AZ-140 practice questions
You have an Azure Virtual Desktop host pool that contains 20 Windows 10 Enterprise multi-session hosts. Users connect to the Azure Virtual Desktop deployment from computers that run Windows 10. You plan to implement FSLogix Application Masking. You need to deploy Application Masking rule sets. The solution must minimize administrative effort. To where should you copy the rule sets?
A. the FSLogix profile container of each user
B. C:\Program Files\FSLogix\Apps\Rules on every Windows 10 computer
C. C:\Program Files\FSLogix\Apps\Rules on every session host
Discussion forum
Question
You have an Azure Virtual Desktop host pool that contains two session hosts. The Microsoft Teams client is installed on each session host. You discover that only the Microsoft Teams chat and collaboration features work. The calling and meeting features are disabled. You need to ensure that users can set the calling and meeting features from within Microsoft Teams. What should you do?
A. Install the Remote Desktop WebRTC Redirector Service.
B. Configure Remote audio mode in the RDP Properties.
C. Install the Teams Meeting add-in for Outlook.
D. Configure audio input redirection.
Discussion forum
Question
You have an Azure Virtual Desktop deployment that contains the following: ✑ A host pool named Pool1 ✑ Two session hosts named Host1 and Host2 ✑ An application group named RemoteAppGroup1 that contains a RemoteApp named App1 You need to prevent users from copying and pasting between App1 and their local device. What should you do?
A. Create an AppLocker policy.
B. Modify the locks of RemoteAppGroup1.
C. Assign the Desktop Virtualization Reader role for Pool1 to the users.
D. Modify the RDP Properties of Pool1.
Discussion forum
Question
You have an Azure Virtual Desktop deployment. You publish a RemoteApp named AppVersion1. You need AppVersion1 to appear in the Remote Desktop client as Sales Contact Application. Which PowerShell cmdlet should you use?
A. New-AzADApplication
B. Update-AzWvdApplicationGroup
C. Register-AzWvdApplicationGroup
D. Update-AzWvdApplication
Discussion forum
Question
You have a hybrid Azure Active Directory (Azure AD) tenant. You plan to deploy an Azure Virtual Desktop personal host pool. The host pool will contain 15 virtual machines that run Windows 10 Enterprise. The virtual machines will be joined to the on-premises Active Directory domain and used by the members of a domain group named Department1. You need to ensure that each user is added automatically to the local Administrators group on the virtual machine to which the user signs in. What should you configure?
A. a role assignment for the host pool
B. a role assignment for each virtual machine
C. a policy preference in a Group Policy Object (GPO)
D. a device setting in Azure AD
Discussion foVrum
Question
Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution. After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen. You have an Azure Virtual Desktop host pool named Pool1 that is integrated with an Azure Active Directory Domain Services (Azure AD DS) managed domain. You need to configure idle session timeout settings for users that connect to the session hosts in Pool1. Solution: From the Azure portal, you modify the Advanced settings in the RDP Properties of Pool1. Does this meet the goal?
A. Yes
B. No
Discussion forum
Question
You have an Azure Active Directory Domain Services (Azure AD DS) managed domain named contoso.com. You create an Azure Virtual Desktop host pool named Pool1. You assign the Virtual Machine Contributor role for the Azure subscription to a user named Admin1. You need to ensure that Admin1 can add session hosts to Pool1. The solution must use the principle of least privilege. Which two actions should you perform? Each correct answer presents part of the solution. NOTE: Each correct selection is worth one point.
A. Assign Admin1 the Desktop Virtualization Host Pool Contributor role for Pool1
B. Assign Admin1 the Desktop Virtualization Session Host Operator role for Pool1
C. Add Admin1 to the AAD DC Administrators group
D. Assign a Microsoft 365 Enterprise E3 license to Admin1
E. Generate a registration token
Discussion forum
Question
You deploy an Azure Virtual Desktop session host pool that includes ten virtual machines. You need to provide a group of pilot users access to the virtual machines in the pool. What should you do?
A. Create a role definition.
B. Add the users to a Remote Desktop Users group on the virtual machines.
C. Add the users to the local Administrators group on the virtual machines.
D. Create a role assignment.
Discussion forum
Question
You have an Azure Virtual Desktop deployment. You have a RemoteApp named App1. You discover that from the Save As dialog box of App1, users can run executable applications other than App1 on the session hosts. You need to ensure that the users can run only published applications on the session hosts. What should you do?
A. Configure a conditional access policy in Azure Active Directory (Azure AD).
B. Modify the Access control (IAM) settings of the host pool.
C. Modify the RDP Properties of the host pool.
D. Configure an AppLocker policy on the session hosts.
Discussion forum
Question
Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution. After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen. You have an Azure Virtual Desktop host pool named Pool1 that is integrated with an Azure Active Directory Domain Services (Azure AD DS) managed domain. You need to configure idle session timeout settings for users that connect to the session hosts in Pool1. Solution: From the Azure portal, you modify the Session behavior settings in the RDP Properties of Pool1. Does this meet the goal?
A. Yes
B. No
Discussion forum
Question
Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution. After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen. You have an Azure Virtual Desktop host pool named Pool1 that is integrated with an Azure Active Directory Domain Services (Azure AD DS) managed domain. You need to configure idle session timeout settings for users that connect to the session hosts in Pool1. Solution: From an Azure AD DS-joined computer, you modify the AADDC Computers GPO settings. Does this meet the goal?
A. Yes
B. No
Discussion forum
Question
Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution. After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen. You have an Azure Virtual Desktop host pool named Pool1 that is integrated with an Azure Active Directory Domain Services (Azure AD DS) managed domain. You need to configure idle session timeout settings for users that connect to the session hosts in Pool1. Solution: From an Azure AD DS-joined computer, you modify the AADDC Users GPO settings. Does this meet the goal?
A. Yes
B. No
Discussion forum
Question
You have a Azure Virtual Desktop host pool. You need to install Microsoft Antimalware for Azure on the session hosts. What should you do?
A. Add an extension to each session host.
B. From a Group Policy Object (GPO), enable Windows 10 security features.
C. Configure the RDP Properties of the host pool.
D. Sign in to each session host and install a Windows feature
Discussion forum
Question
You have an Azure Virtual Desktop host pool named Pool1 and an Azure Storage account named Storage1. Storage1 stores FSLogix profile containers in a share folder named share1. You create a new group named Group1. You provide Group1 with permission to sign in to Pool1. You need to ensure that the members of Group1 can store the FSLogix profile containers in share1. The solution must use the principle of least privilege. Which two privileges should you assign to Group1? Each correct answer presents part of the solution. NOTE: Each correct selection is worth one point.
A. the Storage Blob Data Contributor role for storage1
B. the List folder / read data NTFS permissions for share1
C. the Modify NTFS permissions for share1
D. the Storage File Data SMB Share Reader role for storage1
E. the Storage File Data SMB Share Elevated Contributor role for storage1
F. the Storage File Data SMB Share Contributor role for storage1
Discussion forum
Question
You have an on-premises network and an Azure subscription. The subscription contains the following virtual network: * Name:VNet1 * Address space: 10.10.0.0/16 * Subnet name: Subnet1 * Subnet1 address range: 10.10.0.0/16 You deploy an Azure Virtual Desktop host pool that contains 10 session hosts to Subnets. You plan to deploy a VPN gateway to VNet1 and provide the session hosts with access to the on-premises network. You need to ensure that you can deploy the VPN gateway. What should you do first?
A. Modify the address range of Subnet1.
B. Add a subnet named GatewaySubnet to VNet1.
C. Modify the address space of VNet1.
D. Associate a network security group (NSG) to Subnet1.
Discussion forum
Question