AZ-300: Microsoft Azure Architect Technologies

microsoft exam

AZ-300: Microsoft Azure Architect Technologies

Skills

Les sujets suivants sont abordés dans cet examen:

Deploy and configure infrastructure (25-30%)

  • configure diagnostic settings on resources
  • create baseline for resources
  • create and rest alerts
  • analyze alerts across subscription
  • analyze metrics across subscription
  • create action groups
  • monitor for unused resources
  • monitor spend
  • report on spend
  • utilize Log Search query functions
  • view alerts in Azure Monitor logs
  • configure network access to the storage account
  • create and configure storage account
  • generate shared access signature
  • install and use Azure Storage Explorer
  • manage access keys
  • monitor activity log by using Azure Monitor logs
  • implement Azure storage replication
  • configure high availability
  • configure monitoring, networking, storage, and virtual machine size
  • deploy and configure scale sets
  • modify Azure Resource Manager template
  • configure location of new VMs
  • configure VHD template
  • deploy from template
  • save a deployment as an Azure Resource Manager template
  • deploy Windows and Linux VMs
  • provision VMs
  • create Azure Resource Manager templates
  • configure Azure Disk Encryption for VMs
  • create and configure VNET peering
  • create and configure VNET to VNET
  • verify virtual network connectivity
  • create virtual network gateway
  • configure private and public IP addresses, network routes, network interface, subnets, and virtual network
  • add custom domains
  • configure Azure AD Identity Protection, Azure AD Join, and Enterprise State Roaming
  • configure self-service password reset
  • implement conditional access policies
  • manage multiple directories
  • perform an access review
  • install and configure Azure AD Connect
  • configure federation and single sign-on
  • manage Azure AD Connect
  • manage password sync and writeback

Implement workloads and security (20-25%)

  • migrate by using Azure Site Recovery
  • migrate using P2V
  • configure storage
  • create a backup vault
  • prepare source and target environments
  • backup and restore data
  • deploy Azure Site Recovery agent
  • prepare virtual network
  • manage a Logic App resource
  • manage Azure Function app settings
  • manage Event Grid
  • manage Service Bus
  • configure application gateway and load balancing rules
  • implement front end IP configurations
  • manage application load balancing
  • create and configure Azure VPN Gateway
  • create and configure site to site VPN
  • configure Express Route
  • verify on-premises connectivity
  • manage on-premises connectivity with Azure
  • create a custom role
  • configure access to Azure resources by assigning roles
  • configure management access to Azure
  • troubleshoot RBAC
  • implement RBAC policies
  • assign RBAC roles
  • enable MFA for an Azure tenant
  • configure user accounts for MFA
  • configure fraud alerts
  • configure bypass options
  • configure trusted IPs
  • configure verification methods
  • manage role-based access control (RBAC)
  • implement RBAC policies
  • assign RBAC Roles
  • create a custom role
  • configure access to Azure resources by assigning roles
  • configure management access to Azure

Create and deploy apps (5-10%)

  • create an Azure App Service Web App
  • create documentation for the API
  • create an App Service Web App for containers
  • create an App Service background task by using WebJobs
  • enable diagnostics logging
  • configure diagnostic settings on resources
  • create a container image by using a Docker file
  • create an Azure Kubernetes Service
  • publish an image to the Azure Container Registry
  • implement an application that runs on an Azure Container Instance
  • manage container settings by using code

Implement authentication and secure data (5-10%)

  • implement authentication by using certificates, forms-based authentication, tokens, or Windows-integrated authentication
  • implement multi-factor authentication by using Azure AD
  • implement OAuth2 authentication
  • implement Managed identities for Azure resources Service Principal authentication
  • encrypt and decrypt data at rest and in transit
  • encrypt data with Always Encrypted
  • implement Azure Confidential Compute and SSL/TLS communications
  • create, read, update, and delete keys, secrets, and certificates by using the KeyVault API

Develop for the cloud and for Azure storage (20-25%)

  • create, read, update, and delete data by using appropriate APIs
  • implement partitioning schemes
  • set the appropriate consistency level for operations
  • provision and configure relational databases
  • configure elastic pools for Azure SQL Database
  • create, read, update, and delete data tables by using code
  • configure an app or service to send emails, Event Grid, and the Azure Relay Service
  • create and configure Notification Hub, Event Hub, and Service Bus
  • configure queries across multiple products
  • implement autoscaling rules and patterns (schedule, operational/system metrics, code that addresses singleton application instances)
  • implement code that addresses transient state

Durée

La durée pour cet examen est de: 180 minutes

Nombre de questions

Le nombre de questions pour cet examen est de: 40-60

Ressources

Exam AZ-300: Microsoft Azure Architect Technologies
Microsoft Learning path
Azure fundamentals (Free training)
Manage resources in Azure (Free training)
Architect great solutions in Azure (Free training)
Azure documentation

Last update 26.06.2019