Buying for a whole team? Prep4cram welcomes corporate AZ-801 orders with multi-year arrangements — free updates through the first year and half-price Microsoft Configuring Windows Server Hybrid Advanced Services bundles from the second year onward.
Microsoft AZ-801 Exam Overview:
| Certification Vendor: | Microsoft |
|---|---|
| Exam Name: | Configuring Windows Server Hybrid Advanced Services |
| Exam Number: | AZ-801 |
| Certificate Validity Period: | 1 year |
| Exam Price: | USD 165 |
| Exam Format: | Multiple choice, Drag and drop, Build list, Multiple response, Case study |
| Available Languages: | Japanese, French, Arabic (Saudi Arabia), Russian, German, Spanish, English, Chinese (Traditional), Korean, Chinese (Simplified), Portuguese (Brazil), Italian |
| Related Certifications: | Microsoft Certified: Windows Server Hybrid Administrator Associate |
| Passing Score: | 700 |
| Real Exam Qty: | 40-60 |
| Exam Duration: | 120 minutes |
| Sample Questions: | ![]() |
| Exam Way: | Online proctored or in-person at a testing center |
| Pre Condition: | Candidates should have experience with Windows Server, Azure, and Active Directory Domain Services (AD DS). |
| Official Syllabus URL: | https://learn.microsoft.com/en-us/credentials/certifications/exams/az-801/ |
Microsoft AZ-801 Exam Syllabus Topics:
| Section | Weight | Objectives |
|---|---|---|
| Secure Windows Server on-premises and hybrid infrastructures | 25-30% | - Secure network infrastructure for hybrid workloads
|
| Implement and manage on-premises and hybrid high availability solutions | 15-20% | - Implement failover clustering
|
| Manage virtual machines and containers | 15-20% | - Create and manage containers
|
| Implement and manage an on-premises and hybrid server infrastructure | 15-20% | - Manage and maintain an on-premises and hybrid AD DS infrastructure
|
| Implement and manage an on-premises and hybrid disaster recovery solution | 10-15% | - Protect workloads by using Hyper-V Replica
|
Your Microsoft Configuring Windows Server Hybrid Advanced Services Preparation Questions, Answered
- Secure Windows Server on-premises and hybrid infrastructures (25-30%)
- Manage virtual machines and containers (15-20%)
- Implement and manage an on-premises and hybrid server infrastructure (15-20%)
Microsoft Configuring Windows Server Hybrid Advanced Services Sample Questions:
Your on-premises network contains an Active Directory Domain Services (AD DS) domain. The domain contains a server named Server1 that runs Windows Server. Server1 has the Web Server (IIS) role installed and hosts a web app named Appl. App1 uses Windows authentication.
You have an Azure subscription. You plan to migrate App1 to Azure App Service.
You need to ensure that App1 can support Windows authentication in App Service. What should you configure first?
- A. HTTPS bindings and SSL
- B. port bindings
- C. directory synchronization with the Microsoft Entra tenant
- D. COM and COM+components
Correct Answer: C 🗳️
Explanation: Only visible for Prep4cram members. You can sign-up / login (it's free).
Your network contains an Active Directory Domain Services (AD DS) domain. The domain contains two servers named Server1 and Server2 that run Windows Server.
On Server1, you create an event subscription named Subscription! that retrieves events from Server2. The Query Filter settings (or Subscription! are configured as shown in the following exhibit.
For each of the following statements, select Yes if the statement is true. Otherwise, select No.
NOTE: Each correct selection is worth one point.
Exhibit
Correct Answer:

Explanation:
Detailed Explanation
The query filter on Subscription1 only includes the Warning and Information event levels (Critical, Error, and Verbose are unchecked) and only pulls from the Application, Security, and Setup logs, so Critical events, and any events from the System log, are excluded outright, making statement 1 No. Subscription1 is explicitly defined to retrieve events from Server2, not from Server1 itself, so events generated locally on Server1 ' s own Setup log are never in scope for this subscription regardless of level, making statement 2 No.
Information-level events written to the Application log on Server2 match both the selected event levels and the selected logs and originate from the correct source computer, so they are collected and forwarded to Server1, making statement 3 Yes.
Official Reference
Configure computers to forward and collect events - https://learn.microsoft.com/en-us/windows/security
/threat-protection/use-windows-event-forwarding-to-assist-in-intrusion-detection
You need to implement alerts for the domain controllers. The solution must meet the technical requirements.
What should you do on the domain controllers, and what should you create on Azure? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.
Exhibit
Exhibit
Correct Answer:

Explanation:
Detailed Explanation
Centrally managing performance alerts in Azure for on-premises domain controllers is done by connecting those servers to Azure Monitor: the Azure Monitor agent is installed on each domain controller (typically through Azure Arc for non-Azure servers) to collect performance counters and event data, and that data is sent to an Azure Log Analytics workspace created in Azure, which is the resource that stores the collected telemetry and against which performance-based alert rules are defined and centrally managed. Creating a Data Collector Set in Performance Monitor or modifying the Performance Monitor Users group are local, per- server administrative actions that do not send data to Azure, and an Azure SQL database, Storage Sync Service, or Azure Storage account are not the telemetry store that Azure Monitor alerting is built on.
Official Reference
Overview of Azure Monitor agent - https://learn.microsoft.com/en-us/azure/azure-monitor/agents/agents- overview
You have two Azure virtual networks named Vnet1 and Vnet2.
You have a Windows 10 device named Client1 that connects to Vnet1 by using a Point-to-Site (P2S) IKEv2 VPN.
You implement virtual network peering between Vnet1 and Vnet2. Vnet1 allows gateway transit Vnet2 can use the remote gateway.
You discover that Client1 cannot communicate with Vnet2.
You need to ensure that Client1 can communicate with Vnet2.
Solution: You resize the gateway of Vnet1 to a larger SKU.
Does this meet the goal?
- A. No
- B. Yes
Correct Answer: A 🗳️
Explanation: Only visible for Prep4cram members. You can sign-up / login (it's free).
You have an Azure virtual machine named VM1 that runs Windows Server.
When you attempt to install the Azure Performance Diagnostics extension on VM I, the installation fails.
You need to identify the cause of the installation failure.
What are two possible ways to achieve the goal? Each correct answer presents a complete solution.
NOTE: Each correct selection is worth one point.
- A. From the Azure portal, view the activity log for VM1.
- B. From the Azure portal, view the alerts for VM1.
- C. Sign in to VM1 and verify the WaAppAgentlog file.
- D. Sign into VM1 and verify the MonitoringAgentlog file.
Correct Answer: A,C 🗳️
Explanation: Only visible for Prep4cram members. You can sign-up / login (it's free).






