You need to consider the underlined segment to establish whether it is accurate.
To find when common open source libraries are added to the code base, you should add Jenkins to the build pipeline.
Select `No adjustment required` if the underlined segment is accurate. If the underlined segment is inaccurate, select the accurate option.

az 400 revision 2

Quiz
•
Other
•
University
•
Medium

Ntombi Ngcwangu
Used 7+ times
FREE Resource
61 questions
Show all answers
1.
MULTIPLE CHOICE QUESTION
3 mins • 1 pt
A. No adjustment required.
B. SourceGear Vault
C. WhiteSource
D. OWASP ZAP
Answer explanation
WhiteSource is the leader in continuous open source software security and compliance management. WhiteSource integrates into your build process, irrespective of your programming languages, build tools, or development environments. It works automatically, continuously, and silently in the background, checking the security, licensing, and quality of your open source components against WhiteSource constantly-updated definitive database of open source repositories.
Azure DevOps integration with WhiteSource Bolt will enable you to:
1. Detect and remedy vulnerable open source components.
2. Generate comprehensive open source inventory reports per project or build.
3. Enforce open source license compliance, including dependencies' licenses.
4. Identify outdated open source libraries with recommendations to update.
2.
MULTIPLE CHOICE QUESTION
3 mins • 1 pt
You use Azure Pipelines to manage build pipelines, GitHub to store source code, and Dependabot to manage dependencies.
You have an app named App1.
Dependabot detects a dependency in App1 that requires an update.
What should you do first to apply the update?
A. Create a pull request.
B. Approve the pull request.
C. Create a branch.
D. Perform a commit.
Answer explanation
DependaBot is a useful tool to regularly check for dependency updates. By helping to keep your project up to date, DependaBot can reduce technical debt and immediately apply security vulnerabilities when patches are released. How does DependaBot work?
1. DependaBot regularly checks dependencies for updates
2. If an update is found, DependaBot creates a new branch with this upgrade and Pull Request for approval
3. You review the new Pull Request, ensure the tests passed, review the code, and decide if you can merge the change
3.
MULTIPLE CHOICE QUESTION
3 mins • 1 pt
You plan to provision a self-hosted Linux agent.
Which authentication mechanism should you use to register the self-hosted agent?
A. personal access token (PAT)
B. SSH key
C. Alternate credentials
D. certificate
Answer explanation
PAT Supported only on Azure Pipelines and TFS 2017 and newer. After you choose PAT, paste the PAT token you created into the command prompt window. Use a personal access token (PAT) if your Azure DevOps Server or TFS instance and the agent machine are not in a trusted domain. PAT authentication is handled by your Azure DevOps Server or TFS instance instead of the domain controller.
4.
MULTIPLE CHOICE QUESTION
3 mins • 1 pt
Your company uses Azure DevOps. Only users who have accounts in Azure Active Directory can access the Azure DevOps environment. You need to ensure that only devices that are connected to the on-premises network can access the Azure DevOps environment. What should you do?
A. Assign the Stakeholder access level to all users.
B. In Azure DevOps, configure Security in Project Settings.
C. In Azure AD, configure conditional access.
D. In Azure AD, configure risky sign-ins.
Answer explanation
C. In Azure AD, configure conditional access. Conditional access in Azure AD allows you to define access policies that determine the conditions under which users and devices can access Azure DevOps and other Microsoft services. Option A (Assign the Stakeholder access level to all users): The Stakeholder access level in Azure DevOps is related to permissions and roles within the DevOps environment but does not control network-level access. It's not directly related to enforcing network access restrictions. Option B (In Azure DevOps, configure Security in Project Settings): While security settings within Azure DevOps are important for controlling access and permissions within the platform, they do not directly address the requirement of restricting access to on-premises network-connected devices. Option D (In Azure AD, configure risky sign-ins):
5.
MULTIPLE CHOICE QUESTION
3 mins • 1 pt
You have an application that consists of several Azure App Service web apps and Azure functions.
You need to assess the security of the web apps and the functions.
Which Azure feature can you use to provide a recommendation for the security of the application?
A. Security & Compliance in Azure Log Analytics
B. Resource health in Azure Service Health
C. Smart Detection in Azure Application Insights
D. Compute & apps in Azure Security Center
Answer explanation
Monitor compute and app services: Compute & apps include the App Services tab, which App services: list of your App service environments and current security state of each.
Recommendations -
This section has a set of recommendations for each VM and computer, web and worker roles, Azure App Service Web Apps, and Azure App Service Environment that Security Center monitors. The first column lists the recommendation. The second column shows the total number of resources that are affected by that recommendation. The third column shows the severity of the issue.
Incorrect Answers:
6.
MULTIPLE CHOICE QUESTION
3 mins • 1 pt
You need to consider the underlined segment to establish whether it is accurate.
Black Duck can be used to make sure that all the open source libraries conform to your company's licensing criteria.
Select `No adjustment required` if the underlined segment is accurate. If the underlined segment is inaccurate, select the accurate option.
A. No adjustment required.
B. Maven
C. Bamboo
D. CMAKE
Answer explanation
Secure and Manage Open Source Software
Black Duck helps organizations identify and mitigate open source security, license compliance and code-quality risks across application and container portfolios.
Black Duck Hub and its plugin for Team Foundation Server (TFS) allows you to automatically find and fix open source security vulnerabilities during the build process, so you can proactively manage risk. The integration allows you to receive alerts and fail builds when any Black Duck Hub policy violations are met.
7.
MULTIPLE CHOICE QUESTION
3 mins • 1 pt
You have a branch policy in a project in Azure DevOps. The policy requires that code always builds successfully.
You need to ensure that a specific user can always merge changes to the master branch, even if the code fails to compile. The solution must use the principle of least privilege.
What should you do?
A. Add the user to the Build Administrators group.
B. Add the user to the Project Administrators group
C. From the Security settings of the repository, modify the access control for the user.
D. From the Security settings of the branch, modify the access control for the user.
Answer explanation
n some cases, you need to bypass policy requirements so you can push changes to the branch directly or complete a pull request even if branch policies are not satisfied. For these situations, grant the desired permission from the previous list to a user or group. You can scope this permission to an entire project, a repo, or a single branch. Manage this permission along the with other Git permissions.
Create a free account and access millions of resources
Similar Resources on Wayground
60 questions
AV_BÀI 5,6,7

Quiz
•
University
66 questions
Level 2 Health & Safety - Hazardous Situations [Long]

Quiz
•
12th Grade - University
66 questions
QTRM

Quiz
•
University
65 questions
PHM 3020: Philosophy of Love Test Three Review

Quiz
•
University
62 questions
miraculous 🐞 ladybug

Quiz
•
KG - Professional Dev...
60 questions
Ағылшын

Quiz
•
University
65 questions
EC19P83 - Introduction to IoT

Quiz
•
University
60 questions
Spain

Quiz
•
University
Popular Resources on Wayground
25 questions
Equations of Circles

Quiz
•
10th - 11th Grade
30 questions
Week 5 Memory Builder 1 (Multiplication and Division Facts)

Quiz
•
9th Grade
33 questions
Unit 3 Summative - Summer School: Immune System

Quiz
•
10th Grade
10 questions
Writing and Identifying Ratios Practice

Quiz
•
5th - 6th Grade
36 questions
Prime and Composite Numbers

Quiz
•
5th Grade
14 questions
Exterior and Interior angles of Polygons

Quiz
•
8th Grade
37 questions
Camp Re-cap Week 1 (no regression)

Quiz
•
9th - 12th Grade
46 questions
Biology Semester 1 Review

Quiz
•
10th Grade