Manage Windows Servers and workloads in a hybrid environment
- By Orin Thomas
- 11/5/2022
- Skill 2.1: Manage Windows Servers in a hybrid environment
- Skill 2.1: Manage Windows Servers in a hybrid environment
- Skill 2.2: Manage Windows Servers and workloads by using Azure Services
- Skill 2.2: Manage Windows Servers and workloads by using Azure Services
- Chapter summary
- Chapter summary
- Thought experiment
- Thought experiment
- Thought experiment answers
- Thought experiment answers
Thought experiment answers
This section contains the solution to the thought experiment. Each answer explains why the answer choice is correct.
Use an Azure AD Service principal delegated the Azure Connected Machine Onboarding role. An Azure AD Service principal is required to perform onboarding in this manner.
Configure a JEA endpoint that allows Sonia to perform a restricted set of tasks related to DNS management. This will ensure that she is able to perform tasks without unnecessary permissions.
Configure Kerberos delegation that allows Rick’s credentials to be used by the jump server. Kerberos delegation allows the jump server to use Rick’s credentials to run the PowerShell scripts.
