-in-depth strategy

81
Q

What is a monitoring tool for security posture management and threat protection?

A

Microsoft Defender for Cloud

82
Q

Which Azure Active Directory tool can vary the credentials needed to log in based on signals, such as where the user is located?

A

Conditional Access

83
Q

Which security model assumes the worst-case security scenario, and protects resources accordingly?

A

Zero trust

84
Q

A user is simultaneously assigned multiple roles that use role-based access control. What are their actual permissions? The role permissions are: Role 1 - read || Role 2 - write || Role 3 - read and write.

A

Read and write