AZ-700 | Update Designing And Implementing Microsoft Azure Networking Solutions AZ-700 Actual Exam

Our pass rate is high to 98.9% and the similarity percentage between our AZ-700 study guide and real exam is 90% based on our seven-year educating experience. Do you want achievements in the Microsoft AZ-700 exam in just one try? I am currently studying for the Microsoft AZ-700 exam. Latest Microsoft AZ-700 Test exam practice questions and answers, Try Microsoft AZ-700 Brain Dumps First.

Online AZ-700 free questions and answers of New Version:

NEW QUESTION 1

You have a hybrid environment that uses ExpressRoute to connect an on-premises network and Azure.
You need to log the uptime and the latency of the connection periodically by using an Azure virtual machine and an on-premises virtual machine.
What should you use?

  • A. Azure Monitor
  • B. IP flow verify
  • C. Connection Monitor
  • D. Azure Internet Analyzer

Answer: C

Explanation:
Reference:
https://docs.microsoft.com/en-us/azure/network-watcher/connection-monitor

NEW QUESTION 2

You have the Azure environment shown In the Azure Environment exhibit. (Click the Azure Environment tab.) The settings for each subnet are shown in the following table.
AZ-700 dumps exhibit
The Firewalls and virtual networks settings for storage1 are configured as shown in the Storage1 exhibit. (Click the Storage1 tab.) For each of the following statements, select Yes if the statement is true. Otherwise, select No. NOTE: Each correct selection is worth one point.
AZ-700 dumps exhibit


Solution:
AZ-700 dumps exhibit

Does this meet the goal?
  • A. Yes
  • B. Not Mastered

Answer: A

NEW QUESTION 3

You have an Azure subscription that contains the following resources:
AZ-700 dumps exhibit A virtual network named Vnet1
AZ-700 dumps exhibit Two subnets named subnet1 and AzureFirewallSubnet
AZ-700 dumps exhibit A public Azure Firewall named FW1
AZ-700 dumps exhibit A route table named RT1 that is associated to Subnet1
AZ-700 dumps exhibit A rule routing of 0.0.0.0/0 to FW1 in RT1
After deploying 10 servers that run Windows Server to Subnet1, you discover that none of the virtual machines were activated.
You need to ensure that the virtual machines can be activated. What should you do?

  • A. On FW1, create an outbound service tag rule for AzureCloud.
  • B. On FW1, create an outbound network rule that allows traffic to the Azure Key Management Service (KMS).
  • C. Deploy a NAT gateway.
  • D. To Subnetl, associate a network security group (NSG) that allows outbound access to port 1688.

Answer: B

Explanation:
Reference:
https://ryanmangansitblog.com/2020/05/11/firewall-considerations-windows-virtual-desktop-wvd/

NEW QUESTION 4

Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution.
After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen.
You have two Azure virtual networks named Vnet1 and Vnet2.
You have a Windows 10 device named Client1 that connects to Vnet1 by using a Point-to-Site (P2S) IKEv2 VPN.
You implement virtual network peering between Vnet1 and Vnet2. Vnet1 allows gateway transit. Vnet2 can use the remote gateway.
You discover that Client1 cannot communicate with Vnet2. You need to ensure that Client1 can communicate with Vnet2. Solution: You enable BGP on the gateway of Vnet1.
Does this meet the goal?

  • A. Yes
  • B. No

Answer: B

Explanation:
The VPN client must be downloaded again if any changes are made to VNet peering or the network topology. Reference:
https://docs.microsoft.com/en-us/azure/vpn-gateway/vpn-gateway-about-point-to-site-routing

NEW QUESTION 5

You have an Azure environment shown in the following exhibit.
AZ-700 dumps exhibit
Use the drop-down menus to select the answer choice that completes each statement based on the information presented in the graphic.
NOTE: Each correct selection is worth one point.
AZ-700 dumps exhibit


Solution:
Graphical user interface, text, application Description automatically generated
Reference:
https://docs.microsoft.com/en-us/azure/vpn-gateway/vpn-gateway-peering-gateway-transit?toc=/azure/virtual-ne https://docs.microsoft.com/en-ca/azure/virtual-network/ip-services/ipv6-overview#capabilities

Does this meet the goal?
  • A. Yes
  • B. Not Mastered

Answer: A

NEW QUESTION 6

You need to connect Vnet2 and Vnet3. The solution must meet the virtual networking requirements and the business requirements.
Which two actions should you include in the solution? Each correct answer presents part of the solution.

  • A. On the peerings from Vnet2 and Vnet3, select Use remote gateways.
  • B. On the peering from Vnet1, select Allow forwarded traffic.
  • C. On the peering from Vnet1, select Use remote gateways.
  • D. On the peering from Vnet1, select Allow gateway transit.
  • E. On the peerings from Vnet2 and Vnet3, select Allow gateway transit.

Answer: BD

NEW QUESTION 7

You have an Azure subscription that contains two virtual networks named Vnet1 and Vnet2.
You register a public DNS zone named fabrikam.com. The zone is configured as shown in the Public DNS Zone exhibit.
AZ-700 dumps exhibit
You have a private DNS zone named fabrikam.com. The zone is configured as shown in the Private DNS Zone exhibit.
AZ-700 dumps exhibit
You have a virtual network link configured as shown in the Virtual Network Link exhibit.
AZ-700 dumps exhibit
For each of the following statements, select Yes if the statement is true. Otherwise, select No. NOTE: Each correct selection is worth one point.
AZ-700 dumps exhibit


Solution:
AZ-700 dumps exhibit

Does this meet the goal?
  • A. Yes
  • B. Not Mastered

Answer: A

NEW QUESTION 8

Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution.
After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen.
You have an Azure application gateway that has Azure Web Application Firewall (WAF) enabled. You configure the application gateway to direct traffic to the URL of the application gateway.
You attempt to access the URL and receive an HTTP 403 error. You view the diagnostics log and discover the following error.
AZ-700 dumps exhibit
You need to ensure that the URL is accessible through the application gateway. Solution: You disable the WAF rule that has a ruleld of 920300.
Does this meet the goal?

  • A. Yes
  • B. No

Answer: A

NEW QUESTION 9

You need to implement outbound connectivity for VMScaleSet1. The solution must meet the virtual networking requirements and the business requirements.
Which three actions should you perform in sequence? To answer, move the appropriate actions from the list of actions to the answer area and arrange them in the correct order.
AZ-700 dumps exhibit


Solution:
Graphical user interface, text, application Description automatically generated
Reference:
https://docs.microsoft.com/en-us/azure/load-balancer/skus
https://docs.microsoft.com/en-us/azure/load-balancer/load-balancer-outbound-connections#outboundrules

Does this meet the goal?
  • A. Yes
  • B. Not Mastered

Answer: A

NEW QUESTION 10

You have an Azure Virtual Desktop deployment that has 500 session hosts. All outbound traffic to the internet uses a NAT gateway.
During peak business hours, some users report that they cannot access internet resources. In Azure Monitor, you discover many failed SNAT connections.
You need to increase the available SNAT connections. What should you do?

  • A. Add a public IP address.
  • B. Bind the NAT gateway to another subnet.
  • C. Deploy Azure Standard Load Balancer that has outbound rules.

Answer: A

Explanation:
Reference:
https://docs.microsoft.com/en-us/azure/virtual-network/nat-gateway/nat-gateway-resource

NEW QUESTION 11

You have an Azure virtual network named Vnet1 and an on-premises network.
The on-premises network has policy-based VPN devices. In Vnet1, you deploy a virtual network gateway named GW1 that uses a SKU of VpnGw1 and is route-based.
You have a Site-to-Site VPN connection for GW1 as shown in the following exhibit.
AZ-700 dumps exhibit
You need to ensure that the on-premises network can connect to the route-based GW1. What should you do before you create the connection?

  • A. Set Use Azure Private IP Address to Enabled
  • B. Set IPsec / IKE policy to Custom.
  • C. Set Connection Mode to ResponderOnly
  • D. Set BGP to Enabled

Answer: A

NEW QUESTION 12

You have an Azure subscription.
You have the on-premises sites shown the following table.
AZ-700 dumps exhibit
You plan to deploy Azure Virtual WAN.
You are evaluating Virtual WAN Basic and Virtual WAN Standard.
Which type of Virtual WAN can you use for each site? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.
AZ-700 dumps exhibit


Solution:
AZ-700 dumps exhibit

Does this meet the goal?
  • A. Yes
  • B. Not Mastered

Answer: A

NEW QUESTION 13

Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution.
After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen.
You have an Azure application gateway that has Azure Web Application Firewall (WAF) enabled. You configure the application gateway to direct traffic to the URL of the application gateway.
You attempt to access the URL and receive an HTTP 403 error. You view the diagnostics log and discover the following error.
AZ-700 dumps exhibit
You need to ensure that the URL is accessible through the application gateway.
Solution: You create a WAF policy exclusion for request headers that contain 137.135.10.24. Does this meet the goal?

  • A. Yes
  • B. No

Answer: B

Explanation:
The parameter here should be RemoteAddr not Request header.
https://docs.microsoft.com/en-us/azure/web-application-firewall/ag/custom-waf-rules-overview#match-variable

NEW QUESTION 14

Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution.
After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen.
You have an Azure subscription that contains the following resources:
* A virtual network named Vnet1
* A subnet named Subnet1 in Vnet1
* A virtual machine named VM1 that connects to Subnet1
* Three storage accounts named storage1, storage2. and storage3
You need to ensure that VM1 can access storage1. VM1 must be prevented from accessing any other storage accounts.
Solution: You create a network security group (NSG). You configure a service tag for MicrosoftStorage and link the tag to Subnet1.
Does this meet the goal?

  • A. Yes
  • B. No

Answer: A

NEW QUESTION 15

Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution.
After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen.
You have an Azure subscription that contains the following resources:
* A virtual network named Vnet1
* A subnet named Subnet1 in Vnet1
* A virtual machine named VM1 that connects to Subnet1
* Three storage accounts named storage1, storage2, and storage3
You need to ensure that VM1 can access storage1. VM1 must be prevented from accessing any other storage accounts.
Solution: You configure the firewall on storage1 to only accept connections from Vnet1. Does this meet the goal?

  • A. Yes
  • B. No

Answer: B

NEW QUESTION 16

You have an Azure subscription that contains the virtual networks shown in the following table.
AZ-700 dumps exhibit
You plan to deploy an Azure firewall named AF1 to RG1 in the West US Azure region. To which virtual networks can you deploy AF1?

  • A. Vnet1 only
  • B. Vnet1 and Vnet2 only
  • C. Vnet1, Vnet2, and Vnet4 only
  • D. Vnet1 and Vnet4 only
  • E. Vnet1, Vnet2. Vnet3, and Vnet4

Answer: C

NEW QUESTION 17
......

P.S. DumpSolutions.com now are offering 100% pass ensure AZ-700 dumps! All AZ-700 exam questions have been updated with correct answers: https://www.dumpsolutions.com/AZ-700-dumps/ (105 New Questions)