2026 Latest AZ-140 dumps Exam Material with 380 Questions
Microsoft AZ-140 Questions and Answers Guarantee you Oass the Test Easily
NEW QUESTION # 41
Note: This section contains one or more sets of questions with the same scenario and problem. Each question presents a unique solution to the problem. You must determine whether the solution meets the stated goals. More than one solution in the set might solve the problem. It is also possible that none of the solutions in the set solve the problem.
After you answer a question in this section, you will NOT be able to return. As a result, these questions do not appear on the Review Screen.
You have an Azure subscription named Sub1 that contains the resources shown in the following table.
You have a user named Admin1 that is assigned the Desktop Virtualization Contributor role for Sub1.
You need to ensure that Admin1 can assign Scaling1 to Pool1.
Solution: You assign the Azure Virtual Desktop service principal the Owner role for Sub1.
Does this meet the goal?
- A. No
- B. Yes
Answer: B
Explanation:
https://learn.microsoft.com/en-us/azure/virtual-desktop/autoscale-create-assign-scaling-plan?tabs=portal%2Cintune&pivots=power-management
NEW QUESTION # 42
You have an Azure Virtual Desktop deployment that contains a host pool named Pool1. Pool1 contains two session hosts.
Pool1 is configured as shown in the following exhibit.
Use the drop-down menus to select the answer choice that completes each statement based on the information presented in the graphic.
NOTE: Each correct selection is worth one point.
Answer:
Explanation:
Explanation:
Graphical user interface, text, application Description automatically generated
NEW QUESTION # 43
Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution.
After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen.
You have a Azure Virtual Desktop host pool that contains five session hosts. The session hosts run Windows 10 Enterprise multi-session.
You need to prevent users from accessing the internet from Azure Virtual Desktop sessions. The session hosts must be allowed to access all the required Microsoft services.
Solution: You modify the IP configuration of each session host.
Does that meet the goal?
- A. Yes
- B. No
Answer: B
NEW QUESTION # 44
Which users can create Pool4, and which users can join session hosts to the domain? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.
Answer:
Explanation:
NEW QUESTION # 45
Your company has the offices shown in the following table.
The company has an Azure Active Directory (Azure AD) tenant named contoso.com that contains a user named User1.
Users connect to a Windows Virtual Desktop deployment named WVD1. WVD1 contains session hosts that have public IP addresses from the 52.166.253.0/24 subnet.
Contoso.com has a conditional access policy that has the following settings:
Name: Policy1
Assignments:
Users and groups: User1
Cloud apps or actions: Windows Virtual Desktop
Access controls:
Grant: Grant access, Require multi-factor authentication
Enable policy: On
For each of the following statements, select Yes if the statement is true. Otherwise, select No.
NOTE: Each correct selection is worth one point.
Answer:
Explanation:
Reference:
https://docs.microsoft.com/en-us/azure/active-directory/authentication/tutorial-enable-azure-mfa
NEW QUESTION # 46
You plan to deploy Windows Virtual Desktop.
You need to create Azure NetApp Files storage to store FSLogix profile containers.
Which four actions should you perform in sequence after you register the NetApp Resource Provider? To answer, move the appropriate actions from the list of actions to the answer area and arrange them in the correct order.
NOTE: More than one order of answer choices is correct. You will receive credit for any of the correct orders you select.
Answer:
Explanation:
Explanation
1. Set up Azure NetApp Files account
2. Create capacity pool
3. Join Active Directory connection
4. Create new volume
https://docs.microsoft.com/en-us/azure/virtual-desktop/create-fslogix-profile-container
Topic 1, Litware, Inc
Case study
This is a case study. Case studies are not timed separately. You can use as much exam time as you would like to complete each case. However, there may be additional case studies and sections on this exam. You must manage your time to ensure that you are able to complete all questions included on this exam in the time provided.
To answer the questions included in a case study, you will need to reference information that is provided in the case study. Case studies might contain exhibits and other resources that provide more information about the scenario that is described in the case study. Each question is independent of the other questions in this case study.
At the end of this case study, a review screen will appear. This screen allows you to review your answers and to make changes before you move to the next section of the exam. After you begin a new section, you cannot return to this section.
To start the case study
To display the first question in this case study, click the Next button. Use the buttons in the left pane to explore the content of the case study before you answer the questions. Clicking these buttons displays information such as business requirements, existing environment, and problem statements. If the case study has an All Information tab, note that the information displayed is identical to the information displayed on the subsequent tabs. When you are ready to answer a question, click the Question button to return to the question.
Overview
Litware, Inc. is a pharmaceutical company that has a main office in Boston, United States, and a remote office in Chennai, India.
Existing Environment. Identity Environment
The network contains an on-premises Active Directory domain named litware.com that syncs to an Azure Active Directory (Azure AD) tenant named litware.com.
The Azure AD tenant contains the users shown in the following table.
All users are registered for Azure Multi-Factor Authentication (MFA).
Existing Environment. Cloud Services
Litware has a Microsoft 365 E5 subscription associated to the Azure AD tenant. All users are assigned Microsoft 365 Enterprise E5 licenses.
Litware has an Azure subscription associated to the Azure AD tenant. The subscription contains the resources shown in the following table.
Litware uses custom virtual machine images and custom scripts to automatically provision Azure virtual machines and join the virtual machines to the on-premises Active Directory domain.
Network and DNS
The offices connect to each other by using a WAN link. Each office connects directly to the internet.
All DNS queries for internet hosts are resolved by using DNS servers in the Boston office, which point to root servers on the internet. The Chennai office has caching-only DNS servers that forward queries to the DNS servers in the Boston office.
Requirements. Planned Changes
Litware plans to implement the following changes:
Deploy Windows Virtual Desktop environments to the East US Azure region for the users in the Boston office and to the South India Azure region for the users in the Chennai office.
Implement FSLogix profile containers.
Optimize the custom virtual machine images for the Windows Virtual Desktop session hosts.
Use PowerShell to automate the addition of virtual machines to the Windows Virtual Desktop host pools.
Requirements. Performance Requirements
Litware identifies the following performance requirements:
Minimize network latency of the Windows Virtual Desktop connections from the Boston and Chennai offices.
Minimize latency of the Windows Virtual Desktop host authentication in each Azure region.
Minimize how long it takes to sign in to the Windows Virtual Desktop session hosts.
Requirements. Authentication Requirements
Litware identifies the following authentication requirements:
Enforce Azure MFA when accessing Windows Virtual Desktop apps.
Force users to reauthenticate if their Windows Virtual Desktop session lasts more than eight hours.
Requirements. Security Requirements
Litware identifies the following security requirements:
Explicitly allow traffic between the Windows Virtual Desktop session hosts and Microsoft 365.
Explicitly allow traffic between the Windows Virtual Desktop session hosts and the Windows Virtual Desktop infrastructure.
Use built-in groups for delegation.
Delegate the management of app groups to CloudAdmin1, including the ability to publish app groups to users and user groups.
Grant Admin1 permissions to manage workspaces, including listing which apps are assigned to the app groups.
Minimize administrative effort to manage network security.
Use the principle of least privilege.
Requirements. Deployment Requirements
Litware identifies the following deployment requirements:
Use PowerShell to generate the token used to add the virtual machines as session hosts to a Windows Virtual Desktop host pool.
Minimize how long it takes to provision the Windows Virtual Desktop session hosts based on the custom virtual machine images.
Whenever possible, preinstall agents and apps in the custom virtual machine images.
NEW QUESTION # 47
You have an Azure Virtual Desktop session host named Host1.
You need to check the status of Microsoft Defender Antivirus on Host1.
Which PowerShell cmdlet should you run?
- A. Get-MpComputerstatus
- B. Get-BCStatus
- C. Get-KdsConfiguration
- D. Get-DscConfigurationStatus
Answer: A
Explanation:
The cmdlet Get-MpComputerStatus provides detailed information about the status of Microsoft Defender Antivirus, including real-time protection status, last scan time, and other key security insights for Windows Defender on the session host.
NEW QUESTION # 48
You need to recommend a DNS infrastructure that meet the performance requirements. What should you recommend? To answer, select the appropriate options in the answer are a. NOTE: Each correct selection is worth one point.
Answer:
Explanation:
NEW QUESTION # 49
You have a Azure Virtual Desktop host pool named Pool1 that contains three session hosts. The session hosts are configured to use FSLogtx profile containers. You need to configure Cloud Cache on the session hosts.
What should you do?
- A. Configure FSLogtx Office Container.
- B. Remove VHDlocations entries from the Windows registry.
- C. Uninstall the FSLogix agent
- D. Add VHDlocations entries to the Windows registry.
Answer: B
Explanation:
Reference:
https://docs.microsoft.com/en-us/fslogix/configure-cloud-cache-tutorial
NEW QUESTION # 50
You have an Azure Virtual Desktop host pool in the East US region.
You need to implement a disaster recovery solution that meets the following requirements:
- If users cannot connect to the Azure Virtual Desktop resources in the East US region, the users must be able to connect to the equivalent resources in the West US region.
- Users must connect to the Azure Virtual Desktop resources in either the East US or the West US region by selecting a single icon in the Remote Desktop client
- In the event of a disaster, failover between the Azure regions must be initiated manually by an administrator.
- Failover times must be minimized.
What should you do? (Choose two)
- A. Enable Azure Site Recovery replication of the virtual machines to the West US region
- B. Create an additional host pool in the West US region
- C. Enable Azure Backup to a Recovery Services vault in the West US region
- D. Configure a shared image gallery that has replicas in the East US and West US regions
- E. Create new session hosts in the West US region and add the session hosts to an existing host pool
Answer: A,B
Explanation:
https://docs.microsoft.com/en-us/azure/virtual-desktop/disaster-recovery
NEW QUESTION # 51
HOTSPOT
-
You have an Azure subscription that contains a user named User1.
The subscription uses the Azure Virtual Desktop host pools shown in the following table.
You need to ensure that User1 can create RemoteApp app groups that will be used to stream a suite of custom apps from the host pools. The solution must meet the following requirements:
* The apps must be available to the users in all the pools.
* The principle of least privilege must be followed.
* Administrative effort must be minimized.
Which role should you assign to User1, and what is the minimum number of app groups that User1 should create? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.
Answer:
Explanation:
Desktop Virtualization Group
3
NEW QUESTION # 52
-
You have an Azure Virtual Desktop deployment that contains a host pool named HostPool1.
You need to perform the following configurations for HostPool1:
* Set the scale factor of the remote session to 125 percent.
* Generate a registration key that expires after five days.
* Enable Start VM on connect.
Which three settings should you modify? To answer, select the appropriate settings in the answer area.
NOTE: Each correct selection is worth one point.
Answer:
Explanation:
Explanation:
NEW QUESTION # 53
Your on-premises network contains an Active Directory Domain Services (AD DS) domain named corp.
contoso.com. The domain contains two users named User1 and User2.
You have a Microsoft Entra tenant named contoso.com that contains a user named User3 and syncs with corp.
contoso.com
The sync status of the users is shown in the following table.
You have an Azure Virtual Desktop deployment that contains Microsoft Entra joined session hosts.
You create an Azure Storage account that has the following configurations:
* Name: storage1
* Kind: FileStorage
* File share: share1
* Microsoft Entra Kerberos: Enabled
You need to implement FSLogix profile containers on share1. For which users can you implement a profile container?
- A. User2 and User3 only
- B. User2 only
- C. User1 and User2 only
- D. User1 only
- E. User1, User2, and User3
Answer: B
NEW QUESTION # 54
You have an Azure subscription that contains an Azure Virtual Desktop pooled host pool named Pool1 in the Azure East US region.
You create the scaling plans shown in the following table.
Which scaling plans will can be assigned to Pool1?
- A. SP1 and SP4 only
- B. SP2 and SP3 only
- C. SP1 only
- D. SP1 and SP2 only
- E. SP1, SP2, SP3, and SP4
- F. SP2 only
Answer: D
Explanation:
https://learn.microsoft.com/en-us/azure/virtual-desktop/autoscale-create-assign-scaling-plan
NEW QUESTION # 55
You have a new Azure subscription that uses Azure Virtual Desktop.
You need to ensure that users who connect to Azure Virtual Desktop sessions reauthenticate every six hours.
What should you do first?
- A. Create a Conditional Access policy.
- B. Configure multi-factor authentication (MFA).
- C. Disable Security defaults.
- D. Configure an authentication methods policy.
Answer: C
Explanation:
Security Defaults are enabled on new Azure subscriptions by default and must be disabled before Conditional Access policies can be used.
https://learn.microsoft.com/en-us/entra/fundamentals/security-defaults
NEW QUESTION # 56
Which setting should you modify for VNET4 before you can deploy Pool4?
- A. Access control (1AM)
- B. Address space
- C. DNS servers
- D. Peerings
- E. Service endpoints
Answer: C
Explanation:
DNS should be configured to use an Active Directory Domain Controller.
NEW QUESTION # 57
You have an Azure subscription that contains an Azure Virtual Desktop host pool named Pool1.
All the session hosts in Pool1 are Microsoft Entra joined.
Users connect to Pool1 by using macOS devices.
You need to ensure that remote users can authenticate to RemoteApp sessions by using their Microsoft Entra credentials.
Which RDP property should you configure?
- A. authentication level:i:1
- B. promptcredentialonce:i:0
- C. targetisaadjoined:i:1
- D. enablerdsaadauth:i:1
Answer: C
Explanation:
To access Microsoft Entra joined VMs using the web, Android, macOS and iOS clients, you must add targetisaadjoined:i:1 as a custom RDP property to the host pool. These connections are restricted to entering user name and password credentials when signing in to the session host.
Reference:
https://learn.microsoft.com/en-us/azure/virtual-desktop/azure-ad-joined-session-hosts
NEW QUESTION # 58
Case Study 1 - Contoso, Ltd
Overview
Contoso, Ltd. is a law firm that has a main office in Montreal and branch offices in Paris and Seattle. The Seattle branch office opened recently.
Contoso has an Azure subscription and uses Microsoft 365.
Existing Infrastructure. Active Directory
The network contains an on-premises Active Directory domain named contoso.com and an Azure Active Directory (Azure AD) tenant. One of the domain controllers runs as an Azure virtual machine and connects to a virtual network named VNET1. All internal name resolution is provided by DNS server that run on the domain controllers.
The on-premises Active Directory domain contains the organizational units (OUs) shown in the following table.
The on-premises Active Directory domain contains the users shown in the following table.
The Azure AD tenant contains the cloud-only users shown in the following table.
Existing Infrastructure. Network Infrastructure
All the Azure virtual networks are peered. The on-premises network connects to the virtual networks.
All servers run Windows Server 2019. All laptops and desktop computers run Windows 10 Enterprise.
Since users often work on confidential documents, all the users use their computer as a client for connecting to Remote Desktop Services (RDS).
In the West US Azure region, you have the storage accounts shown in the following table.
Existing Infrastructure. Remote Desktop Infrastructure
Contoso has a Remote Desktop infrastructure shown in the following table.
Requirements. Planned Changes
Contoso plans to implement the following changes:
- Implement FSLogix profile containers for the Paris offices.
- Deploy a Azure Virtual Desktop host pool named Pool4.
- Migrate the RDS deployment in the Seattle office to Azure Virtual
Desktop in the West US Azure region.
Requirements. Pool4 Configuration
Pool4 will have the following settings:
- Host pool type: Pooled
- Max session limit: 7
- Load balancing algorithm: Depth-first
- Images: Windows 10 Enterprise multi-session
- Virtual machine size: Standard D2s v3
- Name prefix: Pool4
- Number of VMs: 5
- Virtual network: VNET4
Requirements. Technical Requirements
Contoso identifies the following technical requirements:
- Before migrating the RDS deployment in the Seattle office, obtain the recommended deployment configuration based on the current RDS utilization.
- For the Azure Virtual Desktop deployment in the Montreal office,
disable audio output in the device redirection settings.
- For the Azure Virtual Desktop deployment in the Seattle office, store the FSLogix profile containers in Azure Storage.
- Enable Operator2 to modify the RDP Properties of the Azure Virtual
Desktop deployment in the Montreal office.
- From a server named Server1, convert the user profile clicks to the
FSLogix profile containers.
- Ensure that the Pool1 virtual machines only run during business
hours.
- Use the principle of least privilege.
Drag and Drop Question
You need to evaluate the RDS deployment in the Seattle office. The solution must meet the technical requirements.
Which three actions should you perform in sequence? To answer, move the appropriate actions from the list of actions to the answer area and arrange them in the correct order.
Answer:
Explanation:
Explanation:
Run a discovery of your on-premises datacenter using Lakeside, an integrated ISV tool in Azure Migrate. Lakeside will collect performance information using clients installed on on-premises virtual desktops.
https://techcommunity.microsoft.com/t5/azure-migration-and/migrate-virtual-desktops-to- azure/ba-p/1361120
NEW QUESTION # 59
You have a hybrid Azure Active Directory (Azure AD) tenant named contoso.com that contains the users shown in the following table.
You have an Azure Virtual Desktop host pool. All the session hosts have a folder named C:\Folder1.
You create an FSLogix Application Masking rule as shown in the following exhibit.
You create assignments for the Application Masking rule as shown in the following exhibit.
For each of the following statements, select Yes if the statement is true. Otherwise, select No.
NOTE: Each correct selection is worth one point.
Answer:
Explanation:
Explanation
Graphical user interface, text Description automatically generated
References:
https://docs.microsoft.com/en-us/fslogix/application-masking-rules-ht
https://docs.microsoft.com/en-us/fslogix/application-masking-users-groups-ht
NEW QUESTION # 60
Which two roles should you assign to Admin2 to meet the security requirements? Each correct answer presents part of the solution.
NOTE: Each correct selection is worth one point.
- A. Desktop Virtualization Host Pool Contributor
- B. Desktop Virtualization Application Group Reader
- C. User Access Administrator
- D. Desktop Virtualization Application Group Contributor
- E. Desktop Virtualization Workspace Contributor
Answer: B,E
Explanation:
Reference:
https://docs.microsoft.com/en-us/azure/virtual-desktop/rbac
NEW QUESTION # 61
......
Share Latest AZ-140 DUMP Questions and Answers: https://www.dumps4pdf.com/AZ-140-valid-braindumps.html
PDF Dumps 2026 Exam Questions with Practice Test: https://drive.google.com/open?id=1aE_4O9oP9Gso5SYDHand3GE0ePgGzR-8