Exam2pass
0 items Sign In or Register
  • Home
  • IT Exams
  • Guarantee
  • FAQs
  • Reviews
  • Contact Us
  • Demo
Exam2pass > Microsoft > Microsoft Certifications > AZ-700 > AZ-700 Online Practice Questions and Answers

AZ-700 Online Practice Questions and Answers

Questions 4

Your company has offices in New York and Amsterdam. The company has an Azure subscription. Both offices connect to Azure by using a Site-to-Site VPN connection.

The office in Amsterdam uses resources in the North Europe Azure region. The office in New York uses resources in the East US Azure region.

You need to implement ExpressRoute circuits to connect each office to the nearest Azure region. Once the ExpressRoute circuits are connected, the on-premises computers in the Amsterdam office must be able to connect to the on-premises

servers in the New York office by using the ExpressRoute circuits.

Which ExpressRoute option should you use?

A. ExpressRoute FastPath

B. ExpressRoute Global Reach

C. ExpressRoute Direct

D. ExpressRoute Local

Buy Now

Correct Answer: B

Reference: https://docs.microsoft.com/en-us/azure/expressroute/expressroute-global-reach

Questions 5

You have an Azure virtual network named Vnet1 that hosts an Azure firewall named FW1 and 150 virtual machines. Vnet1 is linked to a private DNS zone named contoso.com. All the virtual machines have their name registered in the

contoso.com zone.

Vnet1 connects to an on-premises datacenter by using ExpressRoute.

You need to ensure that on-premises DNS servers can resolve the names in the contoso.com zone.

Which two actions should you perform? Each correct answer presents part of the solution.

NOTE: Each correct selection is worth one point.

A. Modify the DNS server settings of Vnet1.

B. For FW1, configure custom DNS server.

C. For FW1, enable DNS proxy.

D. On the on-premises DNS servers, configure forwarders that point to the frontend IP address of FW1.

E. On the on-premises DNS servers, configure forwarders that point to the Azure provided DNS service at 168.63.129.16.

Buy Now

Correct Answer: CD

Reference: https://docs.microsoft.com/en-us/azure/private-link/private-endpoint-dns#on-premises-workloads-using-a-dns-forwarder https://azure.microsoft.com/en-gb/blog/new-enhanced-dns-features-in-azure-firewall-now-generally-available/

Questions 6

Your company has four branch offices and an Azure subscription. The subscription contains an Azure VPN gateway named GW1. The branch offices are configured as shown in the following table.

The branch office routers provide internet connectivity and Site-to-Site VPN connections to GW1.

The users in Branch1 report that they can connect to internet resources, but cannot access Azure resources.

You need to ensure that the Branch1 users can connect to the Azure resources. The solution must meet the following requirements:

1.

Minimize downtime for all users.

2.

Minimize administrative effort. What should you do first?

A. Recreate LNG1.

B. Reset RTR1.

C. Reset Connection1.

D. Reset GW1.

Buy Now

Correct Answer: C

Azure VPN gateway Site-to-Site VPN connections local network gateway

Resetting an Azure VPN gateway or gateway connection is helpful if you lose cross-premises VPN connectivity on one or more site-to-site VPN tunnels. In this situation, your on-premises VPN devices are all working correctly, but aren't able

to establish IPsec tunnels with the Azure VPN gateways.

Connection reset

When you select to reset a connection, the gateway doesn't reboot. Only the selected connection is reset and restored.

Incorrect:

Not D: Resetting GW1 would affect all VPN connections.

Gateway reset

A VPN gateway is composed of two VM instances running in an active-standby configuration. When you reset the gateway, it reboots the gateway, and then reapplies the cross-premises configurations to it.

Reference: https://learn.microsoft.com/en-us/azure/vpn-gateway/reset-gateway

Questions 7

You have deployed multiple websites in Internet Information Server (IIS) by using Azure virtual machine scale sets (VMSS).

User sessions must be routed to the same server by using cookie-based session affinity. The below image depicts the network traffic flow for the websites to the VMSS.

What should you configure to make sure web traffic arrives at the appropriate server in the VMSS?

A. Routing rules and backend listeners

B. CNAME and A records

C. Routing method and DNS time to live (TTL)

D. Path-based redirection and websockets

Buy Now

Correct Answer: A

Correct Answer(s):

Routing rules and backend listeners - You can configure the hosting of multiple web sites when you create an application gateway. You need to define backend address pools using virtual machines. You then configure listeners and rules

based on domains that you own to make sure web traffic arrives at the appropriate servers in

the pools.

https://docs.microsoft.com/bs-latn-ba/azure//application-gateway/create-multiple-sites-portal

Wrong Answers:

CNAME and A records - These are used for domain registrations.

Routing method and DNS time to live (TTL) - DNS TTL (time to live) is a setting that tells the DNS resolver how long to cache a query before requesting a new one. This is nothing to do with routing.

Path-based redirection and websockets - Path Based Routing allows you to route traffic to back-end server pools based on URL Paths of the request.

Questions 8

You have an application deployed in to two Azure app services as shown below.

You need to change the front end to an active/active application instances in which both regions process incoming connections. What should you do?

A. Add a load balancer to each region

B. Add an Azure application gateway to each region

C. Add an Azure Content Delivery Network (CDN)

D. Modify the Traffic Manager routing method.

Buy Now

Correct Answer: D

Correct Answer(s):

Modify the Traffic Manager routing method - Azure Traffic Manager supports six traffic-routing methods to determine how to route network traffic to the various service endpoints.

You can select Weighted routing when you want to distribute traffic across a set of endpoints based on their weight. Set the weight the same to distribute evenly across all endpoints.

https://docs.microsoft.com/en-us/azure/traffic-manager/traffic-manager-routing-methods

Wrong Answers:

Add a load balancer to each region - Existing traffic manager can distribute traffic to multiple regions. Azure Web App will have its own load balancer.

Add an Azure application gateway to each region - Existing traffic manager can distribute traffic to multiple regions. Azure Web App will have its own load balancer.

Add an Azure Content Delivery Network (CDN) - CDN is used to cache content near to user's location.

Questions 9

You have an Azure subscription that contains a virtual network named VNet1. VNet1 contains a subnet named Subnet1.

You deploy an instance of Azure Application Gateway v2 named AppGw1 to Subnet1. You create a network security group (NSG) named NSG1 and link NSG1 to Subnet1.

You need to ensure that AppGw1 will only load balance traffic that originates from VNet1. The solution must minimize the impact on the functionality of AppGw1.

What should you add to NSG1?

A. an outbound rule that has a priority of 4096 and blocks all internet traffic

B. an inbound rule that has a priority of 4096 and blocks all internet traffic

C. an inbound rule that has a priority of 100 and blocks all internet traffic

D. an outbound rule that has a priority 100 and blocks all internet traffic

Buy Now

Correct Answer: B

Questions 10

You have an Azure subscription that contains an Azure Front Door Premium profile named AFD1 and an Azure Web Application Firewall (WAF) policy named WAF1. AFD1 is associated with WAF1.

You need to configure a rate limit for incoming requests to AFD1.

Solution: You configure a custom rule for WAF1.

Does this meet the goal?

A. Yes

B. No

Buy Now

Correct Answer: A

Reference: https://learn.microsoft.com/en-us/azure/web-application-firewall/afds/waf-front-door-rate-limit-configure

Questions 11

You need to ensure that hosts on VNET1 and VNET2 can communicate. The solution must minimize latency between the virtual networks.

To complete this task, sign in to the Azure portal.

A. See explanation below.

B. Placeholder

C. Placeholder

D. Placeholder

Buy Now

Correct Answer: A

Peer virtual networks

Step 1: In the search box at the top of the Azure portal, look for VNet1. When VNET1 appears in the search results, select it.

Step 2: Under Settings, select Peerings, and then select + Add, as shown in the following picture:

Step 3: Enter or select the following information, accept the defaults for the remaining settings, and then select Add.

*

..

*

Virtual network

Select VNET2 for the name of the remote virtual network. The remote virtual network can be in the same region of VNET1 or in a different region.

Step 4: Click Add

In the Peerings page, the Peering status is Connected, as shown in the following picture:

Reference: https://learn.microsoft.com/en-us/azure/virtual-network/tutorial-connect-virtual-networks-portal

Questions 12

HOTSPOT

You have an Azure Traffic Manager parent profile named TM1. TM1 has two child profiles named TM2 and TM3.

TM1 uses the performance traffic-routing method and has the endpoints shown in the following table.

TM2 uses the weighted traffic-routing method with MinChildEndpoint = 2 and has the endpoints shown in the following table.

TM3 uses priority traffic-routing method and has the endpoints shown in the following table.

The App2, App4, and App6 endpoints have a degraded monitoring status.

To which endpoint is traffic directed? To answer, select the appropriate options in the answer area.

NOTE: Each correct selection is worth one point

Hot Area:

Buy Now

Correct Answer:

Reference: https://docs.microsoft.com/en-us/azure/traffic-manager/traffic-manager-nested-profiles

Questions 13

DRAG DROP

You need to prepare Vnet1 for the deployment of an ExpressRoute gateway. The solution must meet the hybrid connectivity requirements and the business requirements.

Which three actions should you perform in sequence for Vnet1? To answer, move the appropriate actions from the list of actions to the answer area and arrange them in the correct order.

Select and Place:

Buy Now

Correct Answer:

1.

Delete VPN GW1.

2.

Set the subnet mask of Gateway Subnet to /27.

3.

Create a VPN gateway by using the VPN GW1 SKU.

https://learn.microsoft.com/en-us/azure/expressroute/how-to-configure-coexisting-gateway-portal

"To configure coexisting connections for an already existing VNet:

1- Delete the existing ExpressRoute or Site-to-site VPN gateway.

2 - Delete and recreate the GatewaySubnet to have prefix of /27 or shorter.

3- Configure a VNet with a Site-to-Site connection and then Configure the ExpressRoute gateway.

4 - Once the ExpressRoute gateway is deployed, you can link the virtual network to the ExpressRoute circuit."

Exam Code: AZ-700
Exam Name: Designing and Implementing Microsoft Azure Networking Solutions
Last Update: Jun 12, 2025
Questions: 390

PDF (Q&A)

$45.99
ADD TO CART

VCE

$49.99
ADD TO CART

PDF + VCE

$59.99
ADD TO CART

Exam2Pass----The Most Reliable Exam Preparation Assistance

There are tens of thousands of certification exam dumps provided on the internet. And how to choose the most reliable one among them is the first problem one certification candidate should face. Exam2Pass provide a shot cut to pass the exam and get the certification. If you need help on any questions or any Exam2Pass exam PDF and VCE simulators, customer support team is ready to help at any time when required.

Home | Guarantee & Policy |  Privacy & Policy |  Terms & Conditions |  How to buy |  FAQs |  About Us |  Contact Us |  Demo |  Reviews

2025 Copyright @ exam2pass.com All trademarks are the property of their respective vendors. We are not associated with any of them.