Master the AZ-700 Designing and Implementing Microsoft Azure Networking Solutions content and be ready for exam day success quickly with this Testking AZ-700 answers. We guarantee it!We make it a reality and give you real AZ-700 questions in our Microsoft AZ-700 braindumps.Latest 100% VALID Microsoft AZ-700 Exam Questions Dumps at below page. You can use our Microsoft AZ-700 braindumps and pass your exam.

Check AZ-700 free dumps before getting the full version:

NEW QUESTION 1

You have an Azure virtual network and an on-premises datacenter.
You need to implement a Site-to-Site VPN connection between the datacenter and the virtual network. Which two resources should you create? Each correct answer presents part of the solution. NOTE: Each
correct selection is worth one point.

  • A. a virtual network gateway
  • B. Azure Firewall
  • C. a local network gateway
  • D. Azure Web Application Firewall (WAF)
  • E. an on-premises data gateway
  • F. an Azure application gateway
  • G. a user-defined route

Answer: CG

NEW QUESTION 2

Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution.
After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen.
You have an Azure application gateway that has Azure Web Application Firewall (WAF) enabled. You configure the application gateway to direct traffic to the URL of the application gateway.
You attempt to access the URL and receive an HTTP 403 error. You view the diagnostics log and discover the following error.
AZ-700 dumps exhibit
You need to ensure that the URL is accessible through the application gateway.
Solution: You create a WAF policy exclusion for request headers that contain 137.135.10.24. Does this meet the goal?

  • A. Yes
  • B. No

Answer: B

Explanation:
The parameter here should be RemoteAddr not Request header.
https://docs.microsoft.com/en-us/azure/web-application-firewall/ag/custom-waf-rules-overview#match-variable

NEW QUESTION 3

You have an Azure virtual network that contains two subnets named Subnet1 and Subnet2. Subnet1 contains a virtual machine named VM1. Subnet2 contains a virtual machine named VM2.
You have two network security groups (NSGs) named NSG1 and NSG2. NSG1 has 100 inbound security rules and is associated to VM1. NSG2 has 200 inbound security rules and is associated to Subnet1.
VM2 cannot connect to VM1.
You suspect that an NSG rule blocks connectivity.
You need to identify which rule blocks the connection. The issue must be resolved as quickly as possible. Which Azure Network Watcher feature should you use?

  • A. Effective security rules
  • B. Connection troubleshoot
  • C. NSG diagnostic
  • D. NSG flow logs

Answer: C

NEW QUESTION 4

Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution.
After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen.
You have an Azure subscription that contains the following resources:
* A virtual network named Vnet1
* A subnet named Subnet1 in Vnet1
* A virtual machine named VM1 that connects to Subnet1
* Three storage accounts named storage1, storage2, and storage3
You need to ensure that VM1 can access storage1. VM1 must be prevented from accessing any other storage accounts.
Solution: You create a network security group (NSG) and associate the NSG to Subnet1. Does this meet the goal?

  • A. Yes
  • B. No

Answer: A

NEW QUESTION 5

You have an Azure Front Door instance that provides access to a web app. The web app uses a hostname of www.contoso.com.
You have the routing rules shown in the following table.
AZ-700 dumps exhibit
Which rule will apply to each incoming request? To answer, select the appropriate options in the answer area. NOTE: Each correct selection is worth one point
AZ-700 dumps exhibit


Solution:
Table Description automatically generated
Reference:
https://docs.microsoft.com/en-us/azure/frontdoor/front-door-route-matching

Does this meet the goal?
  • A. Yes
  • B. Not Mastered

Answer: A

NEW QUESTION 6

You have an Azure subscription that contains an Azure App Service app. The app uses a URL of https://www.contoso.com.
You need to use a custom domain on Azure Front Door for www.contoso.com. The custom domain must use a certificate from an allowed certification authority (CA).
What should you include in the solution?

  • A. an enterprise application in Azure Active Directory (Azure AD)
  • B. Active Directory Certificate Services (AD CS)
  • C. Azure Key Vault
  • D. Azure Application Gateway

Answer: C

Explanation:
Reference:
https://docs.microsoft.com/en-us/azure/frontdoor/front-door-custom-domain-https

NEW QUESTION 7

You have an Azure firewall shown in the following exhibit.
AZ-700 dumps exhibit
Use the drop-down menus to select the answer choice that completes each statement based on the information presented in the graphic.
NOTE: Each correct selection is worth one point.
AZ-700 dumps exhibit


Solution:
Graphical user interface, text, application, email Description automatically generated
Box 1:
If forced tunneling was enabled, the Firewall Subnet would be named AzureFirewallManagementSubnet. Forced tunneling can only be enabled during the creation of the firewall. It cannot be enabled after the firewall has been deployed.
Box 2:
The “Visit Azure Firewall Manager to configure and manage this firewall” link in the exhibit shows that the firewall is managed by Azure Firewall Manager.

Does this meet the goal?
  • A. Yes
  • B. Not Mastered

Answer: A

NEW QUESTION 8

You plan to configure BGP for a Site-to-Site VPN connection between a datacenter and Azure. Which two Azure resources should you configure? Each correct answer presents a part of the solution.
(Choose two.)
NOTE: Each correct selection is worth one point.

  • A. a virtual network gateway
  • B. Azure Application Gateway
  • C. Azure Firewall
  • D. a local network gateway
  • E. Azure Front Door

Answer: AD

Explanation:
Reference:
https://docs.microsoft.com/en-us/azure/vpn-gateway/bgp-howto

NEW QUESTION 9

You have an Azure Virtual Desktop deployment that has 500 session hosts. All outbound traffic to the internet uses a NAT gateway.
During peak business hours, some users report that they cannot access internet resources. In Azure Monitor, you discover many failed SNAT connections.
You need to increase the available SNAT connections. What should you do?

  • A. Add a public IP address.
  • B. Bind the NAT gateway to another subnet.
  • C. Deploy Azure Standard Load Balancer that has outbound rules.

Answer: A

Explanation:
Reference:
https://docs.microsoft.com/en-us/azure/virtual-network/nat-gateway/nat-gateway-resource

NEW QUESTION 10

You plan to deploy Azure Virtual WAN.
You need to deploy a virtual WAN hub that meets the following requirements:
AZ-700 dumps exhibit Supports 10 sites that will connect to the virtual WAN hub by using a Site-to-Site VPN connection
AZ-700 dumps exhibit Supports 8 Gbps of ExpressRoute traffic
AZ-700 dumps exhibit Minimizes costs
What should you configure? To answer, select the appropriate options in the answer area. NOTE: Each correct selection is worth one point.
AZ-700 dumps exhibit


Solution:
Graphical user interface, diagram Description automatically generated with medium confidence
Reference:
https://docs.microsoft.com/en-us/azure/virtual-wan/virtual-wan-about

Does this meet the goal?
  • A. Yes
  • B. Not Mastered

Answer: A

NEW QUESTION 11

Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution.
After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen.
You have an Azure subscription that contains the following resources:
* A virtual network named Vnet1
* A subnet named Subnet1 in Vnet1
* A virtual machine named VM1 that connects to Subnet1
* Three storage accounts named storage1, storage2, and storage3
You need to ensure that VM1 can access storage1. VM1 must be prevented from accessing any other storage accounts.
Solution: You configure the firewall on storage1 to only accept connections from Vnet1. Does this meet the goal?

  • A. Yes
  • B. No

Answer: B

NEW QUESTION 12

You have two Azure virtual networks named Vnet1 and Vnet2 in an Azure region that has three availability zones.
You deploy 12 virtual machines to each virtual network, deploying four virtual machines per zone. The virtual machines in Vnet1 host an app named App1. The virtual machines in Vnet2 host an app named App2.
You plan to use Azure Virtual Network NAT to implement outbound connectivity for App1 and App2. You need to identify the minimum number of subnets and Virtual Network NAT instances required to meet
the following requirements:
• A failure of two zones must NOT affect the availability of either App1 or App2.
• A failure of two zones must NOT affect the outbound connectivity of either Appl1or App2. What should you identify? To answer, select the appropriate options in the answer area. NOTE: Each correct selection is worth one point.
AZ-700 dumps exhibit


Solution:
AZ-700 dumps exhibit

Does this meet the goal?
  • A. Yes
  • B. Not Mastered

Answer: A

NEW QUESTION 13

You have the Azure load balancer shown in the Load Balancer exhibit.
AZ-700 dumps exhibit
LB2 has the backend pools shown in the Backend Pools exhibit.
AZ-700 dumps exhibit
You need to ensure that LB2 distributes traffic to all the members of VMSS1.
What should you do?

  • A. Add a network interface to VMSS1.
  • B. Configure a health probe.
  • C. Add a public IP address to each member of VMSS1.
  • D. Add a load balancing rule.

Answer: D

NEW QUESTION 14

You have two Azure virtual networks named Hub1 and Spoke1. Hub1 connects to an on-premises network by using a Site-to-Site VPN connection.
You are implementing peering between Hub1 and Spoke1.
You need to ensure that a virtual machine connected to Spoke1 can connect to the on-premises network through Hub1.
How should you complete the PowerShell script? To answer, drag the appropriate values to the correct targets. Each value may be used once, more than once, or not at all. You may need to drag the split bar between panes or scroll to view content.
NOTE: Each correct selection is worth one point.
AZ-700 dumps exhibit


Solution:
Graphical user interface, text, application Description automatically generated
Reference:
https://docs.microsoft.com/en-us/azure/architecture/reference-architectures/hybrid-networking/hub-spoke?tabs=

Does this meet the goal?
  • A. Yes
  • B. Not Mastered

Answer: A

NEW QUESTION 15

You have an Azure application gateway named AppGW1 that provides access to the following hosts:
* www.adatum.com
* www.contoso.com
* www.fabrikam.com
AppGW1 has the listeners shown in the following table.
AZ-700 dumps exhibit
You create Azure Web Application Firewall (WAF) policies for AppGW1 as shown in the following table.
AZ-700 dumps exhibit
For each of the following statements, select Yes if the statement is true. Otherwise, select No. NOTE: Each correct selection is worth one point.
AZ-700 dumps exhibit


Solution:
Graphical user interface Description automatically generated with medium confidence
Reference:
https://docs.microsoft.com/en-us/azure/web-application-firewall/ag/per-site-policies

Does this meet the goal?
  • A. Yes
  • B. Not Mastered

Answer: A

NEW QUESTION 16

You have the Azure Traffic Manager profiles shown in the following table.
AZ-700 dumps exhibit
You plan to add the endpoints shown in the following table.
AZ-700 dumps exhibit
Which endpoints can you add to Profile2?

  • A. Endpoint1 and Endpoint4 only
  • B. Endpoint1, Endpoint2, Endpoint3, and Endpoint4
  • C. Endpoint1 only
  • D. Endpoint2 and Endpoint3 only
  • E. Endpoint3 only

Answer: A

NEW QUESTION 17
......

Recommend!! Get the Full AZ-700 dumps in VCE and PDF From 2passeasy, Welcome to Download: https://www.2passeasy.com/dumps/AZ-700/ (New 105 Q&As Version)