New Year Special Sale Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: scxmas70

AZ-700 Exam Dumps - Designing and Implementing Microsoft Azure Networking Solutions

Go to page:
Question # 9

You have an Azure subscription that contains the virtual networks shown in the following table.

You plan to deploy an Azure firewall named AF1 to RG1 in the West US Azure region.

To which virtual networks can you deploy AF1?

A.

Vnet1 only

B.

Vnet1 and Vnet2 only

C.

Vnet1, Vnet2, and Vnet4 only

D.

Vnet1 and Vnet4 only

E.

Vnet1, Vnet2. Vnet3, and Vnet4

Full Access
Question # 10

You plan to deploy an Azure virtual network.

You need to design the subnets.

Which three types of resources require a dedicated subnet? Each correct answer presents a complete solution.

NOTE: Each correct selection is worth one point.

A.

VPN gateway

B.

Azure Bastion

C.

Azure Active Directory Domain Services (Azure AD DS)

D.

Azure Application Gateway v2

E.

Azure Private Link

Full Access
Question # 11

You have the Azure environment shown in the exhibit.

You have virtual network peering between Vnet1 and Vnet2. You have virtual network peering between Vnet4 and Vnet5. The virtual network peering is configured as shown in the following table.

For each of the following statements, select Yes if the statement is true. Otherwise, select No.

NOTE: Each correct selection is worth one point.

Full Access
Question # 12

Your on-premises network contains a VPN device.

You have an Azure subscription that contains a virtual network and a virtual network gateway.

You need to create a Site-to-Site VPN connection that has a custom cryptographic policy.

How should you complete the PowerShell script? To answer, select the appropriate options in the answer area.

NOTE: Each correct selection is worth one point.

Full Access
Question # 13

You have an Azure application gateway configured for a single website that is available at https://www.contoso.com.

The application gateway contains one backend pool and one rule. The backend pool contains two backend servers. Each backend server has an additional website that is available on port 8080.

You need to ensure that if port 8080 is unavailable on a backend server, all the traffic for https://www.contoso.com is redirected to the other backend server.

What should you do?

A.

Create a health probe.

B.

Add a new rule.

C.

Add a new listener.

D.

Change the port on the listener.

Full Access
Question # 14

You have an Azure virtual network named Vnet1 that has one subnet. Vnet1 is in the West Europe Azure region.

You deploy an Azure App Service app named App1 to the West Europe region.

You need to provide App1 with access to the resources in Vnet1. The solution must minimize costs.

What should you do first?

A.

Create a private link.

B.

Create a new subnet.

C.

Create a NAT gateway.

D.

Create a gateway subnet and deploy a virtual network gateway.

Full Access
Question # 15

You have an Azure subscription that contains a dual-stack virtual network named VNet1. VNet1 has the following IP address spaces:

• IPv4:192.168.0.0/24

• IPv6: fd0adbftdeca: deed: y48

You plan to deploy an Azure VPN gateway and multiple virtual machines to VNet1.

You need to configure the subnet masks for VNet1. The solution must meet the following requirements:

• Maximize the number of usable IP addresses.

• Support the deployment of the VPN gateway and the virtual machines.

Which subnet mask should you use for each address space? To answer, select the appropriate options in the answer area.

NOTE: Each correct selection is worth one point.

Full Access
Question # 16

You have an Azure virtual network named Vnet1 and an on-premises network.

The on-premises network has policy-based VPN devices. In Vnet1, you deploy a virtual network gateway named GW1 that uses a SKU of VpnGw1 and is route-based.

You have a Site-to-Site VPN connection for GW1 as shown in the following exhibit.

You need to ensure that the on-premises network can connect to the route-based GW1. What should you do before you create the connection?

A.

Set Use Azure Private IP Address to Enabled

B.

Set IPsec / IKE policy to Custom.

C.

Set Connection Mode to ResponderOnly

D.

Set BGP to Enabled

Full Access
Go to page: