[Oct 22, 2021] New AZ-700 Exam Dumps with High Passing Rate [Q51-Q72]

Share

[Oct 22, 2021] New AZ-700 Exam Dumps with High Passing Rate

Get AZ-700 Braindumps & AZ-700 Real Exam Questions


Schedule exam

Languages: English

Retirement date: none

This exam measures your ability to design, implement, manage, secure, and monitor the following technical tasks: Hybrid Networking; Core Networking Infrastructure; Routing; Networks; and Private Access to Azure Services.


Exam AZ-700: Designing and Implementing Microsoft Azure Networking Solutions (beta)

Candidates for this exam should have subject matter expertise in planning, implementing, and maintaining Azure networking solutions, including hybrid networking, connectivity, routing, security, and private access to Azure services.

Candidates for this exam should also have expert Azure administration skills, in addition to extensive experience and knowledge of networking, hybrid connections, and network security.


Beta exams are not scored immediately because we are gathering data on the quality of the questions and the exam. Learn more about the value and importance of beta exams.

Part of the requirements for: Microsoft Certified: Azure Network Engineer Associate

Download exam skills outline


Microsoft AZ-700 Exam Syllabus Topics:

TopicDetails
Topic 1
  • Identify when to use policy-based VPN versus route-based VPN
  • Plan and configure certificate-based authentication
Topic 2
  • Design, implement, and manage a site-to-site VPN connection
  • Diagnose and resolve VPN gateway connectivity issues
Topic 3
  • Design and implement an Azure Virtual WAN architecture
  • Plan and configure subnetting for services, including VNet gateways, private endpoints
Topic 4
  • Design an Azure Virtual WAN architecture, including selecting SKUs and services
  • Connect a virtual network to an ExpressRoute circuit
Topic 5
  • Plan and configure Azure Active Directory (Azure AD) authentication
  • Design a site-to-site VPN connection for high availability
Topic 6
  • Choose between private peering only, Microsoft peering only, or both
  • Choose between provider and direct model (ExpressRoute Direct)
Topic 7
  • Configure VNet integration for dedicated platform as a service (PaaS) services
  • Design and implement Azure Private Link service and Azure Private Endpoint
Topic 8
  • Diagnose and resolve client-side and authentication issues
  • Design and implement Azure cross-region connectivity between multiple ExpressRoute
Topic 9
  • Create and configure an Azure Load Balancer (including cross-region)
  • Recommend Azure Application Gateway deployment options
Topic 10
  • Create and configure a virtual network gateway
  • Design, Implement, and Manage Hybrid Networking
Topic 11
  • Create a secure hub by deploying Azure Firewall inside an Azure Virtual WAN hub
  • Design and implement an Azure Load Balancer
Topic 12
  • Select an appropriate ExpressRoute SKU and tier
  • Select an appropriate virtual network (VNet) gateway SKU
Topic 13
  • Design and implement private IP addressing for VNets
  • Create explicit outbound rules for a load balancer

 

NEW QUESTION 51
You have an Azure subscription that contains two virtual networks named Vnet1 and Vnet2.
You register a public DNS zone named fabrikam.com. The zone is configured as shown in the Public DNS Zone exhibit.

You have a private DNS zone named fabrikam.com. The zone is configured as shown in the Private DNS Zone exhibit.

You have a virtual network link configured as shown in the Virtual Network Link exhibit.

For each of the following statements, select Yes if the statement is true. Otherwise, select No.
NOTE: Each correct selection is worth one point.

Answer:

Explanation:

 

NEW QUESTION 52
Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution.
After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen.
You have an Azure subscription that contains the following resources:
* A virtual network named Vnet1
* A subnet named Subnet1 in Vnet1
* A virtual machine named VM1 that connects to Subnet1
* Three storage accounts named storage1, storage2. and storage3
You need to ensure that VM1 can access storage1. VM1 must be prevented from accessing any other storage accounts.
Solution: You create a network security group (NSG). You configure a service tag for MicrosoftStorage and link the tag to Subnet1.
Does this meet the goal?

  • A. No
  • B. Yes

Answer: B

 

NEW QUESTION 53
You plan to deploy an Azure virtual network.
You need to design the subnets.
Which three types of resources require a dedicated subnet? Each correct answer presents a complete solution.
NOTE: Each correct selection is worth one point.

  • A. Azure Active Directory Domain Services (Azure AD DS)
  • B. Azure Application Gateway v2
  • C. Azure Bastion
  • D. Azure Private Link
  • E. VPN gateway

Answer: A,B,D

 

NEW QUESTION 54
You have an Azure Front Door instance named FD1 that is protected by using Azure Web Application Firewall (WAF).
FD1 uses a frontend host named app1.contoso.com to provide access to Azure web apps hosted in the East US Azure region and the West US Azure region.
You need to configure FD1 to block requests to app1.contoso.com from all countries other than the United States.
What should you include in the WAF policy?

  • A. a custom rule that uses a rate limit rule
  • B. a managed rule set
  • C. a frontend host association
  • D. a custom rule that uses a match rule

Answer: A

 

NEW QUESTION 55
You have the hybrid network shown in the Network Diagram exhibit.

You have a peering connection between Vnet1 and Vnet2 as shown in the Peering-Vnet1-Vnet2 exhibit.

You have a peering connection between Vnet1 and Vnet3 as shown in the Peering -Vnet1-Vnet3 exhibit.

For each of the following statements, select Yes if the statement is true. Otherwise, select No.
NOTE: Each correct selection is worth one point.

Answer:

Explanation:

 

NEW QUESTION 56
What should you implement to meet the virtual network requirements for the virtual machines that connect to Vnet4 and Vnet5?

  • A. a private link service
  • B. a service endpoint
  • C. a virtual network peering
  • D. a private endpoint
  • E. a routing table

Answer: C

Explanation:
Explanation
There is no virtual network peering between VM4's VNet (VNet3) and VM5's VNet (VNet4). To enable the VMs to communicate over the Microsoft backbone network a VNet peering is required between VNet3 and VNet4.

 

NEW QUESTION 57
Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution.
After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen.
You have an Azure application gateway that has Azure Web Application Firewall (WAF) enabled.
You configure the application gateway to direct traffic to the URL of the application gateway.
You attempt to access the URL and receive an HTTP 403 error. You view the diagnostics log and discover the following error.

You need to ensure that the URL is accessible through the application gateway.
Solution: You configure a custom cookie and an exclusion rule.
Does this meet the goal?

  • A. No
  • B. Yes

Answer: B

 

NEW QUESTION 58
You configure a route table named RT1 that has the routes shown in the following table.

You have an Azure virtual network named Vnet1 that has the subnets shown in the following table.

You have the resources shown in the following table.

Vnet1 connects to an ExpressRoute circuit. The on-premises router advertises the following routes:
* 0.0.0.0/0
* 10.0.0.0/16
For each of the following statements, select Yes if the statement is true. Otherwise, select No. NOTE: Each correct selection is worth one point.

Answer:

Explanation:

 

NEW QUESTION 59
You have the Azure environment shown in the exhibit.

You have virtual network peering between Vnet1 and Vnet2. You have virtual network peering between Vnet4 and Vnet5. The virtual network peering is configured as shown in the following table.

For each of the following statements, select Yes if the statement is true. Otherwise, select No.
NOTE: Each correct selection is worth one point.

Answer:

Explanation:

 

NEW QUESTION 60
You have an Azure subscription that is linked to an Azure Active Directory (Azure AD) tenant named contoso.onmicrosoft.com. The subscription contains the following resources:
* An Azure App Service app named App1
* An Azure DNS zone named contoso.com
* An Azure private DNS zone named private.contoso.com
* A virtual network named Vnet1
You create a private endpoint for App1. The record for the endpoint is registered automatically in Azure DNS.
You need to provide a developer with the name that is registered in Azure DNS for the private endpoint.
What should you provide?

  • A. app1.contoso.onmicrosoft.com
  • B. app1.private.contoso.com
  • C. app1.privatelink.azurewebsites.net
  • D. app1.contoso.com

Answer: C

 

NEW QUESTION 61
You have two Azure virtual networks named Hub1 and Spoke1. Hub1 connects to an on-premises network by using a Site-to-Site VPN connection.
You are implementing peering between Hub1 and Spoke1.
You need to ensure that a virtual machine connected to Spoke1 can connect to the on-premises network through Hub1.
How should you complete the PowerShell script? To answer, drag the appropriate values to the correct targets.
Each value may be used once, more than once, or not at all. You may need to drag the split bar between panes or scroll to view content.
NOTE: Each correct selection is worth one point.

Answer:

Explanation:

Explanation
Graphical user interface, text, application Description automatically generated

Reference:
https://docs.microsoft.com/en-us/azure/architecture/reference-architectures/hybrid-networking/hub-spoke?tabs=c

 

NEW QUESTION 62
Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution.
After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen.
You have two Azure virtual networks named Vnet1 and Vnet2.
You have a Windows 10 device named Client1 that connects to Vnet1 by using a Point-to-Site (P2S) IKEv2 VPN.
You implement virtual network peering between Vnet1 and Vnet2. Vnet1 allows gateway transit. Vnet2 can use the remote gateway.
You discover that Client1 cannot communicate with Vnet2.
You need to ensure that Client1 can communicate with Vnet2.
Solution: You download and reinstall the VPN client configuration.
Does this meet the goal?

  • A. No
  • B. Yes

Answer: B

Explanation:
Explanation
The VPN client must be downloaded again if any changes are made to VNet peering or the network topology.
Reference:
https://docs.microsoft.com/en-us/azure/vpn-gateway/vpn-gateway-about-point-to-site-routing

 

NEW QUESTION 63
You need to meet the network security requirements for the NSG flow logs.
Which type of resource do you need, and how many instances should you create? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.

Answer:

Explanation:

 

NEW QUESTION 64
You have an Azure Web Application Firewall (WAF) policy in prevention mode that is associated to an Azure Front Door instance.
You need to configure the policy to meet the following requirements:
* Log all connections from Australia.
* Deny all connections from New Zealand.
* Deny all further connections from a network of 131.107.100.0/24 if there are more than 100 connections during one minute.
What is the minimum number of objects you should create?

  • A. three custom rules that each has one condition
  • B. one rule that has two conditions and another rule that has one condition
  • C. one custom rule that has one condition
  • D. one custom rule that has three conditions

Answer: A

Explanation:
Reference:
https://docs.microsoft.com/en-us/azure/web-application-firewall/afds/afds-overview

 

NEW QUESTION 65
You have an Azure Traffic Manager parent profile named TM1. TM1 has two child profiles named TM2 and TM3.
TM1 uses the performance traffic-routing method and has the endpoints shown in the following table.

TM2 uses the weighted traffic-routing method with MinChildEndpoint = 2 and has the endpoints shown in the following table.

TM3 uses priority traffic-routing method and has the endpoints shown in the following table.

The App2, App4, and App6 endpoints have a degraded monitoring status.
To which endpoint is traffic directed? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point

Answer:

Explanation:

Explanation
Diagram Description automatically generated

Reference:
https://docs.microsoft.com/en-us/azure/traffic-manager/traffic-manager-nested-profiles

 

NEW QUESTION 66
You have the Azure Traffic Manager profiles shown in the following table.

You plan to add the endpoints shown in the following table.

Which endpoints can you add to Profile2?

  • A. Endpoint1 and Endpoint4 only
  • B. Endpoint3 only
  • C. Endpoint1 only
  • D. Endpoint2 and Endpoint3 only
  • E. Endpoint1, Endpoint2, Endpoint3, and Endpoint4

Answer: A

 

NEW QUESTION 67
You have the Azure environment shown in the exhibit.

VM1 is a virtual machine that has an instance-level public IP address (ILPIP).
Basic Load Balancer uses a public IP address. VM1 and VM2 are in the backend pool.
NAT Gateway uses a public IP address named IP3 that is associated to SubnetA.
VNet1 has a virtual network gateway that has a public IP address named IP4.
When initiating outbound traffic to the internet from VM1, which public address is used?

  • A. IP3
  • B. IP1
  • C. IP2
  • D. IP4

Answer: B

 

NEW QUESTION 68
You need to configure GW1 to meet the network security requirements for the P2S VPN users.
Which Tunnel type should you select in the Point-to-site configuration settings of GW1?

  • A. IKEv2 and SSTP (SSL)
  • B. IKEv2
  • C. SSTP (SSL)
  • D. OpenVPN (SSL)

Answer: C

Explanation:
Reference:
https://docs.microsoft.com/en-us/azure/vpn-gateway/openvpn-azure-ad-tenant

 

NEW QUESTION 69
You are configuring two network virtual appliances (NVAs) in an Azure virtual network. The NVAs will be used to inspect all the traffic within the virtual network.
You need to provide high availability for the NVAs. The solution must minimize administrative effort. What should you include in the solution?

  • A. Azure Standard Load Balancer
  • B. Azure Traffic Manager
  • C. Azure Front Door
  • D. Azure Application Gateway

Answer: A

Explanation:
Reference:
https://docs.microsoft.com/en-us/azure/architecture/reference-architectures/dmz/nva-ha?tabs=cli

 

NEW QUESTION 70
You are planning an Azure Point-to-Site (P2S) VPN that will use OpenVPN.
Users will authenticate by using an on premises Active Directory domain.
Which additional service should you deploy to support the VPN authentication?

  • A. a certification authority (CA)
  • B. a RADIUS server
  • C. an Azure key vault
  • D. Azure Active Directory (Azure AD) Application Proxy

Answer: B

Explanation:
Reference:
https://docs.microsoft.com/en-us/azure/vpn-gateway/point-to-site-about

 

NEW QUESTION 71
You have an application named App1 that listens for incoming requests on a preconfigured group of 50 TCP ports and UDP ports.
You install App1 on 10 Azure virtual machines.
You need to implement load balancing for App1 across all the virtual machines. The solution must minimize the number of load balancing rules.
What should you include in the solution?

  • A. Azure Standard Load Balancer that has high availability (HA) ports enabled
  • B. Azure Application Gateway V2 that has multiple listeners
  • C. Azure Application Gateway v2 that has multiple site hosting enabled
  • D. Azure Standard Load Balancer that has Floating IP enabled

Answer: D

 

NEW QUESTION 72
......

AZ-700 Dumps To Pass Microsoft Exam in 24 Hours - ITexamReview: https://www.itexamreview.com/AZ-700-exam-dumps.html

Microsoft AZ-700 Actual Questions and Braindumps: https://drive.google.com/open?id=1agW1jdUHMXp2EwCtrALJ7mDJ041uwM6j