[Jan-2023] 100% Actual AZ-720 dumps Q&As with Explanations Verified & Correct Answers [Q46-Q69]

Rate this post

[Jan-2023] 100% Actual AZ-720 dumps Q&As with Explanations Verified & Correct Answers

AZ-720 Dumps with Free 365 Days Update Fast Exam Updates

Schedule exam

Languages: English

Retirement date: none

This exam measures your ability to accomplish the following technical tasks: troubleshoot business continuity issues; troubleshoot hybrid and cloud connectivity issues; troubleshoot Platform as a Service issues; troubleshoot authentication and access control issues; troubleshoot networks; and troubleshoot VM connectivity issues.

Exam AZ-720: Troubleshooting Microsoft Azure Connectivity

Candidates for this exam should have experience with networking and with hybrid environments, including knowledge of routing, permissions, and account limits. They must be able to use available tools to diagnose issues related to business continuity, hybrid environments, Infrastructure as a Service (IaaS), Platform as a Service (PaaS), access control, networking, and virtual machines connectivity.

Passing score: 700. Learn more about exam scores.

Part of the requirements for: Microsoft Certified: Azure Support Engineer for Connectivity Specialty

Download exam skills outline

 

QUESTION 46
A company uses Azure AD Connect. The company plans to implement self-service password reset (SSPR).
An administrator receives an error that password writeback cloud not be enabled during the Azure AD Connect configuration. The administrator observes the following event log error:
Error getting auth token
You need to resolve the issue.
Solution: Use a global administrator account with a password that is less than 256 characters to configure Azure AD Connect.
Does the solution meet the goal?

 
 

QUESTION 47
A company uses public Azure DNS zones.
The company reports DNS record creation and name resolution issues.
You need to troubleshoot the issues.
What are the causes of the issues?

QUESTION 48
A company plans to use an Azure PaaS service by using Azure Private Link service. The azure Private Link
service and an endpoint have been configured.
The company reports that the endpoint is unable to connect to the service.
You need to resolve the connectivity issue.
What should you do?

 
 
 
 

QUESTION 49
A company has an ExpressRoute gateway between their on-premises site and Azure. The ExpressRoute gateway is on a virtual network named VNet1. The company enables FastPath on the gateway. You associate a network security group (NSG) with all of the subnets.
Users report issues connecting to VM1 from the on-premises environment. VM1 is on a virtual network named VNet2. Virtual network peering is enabled between VNet1 and VNet2.
You create a flow log named FlowLog1 and enable it on the NSG associated with the gateway subnet.
You discover that FlowLog1 is not reporting outbound flow traffic.
You need to resolve the issue with FlowLog1.
What should you do?

 
 
 
 

QUESTION 50
A company uses an Azure Backup agent to back up specific files and folder from an Azure virtual machine (VM) and an on-premises VM.
An administrator reports that the backup job fails on both VMs. Errors are returned in Microsoft Azure Recovery Services (MARS).
You need to troubleshoot the backup issues.
Which troubleshooting solution should you use?

QUESTION 51
A company is deploying Azure Bastion to provide secure clientless access to its Azure VMs. The company
configures a network security group named NSG1.
During deployment, the following error displays: Network security group NSG1 does not have necessary rules
for Azure Bastion Subnet AzureBastionSubnet.
You need to fix the inbound rules for NSG1.
How should you complete the configuration?

QUESTION 52
A company has an Azure Active Directory (Azure AD) tenant. The company deploys Azure AD Connect to
synchronize objects from their Active Directory Domain Services (AD DS) domain.
You observe that AD DS objects are not synchronizing to Azure AD.
You need to verify that the staging mode is enabled.
What should you do?

 
 
 
 

QUESTION 53
A company connects their on-premises network by using Azure VPN Gateway. The on-premises environment includes three VPN devices that separately tunnel to the gateway by using Border Gateway Protocol (BGP).
A new subnet should be unreachable from the on-premises network.
You need to implement a solution.
Solution: Configure subnet delegation.
Does the solution meet the goal?

 
 

QUESTION 54
A company has two virtual networks (VNets) that are configured to use peering. Several Azure virtual
machines are connected to each network. An on-premises network is connected to one of the VNets by using
Azure VPN Gateway.
An administrator reports that communication between applications across the VNets is failing.
You need to troubleshoot the issue.
Which two features can you use to achieve the goal?

 
 
 
 
 

QUESTION 55
A company has an Azure Active Directory (Azure AD) tenant. You are assigned the Owner role-based access
control (RBAC) role of an Azure resource group named RG1.
An administrator grants a user named User1 the Contributor RBAC role for RG1. User1 receives an
authorization error when attempting to create a Cosmos DB account in RG1.
The administrator verifies that they can create a Cosmos DB account in RG1.
You need to troubleshoot the issue.
What should you do?

QUESTION 56
A company deploys ExpressRoute.
The company reports that there is an autonomous system (AS) number mismatch.
You need to identify the AS number of the circuit.
Which PowerShell cmdlet should you run?

 
 
 
 

QUESTION 57
A company uses Azure AD Connect. The company plans to implement self-service password reset (SSPR).
An administrator receives an error that password writeback could not be enabled during the Azure AD Connect configuration. The administrator observes the following event log error:
Error getting auth token
You need to resolve the issue.
What should you do?

 
 
 
 

QUESTION 58
A company hosts a network virtual appliance (VNA) and Azure Route Server in different virtual networks
(VNets). Border Gateway Protocol (BGP) peering is enabled between the NVA loses internet connectivity
after it advertises the default route to the route server.
You need to resolve the problem with the NVA.
What should you do?

 
 
 
 

QUESTION 59
A company uses Azure AD Connect. The company plans to implement self-service password reset (SSPR).
An administrator receives an error that password writeback cloud not be enabled during the Azure AD Connect configuration. The administrator observes the following event log error:
Error getting auth token
You need to resolve the issue.
Solution: Restart the Azure AD Connect service.
Does the solution meet the goal?

 
 

QUESTION 60
A company deploys Azure Traffic Manager load balancing for an Azure App Service solution.
Load balancing performance is showing a degraded status after deployment, and new HTTPS probes are
failing to reach the Traffic Manager endpoints.
You need to troubleshoot the probe failure.
How should you complete the PowerShell script?

QUESTION 61
A company has an Azure tenant. The company deploys an Azure firewall named FW1 to control access from
an on-premises datacenter to an Azure virtual machine named VM1.
The company troubleshoots ICMP connectivity from the on-premises datacenter to VM1. You are unable to
ping VM1 from an on-premises server.
You need to determine if ICMP connectivity to VM1 is allow on FW1.
What should you do?

 
 
 
 

QUESTION 62
A company has an ExpressRoute gateway between their on-premises site and Azure. The ExpressRoute
gateway is on a virtual network named VNet1. The company enables FastPath on the gateway. You associate a
network security group (NSG) with all of the subnets.
Users report issues connecting to VM1 from the on-premises environment. VM1 is on a virtual network named
VNet2. Virtual network peering is enabled between VNet1 and VNet2.
You create a flow log named FlowLog1 and enable it on the NSG associated with the gateway subnet.
You discover that FlowLog1 is not reporting outbound flow traffic.
You need to resolve the issue with FlowLog1.
What should you do?

 
 
 
 

QUESTION 63
A company deploys a new file sharing application on four Standard_D2_v3 virtual machines (VMs) behind an
Azure Load Balancer. The company implements Azure Firewall.
Users report that the application is slow during peak usage periods. An engineer reports that the peak usage for
each VM is approximately 1 Gbps.
You need to implement a solution that support a minimum of 10 Gbps.
What should you do to increase the throughput?

 
 
 
 

QUESTION 64
A company deploys a new file sharing application on four Standard_D2_v3 virtual machines (VMs) behind an Azure Load Balancer. The company implements Azure Firewall.
Users report that the application is slow during peak usage periods. An engineer reports that the peak usage for each VM is approximately 1 Gbps.
You need to implement a solution that support a minimum of 10 Gbps.
What should you do to increase the throughput?

 
 
 
 

QUESTION 65
A company uses Azure AD Connect. The company plans to implement self-service password reset (SSPR).
An administrator receives an error that password writeback cloud not be enabled during the Azure AD
Connect configuration. The administrator observes the following event log error:
Error getting auth token
You need to resolve the issue.
Solution: Use a global administrator account that is not federated to configure Azure AD Connect.
Does the solution meet the goal?

 
 

QUESTION 66
A company connects their on-premises network by using Azure VPN Gateway. The on-premises environment includes three VPN devices that separately tunnel to the gateway by using Border Gateway Protocol (BGP).
A new subnet should be unreachable from the on-premises network.
You need to implement a solution.
Solution: Scale the gateway to Generation2.
Does the solution meet the goal?

 
 

QUESTION 67
A company develops an Azure Cosmos DB solution.
The solution has the following components:
A virtual network named VNet1 in a resource group named RG1.
A subnet named Subnet1 in VNet1.
A Private Link service.
The company is unable to configure a source IP address for the Private Link service from Subnet1.
You need to resolve the issue for Subnet1.
How should you complete the PowerShell commands?

QUESTION 68
A customer has an Azure Virtual Network named VNet1 that contains an internal standard SKU load balancer named LB1. The backend pool for LB1 includes the following virtual machines: VM1, VM2.
The customer configures a rule named Rul1 to load balance incoming HTTPS requests for VM1 and VM2. Rule1 is associated with an HTTPS health probe. The path for the probe is set to /.
The network adapters of VM1 and VM2 are associated with a network security named NSG1 that contains the following rules:

You connect to https://VM1 and https://VM2 from VNet1. Attempts to connect using the front-end IP address of LB1 are failing.
You need to resolve the issue.
What should you do?

 
 
 
 

QUESTION 69
A company connects their on-premises network by using Azure VPN Gateway. The on-premises environment includes three VPN devices that separately tunnel to the gateway by using Border Gateway Protocol (BGP).
A new subnet should be unreachable from the on-premises network.
You need to implement a solution.
Solution: Configure a route table with route propagation disabled.
Does the solution meet the goal?

 
 

Microsoft AZ-720 Exam Syllabus Topics:

Topic Details
Topic 1
  • Troubleshoot Border Gateway Protocol (BGP) issues
  • Determine whether resource response times meet service-level agreements (SLAs)
Topic 2
  • Troubleshoot issues with pass-through authentication and password hash synchronization
  • Determine why on-premises systems cannot connect to Azure resources
Topic 3
  • Troubleshoot encryption and certificate issues for point-to-site and site-to-site scenarios
  • Determine whether a VM or a group of VMs is associated with an application security group (ASG)
Topic 4
  • Troubleshoot issues with private endpoints and service endpoints
  • Determine the root cause for latency issues related to ExpressRoute
Topic 5
  • Troubleshoot point-to-site virtual private network (VPN) connectivity
  • Troubleshoot name resolution for scenarios that use Azure-provided name resolution
Topic 6
  • Determine whether VMs in a load-balanced cluster are healthy
  • Troubleshoot issues with Azure Application Gateway
Topic 7
  • Validate the peering configuration for an ExpressRoute circuit
  • Determine the root cause for latency issues within site-to-site VPNs
Topic 8
  • Troubleshoot Azure Active Directory (Azure AD) authentication issues
  • Review and interpret network logs and captured network traffic from a VPN gateway
Topic 9
  • Determine the root cause for latency issues when connecting to Azure virtual machines
  • Troubleshoot virtual network peering, transitive routing, and service chaining
Topic 10
  • Troubleshoot restore issues when using Azure Backup Agent, Azure backup, or Azure Backup Server
  • Troubleshoot Azure virtual machines backup issues including restarting a failed backup job
Topic 11
  • Troubleshoot issues recovering files from an Azure virtual machine backup
  • Troubleshoot issues with Azure Backup agents

 

Verified AZ-720 dumps Q&As – 2023 Latest AZ-720 Download: https://www.actualpdf.com/AZ-720_exam-dumps.html

         

Related Links: kaeuchi.jp myportal.utt.edu.tt myportal.utt.edu.tt myportal.utt.edu.tt www.stes.tyc.edu.tw myportal.utt.edu.tt

Leave a Reply

Your email address will not be published. Required fields are marked *

Enter the text from the image below