Credential type: certification examination · verified on the issuer's site September 19, 2026 issuer page
Scheduled retirement
AZ-801 retires on September 30, 2026
Microsoft will retire AZ-801 on 2026-09-30. The exam remains schedulable before the cutoff. The reviewed official retirement list and exam guide do not name a direct replacement, so Cert Atlas does not infer one.
No direct replacement is named in the reviewed official sources.
What This Exam Validates
AZ-801, Configuring Windows Server Hybrid Advanced Services, remains available only until 2026-09-30. Its published domains cover Secure Windows Server on-premises and hybrid infrastructures, Implement and manage Windows Server high availability, Implement disaster recovery, Migrate servers and workloads, Monitor and troubleshoot Windows Server environments. AZ-801 is the failure-mode half of the Windows Server Hybrid Administrator path. The outline is valuable because it ties hardening, high availability, recovery, migration, monitoring, and troubleshooting to the same workloads instead of treating those disciplines as separate product checklists. Microsoft does not name a direct replacement in the reviewed official sources. This page keeps the dated blueprint useful while separating verified lifecycle facts from recommendations.
Who Should Take This Exam
The original audience was Windows Server hybrid administrators who secure, migrate, protect, monitor, and troubleshoot production workloads across datacenters and Azure. Current candidates should use the cutoff and active Microsoft catalog to decide whether AZ-801 still fits; the absence of a named replacement is not evidence that a similarly named exam is equivalent.
Skills You Should Be Ready to Demonstrate
- Harden Windows Server, Active Directory, networking, storage, and hybrid security controls
- Implement clustering, Storage Spaces Direct, backup, replication, and disaster recovery
- Choose and execute server, storage, identity, and IIS migration approaches
- Diagnose Windows Server and Active Directory faults with local and Azure telemetry
How to Prepare Before Retirement
Create failure-driven labs. Harden a server and identity path, build a cluster, take and restore backups, test Site Recovery or replication, migrate a workload, and diagnose an injected fault from evidence. Record prerequisites, recovery objectives, validation checks, and rollback conditions for every exercise. Start with the dated Microsoft guide, map each objective to a task, decision, observable result, and failure mode, and use domain ranges to balance coverage rather than predict question counts. Keep notes labeled with the guide date so future product or blueprint changes do not silently contaminate the plan.
Transition checklist
- Complete and schedule AZ-801 before 2026-09-30 only if the remaining window supports a sound preparation plan.
- Use Microsoft's active credential catalog to choose a current path by job role and required skills.
- Do not treat a similarly named course, product, or credential as a replacement unless Microsoft explicitly says so.
- Map reusable knowledge to the selected current guide, then rebuild labs and review around that guide's dated objectives.
Domain Study Guidance
Secure Windows Server on-premises and hybrid infrastructures: Study Guidance
Domain 1, Secure Windows Server on-premises and hybrid infrastructures, organizes related decisions rather than isolated product facts. The current outline includes Secure Windows Server operating system; Secure a hybrid Active Directory infrastructure; Secure Windows Server networking. Practice by connecting the configuration or recommendation to prerequisites, downstream effects, evidence of success, and a safe correction when the expected result is not observed.
- Turn every Secure Windows Server on-premises and hybrid infrastructures objective into a concrete task or decision you can explain
- Record the prerequisite, implementation choice, verification signal, and failure mode
- Mix this domain with adjacent domains so dependencies remain visible
Implement and manage Windows Server high availability: Study Guidance
Domain 2, Implement and manage Windows Server high availability, organizes related decisions rather than isolated product facts. The current outline includes Implement a Windows Server failover cluster; Manage failover clustering; Implement and manage Storage Spaces Direct. Practice by connecting the configuration or recommendation to prerequisites, downstream effects, evidence of success, and a safe correction when the expected result is not observed.
- Turn every Implement and manage Windows Server high availability objective into a concrete task or decision you can explain
- Record the prerequisite, implementation choice, verification signal, and failure mode
- Mix this domain with adjacent domains so dependencies remain visible
Implement disaster recovery: Study Guidance
Domain 3, Implement disaster recovery, organizes related decisions rather than isolated product facts. The current outline includes Manage backup and recovery for Windows Server; Implement disaster recovery by using Azure Site Recovery. Practice by connecting the configuration or recommendation to prerequisites, downstream effects, evidence of success, and a safe correction when the expected result is not observed.
- Turn every Implement disaster recovery objective into a concrete task or decision you can explain
- Record the prerequisite, implementation choice, verification signal, and failure mode
- Mix this domain with adjacent domains so dependencies remain visible
Migrate servers and workloads: Study Guidance
Domain 4, Migrate servers and workloads, organizes related decisions rather than isolated product facts. The current outline includes Migrate on-premises storage to on-premises servers or Azure; Migrate on-premises servers by using Azure Migrate; Migrate IIS workloads to Azure. Practice by connecting the configuration or recommendation to prerequisites, downstream effects, evidence of success, and a safe correction when the expected result is not observed.
- Turn every Migrate servers and workloads objective into a concrete task or decision you can explain
- Record the prerequisite, implementation choice, verification signal, and failure mode
- Mix this domain with adjacent domains so dependencies remain visible
Monitor and troubleshoot Windows Server environments: Study Guidance
Domain 5, Monitor and troubleshoot Windows Server environments, organizes related decisions rather than isolated product facts. The current outline includes Monitor Windows Server by using Windows Server tools and Azure services; Troubleshoot Windows Server issues. Practice by connecting the configuration or recommendation to prerequisites, downstream effects, evidence of success, and a safe correction when the expected result is not observed.
- Turn every Monitor and troubleshoot Windows Server environments objective into a concrete task or decision you can explain
- Record the prerequisite, implementation choice, verification signal, and failure mode
- Mix this domain with adjacent domains so dependencies remain visible
Exam-Day Guidance
Microsoft lists 2026-09-30 as the retirement date. Verify the official page immediately before booking, allow time for identity and accommodation requirements, and do not assume a retake can be scheduled after the cutoff.
Sources and Verification
Verified 2026-08-26
How this page was made
Cert Atlas reviewed Microsoft's dated AZ-801 study guide and official retirement list and checked those sources for an explicitly named replacement. The lifecycle, weights, and editorial claims were checked against the linked official pages; no exam questions, answers, choices, or explanations were used.
Exam Domains
1.0 Secure Windows Server on-premises and hybrid infrastructures
25-30%
- 1.1Secure Windows Server operating system
Configure and manage Exploit Protection; Configure and manage Windows Defender Application Control; Configure and manage Windows Defender Credential Guard; Configure SmartScreen; Implement operating system security by using Group Policies; Manage Windows Server security baseline by using OSConfig; Implement Windows Local Administrator Password Solution (Windows LAPS)
- 1.2Secure a hybrid Active Directory infrastructure
Configure password policies; Implement Microsoft Entra Password Protection for AD DS; Manage protected users; Manage account security on a Read-Only Domain controller (RODC); Harden domain controllers; Configure authentication policy silos; Restrict access to domain controllers; Configure security options for user accounts; Configure security options for built-in administrative groups; Manage AD delegation; Implement and manage Microsoft Defender for Identity; Audit usage of and disable NTLM; Identify and remediate Windows Server security issues by using Azure services
- 1.3Secure Windows Server networking
Manage Windows Defender Firewall; Implement domain isolation; Implement connection security rules; Create and configure network security groups (NSGs) for Windows Server virtual machines on Azure
- 1.4Secure Windows Server storage
Manage Windows BitLocker Drive Encryption; Enable storage encryption by using Azure Disk Encryption; Manage and recover encrypted volumes; Manage disk encryption keys for IaaS virtual machines
2.0 Implement and manage Windows Server high availability
15-20%
- 2.1Implement a Windows Server failover cluster
Implement a failover cluster on-premises, hybrid, or cloud-only; Create a Windows failover cluster, including workgroup clusters; Implement a stretch cluster across datacenters or Azure regions, including Storage Spaces Direct (S2D) campus clusters; Configure storage for failover clustering; Modify quorum options; Configure network adapters for failover clustering; Deploy host networking with Network ATC; Configure cluster workload options; Configure Scale-Out File servers; Configure an Azure witness; Configure a floating IP address for the cluster
- 2.2Manage failover clustering
Implement cluster-aware updating; Recover a failed cluster node; Upgrade failover cluster nodes; Failover workloads between nodes; Install Windows updates on cluster nodes; Manage failover clusters using Windows Admin Center
- 2.3Implement and manage Storage Spaces Direct
Upgrade an S2D node; Implement networking for S2D; Configure S2D
3.0 Implement disaster recovery
10-15%
- 3.1Manage backup and recovery for Windows Server
Back up and restore files and folders to Azure Recovery Services Vault; Deploy and manage Azure Backup Server; Back up and recover using Azure Backup Server; Manage backups in Azure Recovery Services Vault; Create an Azure Recovery Services vault backup policy; Configure backup for Azure VM using the built-in backup agent; Recover a VM using instant recovery snapshots; Recover VMs to new Azure VMs; Restore a VM, including encrypted VMs
- 3.2Implement disaster recovery by using Azure Site Recovery
Configure Azure Site Recovery network mapping; Configure Site Recovery for on-premises servers; Configure a recovery plan in Azure Site Recovery; Configure Site Recovery for Azure VMs; Implement VM replication to secondary datacenter or Azure region; Configure Azure Site Recovery replication policies; Protect virtual machines by using Hyper-V replicas; Configure Hyper-V hosts for replication; Manage Hyper-V replica servers; Configure VM replication; Perform a failover
4.0 Migrate servers and workloads
20-25%
- 4.1Migrate on-premises storage to on-premises servers or Azure
Transfer files, file shares, and security configurations by using Storage Migration Service (SMS); Cut over to a new server by using Storage Migration Service (SMS); Use Storage Migration Service to migrate to Azure VMs; Migrate to Azure file shares
- 4.2Migrate on-premises servers by using Azure Migrate
Deploy and configure Azure Migrate appliance; Migrate VM workloads to Azure VMs; Migrate physical servers to Azure VMs; Migrate workloads from previous Windows Server versions to the most current version; Choose an appropriate migration method; Migrate IIS workloads and configurations; Migrate Hyper-V hosts; Migrate Remote Desktop Services (RDS) host servers; Migrate Dynamic Host Configuration Protocol (DHCP) servers; Migrate print servers; Migrate by using an in-place upgrade
- 4.3Migrate IIS workloads to Azure
Assess IIS workloads by using Azure Migrate; Migrate IIS workloads to Azure Web Apps; Migrate IIS workloads to containers
- 4.4Migrate an on-premises AD forest to Windows Server 2025
Choose an appropriate migration method; Implement a forest restructure; Migrate AD DS objects, including users, groups and Group Policies using AD Migration Tool; Migrate to a new Active Directory forest; Upgrade an existing forest, including setting functional levels
5.0 Monitor and troubleshoot Windows Server environments
15-20%
- 5.1Monitor Windows Server by using Windows Server tools and Azure services
Monitor Windows Server by using Performance Monitor; Create and configure Data Collector Sets; Monitor servers and configure alerts by using Windows Admin Center; Analyze Windows Server system data by using System Insights; Manage event logs; Configure data collection rules for Azure Monitor; Create alerts; Monitor Azure VM performance by using VM Insights
- 5.2Troubleshoot Windows Server issues
Troubleshoot connectivity; Troubleshoot name resolution; Troubleshoot Windows Update; Troubleshoot Time Service; Troubleshoot deployment failures; Troubleshoot booting failures; Troubleshoot performance issues; Troubleshoot VM and Azure Arc extension issues; Troubleshoot disk encryption issues; Troubleshoot storage; Troubleshoot Active Directory; Restore objects from AD recycle bin; Recover Active Directory database using Directory Services Restore mode; Recover system volume (SYSVOL); Troubleshoot Active Directory replication; Troubleshoot hybrid authentication and synchronization issues; Troubleshoot on-premises Active Directory