AZ-800 無料問題集「Microsoft Administering Windows Server Hybrid Core Infrastructure」

Your network consists of an AD domain named fabrikam.com. This domain has a server known as Server2 running Windows Server 2016.
Server2 has IPAM (IP Address Management) installed. IPAM has been configured to utilize the Group Policy-based provisioning approach. The prefix of IPAM GPOs is IP.
You rename the IPAM GPOs manually from Group Policy Management to have IPAM's prefix.
Now, you are required to edit the GPO prefix utilized by IPAM. What would you do?

解説: (JPNTest メンバーにのみ表示されます)
You have a server named Server1 that runs Windows Server. Server1 has the storage pools shown in the following table.

You plan to create a virtual disk named VDisk1 that will use storage tiers.
Which pools can you use to create VDisk1 ?

解説: (JPNTest メンバーにのみ表示されます)
One of your friends is confused about which type of disks he should use for production and performance-sensitive workloads. He approaches you for help. What will you suggest to him?

From the below-given list, choose the valid policies that can be set to inform Azure File Sync when cool files should be tiered while enabling cloud tiering. (Choose two)

正解:A、C 解答を投票する
解説: (JPNTest メンバーにのみ表示されます)
Hotspot Question
Your network contains an Active Directory Domain Services (AD DS) domain. The domain contains three servers named SRV1, SRV2, and SRV3 that run Windows Server. The domain contains a user named User1.
You plan to perform the following tasks:
- Sign in to SRV1 as User1.
- Establish a PowerShell remoting session from SRV1 to SRV2.
- From the remoting session, invoke a command that targets SRV3 and
runs the command in the security context of User1.
You need to configure resource-based Kerberos constrained delegation to support the planned tasks.
How should you complete the PowerShell script? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.
正解:

Explanation:
Reference:
https://learn.microsoft.com/en-us/powershell/scripting/security/remoting/ps-remoting-second-hop
You have an on-premises server named DNS1 that runs Windows Server and has the DNS Server role.
You have an Azure subscription that contains an Azure Private DNS zone named contoso.com.
You implement an Azure DNS Private Resolver named Resolver1.
You need to ensure that DNS1 can resolve names from contoso.com by using Resolver1. The solution must minimize administrative effort.
What should you configure?

解説: (JPNTest メンバーにのみ表示されます)
You have an on-premises server named Server1 that runs Windows Server.
You have an Azure subscription that contains a virtual network named VNet1.
You need to connect Server1 to VNet1 by using Azure Network Adapter.
What should you use?

解説: (JPNTest メンバーにのみ表示されます)
Hotspot Question
You have an on-premises DNS server named Server1 that runs Windows Server. Server1 hosts a DNS zone named fabrikam.com.
You have an Azure subscription that contains the resources shown in the following table.

You need to design a solution that will automatically resolve the names of any PaaS resources for which you configure private endpoints in Vnet1.
How should you configure the name resolution? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.
正解:

Explanation:
https://learn.microsoft.com/en-us/azure/private-link/private-endpoint-dns#on-premises-workloads-using-a-dns-forwarder
Hotspot Question
You have a Docker host.
You need to create a Windows Server container image that will include an installation of Python.
How should you complete the Dockerfile? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.
正解:
Your network contains an Active Directory domain named contoso.com. The domain contains the computers shown in the following table.

On Server3, you create a Group Policy Object (GPO) named GPO1 and link GPO1 to contoso.com. GPO1 includes a shortcut preference named Shortcut1 that has item-level targeting configured as shown in the following exhibit.

To which computer will Shortcut1 be applied?

Your network contains an Active Directory Domain Services (AD DS) domain. The domain contains the domain controllers shown in the following table.

You need to ensure that if an attacker compromises the computer account of RODC1, the attacker cannot view the Employee-Number AD DS attribute.
Which partition should you modify?

解説: (JPNTest メンバーにのみ表示されます)
Hotspot Question
Your network contains an on-premises Active Directory Domain Services (AD DS) domain named contoso.com. Contoso.com contains an organizational unit (OU) named OU1.
You have an Azure subscription named Sub1 that is linked to a Microsoft Entra tenant named fabrikam.com. Fabrikam.com syncs with contoso.com.
In Sub1, you create a Microsoft Entra Domain Services domain configured as shown in the following table.

In domain1.onmicrosoft.com, you create two OUs named OU1 and OU2.
For each of the following statements, select Yes if the statement is true. Otherwise, select No.
NOTE: Each correct selection is worth one point.
正解:

Explanation:
Box 1: Yes
Users in the on-premises AD DS domain (contoso.com) that are synchronized to Microsoft Entra ID (fabrikam.com) will be synchronized to the AADDC Users OU in the managed domain (domain1.onmicrosoft.com) Box 2: No Synchronization in Microsoft Entra Domain Services is one-way from Microsoft Entra ID to the managed domain. Users created in the managed domain (domain1.onmicrosoft.com) do not sync back to Microsoft Entra ID (fabrikam.com).
Box 3: Yes
Users created in Microsoft Entra ID (fabrikam.com) will be synchronized to the managed domain (domain1.onmicrosoft.com) and placed in the AADDC Users OU1.
https://learn.microsoft.com/en-us/entra/identity/domain-services/synchronization
You have an Azure Active Directory Domain Services (Azure AD DS) domain named contoso.com.
You need to provide an administrator with the ability to manage Group Policy Objects (GPOs).
The solution must use the principle of least privilege.
To which group should you add the administrator?

解説: (JPNTest メンバーにのみ表示されます)
You have an on-premises server named Server1 that runs Windows Server and is managed by using Windows Admin Center.
You have an Azure subscription that contains a virtual network named VNet1.
You need to connect Server1 to VNet1 by using an Azure Network Adapter.
What should you do first in Windows Admin Center?

解説: (JPNTest メンバーにのみ表示されます)

弊社を連絡する

我々は12時間以内ですべてのお問い合わせを答えます。

オンラインサポート時間:( UTC+9 ) 9:00-24:00
月曜日から土曜日まで

サポート:現在連絡