March Sale - Special Limited Time 65% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: dpm65

Note! The AZ-720 Exam is no longer available.

AZ-720 Troubleshooting Microsoft Azure Connectivity Questions and Answers

Questions 4

You need to resolve the issue with Admin1.

What should you do?

Options:

A.

Configure Azure AD Connect filtering to include the Admins organizational unit.

B.

Reset the Azure AD Connect service account password in AD DS.

C.

Enable security inheritance in Active Directory Domain Services (AD DS).

D.

Start a full import in Azure AD Connect.

Buy Now
Questions 5

You need to resolve the issue repotted by Admin2.

What should you do?

Options:

A.

Add a rule to N5G2 that allows outbound traffic to the internet over port 80.

B.

Disassociate NSG2 from Subnet12.

C.

Configure a second network interface on VM4.

D.

Disassociate NSG5 from NIC4.

Buy Now
Questions 6

You need to troubleshoot the issue with SRV2.

Which PowerShell cmdlet should you run?

Options:

A.

Confirm-MsolDomain

B.

Get-MsolDomamFederationSettings

C.

Get-MsolDomamVerificationDns

D.

Get-MsolServicePrincipalCredential

E.

Get-Mousers

Buy Now
Questions 7

You need to troubleshoot the issue reported by Blue Yonder Airlines.

Which diagnostic log should you review?

Options:

A.

RouteDiagnosticLog

B.

GatewayDiagnosticLog

C.

TunnelDiagnosticLog

D.

IKEDiagnosticLog

Buy Now
Questions 8

You need to resolve the connectivity issues for VM1 to Contoso Suites.

What parameters should you configure for each peering connection? To answer, select the appropriate options in the answer area.

NOTE: Each correct selection is worth one point.

AZ-720 Question 8

Options:

Buy Now
Questions 9

You need to resolve the issue with VM10.

What should you do?

Options:

A.

In the NSG10 inbound security rule that has a priority of 100, change the destination to ASG10

B.

In NSG10, remove the inbound security rule that has a priority of 100.

C.

In the NSG10 inbound security rule that has a priority of 100, change the protocol to Any

D.

Add an outbound security rule to NSG1 that allows outbound traffic from ASG1 to ASG10. Configure the rule to use a priority of 100.

Buy Now
Questions 10

You need to troubleshoot the issues reported by User1.

Which commands should you use? To answer, select the appropriate options in the answer area.

NOTE: Each correct selection is worth one point.

AZ-720 Question 10

Options:

Buy Now
Questions 11

You need to troubleshoot the issues reported by Agent1.

What should you review? To answer, select the appropriate options in the answer area.

NOTE: Each correct selection is worth one point.

AZ-720 Question 11

Options:

Buy Now
Questions 12

You need to troubleshoot and resolve the reverse VPN connectivity issues.

What should you do? To answer, select the appropriate option in the answer area.

NOTE: Each correct selection is worth one point.

AZ-720 Question 12

Options:

Buy Now
Questions 13

A company implements Windows and Linux VMs in an Azure Virtual Network. The company plans to apply routing changes to the virtual network.

You need to determine the impact of these changes on network latency affecting applications that use TCP and UDP traffic. The solution must provide the highest level of accuracy.

Which tools should you use?

AZ-720 Question 13

Options:

Buy Now
Questions 14

A company has an Azure Virtual Network gateway named VNetGW1. The company enables point-to-site connectivity on VNetGW1. An administrator configures VNetGW1 for the following:

  • OpenVPN for the tunnel type.
  • Azure certificate for the authentication type.

Users receive a certificate mismatch error when connecting by using a VPN client.

You need to resolve the certificate mismatch error.

What should you do?

Options:

A.

Reissue the client certificate with client authentication enabled.

B.

Create a profile manually, add the server FQDN and reissue the client certificate.

C.

Reissue the client certificate with server authentication enabled.

D.

Install an IKEv2 VPN client on the user's computers.

Buy Now
Questions 15

A company uses Azure Active Directory (Azure AD) with Azure role-based access control (RBAC) for access to resources.

Some users report that they are unable to grant RBAC roles to other users.

You need to troubleshoot the issue.

How should you complete the Azure Monitor query?

AZ-720 Question 15

Options:

Buy Now
Questions 16

A company has an Azure Active Directory (Azure AD) tenant. The company deploys Azure AD Connect to synchronize objects from their Active Directory Domain Services (AD DS) domain.

You observe that AD DS objects are not synchronizing to Azure AD.

You need to verify that the staging mode is enabled.

What should you do?

Options:

A.

Review the history for the Azure AD Connect sync scheduled task.

B.

Run this PowerShell cmdlet: Get-ADSyncScheduler

C.

Review the triggers for the Azure AD Connect sync scheduled task.

D.

Run this PowerShell cmdlet: Get-ADSyncConnetorRunStatus

Buy Now
Questions 17

A company deploys a new file sharing application on four Standard_D2_v3 virtual machines (VMs) behind an Azure Load Balancer. The company implements Azure Firewall.

Users report that the application is slow during peak usage periods. An engineer reports that the peak usage for each VM is approximately 1 Gbps.

You need to implement a solution that support a minimum of 10 Gbps.

What should you do to increase the throughput?

Options:

A.

Request an increase in networking quotas.

B.

Increase the size of the VM instance.

C.

Disable the Azure Firewall and implement network security groups in its place.

D.

Move two of the servers behind a separate load balancer and configure round robin routing in Traffic Manager.

Buy Now
Questions 18

A company uses Azure Site Recovery (ASR) for a VMware environment that includes the following virtual machines (VMs):

AZ-720 Question 18

The company reports that they are unable to configure all of the servers for replication.

You need to evaluate the servers and server roles to determine which servers can be protected.

Which server can you protect by using ASR?

Options:

A.

VM1

B.

VM2

C.

VM3

D.

VM4

Buy Now
Questions 19

A company enables just-in-time (JIT) virtual machine (VM) access in Azure.

An administrator observes a list of VMs on the Unsupported tab of the JIT VM access page in the Microsoft Defender for Cloud portal.

You need to determine why some VMs are not supported for JIT VM access.

What should you conclude?

Options:

A.

The administrator is using the Microsoft Defender for Cloud free tier.

B.

The VMs were provisioned by using a classic deployment.

C.

The administrator does not have the SecurityReader role.

D.

The administrator does not have permissions to request JIT access to the VMs.

Buy Now
Questions 20

A company implements self-service password reset (SSPR).

After a firewall upgrade at the company's datacenter, SSPR stops working.

You need to resolve the issue.

Which two URLs must be present on the firewalls to allow SSPR to connect?

Options:

A.

*.update.microsoft.com

B.

*.servicebus.windows.net

C.

*.passwordreset. microsoftonline.com

D.

*.svc.ms

E.

*.adl.windows.com

Buy Now
Questions 21

A company migrates an on-premises Windows virtual machine (VM) to Azure. An administrator enables backups for the VM by using the Azure portal.

The company reports that the Azure VM backup job is failing.

You need to troubleshoot the issue.

Solution: Create a new manual backup in Backup center.

Does the solution meet the goal?

Options:

A.

Yes

B.

No

Buy Now
Questions 22

A company has an Azure tenant. The company deploys an Azure firewall named FW1 to control access from an on-premises datacenter to an Azure virtual machine named VM1.

The company troubleshoots ICMP connectivity from the on-premises datacenter to VM1. You are unable to ping VM1 from an on-premises server.

You need to determine if ICMP connectivity to VM1 is allow on FW1.

What should you do?

Options:

A.

Use the ping command targeting the IP address of VM1 and review the Infrastructure rules log of FW1.

B.

Use the ping command targeting the IP address of VM1 and review the command's response.

C.

Use the ping command targeting the IP address of VM1 and review the Network rules log of FW1.

D.

Use the ping command targeting the fully qualified domain name of VM1 and review the command's response.

Buy Now
Questions 23

A company deploys an Azure Firewall. The company reports the following log entry:

AZ-720 Question 23

For each of the following questions, select Yes or No.

AZ-720 Question 23

Options:

Buy Now
Questions 24

A company connects their on-premises network by using Azure VPN Gateway. The on-premises environment includes three VPN devices that separately tunnel to the gateway by using Border Gateway Protocol (BGP).

A new subnet should be unreachable from the on-premises network.

You need to implement a solution.

Solution: Configure a route table with route propagation disabled.

Does the solution meet the goal?

Options:

A.

Yes

B.

No

Buy Now
Exam Code: AZ-720
Exam Name: Troubleshooting Microsoft Azure Connectivity
Last Update: Dec 3, 2023
Questions: 119
dumpsmate guaranteed to pass
24/7 Customer Support

DumpsMate's team of experts is always available to respond your queries on exam preparation. Get professional answers on any topic of the certification syllabus. Our experts will thoroughly satisfy you.

Site Secure

mcafee secure

TESTED 29 Mar 2024