Book Image

Implementing Microsoft Azure Architect Technologies: AZ-303 Exam Prep and Beyond - Second Edition

By : Brett Hargreaves, Sjoukje Zaal
Book Image

Implementing Microsoft Azure Architect Technologies: AZ-303 Exam Prep and Beyond - Second Edition

By: Brett Hargreaves, Sjoukje Zaal

Overview of this book

From designing solutions on Azure to configuring and managing virtual networks, the AZ-303 certification validates your knowledge and skills for all this and much more. Whether you want to take the certification exam or gain hands-on experience in administering, developing, and architecting Azure solutions, this study guide will help you get started. Divided into four modules, this book systematically takes you through the wide range of concepts and features covered in the AZ-303 exam. The first module demonstrates how to implement and monitor infrastructure. You'll develop the skills required to deploy and manage core Azure components such as virtual machines, networking, storage, and Active Directory (AD). As you progress, you'll build on that knowledge and learn how to create resilient and secure applications before moving on to working with web apps, functions, and containers. The final module will get you up to speed with data platforms such as SQL and Cosmos DB, including how to configure the different high availability options. Finally, you'll solve mock tests and assess yourself with the answers provided to get ready to take the exam with confidence. By the end of this book, you'll have learned the concepts and techniques you need to know to prepare for the AZ-303 exam and design effective solutions on Microsoft Azure.
Table of Contents (25 chapters)
1
Section 1: Implement and Monitor Azure Infrastructure
10
Section 2: Implement Management and Security Solutions
14
Section 3: Implement Solutions for Apps
18
Section 4: Implement and Manage Data Platforms
21
Chapter 17: Mock Exam Questions
22
Chapter 18: Mock Exam Answers

Configuring Azure Disk Encryption for VMs

Azure Disk Encryption for VMs can help you to meet your organizational security and compliance commitments by encrypting the disks of your VMs in Azure. For Windows VMs, it uses the BitLocker feature and, for Linux VMs, it uses the DM-Crypt feature to encrypt the OS and data disks. Azure Disk Encryption is available for Windows and Linux VMs with a minimum of 2 GB of memory, and for Standard VMs and VMs with Azure Premium Storage; however, it is not available for Basic, A-series, or generation 2 VMs.

Tip

For more information about the prerequisites of Azure Disk Encryption, you can refer to the documentation at https://docs.microsoft.com/en-us/azure/security/azure-security-disk-encryption-prerequisites.

It uses Azure Key Vault to help to control and manage the disk encryption keys and secrets. Azure Disk Encryption also ensures that disks that are stored in Azure Storage are encrypted at rest.

You will get a High Severity alert...