[March-2021]Full Version AZ-303 Dumps AZ-303 222 for Free Download[Q211-Q222]

March/2021 Latest Braindump2go AZ-303 Exam Dumps with PDF and VCE Free Updated Today! Following are some new AZ-303 Real Exam Questions!

You are creating an app that will transcribe speech-to-text in Chinese.
The app will use the Speech service in Azure and will authenticate by using a service principal.
You configure the app to use the Application ID of the service principal and the client secret.
Which other value should you add to the app to authenticate to the Speech service?

A. Subscription ID
B. Tenant ID
C. Application Name
D. Resource Group ID

Answer: D

You have an Azure subscription that contains the resources shown in the following table.

A certificate named Certificate1 is stored in Vault1.
You need to grant VM1 and VM2 access to Certificate1 by using the same security principal.
What should you do?

A. Create an Azure Active Directory (Azure AD) user.
Create an access policy for Vault1.
Assign the access policy to the user.
Configure a user-assigned managed identity for VM1 and VM2.
B. Create a managed identity.
Assign the Key Vault Reader role-based acc ss control (RBAC) role for Vault1 to the managed identity.
Configure a system-assigned managed identity for VM1 and VM2.
C. Create an Azure Active Directory (Azure AD) user.
Assign the Key Vault Reader role-based access control (RBAC) role for Vault1 to the user.
Configure a user-assigned managed identity for VM1 and VM2.
D. Create a managed identity.
Add the Vaultl access policy to the managed identity.
Configure a user-assigned managed identity for VM1 and VM2.

Answer: C

You manage a solution in Azure that consists of a single application which runs on a virtual machine (VM).
Traffic to the application has increased dramatically.
The application must not experience any downtime and scaling must be dynamically defined.
You need to define an auto-scale strategy to ensure that the VM can handle the workload.
Which three options should you recommend? Each correct answer presents a complete solution.
NOTE: Each correct selection is worth one point.

A. Deploy application automatic vertical scaling.
B. Create a VM availability set.
C. Create a VM scale set.
D. Deploy application automatic horizontal scaling.
E. Deploy a custom auto-scale implementation.

Answer: CDE

Note: This question is part of series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution.
After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen.
You have an Azure Active Directory (Azure AD) tenant named contoso.com. A user named Admin1 attempts to create an access review from the Azure Active Directory admin center and discovers that the Access reviews settings are unavailable. Admin1 discovers that all the other Identity Governance settings are available,
Admin1 is assigned the User administrator. Compliance administrator, and Security administrator roles.
You need to ensure that Admin1 can create access reviews in contoso.com.
Solution: You purchase an Azure Active Directory Premium P2 license for contoso.com.
Does this meet the goal?

A. Yes
B. No

Answer: B

You monitor Azure virtual machines by using Azure Monitor.
You plan to restart the virtual machines when CPU usage exceeds 95 percent for more than 30 minutes.
You need to create an alert in Azure Monitor to res art the virtual machines.
The solution must minimize administrative effort.
Which type of action should you use in the alert?

A. Automation Runbook
B. Logic App
C. Webhook

Answer: A
Automation runbooks allows you to automatically perform standard remediations in response to VM alerts, like r starting or stopping the VM.
Previously, during VM alert rule creation you were able to specify an Automation webhook to a runbook in order to run the runbook whenever the alert triggered. However, this required you to do the work of creating the runbook, creating the webhook for the runbook, and then copying and pasting the webhook during alert rule creation. With this new release, the process is much easier because you can directly choose a runbook from a list during alert rule creation, and you can choose an Automation account which will run the runbook or easily create an account.

You have an Azure subscription that contains a policy-based virtual network gateway named GW1 and a virtual network named Vnet1.
You need to ensure that you can configure a point to-site connection from an on-premises computer to VNet1.
Which two actions should you perform? Each correct answer presents part of the solution. NOTE: Each correct selection is worth one point

A. Delete GW1.
B. Reset GW1.
C. Add a service endpoint to VNet1.
D. Add a connection to GW1.
E. Add a public IP address space to VNet1.
F. Create a route-based virtual network gateway.

Answer: AF

You have a server named Server1 that runs Windows Server 2019.
Server1 is a container host.
You plan to create a container image.
You create the following instructions in a text editor.

You need 10 be able to automate the container image creation by using the instructions.
To which file should you save the instructions?

A. Dockerfile
B. daemon.json
C. dockerconfig.json
D. dockerconfig.sjon

Answer: A

You plan to create an Azure logic app that will access secrets stored in an Azure key vault.
You need to ensure that the logic app can authenticate to the key vault by using Azure Active Directory (Azure AD).
What should you do?

A. Turn on the system-assigned managed identity.
B. Add an Azure Active Directory authorization policy.
C. Create an app registration.
D. Modify the access keys.

Answer: B

You have a resource group named RG5. The access controls for RG5 are configured as shown in the following exhibit.

Which users can deploy virtual networks to RG5?

A. User1, User2, and prvi
B. Only User1 an User2
C. Only User1
D. Only prvi and User1

Answer: D
User1, the Network Contributor, can create and manage networks, but not access to them. Prvi, the Owner, can create and manage resources of all types.

You create the user-assigned identities shown in the following table.

You create a virtual machine that has the following configurations:
– Name:VM1
– Location: West US
– Resource group: RG1
Which managed identities can you add to VM1?

A. Identity1 and Identity2 only
B. Identity1 only
C. Identity1, idenity1 and Identity3
D. Identity1 and Identity3 only

Answer: B

Hotspot Question
You have an Azure subscription that contains a virtual network named VNet1. VNet1 uses an IP address space of and contains the subnets in the following table.

Subnet1 contains a virtual appliance named VM1 that operates as a router.
You create a routing table named RT1.
You need to route all inbound traffic to VNet1 through VM1.
How should you configure RT1? To answer, select the appropriate options in the answer area.


Box 1:
Address space of sbbnet 1 as routing should be made through vm1.
Box 2: Virtual Network
Next hop needs to be made for virtual network.
Box 3: Gateway Subnet
Should be made through vnet gateway and that used gateway subnet only.

Hotspot Question
You are designing a virtual network to suppo t a web application.
The web application uses Blob storage to store large images.
The web application will be deployed to an Azure App Service Web App.
You have the following requirements:
– Secure all communications by using Secured Socket layer (SSL) SSL encryption and decryption must be processed efficiently to support high traffic load on the web application
– Protect the web application from web vulnerabilities and attacks without modification to backend code
– Optimize web application responsiveness and reliability by routing HTTP request and responses to the endpoint with the lowest network latency for the client.
You need to onfigure the Azure components to meet the requirements.
What should you do? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.


Box 1: Azure application Gateway
Azure Application Gateway supports end-to-end encryption of traffic. Application Gateway terminates the SSL connection at the application gateway. The gateway then applies the routing rules to the traffic, re-encrypts the packet and forwards the packet to the appropriate back-end server based on the routing rules defined. Any response from the web server goes through the same process back to the end user.
Box 2: Azure application Gateway
Box 3: Azure Traffic Manager
Azure Traffic Manager is a DNS-based traffic load balancer that enables you to distribute traffic optimally services across global Azure regions, while providing high availability and responsiveness.

Resources From:

1.2021 Latest Braindump2go AZ-303 Exam Dumps (PDF & VCE) Free Share:

2.2021 Latest Braindump2go AZ-303 PDF and AZ-303 VCE Dumps Free Share:

3.2021 Free Braindump2go AZ-303 Exam Questions Download:

Free Resources from Braindump2go,We Devoted to Helping You 100% Pass All Exams!

Braindump2go Testking Pass4sure Actualtests Others
$99.99 $124.99 $125.99 $189 $29.99/$49.99
Real Questions
Error Correction
Printable PDF
Premium VCE
VCE Simulator
One Time Purchase
Instant Download
Unlimited Install
100% Pass Guarantee
100% Money Back