Practice Free AZ-801 Exam Online Questions
HOTSPOT
You have a Hyper-V failover cluster named Cluster1 at a main datacenter. Cluster1 contains two nodes that have the Hyper-V server role installed. Cluster1 hosts 10 highly available virtual machines.
You have a cluster named Cluster2 in a disaster recovery site. Cluster2 contains two nodes that have the Hyper-V server role installed.
You plan to use Hyper-V Replica to replicate the virtual machines from Cluster1 to Cluster2.
What should you do? To answer, select the appropriate options in the answer area. NOTE: Each correct selection is worth one point.

Your network contains an Active Directory Domain Services (AD DS) domain. The functional level of the domain is Windows Server 2012 R2.
You need to create and link an authentication policy silo.
What should you do first?
- A . Raise the domain functional level to Windows Server 2016.
- B . Raise the domain functional level to Windows Server 2025.
- C . Create an authentication policy.
- D . Create an authentication policy silo.
You have an Active Directory Domain Services (AD DS) forest that has the Active Directory Recycle Bin enabled. The forest contains a user named User1.
User1 is accidentally deleted.
You need to restore User1 from the Active Directory Recycle Bin.
What should you use?
- A . Active Directory Sites and Services
- B . Active Directory Domains and Trusts
- C . Active Directory Administrative Center
- D . Active Directory Users and Computers
Topic 3, Misc. Questions
Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution.
After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen.
You have a server named Server1 that runs Windows Server.
You need to ensure that only specific applications can modify the data in protected folders on Server1.
Solution: From Virus & threat protection, you configure Controlled folder access.
Does this meet the goal?
- A . Yes
- B . No
You have an Azure virtual machine named VM1.
You install an application on VM1, and then restart the virtual machine.
After the restart, you get the following error message: “Boot failure. Reboot and Select proper Boot Device or Insert Boot Media in selected Boot Device.”
You need to mount the operating system disk offline from VM1 to a temporary virtual machine to troubleshoot the issue.
Which command should you run in Azure CLI?
- A . az vm repair create
- B . az vm boot-diagnostics enable
- C . az vm capture
- D . az vm disk attach
You have an on-premises network and an Azure virtual network.
You establish a Site-to-Site VPN connection from the on-premises network to the Azure virtual network, but the connection frequently disconnects.
You need to debug the IPsec tunnel from Azure.
Which Azure VPN Gateway diagnostic log should you review?
- A . GatewayDiagnosticLog
- B . RouteDiagnosticLog
- C . IKEDiagnosticLog
- D . TunnelDiagnosticLog
DRAG DROP
Your network contains an Active Directory Domain Services (AD DS) domain.
The domain contains the servers shown in the following table.

You need to migrate App1 to a Docker image on Server2.
Which three actions should you perform in sequence? To answer, move the appropriate actions from the list of actions to the answer area and arrange them in the coned order.

You have a failover cluster named Cluster! that contains two Windows Server nodes named Server1 and Server2. Cluster! hosts highly available Hyper-V virtual machines.
You have a member server named Server3 that runs Windows Server.
You need to implement Cluster-Aware Updating (CUA) on Cluster! and configure Server3 to manage CUA. The solution must minimize administrative effort.
What should you install on Server3?
- A . the Windows Server Update Services server role
- B . the Failover Cluster Automation Server feature
- C . Windows Admin Center
- D . the Host Guardian Service server role
HOTSPOT
Your network contains an on-premises Active Directory Domain Services (AD DS) domain.
The domain contains the servers shown in the following table.

For each server. Windows Defender Firewall is configured to allow only communication between servers on the same segment .
Server! has the following connection security rule:
• Name: Rule1
• Rule type: Isolation
• Requirement: Require authentication for inbound connections and request authentication for outbound connections
• Authentication method: Computer (Kerberos V5)
• Profile: Domain. Private. Public
Server2 does not have any connection security rules.
Server3 has the following connection security rule:
• Name: Rute3
• Rule type: Server-to-server
• Endpoints:
o Computers in Endpoint 1:192.168.50/24
o Computers in Endpoint 2: 192.168.1.0/24
• Requirement Request authentication (or inbound and outbound connections
• Authentication method: Computer (Kerberos V5)
• Profile: Domain. Private. Public
For each of the following statements, select Yes if the statement is true. Otherwise, select No. NOTE: Each correct selection is worth one point.

You are planning the migration of Archive1 to support the on-premises migration plan.
What is the minimum number of IP addresses required for the node and cluster roles on Cluster3?
- A . 2
- B . 3
- C . 4
- D . 5


