Please enable JavaScript.
Coggle requires JavaScript to display documents.
AZ-104 - Coggle Diagram
AZ-104
Configure & Manage Virtual Networking (30-35%)
Secure access to virtual networks
Evaluate effective security rules
Deploy and configure Azure Firewall
Associate an NSG to a subnet or network interface
Deploy and configure Azure Bastion Service
Create security rules
NOT: Implement Application security groups; DDoS
Configure load balancing
Configure load balancing rules
Configure a public load balancer
Configure an internal load balancer
Troubleshoot load balancing
Configure Application Gateway
NOT: Traffic Manager and FrontDoor PrivateLink
Configure name resolution
Configure custom DNS settings
Configure a private or public DNS zone
Configure Azure DNS
Monitor and troubleshoot virtual networking
Use Network Performance Monitor
Use Network Watcher
Monitor on-premises connectivity
Troubleshoot external networking
Troubleshoot Virtual network connectivity
Implement and manage virtual networking
Create and configure VNET peering
Configure private and Public IP addresses, network routes, network interface, subnets, and virtual network
Integrate an on-premises network with an Azure virtual network
Create and configure VPNs
Configure ExpressRoute
Create and Configure Azure VPN Gateway
Configure Azure Virtual WAN
Deploy & Manage Azure Compute Resources (25-30%)
Create and configure Containers
Create and configure Azure Kubernetes Service
Create & configure Azure Container Instances
NOT: Selecting a container solution architecture or product; container registry settings
Automate deployment and configuration of VMs
Configure VHD template
Deploy from template
Save a deployment as an ARM template
Automate configuration management by using custom script extensions
Modify Azure Resource Manager (ARM) template
Create and configure Web Apps
Create and configure app service
Create and Configure App Service Plans
NOT: Azure Functions; Logic Apps; Event Grid
Create and configure VMs
Move VMs from one resource group to another
Manage VM sizes
Configure Azure Disk encryption
Add data Disks
Configure networking
Redeploy VMs
Configure VMs for high availability and scalability
Configure high availability
Deploy and configure scale sets
Manage Azure Identities & Governance (15-20%)
Manage role-based access control (RBAC)
Provide access to Azure resources by assigning roles
Resource groups
Subscriptions
Resources (VMs, Disks, etc)
Interpret access assignments
Create a custom role
Manage multiple directories
Manage Azure AD Objects
Perform bulk user updates
Manage guest accounts
Manage Device Settings
Configure Azure AD join
Manage user and group properties
Configure Self-Service Password Reset
Create Users & Groups
NOT: Azure AD Connect; PIM
Manage subscriptions & governance
Manage Subscriptions
Configure cost management
Create & manage resource groups
Configure management groups
Move resources
Remove RGs
Apply tags
Configure resource locks
Configure Azure Policies
Implement and Manage Storage (10-15%)
Manage Data in Azure Storage
Import into Azure Job
Install and Use Azure Storage Explorer
Export from Azure Job
Copy data by using AZCopy
Configure Azure files and Azure Blob storage
Create & configure Azure File Sync service
Configure Azure blob storage
Create an Azure file share
Configure storage tiers for Azure blobs
Manage Storage Accounts
Generate share access signature
Manage Access keys
Create and configure storage accounts
Implement Azure Storage replication
Configure network access to storage accounts
Configure Azure AD Authentication for a storage account
Monitor & Back-up Azure Resources (10-15%)
Monitor resources by using Azure Monitor
Query & Analyse Logs
Save a query to the dashboard
Interpret graphs
Create a query
Set up alerts & actions
View alerts in Azure Monitor
Analyze alerts across subscriptions
Create action groups
Create and test alerts
Configure Log Analytics
Implement a Log Analytics workspace
Configure diagnostic settings
Configure Application Insights
Configure & Interpret Metrics
Analyze metrics across subscriptions
NOT: Network Monitoring
Implement Backup and Recovery
Create a Recovery services vault
Use Soft delete to recover Azure VMs
Create and configure backup policy
Perform and restore operations by using Azure Backup Service
Perform site-to-site recovery by using Azure Site Recovery
Configure and review backup reports
NOT: SQL or HANA