Highlights
1. Manage Azure subscriptions
-
assign administrator permissions
-
configure cost center quotas and tagging
-
configure Azure subscription policies at Azure
subscription level
2. Analyze resource utilization and consumption
-
configure diagnostic settings on resources
-
create baseline for resources
-
create and rest alerts
-
analyze alerts across subscription
-
analyze metrics across subscription
-
create action groups
-
monitor for unused resources
-
monitor spend
-
report on spend
-
utilize Log Search query functions
-
view alerts in Log Analytics
3. Manage resource groups
-
use Azure policies for resource groups
-
configure resource locks configure resource
policies
-
identify auditing requirements
-
implement and set tagging on resource groups
-
move resources across resource groups
-
remove resource groups
Managed role based access control (RBAC)
-
create a custom role
-
configure access to Azure resources by assigning
roles
-
configure management access to Azure, troubleshoot
RBAC, implement RBAC policies, assign RBAC Roles
Implementing and Managing Storage
-
1. Create and configure storage accounts
-
configure network access to the storage account
-
create and configure storage account
-
generate shared access signature
-
install and use Azure Storage Explorer
-
manage access keys
-
monitor activity log by using Log Analytics
-
implement Azure storage replication
-
2. Import and export data to Azure
-
create export from Azure job
-
create import into Azure job
-
Use Azure Data Box
-
configure and use Azure blob storage
-
configure Azure content delivery network (CDN)
endpoints
-
3. Configure Azure files
-
4. Implement Azure backup
-
configure and review backup reports
-
perform backup operation
-
create Recovery Services Vault
-
create and configure backup policy
-
perform a restore operation
Configure and Manage Virtual Networks
-
1. Create connectivity between virtual networks
-
create and configure VNET peering
-
create and configure VNET to VNET
-
verify virtual network connectivity
-
create virtual network gateway
-
2. Implement and manage virtual networking
-
configure private and public IP addresses, network
routes, network interface, subnets, and virtual
network
-
3. Configure name resolution
-
4. Create and configure a Network Security Group (NSG)
-
5. Implement Azure load balancer
-
configure internal load balancer, configure load
balancing rules, configure public load balancer,
troubleshoot load balancing
-
6. Monitor and troubleshoot virtual networking
-
monitor on-premises connectivity, use Network
resource monitoring, use Network Watcher,
troubleshoot external networking, troubleshoot
virtual network connectivity
-
7. Integrate on premises network with Azure virtual
network
-
create and configure Azure VPN Gateway, create and
configure site to site VPN, configure Express Route,
verify on premises connectivity, troubleshoot on
premises connectivity with Azure
Deploying and Managing Virtual Machines
Manage Identities
-
1. Manage Azure Active Directory (AD)
-
2. Manage Azure AD objects (users, groups, and
devices)
-
3. Implement and manage hybrid identities
-
install Azure AD Connect, including password hash
and pass-through synchronization
-
use Azure AD Connect to configure federation with
on-premises Active Directory Domain Services (AD DS)
-
manage Azure AD Connect
-
manage password sync and password writeback
-
4. Implement multi-factor authentication (MFA)
-
configure user accounts for MFA, enable MFA
by using bulk update, configure fraud alerts,
configure bypass options, configure Trusted IPs,
configure verification methods
|