Winter Special Limited Time 65% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: bigdisc65

AZ-700 Exam Dumps - Microsoft Certified: Azure Network Engineer Associate Questions and Answers

Question # 4

Task 7

You plan to deploy 100 virtual machines to subnet4-1. The virtual machines will NOT be assigned a public IP address. The virtual machines will call the same API. which is hosted by a third party. The virtual machines will make more than 10,000 calls per minute to the API.

You need to minimize the risk of SNAT port exhaustion. The solution must minimize administrative effort.

Options:

Buy Now
Question # 5

You have an Azure subscription that contains an Azure Front Door Premium profile named AFD1 and an Azure Web Application Firewall (WAF) policy named WAF1. AFD1 is associated with WAF1.

You need to configure a rate limit for incoming requests to AFD1.

Solution: You add a rule to the rule set of AFD1.

Does this meet the goal?

Options:

A.

Yes

B.

No

Buy Now
Question # 6

Task 3

You plan to implement an Azure application gateway in the East US Azure region. The application gateway will have Web Application Firewall (WAF) enabled.

You need to create a policy that can be linked to the planned application gateway. The policy must block connections from IP addresses in the 131.107.150.0/24 range. You do NOT need to provision the application gateway to complete this task.

Options:

Buy Now
Question # 7

Task 9

You need to ensure that subnet4-3 can accommodate 507 hosts.

Options:

Buy Now
Question # 8

Task 6

You have two servers that are each hosted by a separate service provider in New York and Germany. The server hosted in New York is accessible by using a host name of ny.contoso.com. The server hosted in Germany is accessible by using a host name of de.contoso.com.

You need to provide a single host name to access both servers. The solution must ensure that traffic originating from Germany is routed to de contoso.com. All other traffic must be routed to ny.contoso.com.

Options:

Buy Now
Question # 9

Task 4

You need to ensure that the owner of VNET3 receives an alert if an administrative operation is performed on the virtual network.

Options:

Buy Now
Question # 10

You have an Azure subscription that contains a virtual machine named VM1 and a network security group (NSG) named NSG1. NSG1 has the default rules configured VM1 runs Windows Server and contains a single NIC named NIC1 NIC! is associated with NSG1.

You need to prevent access to the Azure Instance Metadata Service (IMDS) REST API on VM1 The solution must minimize administrative effort.

What should you add to NSG1?

Options:

A.

an outbound rule that blocks traffic to an IP address

B.

an outbound rule that blocks traffic to a service tag

C.

an inbound and outbound rule that blocks traffic to an application security group.

D.

an inbound rule that blocks traffic to an IP address

Buy Now
Question # 11

You have an Azure subscription that contains six Azure App Service apps. The apps have an identical configuration and are deployed across multiple Azure regions.

You plan to deploy Azure Front Door to load balance traffic across the apps.

You need to ensure that the round robin load-balancing algorithm will send traffic only to a limited number App Service apps based on their proximity to a user. The solution must minimize administrative effort.

What should you modify, and what should you configure? To answer, select the appropriate options in the answer area.

NOTE: Each correct selection is worth one point.

Options:

Buy Now
Question # 12

You have two Azure subscriptions.

You need to perform the following actions in the East US Azure region of each subscription:

• Deploy 50 virtual machines to availability zone 1.

• Deploy 50 virtual machines to availability zone 2.

• Deploy 50 virtual machines to availability zone 3.

What is the minimum number of virtual networks and /25 subnets you should create? To answer, select the appropriate options in the answer area.

NOTE: Each correct selection is worth one point.

Options:

Buy Now
Question # 13

You have an Azure virtual network named Vnet1 that hosts an Azure firewall named FW1 and 150 virtual machines. Vnet1 is linked to a private DNS zone named contoso.com. All the virtual machines have their name registered in the contoso.com zone.

Vnet1 connects to an on-premises datacenter by using ExpressRoute.

You need to ensure that on-premises DNS servers can resolve the names in the contoso.com zone.

Which two actions should you perform? Each correct answer presents part of the solution.

NOTE: Each correct selection is worth one point.

Options:

A.

On the on-premises DNS servers, configure forwarders that point to the frontend IP address of FW1.

B.

On the on-premises DNS servers, configure forwarders that point to the Azure provided DNS service at 168.63.129.16.

C.

Modify the DNS server settings of Vnet1.

D.

For FW1, enable DNS proxy.

E.

For FW1, configure a custom DNS server.

Buy Now
Exam Code: AZ-700
Exam Name: Designing and Implementing Microsoft Azure Networking Solutions
Last Update: Feb 5, 2025
Questions: 276
AZ-700 pdf

AZ-700 PDF

$33.25  $94.99
AZ-700 Engine

AZ-700 Testing Engine

$38.5  $109.99
AZ-700 PDF + Engine

AZ-700 PDF + Testing Engine

$50.75  $144.99