Reinforce AZ-802 concepts with active-recall study cards covering all 7 blueprint domains. Each card shows the question on the front and the correct answer with a full explanation on the back.
Flashcards work through active recall — the process of retrieving information from memory rather than passively re-reading it. Research consistently shows that active recall produces stronger, longer-lasting memory than re-reading study guides. For AZ-802 preparation, this means flashcards are one of the highest-return study tools available.
Attempt recall first
Read the AZ-802 question on each card, pause, and attempt to formulate the answer in your own words before revealing. This retrieval attempt — even if wrong — dramatically strengthens memory compared to immediately reading the answer.
Review wrong cards again
When you get a card wrong, note it and add it back to your review pile. Spaced repetition — seeing difficult cards more frequently — is the mechanism that makes flashcard study far more efficient than linear reading.
Study by domain
Group your AZ-802 flashcard sessions by domain for the first 3–4 weeks. Master one domain before moving to the next. In the final week, shuffle all cards together to test cross-domain recall — which is what the real AZ-802 exam requires.
Short sessions beat marathon reviews
20–30 flashcard cards per session, done daily, produces better retention than a single 200-card marathon session. Five short daily sessions per week over 4 weeks gives you over 400 total card reviews — enough to reliably pass AZ-802.
Sample cards from the AZ-802 flashcard bank. Read the question, think of the answer, then read the explanation below.
You manage two Active Directory forests named fabrikam.com and contoso.com. A two-way forest trust exists between them. You want to allow users from fabrikam.com to access a specific file server in contoso.com, but you must ensure they cannot authenticate to any other resources in the contoso.com forest by default. Which authentication setting should you configure on the trust?
Selective authentication
Selective authentication is a security feature used in forest trusts to restrict the scope of authentication for users from a trusted forest. Unlike forest-wide authentication, which allows users to authenticate to any resource in the trusting forest, selective authentication requires administrators to manually grant the 'Allowed to Authenticate' permission on specific computer objects for the external users or groups.
You are configuring Azure Arc-enabled servers for an on-premises Windows Server 2022 instance. You need to ensure that the server can communicate with Azure services while adhering to strict outbound firewall rules. Which port must be opened to support the Azure Connected Machine agent?
TCP 443
The Azure Connected Machine agent communicates primarily over HTTPS. Specifically, the agent requires outbound connectivity to Azure endpoints on TCP port 443. This is essential for telemetry, policy enforcement, and configuration management in hybrid environments. Properly configuring firewall rules ensures the agent maintains a heartbeat with Azure Resource Manager, allowing the hybrid machine to appear in the Azure portal for monitoring and management tasks.
You administer a Windows Server 2022 file server hosting critical engineering files. You need to configure File Server Resource Manager storage quotas to ensure that a specific engineering department folder cannot exceed 500 GB of capacity. When usage reaches 90 percent, you must ensure that users can still save files without immediate rejection, but administrative alerts are generated automatically. Which type of quota should you configure?
Soft quota with threshold notifications configured at the 90 percent level
A soft quota monitors capacity usage and generates administrative notifications when thresholds are reached without blocking users from writing new files. This contrasts with hard quotas, which actively deny write operations once the specified storage limit is breached, making soft quotas ideal for warning purposes.
Your organization implements Just Enough Administration (JEA) to manage Windows Servers. A junior administrator needs to restart the Print Spooler service on several print servers but should not have full administrative rights. You need to identify the specific file that defines which cmdlets and external commands the junior administrator can execute. Which file should you configure?
The Role Capability file (.psrc)
The Role Capability file defines exactly which cmdlets, functions, and external commands a user is allowed to run when connecting to a JEA endpoint. By restricting access to only the necessary tools for a specific task, you minimize the potential for lateral movement or accidental misconfiguration. This principle of least privilege is a cornerstone of securing administrative access in modern Windows Server environments.
You are transitioning several Windows Server 2022 Azure Virtual Machines from the legacy Log Analytics Agent to the newer Azure Monitor Agent (AMA). You need to ensure that specific System and Application event logs are centralized in a Log Analytics workspace. What component must you create and associate with the virtual machines to facilitate this data collection?
Data Collection Rules
The Azure Monitor Agent relies on Data Collection Rules (DCR) to define which data should be collected and where it should be sent. Unlike the legacy agent which used workspace-wide settings, DCRs provide a more granular and flexible approach, allowing administrators to target specific servers with unique logging requirements while maintaining a centralized management structure in the Azure portal.
You are configuring a Windows Server 2022 instance to act as a router between two subnets. You have enabled IP forwarding, but traffic is not passing between the subnets. Which PowerShell cmdlet should you use to verify if the routing table is correctly identifying the local interface routes?
Get-NetRoute
The Get-NetRoute cmdlet is essential for inspecting the IPv4 and IPv6 routing tables on Windows Server. It allows administrators to verify that the destination network is reachable via the correct interface and gateway. Misconfigured routes are a primary cause of packet loss in multi-homed server environments, and this tool provides the granular visibility needed to troubleshoot connectivity issues between internal subnets.
The AZ-802 flashcard bank covers all 7 official blueprint domains published by Microsoft. Cards are distributed proportionally, so domains with higher exam weight have more cards.
Domain Coverage
Deploy and Manage AD DS
Manage Windows Server in a Hybrid Environment
Manage Virtual Machines
Manage Storage and File Services
Secure Windows Server Infrastructure
Monitor and Troubleshoot Windows Server Environments
Implement and Manage On-Prem and Hybrid Networking
Both flashcards and practice questions are evidence-based study tools. The difference is in what they train:
Flashcards — concept retention
Best for memorising definitions, acronyms, protocol behaviours, command syntax, and conceptual distinctions. Use flashcards to build the foundational vocabulary that AZ-802 questions assume you know.
Best in: weeks 1–3
Practice tests — application
Best for applying concepts to realistic scenarios, eliminating distractors, and building exam stamina.AZ-802 questions test scenario reasoning — not just recall — so practice tests are essential.
Best in: weeks 3–6
The most effective AZ-802 study plan combines both: use flashcards for the first 2–3 weeks to build conceptual foundations, then shift to practice tests and mock exams in the final 2–3 weeks to apply and benchmark that knowledge. Most candidates who pass on their first attempt use both tools.
Yes. Courseiva provides free AZ-802 flashcards across all official exam domains. Every card includes the correct answer and a full explanation of why it is right and why the distractors are wrong. The platform also includes topic-based practice, mock exams, and readiness tracking — no account required.
Courseiva has 116+ original AZ-802 flashcards across all 7 exam blueprint domains. New cards are added regularly as the question bank grows. All cards are written by certified engineers against the official Microsoft exam objectives.
Courseiva flashcards are purpose-built for IT certification exams. Unlike generic flashcard platforms where content quality varies, every Courseiva card is mapped to the official AZ-802 exam blueprint, written by engineers who hold the certification, and includes a full explanation of the correct answer and why the distractors are wrong. This explanation quality is what separates genuine learning from rote memorisation.
Courseiva is a web platform — an internet connection is required. For offline study, we recommend creating free Courseiva account, using the platform in your browser, and using your device's offline capabilities if your browser supports offline web apps.
Save your results, see which domains need more work, and get spaced repetition recommendations — all free.
Sign Up FreeFree forever · Every certification included