Welcome to ExamTopics
ExamTopics Logo
- Expert Verified, Online, Free.

Unlimited Access

Get Unlimited Contributor Access to the all ExamTopics Exams!
Take advantage of PDF Files for 1000+ Exams along with community discussions and pass IT Certification Exams Easily.

Exam AZ-140 topic 12 question 2 discussion

Actual exam question from Microsoft's AZ-140
Question #: 2
Topic #: 12
[All AZ-140 Questions]

DRAG DROP -
You need to ensure that you can implement user profile shares for the Boston office users. The solution must meet the user profile requirements.
Which four actions should you perform in sequence? To answer, move the appropriate actions from the list of actions to the answer area and arrange them in the correct order.
Select and Place:

Show Suggested Answer Hide Answer
Suggested Answer:
Reference:
https://www.christiaanbrinkhoff.com/2020/03/01/learn-here-how-to-configure-azure-files-with-active-directory-ad-authentication-for-fslogix-profile-container-and- msix-app-attach/

Comments

Chosen Answer:
This is a voting comment (?) , you can switch to a simple comment.
Switch to a voting comment New
NotAChatBot
Highly Voted 2 years ago
1. Create a file share and configure permissions: Configure permissions for Admin1 - storage account owner or contributor. 2. Sign in to VM1 as Admin1 3. Install PS module 4. Run The Join-Bla cmdlet
upvoted 9 times
constructedrobot
1 year, 11 months ago
This is the right way howver, there is no real preference on 1 & 2
upvoted 3 times
...
...
Justin0020
Highly Voted 2 years, 4 months ago
Correct answer (implemented 2 times last week): Sign in Create a file share Install AZFilesHybrid (needed for last command) Run Join-AzStorageAccountForAuth
upvoted 7 times
...
Tijs0289
Most Recent 3 weeks, 6 days ago
According to below Microsoft Doc; it should according to me be: 1. Sign in to VM1 as Admin1. 2. Install AZFilesHybrid PS module 3. Run Join-AzStorageAccount 4. Create file share and configure share permissions https://learn.microsoft.com/en-us/azure/virtual-desktop/fslogix-profile-container-configure-azure-files-active-directory?tabs=adds#configure-session-hosts-to-use-profile-container
upvoted 1 times
...
kumarbk
6 months, 3 weeks ago
The given answer is correct
upvoted 1 times
...
Leocan
10 months, 2 weeks ago
The given answer is correct. I have verified it in the lab.
upvoted 3 times
...
thatfuckinguy
1 year, 2 months ago
The file share doesn't need to exist yet in order to join the storage account to the domain. CloudAdmin1 can't create an AD object but Admin1 can't create the file share or configure the permissions so, of the steps that are listed here, the correct order is: 1. Sign in as Admin1 2. Install module 3. Join-AzStorageAccountForAuth 4. Create file share and assign permissions The tricky part is that the fourth step isn't actually one step but a series of other steps.
upvoted 5 times
...
Domza
2 years, 5 months ago
Provided answer is correct. I found ref link: https://docs.microsoft.com/en-us/azure/storage/files/storage-files-identity-ad-ds-enable#option-one-recommended-use-azfileshybrid-powershell-module
upvoted 1 times
...
Flacky_Penguin32
2 years, 5 months ago
@SCT - I do think its sign in, create the file share and configure SMB Share Contributor & SMB Elevated Contributor, then run the AZfilesHybrid ps1, then run the authentication Join of the storage account as a computer account into AD. Think about it, how can you run the Join command if you don't have the file share created in the Azure Storage Account? - can't have a chicken before the egg. ;-)
upvoted 4 times
...
SCT
2 years, 5 months ago
Sign in to VM1 as Admin1, Install, Run and then Create a file share and configure share permissions
upvoted 3 times
...
hdh063
2 years, 5 months ago
Signin to the VM with admin1 instead of cloudadmin1
upvoted 4 times
LaurentvM
2 years, 5 months ago
No, admin1 is only a local administrator, no enough rights
upvoted 1 times
Azreal_75
2 years, 4 months ago
https://docs.microsoft.com/en-us/azure/storage/files/storage-files-identity-ad-ds-enable#option-one-recommended-use-azfileshybrid-powershell-module The link describes that an on-prem account sync'd to AD must be used to sign in - CloudAdmin1 is cloud-only. It also states that the on-prem AD account must have Owner or Contributer rights over the Azure storage account - there is no mention of Admin1 being granted those roles unless you count the requirement that Admin1 is to be granted permission to manage Workspaces. So neither is fully correct. On the basis that the account must be a sync'd on-prem account and not a cloud account though it must be Admin1 in my opinion.
upvoted 2 times
...
catamag
2 years, 3 months ago
CloudAdmin1 has the proper rights to enable AD DS authentication but not enough rights to create an object in AD. Admin 1 has the rights to create the object in AD but not enough right to enable AD DS authetication. Quote from: https://docs.microsoft.com/en-us/azure/storage/files/storage-files-identity-ad-ds-enable "-Install and execute the module in a device that is domain joined to on-premises AD DS with AD DS credentials that have permissions to create a service logon account or a computer account in the target AD. -Run the script using an on-premises AD DS credential that is synced to your Azure AD. The on-premises AD DS credential must have either Owner or Contributor Azure role on the storage account." So the order should be: 1. Sign in to VM1 as Admin1. 2. Install AZFilesHybrid PS module 3. Run Join-AzStorageAccount 4. Create file share and configure share permissions But in order for that to work Admin1 needs to receive the proper rights on the storage account.
upvoted 1 times
...
...
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...