Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution.
After you answer a question in this question, you will NOT be able to return to it. As a result, these questions will not appear in the review screen.
You are developing a solution that will be deployed to an Azure Kubernetes Service (AKS) cluster. The solution will include a custom VNet, Azure Container Registry images, and an Azure Storage account.
The solution must allow dynamic creation and management of all Azure resources within the AKS cluster.
You need to configure an AKS cluster for use with the Azure APIs.
Solution: Create an AKS cluster that supports network policy. Create and apply a network to allow traffic only from within a defined namespace.
Does the solution meet the goal?
When you run modern, microservices-based applications in Kubernetes, you often want to control which components can communicate with each other. The principle of least privilege should be applied to how traffic can flow between pods in an Azure Kubernetes Service (AKS) cluster. Let's say you likely want to block traffic directly to back-end applications. The Network Policy feature in Kubernetes lets you define rules for ingress and egress traffic between pods in a cluster.
https://docs.microsoft.com/en-us/azure/aks/use-network-policies
You are developing an Azure App Service web app.
The web app must securely store session information in Azure Redis Cache.
You need to connect the web app to Azure Redis Cache.
Which three Azure Redis Cache properties should you use? Each correct answer presents part of the solution.
Each correct selection is worth one point.
https://learn.microsoft.com/en-us/azure/azure-cache-for-redis/cache-web-app-howto
You develop applications that integrate with a Microsoft Entra tenant. You plan to implement a permission classification in the tenant. You need to select permissions to include in your classification. Which permissions should you select?
You must implement Application Insights instrumentation capabilities utilizing the Azure Mobile Apps SDK to provide meaningful analysis of user interactions with a mobile app.
You need to capture the data required to implement the Usage Analytics feature of Application Insights. Which three data values should you capture? Each correct answer presents part of the solution
NOTE: Each correct selection is worth one point.
Application Insights is a service for monitoring the performance and usage of your apps. This module allows you to send telemetry of various kinds (events, traces, etc.) to the Application Insights service where your data can be visualized in the Azure Portal.
Application Insights manages the ID of a session for you.
https://github.com/microsoft/ApplicationInsights-Android
You develop and deploy an Azure Logic app that calls an Azure Function app. The Azure Function app includes an OpenAPl (Swagger) definition and uses an Azure Blob storage account. All resources are secured by using Azure Active Directory (Azure AD).
The Azure Logic app must securely access the Azure Blob storage account. Azure AD resources must remain if the Azure Logic app is deleted.
You need to secure the Azure Logic app.
What should you do?
To give a managed identity access to an Azure resource, you need to add a role to the target resource for that identity.
Note: To easily authenticate access to other resources that are protected by Azure Active Directory (Azure AD) without having to sign in and provide credentials or secrets, your logic app can use a managed identity (formerly known as Managed Service Identity or MSI). Azure manages this identity for you and helps secure your credentials because you don't have to provide or rotate secrets.
If you set up your logic app to use the system-assigned identity or a manually created, user-assigned identity, the function in your logic app can also use that same identity for authentication.
https://docs.microsoft.com/en-us/azure/logic-apps/create-managed-service-identity
https://docs.microsoft.com/en-us/azure/api-management/api-management-howto-mutual-certificates-for-clients
Jamal
3 days agoKyoko
11 days agoAmira
18 days agoAshley
25 days agoMarti
1 month agoAnnabelle
1 month agoZack
2 months agoNana
2 months agoMajor
2 months agoJoanna
2 months agoDenise
3 months agoWenona
3 months agoBarb
3 months agoWalton
3 months agoJeniffer
4 months agoTabetha
4 months agoEthan
4 months agoCecilia
4 months agoMarva
5 months agoFelicidad
5 months agoRickie
5 months agoLuis
5 months agoTaryn
5 months agoAleshia
6 months agoTequila
6 months agoTaryn
8 months agoGladys
8 months agoYuki
9 months agoRene
10 months agoLeonor
11 months agoLarue
12 months agoEmilio
12 months agoLaurena
1 year agoStefania
1 year agoAbel
1 year agoOna
1 year agoDesiree
1 year agoPrecious
1 year agoMalissa
1 year agoIzetta
1 year agoFatima
1 year agoTeri
1 year agoDenae
1 year agoAnnelle
1 year agoStaci
1 year agoSylvia
1 year agoJoanna
1 year agoMaurine
1 year agoVeronique
1 year agoRusty
1 year agoLetha
1 year agoKara
1 year agoStefania
1 year agoIzetta
1 year agoKanisha
1 year agoTomas
1 year agoGaynell
2 years agoDelpha
2 years agoDelsie
2 years agoJoseph
2 years agoJuan
2 years agoDoyle
2 years agoCarmela
2 years agoPerrysa
2 years ago