AZ-700 Dumps

AZ-700 Free Practice Test

Microsoft AZ-700: Designing and Implementing Microsoft Azure Networking Solutions

QUESTION 6

- (Topic 3)
Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution.
After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen.
You have an Azure application gateway that has Azure Web Application Firewall (WAF) enabled.
You configure the application gateway to direct traffic to the URL of the application gateway.
You attempt to access the URL and receive an HTTP 403 error. You view the diagnostics log and discover the following error.
AZ-700 dumps exhibit
You need to ensure that the URL is accessible through the application gateway. Solution: You configure a custom cookie and an exclusion rule.
Does this meet the goal?

Correct Answer: A

QUESTION 7

HOTSPOT - (Topic 3)
You have the network security groups (NSGs) shown in the following table.
AZ-700 dumps exhibit
In NSG1, you create inbound rules as shown in the following table.
AZ-700 dumps exhibit
You have the Azure virtual machines shown in the following table.
AZ-700 dumps exhibit
NSG2 has only the default rules configured.
For each of the following statements, select Yes if the statement is true. Otherwise, select No.
NOTE: Each correct selection is worth one point.
AZ-700 dumps exhibit
Solution:
NO, NO, YES
* 1. VM3 can connect to port 8080 on VM1 : false, UserRule_DenyVirtualNetworkInbound
* 2. VM1 and VM2 can connect on port 9090: false, UserRule_DenyVirtualNetworkInbound
* 3. VM1 can connect to VM3 on port 9090: true

Does this meet the goal?

Correct Answer: A

QUESTION 8

HOTSPOT - (Topic 3)
You have an Azure subscription that contains two virtual networks named Vnet1 and Vnet2.
You register a public DNS zone named fabrikam.com. The zone is configured as shown in the Public DNS Zone exhibit.
AZ-700 dumps exhibit
You have a private DNS zone named fabrikam.com. The zone is configured as shown in the Private DNS Zone exhibit.
AZ-700 dumps exhibit
You have a virtual network link configured as shown in the Virtual Network Link exhibit.
AZ-700 dumps exhibit
For each of the following statements, select Yes if the statement is true. Otherwise, select No.
NOTE: Each correct selection is worth one point.
AZ-700 dumps exhibit
Solution:
Box 1: Yes
DNS queries from the internet use the public DNS zone. In the public DNS zone, www.fabrikam.com is a CNAME record that resolves to appservice1.fabrikam.com which resolves to 131.107.1.1.
Box 2: No
DNS queries from the internet use the public DNS zone. There is no DNS record for server1.fabrikam.com in the public DNS zone.
Box 3: No
The private DNS zone is linked to VNet1, not VNet2. Therefore, resources in VNet2 cannot query the private DNS zone.

Does this meet the goal?

Correct Answer: A

QUESTION 9

HOTSPOT - (Topic 3)
You have an Azure load balancer that has the following configurations:
• Name:LB1
• Location: East US 2
• SKU: Standard
• Private IP address: 10.3.0.7
• Load balancing rule: rule! (Tcp/80)
• Health probe: probe1 (Http:80)
• NAT rules; 0 inbound
The backend pool of LB1 has the following configurations:
• Name: backend I
• Virtual network: Vnet1
• Backend pool configuration: NIC
• IP version: IPv4
• Virtual machines: VM1.VM2. VM3:
You have an Azure virtual machine named VM4 that has the following network configurations:
• Network interface: vm49Sl
• Virtual network/subnet: Vnet3/Subnet3
• NIC private IP address: 10.4.0.4
• Accelerated networking: Enabled
For each of the following statements, select Yes if the statement is true. Otherwise, select No.
NOTE: Each correct selection is worth one point.
AZ-700 dumps exhibit
Solution:
AZ-700 dumps exhibit

Does this meet the goal?

Correct Answer: A

QUESTION 10

HOTSPOT - (Topic 1)
You need to recommend a configuration for the ExpressRoute connection from the Boston datacenter. The solution must meet the hybrid networking requirements and business requirements.
What should you recommend? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.
AZ-700 dumps exhibit
Solution:
For the first question, only ExpressRoute GW SKU Ultra Performance support FastPath feature.
For the second question, vnet1 will connect to ExpressRoute gw, once Vnet1 peers with Vnet2, the traffic from on-premise network will bypass GW and Vnet1, directly goes to Vnet2, while this feature is under public preview.
====Reference
ExpressRoute virtual network gateway is designed to exchange network routes and route network traffic. FastPath is designed to improve the data path performance between your on-premises network and your virtual network. When enabled, FastPath sends network traffic directly to virtual machines in the virtual network, bypassing the gateway.
To configure FastPath, the virtual network gateway must be either: Ultra Performance
ErGw3AZ
VNet Peering - FastPath will send traffic directly to any VM deployed in a virtual network peered to the one connected to ExpressRoute, bypassing the ExpressRoute virtual network gateway.
https://docs.microsoft.com/en-us/azure/expressroute/about-fastpath Gateway SKU
https://docs.microsoft.com/en-us/azure/expressroute/expressroute-about-virtual-network- gateways

Does this meet the goal?

Correct Answer: A