Winter Sale - Special Limited Time 65% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: dpm65

AZ-700 Designing and Implementing Microsoft Azure Networking Solutions Questions and Answers

Questions 4

Task 4

You need to ensure that the owner of VNET3 receives an alert if an administrative operation is performed on the virtual network.

Options:

Buy Now
Questions 5

Task 9

You need to ensure that subnet4-3 can accommodate 507 hosts.

Options:

Buy Now
Questions 6

Task 2

You need to ensure that you can deploy Azure virtual machines to the France Central Azure region. The solution must ensure that virtual machines in the France Central region are in a network segment that has an IP address range of 10.5.1.0/24.

Options:

Buy Now
Questions 7

Task 2

You need to create an Azure Firewall instance named FW1 that meets the following requirements:

• Has an IP address from the address range of 10.1.255.0/24

• Uses a new Premium firewall policy named FW-pohcy1

• Routes traffic directly to the internet

Options:

Buy Now
Questions 8

Task 1

You need to ensure that virtual machines on VNET1 and VNET2 are included automatically in a DNS zone named contoso.azure. The solution must ensure that the virtual machines on VNET1 and VNET2 can resolve the names of the virtual machines on either virtual network.

Options:

Buy Now
Questions 9

Task 5

You need to ensure that requests for wwwjelecloud.com from any of your Azure virtual networks resolve to frontdoor1.azurefd.net.

Options:

Buy Now
Questions 10

Task 11

You are preparing to connect your on-premises network to VNET4 by using a Site-to-Site VPN. The on-premises endpoint of the VPN will be created on a firewall named Firewall 1.

The on-premises network has the following configurations:

• Internal address range: 10.10.0.0/16.

• Firewall 1 internal IP address: 10.10.1.1.

• Firewall1 public IP address: 131.107.50.60.

BGP is NOT used.

You need to create the object that will provide the IP addressing configuration of the on-premises network to the Site-to-Site VPN. You do NOT need to create a virtual network gateway to complete this task.

Options:

Buy Now
Questions 11

Task 5

You need to archive all the metrics of VNET1 to an existing storage account.

Options:

Buy Now
Questions 12

Task 1

You plan to deploy a firewall to subnetl-2. The firewall will have an IP address of 10.1.2.4.

You need to ensure that traffic from subnetl-1 to the IP address range of 192.168.10.0/24 is routed through the firewall that will be deployed to subnetl-2. The solution must be achieved without using dynamic routing protocols.

Options:

Buy Now
Questions 13

Task 3

You need to ensure that hosts on VNET1 and VNET2 can communicate. The solution must minimize latency between the virtual networks.

Options:

Buy Now
Questions 14

You need to prepare Vnet1 for the deployment of an ExpressRoute gateway. The solution must meet the hybrid connectivity requirements and the business requirements.

Which three actions should you perform in sequence for Vnet1? To answer, move the appropriate actions from the list of actions to the answer area and arrange them in the correct order.

AZ-700 Question 14

Options:

Buy Now
Questions 15

You need to configure the default route on Vnet2 and Vnet3. The solution must meet the virtual networking requirements.

What should you use to configure the default route?

Options:

A.

route filters

B.

BGP route exchange

C.

a user-defined route assigned to GatewaySubnet in Vnet1

D.

a user-defined route assigned to GatewaySubnet in Vnet2 and Vnet3

Buy Now
Questions 16

You need to provide access to storage2. The solution must meet the PaaS networking requirements and the business requirements.

Which connectivity method should you use?

Options:

A.

a service endpoint

B.

a private endpoint

C.

Azure Firewall

D.

Azure Front Door

Buy Now
Questions 17

You need to provide connectivity to storage1. The solution must meet the PaaS networking requirements and the business requirements.

What should you include in the solution?

Options:

A.

a service endpoint

B.

Azure Front Door

C.

a private endpoint

D.

Azure Traffic Manager

Buy Now
Questions 18

You need to connect Vnet2 and Vnet3. The solution must meet the virtual networking requirements and the business requirements.

Which two actions should you include in the solution? Each correct answer presents part of the solution.

NOTE: Each correct selection is worth one point.

Options:

A.

On the peerings from Vnet2 and Vnet3, select Use remote gateways.

B.

On the peering from Vnet1, select Allow forwarded traffic.

C.

On the peering from Vnet1, select Use remote gateways.

D.

On the peering from Vnet1, select Allow gateway transit.

E.

On the peerings from Vnet2 and Vnet3, select Allow gateway transit.

Buy Now
Questions 19

You need to configure the default route in Vnet2 and Vnet3. The solution must meet the virtual networking requirements.

What should you use to configure the default route?

Options:

A.

a user-defined route assigned to GatewaySubnet in Vnet2 and Vnet3

B.

a user-defined route assigned to GatewaySubnet in Vnet1

C.

BGP route exchange

D.

route filters

Buy Now
Questions 20

You need to restrict traffic from VMScaleSet1 to VMScaleSet2. The solution must meet the virtual networking requirements.

What is the minimum number of custom NSG rules and NSG assignments required? To answer, select the appropriate options in the answer area.

NOTE: Each correct selection is worth one point.

AZ-700 Question 20

Options:

Buy Now
Questions 21

In which NSGs can you use ASG1 and to which virtual machine network interfaces can you associate ASG1? To answer, select the appropriate options in the answer area.

NOTE: Each correct selection is worth one point.

AZ-700 Question 21

Options:

Buy Now
Questions 22

For each of the following statements, select Yes if the statement is true. Otherwise, select No.

NOTE: Each correct selection is worth one point.

AZ-700 Question 22

Options:

Buy Now
Questions 23

You are implementing the virtual network requirements for VM Analyze.

What should you include in a custom route that is linked to Subnet2? To answer, select the appropriate options in the answer area.

NOTE: Each correct selection is worth one point.

AZ-700 Question 23

Options:

Buy Now
Questions 24

You need to implement outbound connectivity for VMScaleSet1. The solution must meet the virtual networking requirements and the business requirements.

Which three actions should you perform in sequence? To answer, move the appropriate actions from the list of actions to the answer area and arrange them in the correct order.

T

AZ-700 Question 24

Options:

Buy Now
Questions 25

You need to configure GW1 to meet the network security requirements for the P2S VPN users.

Which Tunnel type should you select in the Point-to-site configuration settings of GW1?

Options:

A.

IKEv2 and OpenVPN (SSL)

B.

IKEv2

C.

IKEv2 and SSTP (SSL)

D.

OpenVPN (SSL)

E.

SSTP (SSL)

Buy Now
Questions 26

What should you implement to meet the virtual network requirements for the virtual machines that connect to Vnet4 and Vnet5?

Options:

A.

a private endpoint

B.

a virtual network peering

C.

a private link service

D.

a routing table

E.

a service endpoint

Buy Now
Questions 27

Which virtual machines can VM1 and VM4 ping successfully? To answer, select the appropriate options in the answer area.

NOTE: Each correct selection is worth one point.

AZ-700 Question 27

Options:

Buy Now
Questions 28

For each of the following statements, select Yes if the statement is true. Otherwise, select No.

NOTE: Each correct selection is worth one point.

AZ-700 Question 28

Options:

Buy Now
Questions 29

You need to meet the network security requirements for the NSG flow logs.

Which type of resource do you need, and how many instances should you create? To answer, select the appropriate options in the answer area.

NOTE: Each correct selection is worth one point.

AZ-700 Question 29

Options:

Buy Now
Questions 30

You create NSG10 and NSG11 to meet the network security requirements.

For each of the following statements, select Yes it the statement is true. Otherwise, select No.

NOTE: Each correct selection is worth one point.

AZ-700 Question 30

Options:

Buy Now
Questions 31

You are implementing the Virtual network requirements for Vnet6.

What is the minimum number of subnets and service endpoints you should create? To answer, select the appropriate options in the answer area.

NOTE: Each correct selection is worth one point.

AZ-700 Question 31

Options:

Buy Now
Questions 32

You have an Azure subscription that contains the resources shown in the following table.

AZ-700 Question 32

You plan to deploy an app named App1 to meet the following requirements.

• External users must be able to access App1 from the internet.

• App1 will be load balanced across all the virtual machines.

• App1 will be hosted on VM1, VM2. VM3. and VM4.

• App1 must be available if an Azure region fails.

• Costs must be minimized.

You need to implement a global load balancer solution for App.

What should you configure? To answer, select the appropriate options in the answer area

NOTE: Bach correct answer is worth one point.

AZ-700 Question 32

Options:

Buy Now
Questions 33

Azure virtual networks in the East US Azure region as shown in the following table.

AZ-700 Question 33

The virtual networks are peered to one another. Each virtual network contains four subnets.

You plan to deploy a virtual machine named VM1 that will inspect and route traffic between all the subnets on both the virtual networks.

What is the minimum number of IP addresses that you must assign to VM1?

Options:

A.

1

B.

2

C.

4

D.

8

Buy Now
Questions 34

You have an Azure application gateway named AppGW1 that balances requests to a web app named App1.

You need to modify the server variables in the response header of App1.

What should you configure on AppGW1?

Options:

A.

HTTP settings

B.

rewrites

C.

rules

D.

listeners

Buy Now
Questions 35

You have an Azure subscription that contains two virtual networks named Vnet1 and Vnet2.

You register a public DNS zone named fabrikam.com. The zone is configured as shown in the Public DNS Zone exhibit.

AZ-700 Question 35

You have a private DNS zone named fabrikam.com. The zone is configured as shown in the Private DNS Zone exhibit.

AZ-700 Question 35

You have a virtual network link configured as shown in the Virtual Network Link exhibit.

AZ-700 Question 35

For each of the following statements, select Yes if the statement is true. Otherwise, select No.

NOTE: Each correct selection is worth one point.

AZ-700 Question 35

Options:

Buy Now
Questions 36

You have an Azure virtual network that contains two subnets named Subnet1 and Subnet2. Subnet1 contains a virtual machine named VM1. Subnet2 contains a virtual machine named VM2.

You have two network security groups (NSGs) named NSG1 and NSG2. NSG1 has 100 inbound security rules and is associated to VM1. NSG2 has 200 inbound security rules and is associated to Subnet1.

VM2 cannot connect to VM1.

You suspect that an NSG rule blocks connectivity.

You need to identify which rule blocks the connection. The issue must be resolved as quickly as possible.

Which Azure Network Watcher feature should you use?

Options:

A.

Effective security rules

B.

Connection troubleshoot

C.

NSG diagnostic

D.

NSG flow logs

Buy Now
Questions 37

You have an Azure subscription that contains the resources shown in the following table.

AZ-700 Question 37

Users on HP1 connect to App1 by using a URL of https://app1 .comoso.com.

You need to ensure that the IDPS on FW1 can identify security threats in the connections from HP1 to Server1.

Which two actions should you perform? Each correct answer presents part of the solution.

NOTE: Each correct selection is worth one point.

Options:

A.

Enable TLS inspection for FW1.

B.

import a server certificate to KV1.

C.

Enable threat intelligence for FW1.

D.

Add an application group to HP1.

E.

Add a secured virtual network to FW1.

Buy Now
Questions 38

Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution.

After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen.

You have an Azure subscription that contains the following resources:

* A virtual network named Vnet1

* A subnet named Subnet1 in Vnet1

* A virtual machine named VM1 that connects to Subnet1

* Three storage accounts named storage1, storage2, and storage3

You need to ensure that VM1 can access storage1. VM1 must be prevented from accessing any other storage accounts.

Solution: You configure the firewall on storage1 to only accept connections from Vnet1.

Does this meet the goal?

Options:

A.

Yes

B.

No

Buy Now
Questions 39

You have an Azure subscription that contains the public IPv4 addresses shown in the following table.

AZ-700 Question 39

You plan to create a load balancer named LB1 that will have the following settings:

* Name: LB1

* Location: West US

* Type: Public

* SKU: Standard

Which public IPv4 addresses can be used by LB1?

Options:

A.

IP1 and IP3 only

B.

IP3 only

C.

IP3 and IP5 only

D.

IP2only

E.

IP1, IP2. IP3. IP4. and IP5

F.

IP1, IP3, IP4, and 1P5 only

Buy Now
Questions 40

You have an on-premises network that includes the sites shown in the following table.

AZ-700 Question 40

Each site is connected to the Internet by a firewall. All sites are connected to an SD-WAN. Each site is configured to propagate routes by using BGP.

You have an Azure subscription that includes a virtual network named Vnet1 that contains a Virtual Network Gateway named Gateway 1.

You create a local network gateway with the configuration shown in the gateway exhibit (Click the Gateway tab.)

AZ-700 Question 40

You create a Site-to-Site (S2S) connection with the configuration shown in connection exhibit. (Click the Connection tab)

AZ-700 Question 40

For each of the following statements, select Yes if the statement is true Otherwise, select No.

NOTE: Each correct selection is worth one point.

AZ-700 Question 40

Options:

Buy Now
Questions 41

You have an Azure application gateway named AppGw1.

You need to create a rewrite rule for AppGw1. The solution must rewrite the URL of requests from https://www.contoso.com/fashion/shirts to ttps://www.contoso.com/buy.aspx?category-fashion &product=shirts.

How should you complete the rule? To answer NOTE: Each correct selection is worth one point appropriate options in the answer area.

AZ-700 Question 41

Options:

Buy Now
Questions 42

You have an Azure subscription that is linked to an Azure Active Directory (Azure AD) tenant named contoso.onmicrosoft.com. The subscription contains the following resources:

* An Azure App Service app named App1

* An Azure DNS zone named contoso.com

* An Azure private DNS zone named private.contoso.com

* A virtual network named Vnet1

You create a private endpoint for App1. The record for the endpoint is registered automatically in Azure DNS.

You need to provide a developer with the name that is registered in Azure DNS for the private endpoint.

What should you provide?

Options:

A.

app1.privatelink.azurewebsites.net

B.

app1.contoso.com

C.

app1.contoso.onmicrosoft.com

D.

app1.private.contoso.com

Buy Now
Questions 43

You have an Azure subscription that contains an Azure Front Door named FD1. FD1 is configured as shown in the following exhibit.

AZ-700 Question 43

You need to enable Azure Private Link for FD1.

What should you do first?

Options:

A.

Create an origin group.

B.

Add an endpoint.

C.

Change Pricing Tier to Azure Front Door Premium.

D.

Create a custom route.

Buy Now
Questions 44

You have an Azure subscription that contains a single virtual network and a virtual network gateway.

You need to ensure that administrators can use Point-to-Site (P2S) VPN connections to access resources in the virtual network. The connections must be authenticated by Azure Active Directory (Azure AD).

What should you configure? To answer, select the appropriate options in the answer area.

NOTE: Each correct selection is worth one point.

AZ-700 Question 44

Options:

Buy Now
Questions 45

You have an on-premises datacenter.

You have an Azure subscription that contains 10 virtual machines and a virtual network named VNe1l in the East US Azure region. The virtual machines are connected to VNet1 and replicate across three availability zones.

You need to connect the datacenter to VNetl1by using ExpressRoute. The solution must meet the following requirements:

• Maintain connectivity to the virtual machines if two availability zones fail.

• Support 1000-Mbps connections-

What should you include in the solution? To answer, select the appropriate options in the answer area. NOTE: Each correct selection is worth one point.

AZ-700 Question 45

Options:

Buy Now
Questions 46

You have two Azure subscriptions named Subscnption1 and Subscription2. Subscription1 contains a virtual network named Vnet1. Vnet1 contains an application server. Subscription2 contains a virtual network named Vnet2.

You need to provide the virtual machines in Vnet2 with access to the application server in Vnet1 by using a private endpoint.

Which four actions should you perform in sequence? To answer, move the appropriate actions from the list of actions to the answer area and arrange them in the correct order.

AZ-700 Question 46

Options:

Buy Now
Questions 47

You have an Azure subscription that contains the resources shown in the following table.

AZ-700 Question 47

You purchase a certificate for app1.contoso.com from a public certification authority (CA) and install the certificate on appservice1.

You need to ensure that App1 can be accessed by using a URL of https://app1.contoso.com. The solution must ensure that all the traffic for App1 is routed via FD1.

Which type of DNS record should you create, and where should you store the certificate? To answer, select the appropriate options in the answer area.

NOTE: Each correct selection is worth one point

AZ-700 Question 47

Options:

Buy Now
Questions 48

You have art Azure subscription that contains the resources shown in the following table.

AZ-700 Question 48

You need to restrict access to storage1 and sqI1 by using service endpoints. The solution must meet the following requirements:

• Allow access from Subnet1 to SQIDB1

• Implement service endpoint policies to restrict access to supported resources.

• Allow access from Subnet1 to storage1 and the read-only replica of storage1 in the paired Azure region.

What is the minimum number of service endpoints and service endpoint policies you should create? To answer, select the appropriate options m the answer area.

NOTE: Each correct selection is worth one point.

AZ-700 Question 48

Options:

Buy Now
Questions 49

Your company, named Contoso, Ltd, has an Azure subscription that contains the resources show in the following table.

AZ-700 Question 49

You plan to deploy Azure Front Door. The solution must meet the following requirement:

• Requests to a URL of https://contoso.azurefd .net/uk must be routed to App1uk.

• Requests to a URL of https://contoso.azurefd.net/us must be routed to App1us.

• Requests to a URL of https://contoso .azurefd.net/images must be routed to the storage account closest to the user.

What is the minimum number of backend pools and routing rules you should create? To answer, the appropriate number to the correct component. Each number may be used once, more than once, or not at all. You may need to drag the spilt bar between panes scroll to view content:

Note: Each correct selection is worth one point.

AZ-700 Question 49

Options:

Buy Now
Questions 50

Task 3

You plan to implement an Azure application gateway in the East US Azure region. The application gateway will have Web Application Firewall (WAF) enabled.

You need to create a policy that can be linked to the planned application gateway. The policy must block connections from IP addresses in the 131.107.150.0/24 range. You do NOT need to provision the application gateway to complete this task.

Options:

Buy Now
Questions 51

Task 8

You need to ensure that the storage34280945 storage account will only accept connections from hosts on VNET1

Options:

Buy Now
Questions 52

Task 7

You need to ensure that hosts on VNET2 can access hosts on both VNET1 and VNET3. The solution must prevent hosts on VNET1 and VNET3 from communicating through VNET2.

Options:

Buy Now
Questions 53

Task 11

You need to ensure that only hosts on VNET1 can access the slcnage42150372 storage account. The solution must ensure that access occurs over the Azure backbone network.

Options:

Buy Now
Questions 54

Task 6

You have two servers that are each hosted by a separate service provider in New York and Germany. The server hosted in New York is accessible by using a host name of ny.contoso.com. The server hosted in Germany is accessible by using a host name of de.contoso.com.

You need to provide a single host name to access both servers. The solution must ensure that traffic originating from Germany is routed to de contoso.com. All other traffic must be routed to ny.contoso.com.

Options:

Buy Now
Exam Code: AZ-700
Exam Name: Designing and Implementing Microsoft Azure Networking Solutions
Last Update: Nov 28, 2024
Questions: 258

PDF + Testing Engine

$61.25  $174.99

Testing Engine

$47.25  $134.99
buy now AZ-700 testing engine

PDF (Q&A)

$40.25  $114.99
buy now AZ-700 pdf
dumpsmate guaranteed to pass
24/7 Customer Support

DumpsMate's team of experts is always available to respond your queries on exam preparation. Get professional answers on any topic of the certification syllabus. Our experts will thoroughly satisfy you.

Site Secure

mcafee secure

TESTED 03 Dec 2024