2026 New AZ-700 Exam Dumps with PDF and VCE Free: https://www.2passeasy.com/dumps/AZ-700/

Want to know Passleader AZ-700 Exam practice test features? Want to lear more about Microsoft Designing and Implementing Microsoft Azure Networking Solutions certification experience? Study High value Microsoft AZ-700 answers to Improved AZ-700 questions at Passleader. Gat a success with an absolute guarantee to pass Microsoft AZ-700 (Designing and Implementing Microsoft Azure Networking Solutions) test on your first attempt.

Microsoft AZ-700 Free Dumps Questions Online, Read and Test Now.

NEW QUESTION 1

You have an Azure virtual network named Vnet1 that hosts an Azure firewall named FW1 and 150 virtual machines. Vnet1 is linked to a private DNS zone named contoso.com. All the virtual machines have their name registered in the contoso.com zone.
Vnet1 connects to an on-premises datacenter by using ExpressRoute.
You need to ensure that on-premises DNS servers can resolve the names in the contoso.com zone. Which two actions should you perform? Each correct answer presents part of the solution.
NOTE: Each correct selection is worth one point.

  • A. On the on-premises DNS servers, configure forwarders that point to the frontend IP address of FW1.
  • B. On the on-premises DNS servers, configure forwarders that point to the Azure provided DNS service at 168.63.129.16.
  • C. Modify the DNS server settings of Vnet1.
  • D. For FW1, enable DNS proxy.
  • E. For FW1, configure a custom DNS server.

Answer: AC

NEW QUESTION 2

Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution.
After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen.
You have an Azure application gateway that has Azure Web Application Firewall (WAF) enabled. You configure the application gateway to direct traffic to the URL of the application gateway.
You attempt to access the URL and receive an HTTP 403 error. You view the diagnostics log and discover the following error.
AZ-700 dumps exhibit
You need to ensure that the URL is accessible through the application gateway.
Solution: You create a WAF policy exclusion request headers that contain 137.135.10.24. Does this meet the goat?

  • A. Yes
  • B. No

Answer: B

NEW QUESTION 3

You need to implement name resolution for the cloud.liwareinc.com. The solution must meet the networking requirements.
What should you do? To answer, select the appropriate options in the answer area. NOTE: Each correct selection is worth one point.
AZ-700 dumps exhibit


Solution:
Graphical user interface, text, application Description automatically generated
Reference:
https://docs.microsoft.com/en-us/azure/dns/private-dns-autoregistration
https://docs.microsoft.com/en-us/azure/virtual-network/virtual-networks-name-resolution-for-vms-and-role-insta

Does this meet the goal?
  • A. Yes
  • B. Not Mastered

Answer: A

NEW QUESTION 4

You have the Azure Traffic Manager profiles shown in the following table.
AZ-700 dumps exhibit
You plan to add the endpoints shown in the following table.
AZ-700 dumps exhibit
Which endpoints can you add to Profile2?

  • A. Endpoint1 and Endpoint4 only
  • B. Endpoint1, Endpoint2, Endpoint3, and Endpoint4
  • C. Endpoint1 only
  • D. Endpoint2 and Endpoint3 only
  • E. Endpoint3 only

Answer: A

NEW QUESTION 5

You need to provide connectivity to storage1. The solution must meet the PaaS networking requirements and the business requirements.
What should you include in the solution?

  • A. a service endpoint
  • B. Azure Front Door
  • C. a private endpoint
  • D. Azure Traffic Manager

Answer: A

NEW QUESTION 6

You have an application named App1 that listens for incoming requests on a preconfigured group of 50 TCP ports and UDP ports.
You install App1 on 10 Azure virtual machines.
You need to implement load balancing for App1 across all the virtual machines. The solution must minimize the number of load balancing rules.
What should you include in the solution?

  • A. Azure Standard Load Balancer that has Floating IP enabled
  • B. Azure Application Gateway V2 that has multiple listeners
  • C. Azure Application Gateway v2 that has multiple site hosting enabled
  • D. Azure Standard Load Balancer that has high availability (HA) ports enabled

Answer: A

NEW QUESTION 7

You have the Azure resources shown in the following table.
AZ-700 dumps exhibit
You configure storage1 to provide access to the subnet in Vnet1 by using a service endpoint.
You need to ensure that you can use the service endpoint to connect to the read-only endpoint of storage1 in the paired Azure region.
What should you do first?

  • A. Configure the firewall settings for storage1.
  • B. Fail over storage1 to the paired Azure region.
  • C. Create a virtual network in the paired Azure region.
  • D. Create another service endpoint.

Answer: A

NEW QUESTION 8

You have five virtual machines that run Windows Server. Each virtual machine hosts a different web app. You plan to use an Azure application gateway to provide access to each web app by using a hostname of
www.contoso.corn and a different URL path for each web app, for example: https://www.contoso.com/app1.
You need to control the flow of traffic based on the URL path. What should you configure?

  • A. rules
  • B. rewrites
  • C. HTTP settings
  • D. listeners

Answer: A

Explanation:
Reference:
https://docs.microsoft.com/en-us/azure/application-gateway/url-route-overview

NEW QUESTION 9

You have an Azure subscription that contains the following resources:
AZ-700 dumps exhibit A virtual network named Vnet1
AZ-700 dumps exhibit Two subnets named subnet1 and AzureFirewallSubnet
AZ-700 dumps exhibit A public Azure Firewall named FW1
AZ-700 dumps exhibit A route table named RT1 that is associated to Subnet1
AZ-700 dumps exhibit A rule routing of 0.0.0.0/0 to FW1 in RT1
After deploying 10 servers that run Windows Server to Subnet1, you discover that none of the virtual machines were activated.
You need to ensure that the virtual machines can be activated. What should you do?

  • A. On FW1, create an outbound service tag rule for AzureCloud.
  • B. On FW1, create an outbound network rule that allows traffic to the Azure Key Management Service (KMS).
  • C. Deploy a NAT gateway.
  • D. To Subnetl, associate a network security group (NSG) that allows outbound access to port 1688.

Answer: B

Explanation:
Reference:
https://ryanmangansitblog.com/2020/05/11/firewall-considerations-windows-virtual-desktop-wvd/

NEW QUESTION 10

You have an Azure application gateway named AppGW1 that balances requests to a web app named App1. You need to modify the server variables in the response header of App1.
What should you configure on AppGW1?

  • A. HTTP settings
  • B. rewrites
  • C. rules
  • D. listeners

Answer: B

Explanation:
Reference:
https://docs.microsoft.com/en-us/azure/application-gateway/rewrite-http-headers-url

NEW QUESTION 11

You plan to publish a website that will use an FQDN of www.contoso.com. The website will be hosted by using the Azure App Service apps shown in the following table.
AZ-700 dumps exhibit
You plan to use Azure Traffic Manager to manage the routing of traffic for www.contoso.com between AS1 and AS2.
You need to ensure that Traffic Manager routes traffic for www.contoso.com. Which DNS record should you create?

  • A. two A records that map wmv.contoso.com to 131 107 100 1 and 131 107 200 1
  • B. a CNAME record that maps www.contoso.com to TMprofile1.azurefd.net
  • C. a CNAME record that mapswww.contoso.comtoTMprofile1.trafficmanager.net
  • D. a TXT record that contains a string ofas1.contoso.com and as2.contoso.com in the details

Answer: C

Explanation:
Reference:
https://docs.microsoft.com/en-us/azure/traffic-manager/quickstart-create-traffic-manager-profile https://docs.microsoft.com/en-us/azure/app-service/configure-domain-traffic-manager

NEW QUESTION 12

You create NSG10 and NSG11 to meet the network security requirements.
For each of the following statements, select Yes it the statement is true. Otherwise, select No. NOTE: Each correct selection is worth one point.
AZ-700 dumps exhibit


Solution:
Yes
subnet1(WM1->NSG1 outbound->NSG10 outbound)->subnet2(NSG1 inbound->NSG11 inbound->VM2) Yes
NSG10 blocks ICMP from VNet4 (source 10.10.0.0/16) but it is not blocked from VM2€™s subnet (VNet1/Subnet2).
No
NSG11 blocks RDP (port TCP 3389) destined for €˜VirtualNetwork€™. VirtualNetwork is a service tag and means the address space of the virtual network (VNet1) which in this case is 10.1.0.0/16. Therefore, RDP traffic from subnet2 to anywhere else in VNet1 is blocked.

Does this meet the goal?
  • A. Yes
  • B. Not Mastered

Answer: A

NEW QUESTION 13

You have an Azure virtual network named Vnet1 that contains two subnets named Subnet1 and Subnet2. You have the NAT gateway shown in the NATgateway1 exhibit.
AZ-700 dumps exhibit
You have the virtual machine shown in the VM1 exhibit.
AZ-700 dumps exhibit
Subnet1 is configured as shown in the Subnet1 exhibit.
AZ-700 dumps exhibit
For each of the following statements, select Yes of the statement is true. Otherwise, select No.
NOTE: Each correct selection is worth one point.
AZ-700 dumps exhibit


Solution:
Graphical user interface, text, application Description automatically generated
Box 1: No
VM1 is in Zone2 whereas the NAT Gateway is in Zone1. The VM would need to be in the same zone as the NAT Gateway to be able to use it. Therefore, VM1 cannot use the NAT gateway.
Box 2: Yes
NATgateway1 is configured in the settings for Subnet2. Box 3: No
The NAT gateway does not have a single public IP address, it has an IP prefix which means more than one IP address. The VMs the use the NAT Gateway can use different public IP addresses contained within the IP prefix.
Reference:
https://docs.microsoft.com/en-us/azure/virtual-network/nat-gateway/nat-gateway-resource

Does this meet the goal?
  • A. Yes
  • B. Not Mastered

Answer: A

NEW QUESTION 14

You have an Azure virtual network named Vnet1 and an on-premises network.
The on-premises network has policy-based VPN devices. In Vnet1, you deploy a virtual network gateway named GW1 that uses a SKU of VpnGw1 and is route-based.
You have a Site-to-Site VPN connection for GW1 as shown in the following exhibit.
AZ-700 dumps exhibit
You need to ensure that the on-premises network can connect to the route-based GW1. What should you do before you create the connection?

  • A. Set Use Azure Private IP Address to Enabled
  • B. Set IPsec / IKE policy to Custom.
  • C. Set Connection Mode to ResponderOnly
  • D. Set BGP to Enabled

Answer: A

NEW QUESTION 15

You have an Azure virtual network that contains the subnets shown in the following table.
AZ-700 dumps exhibit
You deploy an Azure firewall to AzureFirewallSubnet. You route all traffic from Subnet2 through the firewall. You need to ensure that all the hosts on Subnet2 can access an external site located at https://*.contoso.com. What should you do?

  • A. Create a network security group (NSG) and associate the NSG to Subnet2.
  • B. In a firewall policy, create an application rule.
  • C. In a firewall policy, create a DNAT rule.
  • D. In a firewall policy, create a network rule.

Answer: B

NEW QUESTION 16

Which virtual machines can VM1 and VM4 ping successfully? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.
AZ-700 dumps exhibit


Solution:
Text Description automatically generated
Box 1: VM2, VM3 and VM4.
VM1 is in VNet1/Subnet1. VNet1 is peered with VNet2 and VNet3.
There are no NSGs blocking outbound ICMP from VNet1. There are no NSGs blocking inbound ICMP to VNet1/Subnet2, VNet2 or VNet3. Therefore, VM1 can ping VM2 in VNet1/Subnet2, VM3 in VNet2 and VM4 in VNet3.
Box 2:
VM4 is in VNet3. VNet3 is peered with VNet1 and VNet2. There are no NSGs blocking outbound ICMP from VNet3. There are no NSGs blocking inbound ICMP to VNet1/Subnet1, VNet1/Subnet2 or VNet2 from VNet3 (NSG10 blocks inbound ICMP from VNet4 but not from VNet3). Therefore, VM4 can ping VM1 in VNet1/Subnet1, VM2 in VNet1/Subnet2 and VM3 in VNet2.

Does this meet the goal?
  • A. Yes
  • B. Not Mastered

Answer: A

NEW QUESTION 17

You have the Azure environment shown in the exhibit.
AZ-700 dumps exhibit
VM1 is a virtual machine that has an instance-level public IP address (ILPIP).
Basic Load Balancer uses a public IP address. VM1 and VM2 are in the backend pool. NAT Gateway uses a public IP address named IP3 that is associated to SubnetA. VNet1 has a virtual network gateway that has a public IP address named IP4.
When initiating outbound traffic to the internet from VM1, which public address is used?

  • A. IP1
  • B. IP2
  • C. IP3
  • D. IP4

Answer: A

NEW QUESTION 18
......

Recommend!! Get the Full AZ-700 dumps in VCE and PDF From Certshared, Welcome to Download: https://www.certshared.com/exam/AZ-700/ (New 105 Q&As Version)