The latest Troubleshooting Microsoft Azure Connectivity AZ-720 certification actual real practice exam question and answer (Q&A) dumps are available free, which are helpful for you to pass the Troubleshooting Microsoft Azure Connectivity AZ-720 exam and earn Troubleshooting Microsoft Azure Connectivity AZ-720 certification.
Table of Contents
- Question 31
- Exam Question
- Correct Answer
- Question 32
- Exam Question
- Correct Answer
- Explanation
- Question 33
- Exam Question
- Correct Answer
- Question 34
- Exam Question
- Correct Answer
- Question 35
- Exam Question
- Correct Answer
- Question 36
- Exam Question
- Correct Answer
- Question 37
- Exam Question
- Correct Answer
- Explanation
- Reference
- Question 38
- Exam Question
- Correct Answer
- Explanation
- Question 39
- Exam Question
- Correct Answer
- Explanation
- Question 40
- Exam Question
- Correct Answer
- Explanation
Question 31
Exam Question
HOTSPOT
–
A company has an Azure environment that uses one virtual network.
The company restructures the environment to use two different virtual networks. Virtual machines in one network cannot communicate with virtual machines in the other virtual network.
You need to resolve the name resolution issue.
What should you use? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.
Configuration option: DNS solution
Value:
Azure DNS private zones
- Internal DNS server
- DNS public zones
- App Service domains
Configuration option: DNS suffix
Value:
- Hostname
- Fully Qualified Domain Name
Correct Answer
DNS solution: Azure DNS private zones
DNS suffix: Fully Qualified Domain Name
Question 32
Exam Question
A company uses Azure Site Recovery for their on-premises Hyper-V servers. The company manages servers by using System Center Virtual Machine Manager (SCVMM).
An administrator reports that replication to the secondary site has failed.
You need to inspect the SCVMM logs and configuration files.
Which PowerShell cmdlets should you use? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.
Troubleshooting step: View information about the Hyper-V hardware.
PowerShell cmdlet:
- Get-SCVMHost
- Get-VMReplication
- Get-SCVirtualMachine
- Get-SCVirtualizationManager
Troubleshooting step: View specific properties of all virtual machines.
PowerShell cmdlet:
- Get-SCVMHost
- Get-VMReplication
- Get-SCVirtualMachine
- Get-SCVirtualizationManager
Troubleshooting step: View failed SCVMM activities.
PowerShell cmdlet:
- Get-SCJob
- Get-SCVMHost
- Get-SCComputer
- Get-SCVirtualizationManager
Correct Answer
View information about the Hyper-V hardware: Get-SCVMHost
View specific properties of all virtual machines: Get-SCVirtualMachine
View failed SCVMM activities: Get-SCJob
Explanation
BOX 1: To view information about the Hyper-V hardware when inspecting the SCVMM logs and configuration files to troubleshoot a failed replication to the secondary site, you should use the following PowerShell cmdlet: A. Get-SCVMHost
The Get-SCVMHost cmdlet retrieves information about the Hyper-V hosts managed by System Center Virtual Machine Manager (SCVMM). This can provide valuable information about the hardware configuration of the Hyper-V servers and help you troubleshoot issues with replication to the secondary site.
Box 2: Get-SCVirtualMachine.To view specific properties of all virtual machines in System Center Virtual Machine Manager (SCVMM), you should use the Get-SCVirtualMachine PowerShell cmdlet. This cmdlet retrieves the virtual machine objects from the Virtual Machine Manager (VMM) database and displays information about each virtual machine.
BOX 3: Get-SCJob
To view failed SCVMM activities, you should use the Get-SCJob PowerShell cmdlet. This cmdlet retrieves all jobs that have run in the Virtual Machine Manager (VMM) environment and displays information about each job. You can use the -Status parameter to filter the results to only show failed jobs
Question 33
Exam Question
HOTSPOT
–
A company uses an Azure VPN gateway with an IP address of 208.0.113.20.
Users report that the VPN connection frequently drops.
You need to determine when each connection failure occurred.
How should you complete the Azure Monitor query? To answer, select the appropriate option in the answer area.
NOTE: Each correct selection is worth one point.
Correct Answer
AzureDiagnostics | where Category == “IKEDiagnosticLog” | where remoteIP_s == “203.0.113.20” | where status_s == “Disconnected” | project TimeGenerated, OperationName, instance_s, Resource, ResourceGroup, _ResourceId
Question 34
Exam Question
HOTSPOT
–
A company uses an Azure Backup agent to back up specific files and folders from an Azure virtual machine (VM) and an on-premises VM.
An administrator reports that the backup job fails on both VMs. Errors are returned in Microsoft Azure Recovery Services (MARS).
You need to troubleshoot the backup issues.
Which troubleshooting solution should you use? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.
Error: Invalid vault credential provided.
Solution:
- Download new credentials from the Recovery Services vault.
- Download new credentials from the key vault.
- Register the VMs with a new passphrase.
- Update the storage controller driver on the VMs.
Error: Failed to set the encryption key for secure backups.
Solution:
- Download new credentials from the Recovery Services vault.
- Download new credentials from the key vault.
- Register the VMs with a new passphrase.
- Update the storage controller driver on the VMs.
Correct Answer
Invalid vault credential provided: Download new credentials from the Recovery Services vault.
Failed to set the encryption key for secure backups: Register the VMs with a new passphrase.
Question 35
Exam Question
A company uses an Azure Virtual Network (VNet) gateway named VNetGW1. VNetGW1 connects to a partner site by using a site-to-site VPN connection with dynamic routing.
The company observes that the VPN disconnects from time to time.
You need to troubleshoot the cause for the disconnections.
What should you verify?
A. VNetGW1 has exceeded the subnet Security Association pairs.
B. The partner’s VPN device is enabled for Perfect forward secrecy.
C. The partner’s VPN device and VNetGW1 are configured using the same shared key.
D. The partner’s VPN device and VNetGW1 are configured with a different virtual network address space.
Correct Answer
B. The partner’s VPN device is enabled for Perfect forward secrecy.
Question 36
Exam Question
Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution.
After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen.
A company migrates an on-premises Windows virtual machine (VM) to Azure. An administrator enables backups for the VM by using the Azure portal.
The company reports that the Azure VM backup job is failing.
You need to resolve the issue.
Solution: Install the VM guest agent by using administrative permissions.
Does the solution meet the goal?
A. Yes
B. No
Correct Answer
A. Yes
Question 37
Exam Question
Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution.
After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen.
A company connects their on-premises network by using Azure VPN Gateway. The on-premises environment includes three VPN devices that separately tunnel to the gateway by using Border Gateway Protocol (BGP).
A new subnet should be unreachable from the on-premises network.
You need to implement a solution.
Solution: Scale the gateway to Generation2.
Does the solution meet the goal?
A. Yes
B. No
Correct Answer
B. No
Explanation
Scaling the gateway to Generation2 will not prevent the on-premises network from reaching the new subnet. Scaling the gateway changes the hardware configuration of the VPN gateway, but it does not affect the routing or connectivity between the on-premises network and the virtual network.
A better solution would be to create a network security group (NSG) and associate it with the new subnet. The NSG can be configured to deny traffic from the on-premises network to the new subnet. This way, the new subnet will be isolated from the on-premises network.
Reference
Microsoft Learn > Azure > Networking > VPN Gateway > What is Azure VPN Gateway?
Question 38
Exam Question
Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution.
After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen.
A company migrates an on-premises Windows virtual machine (VM) to Azure. An administrator enables backups for the VM by using the Azure portal.
The company reports that the Azure VM backup job is failing.
You need to resolve the issue.
Solution: Configure the retention range for the current VM backup policy.
Does the solution meet the goal?
A. Yes
B. No
Correct Answer
B. No
Explanation
It is unlikely that configuring the retention range for the current VM backup policy would resolve the issue of the Azure VM backup job failing after enabling backups for the VM through the Azure portal. To troubleshoot the issue, the administrator should first check the Azure VM backup job logs and identify the specific error message or code provided. This can help identify the underlying issue and the appropriate solution.
Therefore, the solution mentioned in the question is incorrect and the answer is B. No.
Question 39
Exam Question
A company deploys an Azure Virtual Network gateway. The company connects to the gateway by using a site-to-site VPN connection.
The company’s on-premises VPN gateway is reporting an issue with the Phase 1 proposal from the Azure Virtual Network gateway.
You need to troubleshoot the issue by reviewing the logs.
Which log should you analyze?
A. GatewayDiagnosticLog
B. P2SDiagnosticLog
C. RouteDiagnosticLog
D. IKEDiagnosticLog
Correct Answer
D. IKEDiagnosticLog
Explanation
To troubleshoot an issue with the Phase 1 proposal from an Azure Virtual Network gateway when connecting to a site-to-site VPN connection by reviewing logs, you should analyze the IKE Diagnostic log. Therefore, option C is correct. You should analyze the IKE Diagnostic log.
Question 40
Exam Question
Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution.
After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen.
A company migrates an on-premises Windows virtual machine (VM) to Azure. An administrator enables backups for the VM by using the Azure portal.
The company reports that the Azure VM backup job is failing.
You need to resolve the issue.
Solution: Enable replication and create a recovery plan for the backup vault.
Does the solution meet the goal?
A. Yes
B. No
Correct Answer
B. No
Explanation
The solution does not meet the goal. Enabling replication and creating a recovery plan for the backup vault is not relevant to troubleshooting an Azure VM backup job failure. The administrator should troubleshoot the issue by checking the VM’s disk configuration, checking the status of the VM guest agent, and ensuring that the backup policy is configured correctly.