Book Image

Administering Windows Server Hybrid Core Infrastructure AZ-800 Exam Guide

By : Steve Miles
Book Image

Administering Windows Server Hybrid Core Infrastructure AZ-800 Exam Guide

By: Steve Miles

Overview of this book

Written by an Azure MVP and Microsoft Certified Trainer with 20 years of experience in data center infrastructure, this AZ-800 study guide is an essential preparation tool for administrators who want to take the exam and acquire key skills that will help them thrive in their careers. This book will guide you through all the ways Windows Server can be used to manage hybrid solutions on-premises and in the cloud, starting with deploying and managing Active Directory Domain Services (AD DS) in on-premises and cloud environments. You’ll then dive into managing virtual machines and containers and progress to implementing and managing an on-premises and hybrid networking infrastructure. The later parts of the book focus on managing storage and file services, concluding with a detailed overview of all the knowledge needed to pass the AZ-800 exam with practical examples throughout the chapters. In the final chapter, you’ll be able to test your understanding of the topics covered with the help of practice exams to make sure that you’re completely prepared for the contents and structure of the exam. By the end of the book, you’ll have gained the knowledge, both practical and conceptual, that's required to administer Windows Server hybrid core infrastructure confidently.
Table of Contents (22 chapters)
1
Part 1: Hybrid Identity
6
Part 2: Hybrid Networking
9
Part 3: Hybrid Storage
12
Part 4: Hybrid Compute
18
Part 5: Exam Prep
19
Chapter 14: Exam Preparation Practice Tests

Implementing Microsoft Defender for Cloud for hybrid Windows servers

Microsoft Defender for Cloud is Microsoft’s Cloud Security Posture Management (CSPM) and Cloud Workload Protection Platform (CWPP) solution. We can use it to monitor and manage the security posture of hybrid Windows servers in on-premises environments.

In addition, we can implement Microsoft Sentinel, which provides a cloud-native SIEM and security orchestration, automation, and response (SOAR) solution for onboarded hybrid Windows servers.

When Defender for Cloud is enabled, the Log Analytics agent needs to be deployed to the machines; the agents then send data to a connected Log Analytics workspace. Defender for Cloud can then determine the security posture of the machines, applications, data, and networks and provide a secure score.

For Azure VMs, the Log Analytics agent is automatically provisioned by Defender for Cloud. For on-premises hybrid machines, the agent can be manually installed or automated...