Pre-Summer Special Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: validbest

Pass the Microsoft Certified: Azure Network Engineer Associate AZ-700 Questions and answers with ValidTests

Exam AZ-700 All Questions
Exam AZ-700 Premium Access

View all detail and faqs for the AZ-700 exam

Viewing page 2 out of 10 pages
Viewing questions 11-20 out of questions
Questions # 11:

You have an Azure virtual network that contains the subnets shown in the following table.

Question # 11

You deploy an Azure firewall to AzureFirewallSubnet. You route all traffic from Subnet2 through the firewall.

You need to ensure that all the hosts on Subnet2 can access an external site located at https://*.contoso.com.

What should you do?

Options:

A.

Create a network security group (NSG) and associate the NSG to Subnet2.

B.

In a firewall policy, create an application rule.

C.

In a firewall policy, create a DNAT rule.

D.

In a firewall policy, create a network rule.

Expert Solution
Questions # 12:

You have a computer named CLIENT! that runs Windows 11 and has the Azure VPN Client installed.

You have an Azure virtual network gateway named VPNGW1.

You need to ensure that you can connect CLIENT1 to VPNGW1. The solution must support Microsoft Entra authentication.

Which four actions should you perform in sequence? To answer, move the appropriate actions from the list of actions to the answer area and arrange them in the correct order.

Question # 12

Options:

Expert Solution
Questions # 13:

You need to configure a security rule for APPGW1-NSG1. The solution must support the planned changes. Which service tag should you use?

Options:

A.

AzureFrontDoor.FirstParty

B.

AzureFrontDoor.Infra

C.

AzureFrontDoor.Backend

D.

AzureFrontDoor.Frontend

Expert Solution
Questions # 14:

You need to configure a custom rule for APPGWI-WAFPolicy to allow only connections that originate from FD1. The solution must support the planned changes.

Which Match type and Match variable should you select?

Options:

A.

String and RequestCookies

B.

IP address and RemoteAddr

C.

String and RequestHeaders

D.

Geo location and RemoteAddr

Expert Solution
Questions # 15:

You have an Azure subscription that contains a single virtual network and a virtual network gateway.

You need to ensure that administrators can use Point-to-Site (P2S) VPN connections to access resources in the virtual network. The connections must be authenticated by Azure Active Directory (Azure AD).

What should you configure? To answer, select the appropriate options in the answer area.

NOTE: Each correct selection is worth one point.

Question # 15

Options:

Expert Solution
Questions # 16:

You have Azure App Service apps in the West US Azure region as shown in the following table.

Question # 16

You need to ensure that all the apps can access the resources in a virtual network named Vnet1 without forwarding traffic through the internet-How many integration subnets should you create?

Options:

A.

0

B.

1

C.

3

D.

4

E.

6

Expert Solution
Questions # 17:

You need to use Traffic Analytics to monitor the usage of applications deployed to Azure virtual machines.

Which Azure Network Watcher feature should you implement first?

Options:

A.

Connection monitor

B.

Packet capture

C.

NSG flow logs

D.

IP flow verify

Expert Solution
Questions # 18:

You have the Azure load balancer shown in the Load Balancer exhibit.

Question # 18

LB2 has the backend pools shown in the Backend Pools exhibit.

Question # 18

You need to ensure that LB2 distributes traffic to all the members of VMSS1.

Which two actions should you perform? Each correct answer presents part of the solution.

NOTE: Each correct selection is worth one point.

Options:

A.

Add a network interface to VMSS1.

B.

Configure a health probe.

C.

Add a public IP address to each member of VMSS1.

D.

Add a load balancing rule.

Expert Solution
Questions # 19:

You have an Azure subscription that contains an Azure Front Door Premium profile named AFD1 and an Azure Web Application Firewall (WAF) policy named WAF1. AFD1 is associated with WAF1.

You need to configure a rate limit for incoming requests to AFD1.

Solution: You add a rule to the rule set of AFD1.

Does this meet the goal?

Options:

A.

Yes

B.

No

Expert Solution
Questions # 20:

Task 8

You plan to deploy an appliance to subnet3-2- The appliance will perform packet inspection and will have an IP address of 10.3.2.100.

You need to ensure that all traffic to the internet from subnet3-1 is forwarded to the appliance for inspection.

Options:

Expert Solution
Viewing page 2 out of 10 pages
Viewing questions 11-20 out of questions