exam questions

Exam AZ-303 All Questions

View all questions & answers for the AZ-303 exam

Exam AZ-303 topic 1 question 8 discussion

Actual exam question from Microsoft's AZ-303
Question #: 8
Topic #: 1
[All AZ-303 Questions]

You have an Azure subscription that contains an Azure Log Analytics workspace.
You have a resource group that contains 100 virtual machines. The virtual machines run Linux.
You need to collect events from the virtual machines to the Log Analytics workspace.
Which type of data source should you configure in the workspace?

  • A. Syslog
  • B. Linux performance counters
  • C. custom fields
Show Suggested Answer Hide Answer
Suggested Answer: A 🗳️
Syslog is an event logging protocol that is common to Linux. Applications will send messages that may be stored on the local machine or delivered to a Syslog collector. When the Log Analytics agent for Linux is installed, it configures the local Syslog daemon to forward messages to the agent. The agent then sends the message to Azure Monitor where a corresponding record is created.
Reference:
https://docs.microsoft.com/en-us/azure/azure-monitor/platform/data-sources-custom-logs

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
certmonster
Highly Voted 4 years, 5 months ago
A is correct. Syslog is an event logging protocol that is common to Linux. Applications will send messages that may be stored on the local machine or delivered to a Syslog collector. When the Log Analytics agent for Linux is installed, it configures the local Syslog daemon to forward messages to the agent. The agent then sends the message to Azure Monitor where a corresponding record is created. FYI. Performance counters in Windows and Linux provide insight into the performance of hardware components, operating systems, and applications. Azure Monitor can collect performance counters from Log Analytics agents at frequent intervals for Near Real Time (NRT) analysis in addition to aggregating performance data for longer term analysis and reporting.
upvoted 30 times
ArpanS
3 years, 11 months ago
For Linux it is "CollectD" and not "performance counter". https://docs.microsoft.com/en-us/azure/azure-monitor/agents/data-sources-collectd
upvoted 2 times
...
...
kiersa
Highly Voted 4 years, 4 months ago
syslog is correct In the exam this week
upvoted 9 times
...
rxlicon
Most Recent 1 year, 8 months ago
Syslog
upvoted 1 times
...
plamfor
3 years, 2 months ago
Selected Answer: A
A is correct
upvoted 1 times
...
jadepe
3 years, 5 months ago
On exam 13dic2021
upvoted 1 times
...
quantumray
3 years, 5 months ago
Question appeared On AZ-303 exam on 08/12/2021 - 49 questions, 4Q - Fabrikan case study
upvoted 1 times
...
plmmsg
3 years, 8 months ago
A. Syslog https://docs.microsoft.com/en-us/azure/azure-monitor/agents/data-sources-syslog
upvoted 2 times
...
syu31svc
3 years, 8 months ago
https://docs.microsoft.com/en-us/azure/azure-monitor/platform/data-sources-syslog Answer is A Syslog
upvoted 1 times
...
Murali123xyz123
3 years, 10 months ago
in exam on 6/21
upvoted 2 times
...
AravindITGuy
3 years, 10 months ago
Took exam today passed this question was on there 6/21/2021
upvoted 2 times
...
MukeshAT0977
3 years, 11 months ago
In exam today
upvoted 1 times
...
Globetrotter
3 years, 11 months ago
Syslog is the correct answer as they need events from a linux VM.
upvoted 1 times
...
nfett
3 years, 11 months ago
verified from https://docs.microsoft.com/en-us/azure/azure-monitor/agents/data-sources-syslog syslog is the right answer.
upvoted 1 times
...
azurellc
3 years, 12 months ago
On exam 5/15/2021
upvoted 2 times
...
rsaintt
4 years ago
A: correct https://docs.microsoft.com/en-us/azure/azure-monitor/agents/data-sources-syslog
upvoted 1 times
...
kuroro
4 years, 1 month ago
In exam today
upvoted 1 times
...
AKumar
4 years, 1 month ago
Was in Exam
upvoted 1 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago