Want to know Examcollection 70-354 Exam practice test features? Want to lear more about Microsoft Universal Windows Platform – App Architecture and UX/UI certification experience? Study Free Microsoft 70-354 answers to Abreast of the times 70-354 questions at Examcollection. Gat a success with an absolute guarantee to pass Microsoft 70-354 (Universal Windows Platform – App Architecture and UX/UI) test on your first attempt.


♥♥ 2021 NEW RECOMMEND ♥♥

Free VCE & PDF File for Microsoft 70-354 Real Exam (Full Version!)

★ Pass on Your First TRY ★ 100% Money Back Guarantee ★ Realistic Practice Exam Questions

Free Instant Download NEW 70-354 Exam Dumps (PDF & VCE):
Available on: http://www.surepassexam.com/70-354-exam-dumps.html

Q11. HOTSPOT - (Topic 6) 

Resources must authenticate to an identity provider. 

You need to configure the Azure Access Control service. 

What should you recommend? To answer, select the appropriate responses for each requirement in the answer area. 

Answer: 


Q12. - (Topic 6) 

You design an Azure web application. The web application is accessible by default as a standard cloudapp.net URL. 

You need to recommend a DNS resource record type that will allow you to configure access to the web application by using a custom domain name. 

Which DNS record type should you recommend? 

A. SRV 

B. MX 

C. CNAME 

D. A 

Answer:

Explanation: A CNAME record maps a specific domain, such as contoso.com or www.contoso.com, to a canonical domain name. In this case, the canonical domain name is the <myapp>.cloudapp.net domain name of your Azure hosted application. Once created, the CNAME creates an alias for the <myapp>.cloudapp.net. The CNAME entry will resolve to the IP address of your <myapp>.cloudapp.net service automatically, so if the IP address of the cloud service changes, you do not have to take any action. 

Incorrect: Not D: 

Since an A record is mapped to a static IP address, it cannot automatically resolve changes to the IP address of your Cloud Service. 

An A record maps a domain, such as contoso.com or www.contoso.com, or a wildcard domain such as *.contoso.com, to an IP address. In the case of an Azure Cloud Service, the virtual IP of the service. So the main benefit of an A record over a CNAME record is that you can have one entry that uses a wildcard, such as *.contoso.com, which would handle requests for multiple sub-domains such as mail.contoso.com, login.contoso.com, or 

www.contso.com. 

Reference: Configuring a custom domain name for an Azure cloud service 

http://azure.microsoft.com/en-gb/documentation/articles/cloud-services-custom-domain-name/ 


Q13. - (Topic 6) 

You have several virtual machines (VMs) that run in Azure. You also have a single System Center 2012 R2 Configuration Manager (SCCM) primary site on-premises. 

You have the following requirements: 

All VMs must run on the same virtual network. 

Network traffic must be minimized between the on-premises datacenter and Azure. 

The solution minimize complexity. 

You need to use SCCM to collect inventory and deploy software to Azure VMs. 

What should you do first? 

A. Configure client push for the Azure virtual network. 

B. Enable and configure Operations Insights in Azure. 

C. Install a cloud distribution point on an Azure VM. 

D. Install a secondary site underneath the primary site onto an Azure VM. 

Answer:

Explanation: Cloud-based distribution Point, a Configuration Manager Site System Role in the Cloud 

Much of the Configuration Manager topology is made up of distribution points, they are very helpful in many situations where bandwidth and geographical separation are the facts of life, but also hard to manage if you have hundreds or even thousands of them. 

This feature started with the vision that it makes perfect sense to have big distribution points in the Windows Azure cloud where one should not worry about things like (but not limited to) size, performance, reliability, security, access from all around the world, hardware/software update issues etc. 

Note: Content management in System Center 2012 Configuration Manager provides the tools for you to manage content files for applications, packages, software updates, and operating system deployment. Configuration Manager uses distribution points to store files that are required for software to run on client computers. These distribution points function as distribution centers for the content files and let users download and run the software. 

Clients must have access to at least one distribution point from which they can download the files. 

Reference: New Distribution Points in Configuration Manager SP1 

http://blogs.technet.com/b/configmgrteam/archive/2013/01/31/new-distribution-points-in-configuration-manager-sp1.aspx 


Q14. DRAG DROP - (Topic 6) 

You are the Azure architect for an organization. You are working with C-level management to assign Azure role-based access control roles to a team within the organization. A single 

director oversees two teams, a development team and a test team. The director is wholly responsible for the organization's Azure account, including billing, infrastructure, and access control. The director is the only member of the team with the ability to alter access controls. 

You have the following requirements: 

. Members of the development team must be able to view or alter Azure infrastructure to support application development. . Members of the test team must be able to view Azure infrastructure to support test cases. 

You need to assign built-in Azure role-based access control roles to team members within the organization. 

Which role should you assign to each team member? To answer, drag the appropriate role to the correct team member. Each role may be used once, more than once, or not at all. You may need to drag the split bar between panes or scroll to view content. 

Answer: 


Q15. ic 1, VanArsdel, Ltd

Overview

VanArsdel, Ltd. builds skyscrapers, subways, and bridges. VanArsdel is a leader in using technology to do construction better.

Overview

VanArsdel employees are able to use their own mobile devices for work activities because the company recognizes that this usage enables employee productivity. Employees also access Software as a Service (SaaS) applications, including DocuSign, Dropbox, and Citrix. The company continues to evaluate and adopt more SaaS applications for its business. VanArsdel uses Azure Active Directory (AD) to authenticate its employees, as well as Multi-Factor Authentication (MFA). Management enjoys the ease with which MFA

can be enabled and disabled for employees who use cloud-based services. VanArsdel's on-premises directory contains a single forest.

Helpdesk:

VanArsdel creates a helpdesk group to assist its employees. The company sends email messages to all its employees about the helpdesk group and how to contact it. Configuring employee access for SaaS applications is often a time-consuming task. It is not always obvious to the helpdesk group which users should be given access to which SaaS applications. The helpdesk group must respond to many phone calls and email messages to solve this problem, which takes up valuable time. The helpdesk group is unable to meet the needs of VanArsdel's employees.

However, many employees do not work with the helpdesk group to solve their access problems. Instead, these employees contact their co-workers or managers to find someone who can help them. Also, new employees are not always told to contact the helpdesk group for access problems. Some employees report that they cannot see all the applications in the Access Panel that they have access to. Some employees report that they must re-enter their passwords when they access cloud applications, even though they have already authenticated.

Bring your own device (BYOD):

VanArsdel wants to continue to support users and their mobile and personal devices, but the company is concerned about how to protect corporate assets that are stored on these devices. The company does not have a strategy to ensure that its data is removed from the devices when employees leave the company.

Customer Support

VanArsdel wants a mobile app for customer profile registration and feedback. The company would like to keep track of all its previous, current, and future customers worldwide. A profile system using third-party authentication is required as well as feedback and support sections for the mobile app.

Migration:

VanArsdel plans to migrate several virtual machine (VM) workloads into Azure. They also plan to extend their on-premises Active Directory into Azure for mobile app authentication.

Business Requirements

Hybrid Solution:

A single account and credentials for both on-premises and cloud applications Certain applications that are hosted both in Azure and on-site must be accessible to both VanArsdel employees and partners

The service level agreement (SLA) for the solution requires an uptime of 99.9%

The partners all use Hotmail.com email addresses

Mobile App:

VanArsdel requires a mobile app for project managers on construction job sites. The mobile app has the following requirements:

The app must display partner information.

The app must alert project managers when changes to the partner information occur.

The app must display project information including an image gallery to view pictures of construction projects.

Project managers must be able to access the information remotely and securely.

Security:

VanArsdel must control access to its resources to ensure sensitive services and information are accessible only by authorized users and/or managed devices.

Employees must be able to securely share data, based on corporate policies, with other VanArsdel employees and with partners who are located on construction job sites.

VanArsdel management does NOT want to create and manage user accounts for partners.

Technical Requirements

Architecture:

VanArsdel requires a non-centralized stateless architecture fonts data and services where application, data, and computing power are at the logical extremes of the network.

VanArsdel requires separation of CPU storage and SQL services

Data Storage:

VanArsdel needs a solution to reduce the number of operations on the contractor information table. Currently, data transfer rates are excessive, and queue length for read/write operations affects performance.

A mobile service that is used to access contractor information must have automatically scalable, structured storage Images must be stored in an automatically scalable, unstructured form.

Mobile Apps:

VanArsdel mobile app must authenticate employees to the company's Active Directory.

Event-triggered alerts must be pushed to mobile apps by using a custom Node.js script.

The customer support app should use an identity provider that is configured by using the Access Control Service for current profile registration and authentication.

The customer support team will adopt future identity providers that are configured through Access Control Service.

Security:

Active Directory Federated Server (AD FS) will be used to extend AD into Azure.

Helpdesk administrators must have access to only the groups of Azure resources they are responsible for. Azure administration will be performed by a separate group.

IT administrative overhead must be minimized.

Permissions must be assigned by using Role Based Access Control (RBAC).

Line of business applications must be accessed securely.

1. - (Topic 1) 

You need to prepare the implementation of data storage for the contractor information app. 

What should you? 

A. Create a storage account and implement multiple data partitions. 

B. Create a Cloud Service and a Mobile Service. Implement Entity Group transactions. 

C. Create a Cloud Service and a Deployment group. Implement Entity Group transactions. 

D. Create a Deployment group and a Mobile Service. Implement multiple data partitions. 

Answer:

Explanation: 

* Scenario: / VanArsdel needs a solution to reduce the number of operations on the contractor information table. Currently, data transfer rates are excessive, and queue length for read/write operations affects performance. / A mobile service that is used to access contractor information must have automatically scalable, structured storage 

* The basic unit of deployment and scale in Azure is the Cloud Service. 

Reference: Performing Entity Group Transactions 

https://msdn.microsoft.com/en-us/library/azure/dd894038.aspx 


Q16. - (Topic 6) 

You are designing a distributed application for Azure. 

The application must securely integrate with on-premises servers. 

You need to recommend a method of enabling Internet Protocol security (IPsec)-protected 

connections between on-premises servers and the distributed application. 

What should you recommend? 

A. Azure Access Control 

B. Azure Content Delivery Network (CDN) 

C. Azure Service Bus 

D. Azure Site-to-Site VPN 

Answer:

Explanation: IPsec can be used on Azure Site-to-Site VPN connections. Distributed applications can used the IPSec VPN connections to communicate. 

Reference: About Virtual Network Secure Cross-Premises Connectivity 

https://msdn.microsoft.com/en-us/library/azure/dn133798.aspx 


Q17. HOTSPOT - (Topic 1) 

You need to design the contractor information app. 

What should you recommend? To answer, select the appropriate options in the answer area. 

Answer: 


Q18. - (Topic 5) 

You need to recommend the appropriate technology to provide the predictive analytics for passenger pickup. 

What should you do? 

A. Use Power BI to analyze the traffic data and PowerPivot to categorize the results. 

B. Use HDInsight to analyze the traffic data and write a .NET program to categorize the results. 

C. Use Machine Learning Studio to create a predictive model and publish the results as a web service. 

D. Use Hadoop on-premises to analyze the traffic and produce a report that shows high traffic zones. 

Answer:

Explanation: * Scenario: Predictive Routing: 

/ An Azure solution must be used for prediction systems. 

/ Predictive analytics must be published as a web service and accessible by using the 

REST API. 

* Microsoft Azure Machine Learning Studio is a collaborative visual development environment that enables you to build, test, and deploy predictive analytics solutions that operate on your data. The Machine Learning service and development environment is cloud-based, provides compute resource and memory flexibility, and eliminates setup and installation concerns because you work through your web browser. 

Reference: What is Azure Machine Learning Studio? 

https://azure.microsoft.com/en-us/documentation/articles/machine-learning-what-is-ml-studio/ 


Q19. DRAG DROP - (Topic 5) 

You need to design the notification service for the customer-facing mobile app. 

Which three actions should you perform in sequence? To answer, move the appropriate actions from the list of actions to the answer area and arrange them in the correct order. 

Answer: 


Q20. - (Topic 1) 

You need to ensure that users do not need to re-enter their passwords after they authenticate to cloud applications for the first time. 

What should you do? 

A. Enable Microsoft Account authentication. 

B. Set up a virtual private network (VPN) connection between the VanArsdel premises and Azure datacenter. Set up a Windows Active Directory domain controller in Azure VM. Implement Integrated Windows authentication. 

C. Deploy ExpressRoute. 

D. Configure Azure Active Directory Sync to use single sign-on (SSO). 

Answer:

Explanation: Single sign-on (SSO) is a property of access control of multiple related, but independent software systems. With this property a user logs in once and gains access to all systems without being prompted to log in again at each of them. 

Reference: http://en.wikipedia.org/wiki/Single_sign-on