This course is intended for IT professionals who are familiar with managing on-premises IT deployments that include VMs, Networks, Storage, Active Directory Domain Services (AD DS), virtualization technologies, and applications. Students typically work for organizations that are planning to locate some or all of their infrastructure services on Azure. This course also is intended for IT professionals who want to achieve the Microsoft Certification: Microsoft Certified Associate: Azure Administrator.
Class Structure:
- 20 Hour Theory Sessions on Weekends
- 20 hours of practice labs on Weekdays
- Practice questions for Exam AZ-100
- Access to TechVedant on-Demand courses
Student Prerequisites:
- In addition to their professional experience, students who attend this training should have the following technical knowledge:
- Understanding of on-premises virtualization technologies, including: VMs, virtual networking, and virtual hard disks.
- Understanding of network configuration, including: TCP/IP, Domain Name System (DNS), virtual private networks (VPNs), firewalls, and encryption technologies.
- Understanding of Active Directory concepts, including: domains, forests, domain controllers, replication, Kerberos protocol, and Lightweight Directory Access Protocol (LDAP).
- Understanding of resilience and disaster recovery, including backup and restore operations.
Exam Objectives:
Evaluate and perform server migration to Azure (15-20%):
- Evaluate migration scenarios by using Azure Migrate
- May include but not limited to: Discover and assess environment; identify workloads that can and cannot be deployed; identify ports to open; identify changes to network; identify if target environment is supported; setup domain accounts and credentials
- Migrate servers to Azure
- May include but not limited to: Migrate by using Azure Site Recovery (ASR); migrate using P2V; configure storage; create a recovery services vault; prepare source and target environments; backup and restore data; deploy Azure Site Recovery (ASR) agent; prepare virtual network
Implement and manage application services (20-25%):
- Configure serverless computing
- May include but not limited to: Create and manage objects; manage a Logic App resource; manage Azure Function app settings; manage Event Grid; manage Service Bus
- Manage App Service plans
- May include but not limited to: Configure application for scaling; enable monitoring and diagnostics; configure App Service plans
- Manage App services
- May include but not limited to: Assign SSL certificates; configure application settings; configure deployment slots; configure Azure content delivery network (CDN) integration; manage App Service protection; manage roles for an App service; create and manage App Service environment
Implement advanced virtual networking (30-35%):
- Implement application load balancing
- May include but not limited to: Configure application gateway and load balancing rules; implement front end IP configurations; manage application load balancing
- Implement Azure load balancer
- May include but not limited to: Configure internal load balancer, load balancing rules, and public load balancer; manage Azure load balancing
- Monitor and manage networking
- May include but not limited to: Monitor on-premises connectivity; use network resource monitoring and Network Watcher; manage external networking and virtual network connectivity
- Integrate on-premises network with Azure virtual network
- May include but not limited to: Create and configure Azure VPN Gateway; create and configure site to site VPN; configure Express Route; verify on-premises connectivity; manage on-premises connectivity with Azure
Secure identities (25-30%):
- Implement Multi-Factor Authentication (MFA)
- May include but not limited to: Enable MFA for an Azure AD tenant; configure user accounts for MFA; configure fraud alerts; configure bypass options; configure trusted IPs; configure verification methods
- Manage role-based access control (RBAC)
- May include but not limited to: Create a custom role; configure access to Azure resources by assigning roles; configure management access to Azure; troubleshoot RBAC; implement RBAC policies; assign RBAC roles
- Implement Azure Active Director (AD) Privileged Identity Management (PIM)
- May include but not limited to: Activate a PIM role; configure just-in-time access, permanent access, PIM management access, and time-bound access; create a Delegated Approver account; enable PIM; process pending approval requests