Case Studies & Practical Application Flashcards
7 cards from real AZ-301 practice questions. Tap to flip, then mark Knew It or Still Learning โ missed cards come back until you master them.
Read the first 7 Case Studies & Practical Application flashcards as text
A startup needs to build a serverless API that handles variable traffic, with each function executing up to 10 minutes. Which Azure Function plan is required?
Answer: Premium plan
The Premium plan supports execution durations up to 60 minutes, whereas the Consumption plan caps at 10 minutes only if configured, but Premium also provides VNET integration and no cold-start penalties.
An architect must design a solution where multiple microservices communicate asynchronously, but each message must be processed exactly once even if the consumer fails midway. Which service meets this requirement?
Answer: Azure Service Bus queues with peek-lock mode
Service Bus peek-lock holds a message invisible to other consumers until explicitly completed or abandoned, enabling exactly-once processing semantics.
A law firm stores sensitive documents in Azure Blob Storage. Regulatory requirements mandate that documents cannot be deleted or modified for 7 years. Which feature enforces this?
Answer: Azure Storage immutability policies with time-based retention locks
Immutable storage with time-based retention and locked policies prevents blob deletion or modification for the defined retention period, satisfying WORM compliance.
A company wants to allow developers to deploy resources to Azure but prevent them from creating resources in regions outside of East US and West US. What is the most efficient enforcement mechanism?
Answer: Apply an Azure Policy with an 'allowed locations' effect at the subscription or management group level
Azure Policy with the 'allowed locations' built-in definition enforces region restrictions at scale across the subscription or management group.
An organization needs to federate identities from an on-premises Active Directory to Azure AD so users can sign in to Azure portal with their corporate credentials without password sync. Which solution is correct?
Answer: Azure AD Connect with AD FS federation
AD FS federation with Azure AD allows authentication to remain on-premises without any password hash or credential data leaving the corporate network.
A company deploys a multi-region active-active web application. Users must always be routed to the nearest healthy region, and the solution must detect unhealthy endpoints within 30 seconds. Which service should be used?
Answer: Azure Traffic Manager with performance routing and health probes
Traffic Manager uses performance routing to direct users to the lowest-latency endpoint and health probes to detect and bypass unhealthy regions within seconds.
An architect must design a solution that automatically remediates non-compliant Azure resources (e.g., adding missing tags) without manual intervention. Which combination achieves this?
Answer: Azure Policy with a 'deny' effect and a remediation task using a 'modify' effect policy
Azure Policy with a 'modify' effect and associated remediation tasks can automatically add or update tags on existing non-compliant resources.