We provide real AZ-720 exam questions and answers braindumps in two formats. Download PDF & Practice Tests. Pass Microsoft AZ-720 Exam quickly & easily. The AZ-720 PDF type is available for reading and printing. You can print more and practice many times. With the help of our Microsoft AZ-720 dumps pdf and vce product and material, you can easily pass the AZ-720 exam.

Free demo questions for Microsoft AZ-720 Exam Dumps Below:

NEW QUESTION 1
A company has users in Azure Active Directory (Azure AD). The company enables the users to use Azure AD multi-factor authentication (MFA).
A user named User1 reports they receive the following error while setting up additional security verification settings for MFA:
Sorry! We can't process your request. Your session is invalid or expired. There was an error processing your request because your session is invalid or expired. Please try again.
You need to help the user complete the MFA setup. What should you do?

  • A. From the Microsoft 365 Admin portal, clear the Block this user from signing in option for the user.
  • B. Instruct the user to complete the setup process within 10 minutes.
  • C. Instruct the user to enter the correct verification code.
  • D. Instruct the user to clear their web browser cache.
  • E. From the Azure AD portal, reset the user's password.

Answer: E

NEW QUESTION 2
A company uses Azure Site Recovery (ASR) for a VMware environment that includes the following virtual machines (VMs):
AZ-720 dumps exhibit
The company reports that they are unable to configure all of the servers for replication.
You need to evaluate the servers and server roles to determine which servers can be protected. Which server can you protect by using ASR?

  • A. VM1
  • B. VM2
  • C. VM3
  • D. VM4

Answer: C

NEW QUESTION 3
A company deploys the Azure Application Gateway Web Application Firewall (WAF) to protect their web applications.
Users in a remote office location report the following issues:
AZ-720 dumps exhibit Unable to access part of a web application.
AZ-720 dumps exhibit Part of the web application is failing to load.
AZ-720 dumps exhibit Parts of the web application has activities that are not performing as expected.
You need to troubleshoot the issue. Which diagnostic log should you review?

  • A. Performance
  • B. Firewall
  • C. Access
  • D. Azure Activity

Answer: D

NEW QUESTION 4
A company has an ExpressRoute gateway between their on-premises site and Azure. The ExpressRoute gateway is on a virtual network named VNet1. The company enables FastPath on the gateway. You associate a network security group (NSG) with all of the subnets.
Users report issues connecting to VM1 from the on-premises environment. VM1 is on a virtual network named VNet2. Virtual network peering is enabled between VNet1 and VNet2.
You create a flow log named FlowLog1 and enable it on the NSG associated with the gateway subnet. You discover that FlowLog1 is not reporting outbound flow traffic.
You need to resolve the issue with FlowLog1. What should you do?

  • A. Configure FlowLog1 for version 2.
  • B. Create the storage account for FlowLog1 as a premium block blob.
  • C. Configure the FlowTimeoutInMinutes property on VNet2 to a non-null value.
  • D. Enable FlowLog1 in a network security group associated with the network interface of VM1.

Answer: A

NEW QUESTION 5
A company has on-premises application server that runs in System Center Virtual Machine Manager (SCVMM). The company configures Azure Site Recovery.
An administrator at the company reports that they receive an error message. The error message indicates that there are replication issues.
You need to troubleshoot the issue. Which log should you review?

  • A. Network Security Group flow log
  • B. Azure Monitor log
  • C. Network Watcher diagnostic log
  • D. SCVMM debug log

Answer: A

NEW QUESTION 6
A customer creates an Azure resource group named RG1 in the East US region. RG1 contains the following resources:
AZ-720 dumps exhibit
The customer performs the following tasks:
AZ-720 dumps exhibit Create a private endpoint for sqlsrv1 in subnet2 with the private IP address of 192.168.2.100.
AZ-720 dumps exhibit Create a private DNS zone named privatelink.database.windows.net by using a single A record named sqlsvr1 and the IP address 192.168.2.100.
AZ-720 dumps exhibit Disable public access by using the public endpoint for sqlsvr1.
The customer reports that connections from VM1 to DB1 are failing. The solution must allow connections from VM1 to DB1 without making platform-level changes.
You need to troubleshoot and resolve the issue.
AZ-720 dumps exhibit


Solution:
AZ-720 dumps exhibit

Does this meet the goal?
  • A. Yes
  • B. Not Mastered

Answer: A

NEW QUESTION 7
A company uses Azure AD Connect. The company plans to implement self-service password reset (SSPR). An administrator receives an error that password writeback cloud not be enabled during the Azure AD Connect configuration. The administrator observes the following event log error:
Error getting auth token
You need to resolve the issue.
Solution: Use a global administrator account with a password that is less than 256 characters to configure Azure AD Connect.
Does the solution meet the goal?

  • A. Yes
  • B. No

Answer: A

NEW QUESTION 8
A company uses Azure Active Directory (Azure AD) with Azure role-based access control (RBAC) for access to resources.
Some users report that they are unable to grant RBAC roles to other users. You need to troubleshoot the issue.
How should you complete the Azure Monitor query?
AZ-720 dumps exhibit


Solution:
AZ-720 dumps exhibit

Does this meet the goal?
  • A. Yes
  • B. Not Mastered

Answer: A

NEW QUESTION 9
A company uses Azure AD Connect. The company plans to implement self-service password reset (SSPR). An administrator receives an error that password writeback cloud not be enabled during the Azure AD Connect configuration. The administrator observes the following event log error:
Error getting auth token
You need to resolve the issue.
Solution: Restart the Azure AD Connect service. Does the solution meet the goal?

  • A. Yes
  • B. No

Answer: B

NEW QUESTION 10
A company has an Azure Active Directory (Azure AD) tenant. The company provisions an Azure Active Directory Domain Services (Azure AD DS) instance.
Users report that they are unable to sign into Azure AD DS after being provisioned from Azure AD. You verify the user accounts exist in Azure AD DS.
You need to resolve the issue. What should you do?

  • A. Delete the Azure application named AzureActiveDirectoryDomainControllerServices and then enable Azure AD DS again.
  • B. Deploy Azure AD Connect.
  • C. Delete the Azure application named Azure AD Domain Services Sync and then enable Azure AD DS again.
  • D. Instruct the users to change their password in Azure AD.

Answer: D

NEW QUESTION 11
A customer has an Azure subscription. Microsoft Defender for servers is enabled for the subscription. The customer has not configured network security groups.
The customer configures a resource group named RG1 that contains the following resources:
• A virtual machine named VM1.
• A network interface named NIC1 that is attached to VM1.
The customer grants a user named Admin1 the following permission for RG1: Microsoft.Security/locations/jitNetworkAccessPolicies/write.
Admin1 reports that the JIT VM access pane in the Azure portal does not show any entries. When you view the same pane, VM1 appears on the Unsupported tab.
You need to ensure that Admin1 can enable just-in-time (JIT) VM access for VM1. The solution must adhere to the principle of least privilege.
Which three actions should you recommend be performed in sequence?
To answer, move the appropriate actions from the list of actions to the answer area and arrange them in the correct order.
AZ-720 dumps exhibit


Solution:
AZ-720 dumps exhibit

Does this meet the goal?
  • A. Yes
  • B. Not Mastered

Answer: A

NEW QUESTION 12
A customer has an Azure Virtual Network named VNet1 that contains an internal standard SKU load balancer named LB1. The backend pool for LB1 includes the following virtual machines: VM1, VM2.
The customer configures a rule named Rul1 to load balance incoming HTTPS requests for VM1 and VM2. Rule1 is associated with an HTTPS health probe. The path for the probe is set to /.
The network adapters of VM1 and VM2 are associated with a network security named NSG1 that contains the following rules:
AZ-720 dumps exhibit
You connect to https://VM1 and https://VM2 from VNet1. Attempts to connect using the front-end IP address of LB1 are failing.
You need to resolve the issue. What should you do?

  • A. Change the health probe associated with Rule1 to use HTTP.
  • B. Add an NSG1 rule with the source set to VirtualNetwork.
  • C. Change the health probe associated with Rule1 to use TCP.
  • D. Add an NSG1 rule with the source set to AzureLoadBalancer.

Answer: A

NEW QUESTION 13
A company has an Azure Virtual Network gateway named VNetGW1. The company enables point-to-site connectivity on VNetGW1. An administrator configures VNetGW1 for the following:
AZ-720 dumps exhibit OpenVPN for the tunnel type.
AZ-720 dumps exhibit Azure certificate for the authentication type.
Users receive a certificate mismatch error when connecting by using a VPN client. You need to resolve the certificate mismatch error.
What should you do?

  • A. Reissue the client certificate with client authentication enabled.
  • B. Configure preshared key for authentication on the VPN profile.
  • C. Install an IKEv2 VPN client on the user's computers.
  • D. Reissue the client certificate with server authentication enabled.

Answer: D

NEW QUESTION 14
A company connects an on-premises network to an Azure virtual network by using ExpressRoute. The ExpressRoute connection is experiencing higher than normal latency.
You need to confirm the traffic flow.
How should you complete the PowerShell command?
AZ-720 dumps exhibit


Solution:
AZ-720 dumps exhibit

Does this meet the goal?
  • A. Yes
  • B. Not Mastered

Answer: A

NEW QUESTION 15
A company uses Azure AD Connect. The company plans to implement self-service password reset (SSPR). An administrator receives an error that password writeback could not be enabled during the Azure AD Connect configuration. The administrator observes the following event log error:
Error getting auth token
You need to resolve the issue. What should you do?

  • A. Restart the Azure AD Connect service.
  • B. Configure Azure AD Connect using a global administrator account that is not federated.
  • C. Configure Azure AD Connect using a global administrator account with a password that is less than 256 characters.
  • D. Disable password writeback and then enable password writeback using the Azure AD Connect configuration.

Answer: C

NEW QUESTION 16
......

100% Valid and Newest Version AZ-720 Questions & Answers shared by Thedumpscentre.com, Get Full Dumps HERE: https://www.thedumpscentre.com/AZ-720-dumps/ (New 81 Q&As)