Microsoft Azure Administrator - AZ 104

  • Gain expertise in implementing, managing, and monitoring Microsoft Azure environments
  • Manage Azure identities and governance
  • Implement and manage storage
  • Deploy and manage Azure compute resources
  • Configure and manage virtual networking
  • Monitor and backup Azure resources
  • Acquire knowledge for Azure Administrator Certification

  • Manage Azure Active Directory (Azure AD) objects
    • Create users and groups
    • Create administrative units
    • Manage user and group properties
    • Manage device settings
    • Perform bulk user updates
    • Manage guest accounts
    • Configure Azure AD join
    • Configure self-service password reset
  • Manage role-based access control (RBAC)
    • Create a custom role
    • Assign roles at different scopes
    • Interpret access assignments
  • Manage subscriptions and governance
    • Configure Azure policies
    • Configure resource locks
    • Apply and manage tags on resources
    • Manage resource groups
    • Manage subscriptions and costs
    • Configure management groups

  • Secure storage
    • Configure network access to storage accounts
    • Create and configure storage accounts
    • Generate shared access signature (SAS) tokens
    • Manage access keys
    • Configure Azure AD authentication for a storage account
    • Configure access to Azure Files
  • Manage storage
    • Export from Azure job and import into Azure job
    • Install and use Azure Storage Explorer
    • Copy data using AZCopy
    • Implement Azure Storage replication
    • Configure blob object replication
  • Configure Azure Files and Azure Blob Storage
    • Create an Azure file share
    • Create and configure Azure File Sync service
    • Configure Azure Blob Storage
    • Configure storage tiers and blob lifecycle management

  • Automate deployment of virtual machines (VMs) using Azure Resource Manager (ARM) templates
    • Modify an ARM template
    • Configure a virtual hard disk (VHD) template
    • Deploy from a template
    • Save deployment as ARM template
    • Deploy VM extensions
  • Configure VMs
    • Configure Azure Disk Encryption
    • Move VMs between resource groups
    • Manage VM sizes and add data disks
    • Configure networking
    • Redeploy VMs
    • Configure high availability and scale sets
  • Create and configure containers
    • Configure sizing and scaling for Azure Container Instances (ACI)
    • Configure container groups for ACI
    • Configure storage and scaling for Azure Kubernetes Service (AKS)
    • Configure network connections and upgrade AKS cluster
  • Create and configure Azure App Service
    • Create an App Service plan and configure scaling
    • Create and secure an App Service
    • Configure custom domain names and backup
    • Configure networking and deployment settings

  • Implement and manage virtual networks
    • Create and configure virtual networks, including peering
    • Configure private and public IP addresses
    • Configure user-defined network routes and subnets
    • Configure endpoints on subnets and private endpoints
    • Configure Azure DNS (custom, private, public)
  • Secure access to virtual networks
    • Create security rules
    • Associate NSG to subnet or network interface
    • Evaluate effective security rules
    • Implement Azure Firewall and Azure Bastion
  • Configure load balancing
    • Configure Azure Application Gateway
    • Configure internal or public load balancer
    • Troubleshoot load balancing
  • Monitor and troubleshoot virtual networking
    • Monitor on-premises connectivity
    • Use Azure Monitor for Networks and Network Watcher
    • Troubleshoot external networking and virtual network connectivity
  • Integrate on-premises network with Azure virtual network
    • Create and configure Azure VPN Gateway
    • Create and configure Azure ExpressRoute
    • Configure Azure Virtual WAN

  • Monitor resources using Azure Monitor
    • Configure and interpret metrics
    • Configure Azure Monitor logs