課程名稱:Microsoft Certified Azure Administrator Associate (1科 Azure Cloud) 國際認可證書課程 (新制第 5 版) - 簡稱:Azure Administrator Training Course |
1. Manage Azure subscriptions
1.1 Creating a Free Azure account
1.1.1 Services included in Azure Free account
1.1.2 Setting up a Free Account
1.2 Azure RBAC roles, and Entra ID (Azure AD) administrator roles
1.2.1 How roles are related each other
1.2.2 Classic Subscription Administrator roles
1.2.3 Azure account and Azure subscriptions
1.3 Azure RBAC roles
1.4 Deny Assignments
1.5 Entra ID (Azure AD) Administrator Roles
1.6 Custom RBAC Roles
1.7 Differences between Azure RBAC roles and Entra ID (Azure AD) administrator roles
1.8 Elevate access for a Entra ID (Azure AD) Global Administrator
1.9 Azure Price Calculator
1.10 Creating a Virtual Machine on Azure
1.10.1 Introduction to N-Tier architecture
1.10.2 Benefits and Challenges using N Tier
1.10.3 N-Tier architecture with Azure Compute Virtual Machines
1.10.4 To Implement N-Tier Virtual Machine based Architecture
1.11 Enabling Auto-shutdown for VM
1.12 Implementing Azure Bastion
1.13 Manage License in Entra ID (Azure AD)
1.14 Entra ID Administrative Units
1.15 Performing Bulk update to Entra ID (Azure AD)
1.16 About the new name for Azure Active Directory
2. Azure Policy
2.1 Introduction to Azure Policy
2.2 Initiative Definition
2.3 Assigning Initiative Definition to a Specific Scope of resources
2.4 Azure Guest Configuration extension
2.5 Check Compliance
3. Analyze resource utilization and consumption
3.1 Introduction to Azure Monitor service
3.1.1 Metrics
3.2 Metric Alerts
3.3 Understanding Dynamic Threshold with Alert Rules
3.4 Collecting Azure Virtual Machine Logs with Log Analytics
3.5 Azure Monitor Agent
3.6 View or analyze data collected with Log Analytics log search
3.6.1 Creating a Simple Search query
3.6.2 Querying Performance Data
3.7 Using Log Analytics Alerts
3.8 Monitoring your Cost
3.8.1 Add tags to your resources to group your billing data
3.8.2 Reviewing cost at the end of your billing cycle
4. Resource Group and Locks
4.1 Lock resources to prevent unexpected changes
4.2 Moving resources to new resource group
4.3 Removing a resource group
4.4 Using Azure Policy for Tag Governance and Compliance
5. Create and configure storage accounts
5.1 Introduction to Azure Blob Storage
5.2 Storage accounts
5.3 Access Tiers for Block blob data
5.4 Azure Storage Replication
5.5 Storage Account Endpoints
5.5.1 About Require Secure Transfer
5.6 Creating a GPv2 Storage Account
5.7 Creating a Storage Container for upload
5.7.1 Creating a Blob container
5.7.2 Upload a block blob
5.8 Azure Storage Explorer
5.9 Shared Access Signature
5.10 Stored Access Policy
5.11 Virtual Network Service Endpoints and Firewall for Azure Storage
5.12 Create and Associate Service Endpoint Policies
5.13 Storage Analytics
5.13.1 Enabling Azure Storage metrics and viewing metrics data
5.14 Implementing Azure Storage Replication
5.14.1 Azure Storage Account outages and failover
5.14.2 How do I convert my account from LRS to GZRS?
5.14.3 How do I convert my account from GZRS to LRS?
5.14.4 How do I convert my account from GRS to ZRS?
5.14.5 How do I convert my account from ZRS to GRS?
5.15 Blob Versioning
5.15.1 How blob versioning works
5.15.2 Versioning on write operations
5.15.3 Versioning on delete operations
5.15.4 Access tiers
5.15.5 Enable and manage blob versioning
5.16 Designing Entra ID (Azure AD) Authentication for a storage account
5.16.1 Managing User Profile Information
5.16.2 Configure Access with Entra ID (Azure AD) Groups
5.16.3 Creating a Basic Group and add members
5.16.4 Assign RBAC roles for access rights
5.17 Configuring Storage Tiering for Azure Blobs
5.17.1 About Account Level Tiering
5.17.2 Blob Level Tiering
5.17.3 Azure Storage Blob Lifecycle Management
5.17.4 Rehydrate blob data from the archive tier
5.18 Configuring Blob Object Replication
5.19 Configuring and Managing additional data disk for Azure Virtual Machines
5.20 Configure Azure Disk Encryption
5.20.1 Azure Disk Encryption Workflow
5.20.2 Azure Disk Decryption Workflow
5.20.3 Azure Disk Encryption Prerequisites
5.20.4 Supported VM Sizes
5.20.5 Virtual Networking
5.20.6 Key Vault Access Policy
5.20.7 Enable encryption on existing or running IaaS Windows VMs
5.21 Azure Confidential Virtual Machine
5.21.1 Confidential VMs Benefits
5.21.2 Confidential OS disk encryption
6. Import and export data to Azure
6.1 Introduction to Azure Import and Export service
6.2 Import/Export Job workflow
6.3 Using Import/Export Service
6.3.1 Preparing Drives to ship
6.3.2 Creating an Import Job in Azure
6.3.3 Ship the encrypted drives
6.4 Using AzCopy across clouds
7. Azure Front Door
7.1 Introduction to Front Door
7.2 Creating Azure CDN Profile and Endpoint
7.3 Testing CDN Performance
7.4 Adding a Custom Domain name to CDN Endpoint
7.4.1 Creating a Custom Domain
7.4.2 Creating a CNAME record
7.5 Purging Front Door Cache
8. Azure Files
8.1 Introduction to Azure Files
8.2 Data Access Method of Azure Files
8.3 Creating Azure File Share
8.4 Mounting Azure Files
8.5 Azure File Sync
8.5.1 Terminology
8.5.2 Preparing Windows Server
8.5.3 Installing the Azure File Sync Agent
8.5.4 Installing “AzureRM” PowerShell Module
8.5.5 Installing “Az” PowerShell Module
8.5.6 Deploying the Storage Sync Service
8.5.7 Server Registration
8.5.8 Create a sync group and a cloud endpoint
8.5.9 Creating Server Endpoint
8.6 Cloud Tiering
8.6.1 How Cloud Tiering works
8.6.2 Cloud Tiering Policy
8.6.3 Configuring Cloud Tiering
8.6.4 Forcing Recall of a File or Directory
8.6.5 Unregistering server and removing the Sync Group
9. Azure Recovery Services Vault
9.1 Introduction to Recovery Services Vault
9.2 Creating a Recovery Services Vault
9.3 Back up Windows to Azure
9.3.1 Configuring the Vault for backing up On-Premises Windows
9.3.2 Installing Agent and Registering On-Premises Server
9.3.3 Create the backup policy
9.3.4 Network throttling
9.3.5 Restoring files from Azure Recovery Services Vault
9.4 Back up an Azure Virtual Machine
9.4.1 Preparation to backup Azure Virtual Machine
9.4.2 Network Connectivity from VM Guest Agent to Azure public IP addresses
9.4.3 Back up the Azure VM using Azure Backup service
9.5 Upgrading Azure VM Backup stack V2 (Optional knowledge)
9.6 Configuring Backup for Azure Files
9.7 Configuring Azure Backup Reports
9.7.1 Configure Log Analytics Workspace for reports
9.7.2 Viewing Reports in Power BI
9.8 More about Site-to-Site recovery by using Azure Site Recovery
9.8.1 Introduction to Azure Site Recovery services
9.8.2 Migrating On-premises Hyper-V Virtual Machine to Azure
9.8.3 Disaster Recovery Drill
9.8.4 Completing the Migration of Hyper-V Virtual Machine
9.8.5 After Migration
9.9 Multi-User Authorization
9.10 Immutable vault operations
10. Autoscaling with Virtual Machine Scale Sets
10.1 Introduction to Autoscaling
10.1.1 Using Host-based Metric
10.2 Virtual Machine Scale Sets
10.3 Creating a Virtual Machine Scale Set
10.4 Connecting to Virtual Machines in a Scale Set
10.5 Proximity Placement Group
10.6 Redundancy and Fault Domains
10.6.1 Three scenarios that impacts an Azure Virtual Machine
10.6.2 Configure multiple virtual machines in an availability set for redundancy
10.6.3 Use managed disks for VMs in an availability set
10.6.4 Use scheduled events to proactively respond to VM impacting events
10.6.5 Configure each application tier into separate availability sets
10.6.6 Combine a load balancer with availability sets
10.6.7 Use availability zones to protect from datacenter level failures
10.7 Introduction to Azure Load Balancing technologies
10.8 Azure Application Gateway and Public load balancing
10.9 Azure Internal Network Load Balancer
10.10 Troubleshoot Load Balancing
10.10.1 No outbound connectivity from Standard internal Load Balancers (ILB)
10.10.2 Can't change backend port for existing LB rule of a load balancer that has virtual machine scale set deployed in the backend pool.
10.10.3 Small traffic is still going through load balancer after removing VMs from backend pool of the load balancer
10.10.4 Load Balancer in failed state
10.10.5 VMs behind the Load Balancer are not responding to health probes
10.10.6 Virtual machines behind a load balancer are receiving uneven distribution of traffic
11. Vertical Scaling
11.1 Resizing Virtual Machines
11.1.1 To Resize a virtual machine which is available in the current cluster
11.1.2 Resizing a Virtual Machine to support Ultra Disk
12. Virtual Networks Peering
12.1 Introduction to VNet Peering
12.2 Creating Virtual Network Connectivity in Azure Cloud
12.2.1 Benefits of VNet Peering
12.2.2 Connectivity
12.2.3 Service chaining
12.2.4 Gateways and on-premises connectivity
12.2.5 Lab of Configuring Global VNet Peering
12.2.6 Options for connecting additional virtual networks
13. Azure Point-to-Site VPN
13.1 P2S VPN Authentication process
13.1.1 Generating a Client Authentication certificate
13.2 Exporting the Root Certificate in BASE64 public key .cer format
13.3 Configuring VPN Client Address Pool and Tunnel Type
13.4 Uploading trusted Root Certificate
13.5 Generate VPN Client packages
14. Azure DNS Private Zones
15. Azure (Public) DNS
16. Azure Private Link and Private Endpoint
17. Azure Network Watcher
17.1 Network Watcher Monitoring
17.1.1 Installing Network Watcher Agent Extension
17.1.2 Creating Connection Monitor
17.2 Network Watcher IP Flow Verify
17.3 Capturing Packets by Network Watcher
17.4 Network Watcher Virtual Network Flow Log
17.5 Viewing Traffic Analytics
18. Creating Azure App Service
18.1 Introduction to Azure App Service
18.2 Azure App Service Plan
18.3 Creating Azure App service
18.4 Scaling Up Azure App
18.5 Scaling Out Azure App
18.6 Staging Environment and Deployment Slots
18.6.1 Adding a deployment slot
18.7 Swapping slots
18.8 Swap with Preview
19. Azure Container Instances
19.1 Introduction to ACI
19.2 Creating Azure Container Instance
19.3 Viewing Container Logs
19.4 Azure Container Group
19.4.1 About Container Group deployment
19.4.2 About Resource Allocation
19.4.3 About Container Group Networking
19.4.4 About Storage for Container Group
19.4.5 Usage scenarios for deploying containers in a Container Group
19.4.6 Deploying Container Group with Resource Manager Template
19.5 Quota and Limits of Azure Container Instances
20. Azure Container Registry
20.1 Introduction to Azure Container Registry, Repository and Images
20.1.1 About Container Registry
20.1.2 About Repository
20.1.3 About Container Image
20.2 Use cases and Key features of Azure Container Registry
20.3 Creating a Private Container Registry
20.4 Pull, Build, Push, Run a container image using Azure Container Registry Tasks
20.5 Azure Container Registry Roles and Permissions
21. Azure Kubernetes Service (AKS)
21.1 Cloud Based Kubernetes
21.2 AKS Cluster Architecture
21.2.1 Control plane
21.2.2 Nodes and node pools
21.2.3 Pods
21.2.4 Deployments and YAML manifests
21.3 Prepare an Application for AKS
21.4 Creating AKS Cluster
21.5 Deploying and Running applications in AKS
21.6 Scale applications in AKS
21.7 Updating an AKS application
21.8 Upgrade Kubernetes in Azure Kubernetes Service (AKS)
|