AZ-103 Exam QuestionsBrowse all questions from this exam

AZ-103 Exam - Question 251


Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution.

After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen.

You have an Azure virtual machine named VM1 that runs Windows Server 2016.

You need to create an alert in Azure when more than two error events are logged to the System log on VM1 within an hour.

Solution: You create an event subscription on VM1. You create an alert in Azure Monitor and specify VM1 as the source.

Does this meet the goal?

Show Answer
Correct Answer: B

To create an alert in Azure when more than two error events are logged to the System log on a virtual machine, it is necessary to aggregate and analyze the logs. This can be accomplished by using Azure Log Analytics, which requires creating a Log Analytics workspace and configuring the data settings. The Microsoft Monitoring Agent should be installed on the virtual machine to collect the necessary logs. Once this setup is complete, an alert can be created in Azure Monitor and configured to use the Log Analytics workspace as the data source. Simply creating an event subscription and a basic alert in Azure Monitor without leveraging Log Analytics would not suffice for the described scenario.

Discussion

5 comments
Sign in to comment
gipu
Jun 21, 2020

Agree, No

chand_
Jul 6, 2020

Ans: "B" that is no, Azure Monitor used to log error.

Anonymous
Jul 31, 2020

But we do can create Alerts in Azure Monitor

DarcyDes
Aug 24, 2020

The provided explanation is right

HTD
May 31, 2021

this is really a bad question to ask over "add agent" verses "install agent"

JPA210Option: B
Oct 28, 2024

Bu the explanation is wrong, the source is not he VM1 neither Log Analytics workspace. Should be Windows events . https://learn.microsoft.com/en-us/azure/azure-monitor/agents/azure-monitor-agent-data-collection