You need to configure a security rule for APPGW1-NSG1. The solution must support the planned changes.
Which service tag should you use?
A. AzureFrontDoor.FirstPartyHOTSPOT
You have an on premises web server that hosts a web app named App1 and has the following configurations:
1. IP address 131.107.50.60
2. FQDN server1.contoso.com
You have an Azure subscription.
You need to publish App1 by using Azure Front Door. The solution must meet the following requirements:
1. Ensure that internet users can connect to App1 by using an FQDN of appl.contoso.com.
2. Minimize the changes required to the configuration of Front Door if Server 1 is migrated to Azure.
What should you include in the solution? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.

You have the Azure load balancer shown in the Load Balancer exhibit.

LB2 has the backend pools shown in the Backend Pools exhibit.

You need to ensure that LB2 distributes traffic to all the members of VMSS1.
Which two actions should you perform? Each correct answer presents part of the solution.
NOTE: Each correct selection is worth one point.
A. Add a network interface to VMSS1.SIMULATION

Username and password
Use the following login credentials as needed:
To enter your username, place your cursor in the Sign in box and click on the username below.
To enter your password, place your cursor in the Enter password box and click on the password below.
Azure Username: [email protected] Azure Password: xxxxxxxxxx
If the Azure portal does not load successfully in the browser, press CTRL-K to reload the portal in a new browser tab.
The following information is for technical support purposes only:
Lab Instance: 12345678
You plan to deploy 100 virtual machines to subnet-1. The virtual machines will NOT be assigned a public IP address. The virtual machines will call the same API which is hosted by a third party. The virtual machines will make more than 10,000 calls per minute to the API.
You need to minimize the risk of SNAT port exhaustion. The solution must minimize administrative effort.
To complete this task, sign in to the Azure portal.
A. See explanation below.You have an Azure Front Door instance named FD1 that is protected by using Azure Web Application Firewall (WAF).
FD1 uses a frontend host named app1.contoso.com to provide access to Azure web apps hosted in the East US Azure region and the West US Azure region.
You need to configure FD1 to block requests to app1.contoso.com from all countries other than the United States.
What should you include in the WAF policy?
A. a frontend host associationHOTSPOT
You have an Azure subscription that contains the resources shown in the following table.

You need to ensure that remote users can establish RDP connections to the virtual machines by using Bastion1.
How should you configure the rules for NSG1 for traffic from the internet to AzureBastionSubnet and for traffic from AzureBastionSubnet to Subnet1? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.

You have an Azure virtual network and an on-premises datacenter.
You are planning a Site-to-Site VPN connection between the datacenter and the virtual network.
Which two resources should you include in your plan? Each correct answer presents part of the solution.
NOTE: Each correct selection is worth one point.
A. a user-defined routeHOTSPOT
You have an Azure virtual network and an on-premises datacenter that connect by using a Site-to-Site
VPN tunnel.
You need to ensure that all traffic from the virtual network to the internet is routed through the datacenter.
How should you complete the PowerShell script to configure forced tunneling? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.

You have an Azure subscription that contains two virtual networks named VritualNetwork1 and VritualNetwork2.
You have a Windows 10 device that connects to VritualNetwork1 by using a Point-to-Site (P2S) IKEv2 VPN. You have implemented virtual network peering between VritualNetwork1 and VritualNetwork2.
VritualNetwork1 allows gateway transit. VritualNetwork2 can use the remote gateway. You discover that you cannot communicate with VritualNetwork2 from Windows 10 device. You need to ensure that you can communicate with VritualNetwork2 from Windows 10 device.
To achieve the requirement, you reset the gateway of VritualNetwork1.
Did you achieve the requirement?
A. YesHOTSPOT
You have an Azure subscription that contains two virtual machines.
You monitor traffic between the virtual machines by using NSG flow logs.
You have a network security group (NSG) flow log that has the following entries.
1493763938,185.170.185.105,10.2.0.4,35370,23,T,I,A,B,,,, 1493695838,185.170.185.105,10.2.0.4,35370,23,T,I,A,C,200,500,100,300 1493696138,185.170.185.105,10.2.0.4,35370,23,T,I,A,E,1000,6000,500,1200
You need to identify the following metrics from the log entries:
1. The total number of packets transferred between the virtual machines
2. The total amount of bytes transferred between the virtual machines.
What should you identify? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only Microsoft exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your AZ-700 exam preparations and Microsoft certification application, do not hesitate to visit our Vcedump.com to find your solutions here.