Exam Details

  • Exam Code
    :AZ-700
  • Exam Name
    :Designing and Implementing Microsoft Azure Networking Solutions
  • Certification
    :Microsoft Certified: Azure Network Engineer Associate
  • Vendor
    :Microsoft
  • Total Questions
    :310 Q&As
  • Last Updated
    :May 08, 2024

Microsoft Microsoft Certified: Azure Network Engineer Associate AZ-700 Questions & Answers

  • Question 251:

    You need to archive all the metrics of VNET1 to an existing storage account.

    To complete this task, sign in to the Azure portal.

    A. See explanation below.

    B. Placeholder

    C. Placeholder

    D. Placeholder

  • Question 252:

    You plan to deploy 100 virtual machines to subnet-1. The virtual machines will NOT be assigned a public IP address. The virtual machines will call the same API which is hosted by a third party. The virtual machines will make more than 10,000 calls per minute to the API.

    You need to minimize the risk of SNAT port exhaustion. The solution must minimize administrative effort.

    To complete this task, sign in to the Azure portal.

    A. See explanation below.

    B. Placeholder

    C. Placeholder

    D. Placeholder

  • Question 253:

    You plan to deploy an appliance to subnet3-2. The appliance will perform packet inspection and will have an IP address of 10.3.2.100. You need to ensure that all traffic to the internet from subnet3-1 is forwarded to the appliance for inspection.

    To complete this task, sign in to the Azure portal.

    A. See explanation below.

    B. Placeholder

    C. Placeholder

    D. Placeholder

  • Question 254:

    You plan to use VNET4 for an Azure API Management implementation.

    You need to configure a policy that can be used by an Azure application gateway to protect against known web attack vectors. The policy must only allow requests that originate from IP addresses in Canada. You do NOT need to create the application gateway to complete this task.

    To complete this task, sign in to the Azure portal.

    A. See explanation below.

    B. Placeholder

    C. Placeholder

    D. Placeholder

  • Question 255:

    You plan to deploy several virtual machines to subnet1-2.

    You need to prevent all Azure hosts outside of subnet1-2 from connecting to TCP port 5585 on hosts on subnet1-2. The solution must minimize administrative effort.

    To complete this task, sign in to the Azure portal.

    A. See explanation below.

    B. Placeholder

    C. Placeholder

    D. Placeholder

  • Question 256:

    You need to ensure that only hosts on VNET1 can access the storage123456789 storage account. The solution must ensure that access occurs over the Azure backbone network.

    To complete this task, sign in to the Azure portal.

    A. See explanation below.

    B. Placeholder

    C. Placeholder

    D. Placeholder

  • Question 257:

    You are preparing to connect your on-premises network to VNET4 by using a Site-to-Site VPN. The on-premises endpoint of the VPN will be created on a firewall named Firewall1. The on-premises network has the following configuration:

    1.

    internal address range: 10.10.0.0/16

    2.

    Firewall1 internal IP address: 10.10.1.1

    3.

    Firewall public IP address: 131.107.50.60

    BGP is NOT used.

    You need to create the object that will provide the IP addressing configuration of the on-premises network to the Site-to-Site VPN. You do NOT need to create a virtual network gateway to complete this task.

    To complete this task, sign in to the Azure portal.

    A. See explanation below.

    B. Placeholder

    C. Placeholder

    D. Placeholder

  • Question 258:

    You need to ensure that hosts on VNET2 can access hosts on both VNET1 and VNET3. The solution must prevent hosts on VNET1 and VNET3 from communicating through VNET2.

    To complete this task, sign in to the Azure portal.

    A. See explanation below.

    B. Placeholder

    C. Placeholder

    D. Placeholder

  • Question 259:

    You need to configure GW1 to meet the network security requirements for the P2S VPN users. Which Tunnel type should you select in the Point-to-site configuration settings of GW1?

    A. IKEv2 and OpenVPN (SSL)

    B. IKEv2

    C. IKEv2 and SSTP (SSL)

    D. OpenVPN (SSL)

    E. SSTP (SSL)

  • Question 260:

    What should you implement to meet the virtual network requirements for the virtual machines that connect to Vnet4 and Vnet5?

    A. a private endpoint

    B. a routing table

    C. a service endpoint

    D. a private link service

    E. a virtual network peering

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only Microsoft exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your AZ-700 exam preparations and Microsoft certification application, do not hesitate to visit our Vcedump.com to find your solutions here.