0% found this document useful (0 votes)
59 views

Azure Administration Tasks

The document provides an overview of the modules covered in the Microsoft AZ-104 certification exam. It describes five main modules: 1) Manage Azure identities and governance, 2) Implement and manage storage, 3) Deploy and manage Azure compute resources, 4) Configure and manage virtual networking, and 5) Monitor and back up Azure resources. Each module lists relevant Microsoft documentation articles to read about performing tasks like managing Azure Active Directory objects, configuring storage accounts, deploying virtual machines, implementing virtual networking, and monitoring and backing up Azure resources. The document concludes by recommending instructor-led Microsoft training courses to help prepare for the AZ-104 exam.

Uploaded by

Roman Potapov
Copyright
© © All Rights Reserved
We take content rights seriously. If you suspect this is your content, claim it here.
Available Formats
Download as DOCX, PDF, TXT or read online on Scribd
0% found this document useful (0 votes)
59 views

Azure Administration Tasks

The document provides an overview of the modules covered in the Microsoft AZ-104 certification exam. It describes five main modules: 1) Manage Azure identities and governance, 2) Implement and manage storage, 3) Deploy and manage Azure compute resources, 4) Configure and manage virtual networking, and 5) Monitor and back up Azure resources. Each module lists relevant Microsoft documentation articles to read about performing tasks like managing Azure Active Directory objects, configuring storage accounts, deploying virtual machines, implementing virtual networking, and monitoring and backing up Azure resources. The document concludes by recommending instructor-led Microsoft training courses to help prepare for the AZ-104 exam.

Uploaded by

Roman Potapov
Copyright
© © All Rights Reserved
We take content rights seriously. If you suspect this is your content, claim it here.
Available Formats
Download as DOCX, PDF, TXT or read online on Scribd
You are on page 1/ 5

Module 1: Manage Azure identities and governance

1.1 Manage Azure Active Directory (Azure AD) objects

Read the following documentation

 Create users and groups in Azure Direct (Microsoft Documentation: Add or


delete users using Azure Active Directory)
 Manage User and Group Properties (Microsoft Documentation: Update user’s
profile information in Azure Active Directory)
 Manage device settings (Microsoft Documentation: Manage device identities
using the Azure portal)
 Perform bulk user updates (Microsoft Documentation: Active Directory Bulk
User Modification)
 Manage guest accounts (Microsoft Documentation: Quickstart: Add guest
users to your directory in the Azure portal)
 Configure Azure AD Join (Microsoft Documentation: Join your work device to
your organization’s network, Tutorial: Configure hybrid Azure Active Directory join
for managed domains)
 Configure self-service password reset (Microsoft Documentation: Tutorial:
Enable users to unlock their account or reset passwords using Azure Active
Directory self-service password reset)

1.2 Manage role-based access control (RBAC)

 Create a custom role using PowerShell (Microsoft Documentation: Custom


Role Powershell)
 Provide access to Azure resources by assigning roles (Microsoft
Documentation: Add a Role Assignment)
 Interpret access assignments (Microsoft Documentation: Role-based Access
Control/Deny Assignments)

1.3 Manage subscriptions and governance

 Configuring Azure policies (Microsoft Documentation: Create and manage


policies to enforce compliance)
 Configuring resource locks (Microsoft Documentation: Lock resources to
prevent unexpected changes)
 Apply and manage tags on resources (Microsoft Documentation: Use tags to
organize your Azure resources and management hierarchy)
 Managing resource groups (Microsoft Documentation: Move resources to a
new resource group or subscription)
 Managing subscriptions
 Manage costs
 Configuring management groups (Microsoft Documentation: Create
management groups for resource organization and management)
Module 2: Implement and manage storage (15-20%)

2.1 Secure storage

 Configure network access to storage accounts (Microsoft


Documentation: Configure Azure Storage firewalls and virtual networks)
 Create and configure storage accounts (Microsoft Documentation: Create an
Azure Storage account)
 Generate shared access signature (SAS) tokens (Microsoft
Documentation: Grant limited access to Azure Storage resources using shared
access signatures (SAS) )
 Manage access keys (Microsoft Documentation: Manage storage account
access keys)
 Configure Azure AD Authentication for a storage account (Microsoft
Documentation: Acquire a token from Azure AD for authorizing requests from a
client application)
 Configure access to Azure Files

2.2 Manage Storage

 Export from Azure job (Microsoft Documentation: Use the Azure Import/Export


service to export data from Azure Blob storage)
 Import into Azure job (Microsoft Documentation: Use the Azure Import/Export
service to import data to Azure Blob Storage)
 Install and use Azure Storage Explorer (Microsoft Documentation: Get started
with Storage Explorer)
 Copy data by using AZCopy (Microsoft Documentation: Get started with
AzCopy)
 Implement Azure Storage replication
 Configure blob object replication

2.3 Configure Azure files and Azure blob storage

 Create an Azure file share (Microsoft Documentation: Create an Azure file


share)
 Create and configure Azure File Sync service (Microsoft
Documentation: Deploy Azure File Sync)
 Configure Azure blob storage (Microsoft Documentation: Upload, download,
and list blobs with the Azure portal)
 Configure storage tiers for Azure blobs (Microsoft Documentation: Azure Blob
storage: hot, cool, and archive access tiers)
 Configure blob lifecycle management

Module 3: Deploy and manage Azure compute resources (20-25%)


3.1 Automate deployment of virtual machines (VMs) by using Azure Resource
Manager templates

 Modify an Azure Resource Manager template


 Configure a virtual hard disk template
 Deploy from a template
 Save a deployment as an Azure Resource Manager template
 Deploy virtual machine extensions

3.2 Configure VMs

 Configure Azure Disk Encryption


 Move VMs from one resource group to another
 Manage VM sizes
 Add data disks
 Configure networking
 Redeploy VMs
 Configure high availability
 Deploy and configure scale set

3.3 Create and configure containers

 Configure sizing and scaling for Azure Container Instances


 Configure container groups for Azure Container Instances
 Configure storage for Azure Kubernetes Service (AKS)
 Configure scaling for AKS
 Configure network connections for AKS
 Upgrade an AKS cluster

3.4 Create and configure Azure App Service

 Create an App Service plan


 Configure scaling settings in an App Service plan
 Create an App Service
 Secure an App Service
 Configure custom domain names
 Configure a backup for an App Service
 Configuring networking settings
 Configure deployment settings

Module 4: Configure and manage virtual networking (25-30%)

4.1 Implement and manage virtual networking

 Create and configure virtual networks, including peering


 Configure private and public IP addresses
 Configure user-defined network routes
 Implement subnets
 Configure endpoints on subnets
 Configuring private endpoints
 Configure Azure DNS, including custom DNS settings and private or public DNS
zones

4.2 Secure access to virtual networks

 Create security rules


 Associate a network security group (NSG) to a subnet or network interface
 Evaluate effective security rules
 Implement Azure Firewall
 Implement Azure Bastion Service

4.3 Configure load balancing

 Configure Azure Application Gateway


 Configure an internal or public load balancer
 Troubleshoot load balancing

4.4 Monitor and troubleshoot virtual networking

 Monitor on-premises connectivity


 Configure and use Network Performance Monitor
 Use Azure Network Watcher
 Troubleshoot external networking
 Troubleshoot virtual network connectivity

4.5 Integrate an on-premises network with an Azure virtual network

 Create and configure Azure VPN Gateway (Microsoft Documentation: Create


and manage a VPN gateway using PowerShell)
 Create and configure Azure ExpressRoute
 Configure Azure Virtual WAN (Microsoft Documentation: Connect a VPN
Gateway (virtual network gateway) to Virtual WAN)

Module 5: Monitor and back up Azure resources (10-15%)

5.1 Monitor resources by using Azure Monitor

 Configure and interpret metrics (Microsoft Documentation: Metrics in Azure


Monitor)
 Configure Azure Monitor Log
 Query and analyze logs (Microsoft Documentation: Get started with log queries
in Azure Monitor)
 Set up alerts and actions (Microsoft Documentation: Create, view, and manage
metric alerts using Azure Monitor)
 Configure Application Insights (Microsoft Documentation: Start Monitoring Your
ASP.NET Core Web Application)

5.2 Implement backup and recovery

 Create a Recovery Services vault


 Create and configure a backup policy
 Perform backup and restore operations by using Azure Backup
 Perform site-to-site recovery by using Azure Site Recovery
 Configure and review backup reports

Learn how to pass AZ-104 Exam with Practice Test

Microsoft Instructor Led Training

For any certification, having the right source of training is important. However, for the
Microsoft AZ-104 exam training, you will get Instructor-led training that is basically an
online training course to covering up the basic understanding of the skills that are
required for the exam. There are various modules covered in this training so, you can
go through them. Moreover, there are two instructor-led training courses for AZ-104
included with the lab for adding support and exhibiting the structure of various
application scenarios. So, let’s have a look at them.

 Firstly, Microsoft Azure Administrator


 Then, Azure Administration for AWS SysOps

You might also like