Microsoft Azure Security Technologies (AZ-500日本語版) - AZ-500日本語 Free Exam Questions

QUESTION NO: 1
次の表に示すストレージ アカウントを含む Azure サブスクリプションがあります。

Microsoft Defender for Storage を有効にします。
Microsoft Defender for Storage によって監視されるストレージのストレージ サービスはどれですか。また、Microsoft Defender for Storage によって保護されるストレージ アカウントはどれですか。回答するには、回答領域で適切なオプションを選択してください。
Correct Answer:
see the answer below in explanation.
Explanation:
Answer as below.
QUESTION NO: 2
ラボのタスク
必要に応じて、次のログイン資格情報を使用します。
ユーザー名を入力するには、[サインイン] ボックスにカーソルを置き、下のユーザー名をクリックします。
パスワードを入力します。「パスワードを入力してください」ボックスにカーソルを置き、下のパスワードをクリックします。
Azure ユーザー名: Userl [email protected]
Azure パスワード: GpOAe4@lDg
Azure portal がブラウザーに正常に読み込まれない場合は、CTRL-K を押して、新しいブラウザー タブにポータルを再読み込みします。
次の情報は、テクニカル サポートのみを目的としています。
ラボインスタンス: 28681041
タスク 2
VM1 という名前の仮想マシンのネットワーク インターフェイスを ASG1 という名前のアプリケーション セキュリティ グループに追加する必要があります。
Correct Answer:
Check below steps in explanation for Task.
Explanation:
To add the network interface of a virtual machine named VM1 to an application security group named ASG1, you can follow these steps:
* In the Azure portal, search for and select the virtual machine named VM1.
* In the left pane, select Networking.
* In the Networking pane, select the network interface that you want to add to the application security group named ASG1.
* In the network interface pane, select Application security groups.
* In the Application security groups pane, select Add.
* In the Add application security group pane, select the application security group named ASG1.
* Select Save.
You can find more information on this topic in the following Microsoft documentation: Add a network interface to an application security group using the Azure portal.
QUESTION NO: 3
現在の状態でUser2がSub1のどの仮想ネットワークを変更および削除できるか?回答するには、回答領域で適切なオプションを選択します。
注:それぞれの正しい選択は1ポイントの価値があります。
Correct Answer:

Explanation:

Box 1: VNET4 and VNET1 only
RG1 has only Delete lock, while there are no locks on RG4.
RG2 and RG3 both have Read-only locks.
Box 2: VNET4 only
There are no locks on RG4, while the other resource groups have either Delete or Read-only locks.
Note: As an administrator, you may need to lock a subscription, resource group, or resource to prevent other users in your organization from accidentally deleting or modifying critical resources. You can set the lock level to CanNotDelete or ReadOnly. In the portal, the locks are called Delete and Read-only respectively.
* CanNotDelete means authorized users can still read and modify a resource, but they can ' t delete the resource.
* ReadOnly means authorized users can read a resource, but they can ' t delete or update the resource.
Applying this lock is similar to restricting all authorized users to the permissions granted by the Reader role.
Scenario:
User2 is a Security administrator.
Sub1 contains six resource groups named RG1, RG2, RG3, RG4, RG5, and RG6.
User2 creates the virtual networks shown in the following table.

Sub1 contains the locks shown in the following table.

References:
https://docs.microsoft.com/en-us/azure/azure-resource-manager/resource-group-lock-resources
QUESTION NO: 4
注: この問題は、同じシナリオを提示する一連の問題の一部です。一連の問題にはそれぞれ、定められた目標を満たす可能性のある独自の解答が含まれています。問題セットによっては、複数の正解が存在する場合もあれば、正解がない場合もあります。
このセクションの質問に回答した後は、その質問に戻ることはできません。そのため、これらの質問はレビュー画面に表示されません。
AKS1 という名前の Azure Kubernetes Service (AKS) クラスターと AZCR1 という名前の Azure コンテナー レジストリを含む Azure サブスクリプションがあります。
AKS1 が AZCR1 に保存されているコンテナー イメージをデプロイできることを確認する必要があります。
解決策: AKS1 のエージェント プールのシステム割り当てマネージド ID に Kubernetes エージェントレス オペレーター ロールを割り当てます。
これは要件を満たしていますか?

Correct Answer: A Vote an answer
QUESTION NO: 5
次の表に示すリソースを含む Azure サブスクリプションがあります。

App1 は関数 1、SQL1、およびストレージ 1 を使用します。
プライベート エンドポイントを使用して、App1、Function1、SQL1、および storage1 間のトラフィックを保護する必要があります。
App1 はプライベート エンドポイントを使用してどのリソースと通信できますか?

Correct Answer: E Vote an answer
QUESTION NO: 6
Sub 1 という Azure サブスクリプションがあり、contoso.com という Azure Active Directory (Azure AD) テナントに関連付けられています。このテナントには、次の表に示すユーザーが含まれています。

各ユーザーには Azure AD Premium P2 ライセンスが割り当てられます。
Azure AD Identity Protection のオンボードと構成を計画します。
Azure AD Identity Protection をオンボードし、ユーザーを修復し、ポリシーを構成できるのはどのユーザーですか? 回答するには、回答領域で適切なオプションを選択してください。
注: 正解ごとに1ポイント獲得
Correct Answer:

Explanation:
QUESTION NO: 7
storage 1 という名前の Azure Storage アカウントを作成する予定です。
ストレージ1に作成されるすべての新規オブジェクトが二重暗号化によって保護されるようにする必要があります。このソリューションは、管理作業を最小限に抑えるものでなければなりません。
storage1を作成する際に、どのような設定を行うべきですか?

Correct Answer: D Vote an answer
QUESTION NO: 8
Server1 という名前のオンプレミス サーバーがあります。
Sentinel 1 という名前の Microsoft Sentinel ワークスペースを含む Azure サブスクリプションがあります。
Sentinel1 に Windows ファイアウォール ソリューションをインストールします。
Server1 上の Windows Defender ファイアウォールを監視するには、Microsoft Sentinel を使用する必要があります。
Server1 に何をインストールし、Azure サブスクリプションに何を作成する必要がありますか? 回答するには、回答領域で適切なオプションを選択してください。
注意: 正しい選択ごとに 1 ポイントが付与されます。
Correct Answer:

Explanation:
QUESTION NO: 9
次の表に示すリソースを含む Azure サブスクリプションがあります。

次の要件を満たすようにネットワーク接続を構成する必要があります。
* VM1 からストレージへの通信は、最適化された Microsoft バックボーン ネットワークを通過する必要があります。
* VM1 からインターネットへのすべての送信トラフィックを拒否する必要があります。
* ソリューションはコストと管理の手間を最小限に抑える必要があります
VNetlとNSG1にはどのような設定が必要ですか? 適切なコンポーネントを正しいリソースにドラッグして回答してください。各コンポーネントは1回、複数回、または全く使用されない場合があります。コンテンツを表示するには、ペイン間の分割バーをドラッグするか、スクロールする必要がある場合があります。注:正解を選択するごとに1ポイント獲得できます。
Correct Answer:

Explanation:

QUALITY AND VALUE

Actual4test Practice Exams are written to the highest standards of technical accuracy, using only certified subject matter experts and published authors for development - no all study materials.

Tested and Approved

We are committed to the process of vendor and third party approvals. We believe professionals and executives alike deserve the confidence of quality coverage these authorizations provide.

Easy to Pass

If you prepare for the exams using our Actual4test testing engine, It is easy to succeed for all certifications in the first attempt. You don't have to deal with all dumps or any free torrent / rapidshare all stuff.

Try Before Buy

Actual4test offers free demo of each product. You can check out the interface, question quality and usability of our practice exams before you decide to buy.