Free AZ-801 sample questions
Real questions from the Windows Server Hybrid Advanced Services practice bank, with the correct answer and an explanation for each one. No junk, no filler.
Try them in the simulator Same questions, with study, timed and flashcard modes.
Showing 10 of 20 free sample questions.
A migration specialist is using the Storage Migration Service (SMS) to move a legacy Windows Server 2012 R2 file server to an Azure VM running Windows Server 2022. The initial data transfer is complete, and the specialist is preparing for the final cutover. The source server's name is 'OLD-FS' and the new Azure VM's name is 'NEW-FS-AZ'. The goal is to perform the cutover with the least possible disruption to users who are mapped to `\\OLD-FS\Shares`. What is a critical prerequisite for the SMS cutover phase to succeed in renaming the servers and assuming the source server's identity?
A systems administrator is designing a stretched failover cluster for a critical SQL Server workload that spans two physical datacenters, SiteA and SiteB. Each site has two cluster nodes. To maintain quorum during a site failure, a witness is required. The company has a strong preference for using Azure-based services to minimize on-premises infrastructure. The connection to Azure is reliable but subject to occasional latency spikes. Which witness type should be configured for the highest resilience in this scenario?
A security team is performing an audit on a hybrid Active Directory environment. They discover that several legacy applications still use NTLMv1 for authentication, which is non-compliant with security policies. The team's goal is to identify all devices and accounts using NTLM and eventually block it. Which Group Policy setting is the first and most critical step to gather this information without disrupting services?
You are troubleshooting a Windows Server 2022 boot failure. The server displays the error 'The Boot Configuration Data for your PC is missing or contains errors.' You have booted the server into the Windows Recovery Environment (WinRE). Which command-line utility should you use to scan for all Windows installations and add them to the boot configuration data?
A hospital is migrating its on-premises Hyper-V virtual machines to Azure using Azure Migrate. The migration team has deployed the Azure Migrate appliance and completed the discovery and assessment phase. They are now ready to begin replication. Due to HIPAA compliance, all data must be encrypted in transit from the on-premises datacenter to Azure. Which statement about encryption during the Azure Migrate replication process is true?
An IT administrator is managing a Windows Server failover cluster and needs to apply monthly Windows security updates to all cluster nodes with minimal downtime for the clustered roles. The administrator wants to automate this process. Which TWO of the following solutions are the most appropriate for this task? (Select TWO).
Case Study: Quantum Health Systems Hybrid Infrastructure Security Hardening **Company Background:** Quantum Health Systems (QHS) is a large healthcare provider subject to strict HIPAA regulations. They operate a hybrid environment with a significant on-premises footprint of Windows Server 2016 and 2019 servers, and a growing number of Windows Server 2022 VMs in Azure. Their on-premises Active Directory domain, `qhs.local`, is synchronized with a Microsoft Entra ID tenant using Azure AD Connect. **Current Situation:** A recent security audit revealed several vulnerabilities. The primary concern is the potential for pass-the-hash and other credential theft attacks against privileged accounts. The audit also highlighted inconsistent security baselines across the server fleet and a lack of visibility into advanced threats targeting Active Directory. On-premises servers are not currently managed or monitored directly from Azure, except for identity synchronization. **Technical Requirements:** 1. Implement a solution to isolate Local Security Authority Subsystem Service (LSASS) processes for privileged accounts to prevent credential dumping. This solution must be hardware-assisted. 2. Onboard all on-premises servers to Azure for centralized security management and threat detection without deploying new gateway servers. 3. Deploy a cloud-native service to detect and investigate advanced attacks and malicious insider activities directed at the on-premises AD DS controllers. 4. Enforce a consistent, Microsoft-recommended security baseline across all servers, both on-premises and in Azure, and report on compliance. **Goal:** Select the optimal combination of Microsoft technologies to meet all four technical requirements for hardening the QHS hybrid environment.
A financial firm is migrating its on-premises Internet Information Services (IIS) web applications to Azure. The primary goal is to move to a Platform-as-a-Service (PaaS) offering to reduce infrastructure management overhead. The applications are a mix of ASP.NET and ASP.NET Core. The migration team needs to perform an initial assessment to determine compatibility with Azure App Service and get migration recommendations. Which tool is specifically designed for this purpose?
An administrator is managing a two-node Hyper-V failover cluster running on Windows Server 2022. Both nodes are part of a Storage Spaces Direct (S2D) configuration. Node1 unexpectedly crashes and will not reboot. The administrator needs to recover the cluster to a healthy state by replacing the failed node. What is the correct high-level sequence of steps to replace Node1?
10 more free samples are waiting
Create a free account to unlock the whole AZ-801 sample bank, or get full access to all 214 practice questions in the simulator.