Get Jun-2026 Dumps to Pass your AZ-700 Exam with 100% Real Questions and Answers [Q93-Q109]

Share

Get Jun-2026 Dumps to Pass your AZ-700 Exam with 100% Real Questions and Answers

Updated Exam AZ-700 Dumps with New Questions


To prepare for the Microsoft AZ-700 certification exam, candidates can take advantage of a variety of study resources, including online courses, practice tests, and study guides. Microsoft offers a range of official study materials, including online courses and certification prep guides, which can help candidates prepare for the exam. Additionally, there are many third-party study resources available that can help candidates prepare for the exam.


Microsoft AZ-700 exam covers a wide range of topics related to Azure networking solutions, such as designing and implementing Azure virtual networks, Azure load balancers, Azure VPN gateways, Azure ExpressRoute, and Azure Firewall. Candidates will also be tested on their ability to configure and manage Azure network security groups, Azure DNS, and Azure Traffic Manager. AZ-700 exam also covers advanced topics such as hybrid networking, network automation, and network monitoring and troubleshooting.


The AZ-700 exam covers a wide range of topics, including Azure virtual networks, network security groups, load balancing, and hybrid networking. It also includes advanced topics such as Azure ExpressRoute, Azure VPN Gateway, and Azure Firewall. AZ-700 exam is designed to test both theoretical knowledge and practical skills, which means that candidates must be familiar with the Azure portal and have hands-on experience with Azure networking.

 

NEW QUESTION # 93
You need to restrict traffic from VMScaleSet1 to VMScaleSet2. The solution must meet the virtual networking requirements.
What is the minimum number of custom NSG rules and NSG assignments required? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.

Answer:

Explanation:


NEW QUESTION # 94
You have two Azure subscriptions named Sub1 and Sub2 that contain the resources shown in the following table.

VNet1 and VNet2 are NOT connected.
You plan to create an Azure Private Link service named Link1 that will be used to connect VNet1 and VNet2. You need to ensure that Link1 meets the following requirements:
* Ensures that VM1 can connect only to a web app hosted on VM2
* Prevents VM1 from connecting to the other resources that are connected to VNet2 Which additional resources should you create for each virtual network? To answer, drag the appropriate resources to the correct virtual networks. Each resource may be used once, more than once, or not at all. You may need to drag the split bar between panes or scroll to view content.
NOTE: Each correct selection is worth one point.

Answer:

Explanation:


NEW QUESTION # 95
You have an Azure virtual network named Vnet1.
You need to ensure that the virtual machines in Vnet1 can access only the Azure SQL resources in the East US Azure region. The virtual machines must be prevented from accessing any Azure Storage resources.
Which two outbound network security group (NSG) rules should you create? Each correct answer presents part of the solution.
NOTE: Each correct selection is worth one point.

  • A. an allow rule that has the IP address range of Vnet1 as the source and destination of Sql.EastUS
  • B. a deny rule that has the IP address range of Vnet1 as the source and destination of Storage
  • C. a deny rule that has a source of VirtualNetwork and a destination of Sql
  • D. a deny rule that has a source of VirtualNetwork and a destination of 168.63.129.0/24

Answer: A,B

Explanation:
Reference:
https://docs.microsoft.com/en-us/azure/virtual-network/service-tags-overview


NEW QUESTION # 96
You have an on-premises datacenter named Site1 that contains a firewall named FW1. FW1 connects to the internet.
You have an Azure subscription that contains the resources shown in the following table.

You plan to connect Site1 to Hub1 by using a site-to-site connection.
You need to configure the site-to-site connection to FW1.
What should you create in VWAN1?

  • A. a virtual network connection
  • B. a network virtual appliance (NVA)
  • C. a User VPN configuration
  • D. a VPN site

Answer: D


NEW QUESTION # 97
You have an Azure subscription that contains an instance of Azure Firewall Standard named AzFW1. You plan to enable the following:
* TLS inspection
* Threat intelligence
* A network intrusion detection and prevention system (IDPS)
What can you enable by using AzFW1?

  • A. threat intelligence and the IDPS only
  • B. TLS inspection, threat intelligence, and the IDPS
  • C. TLS inspection and the IDPS only
  • D. TLS inspection only
  • E. threat intelligence only

Answer: B


NEW QUESTION # 98
You have the Azure subscriptions shown in the following table.

Each virtual network contains 20 internet-accessible resources that are assigned public IP addresses.
You need to implement Azure DDoS Network Protection to protect the resources. The solution must minimize costs.
What is the minimum number of DDoS Network Protection plans you should deploy?

  • A. 0
  • B. 1
  • C. 2
  • D. 3

Answer: C


NEW QUESTION # 99
You have an Azure virtual network named Vnet1 and an on-premises network.
The on-premises network has policy-based VPN devices. In Vnet1, you deploy a virtual network gateway named GW1 that uses a SKU of VpnGw1 and is route-based.
You have a Site-to-Site VPN connection for GW1 as shown in the following exhibit.

You need to ensure that the on-premises network can connect to the route-based GW1. What should you do before you create the connection?

  • A. Set Connection Mode to ResponderOnly
  • B. Set IPsec / IKE policy to Custom.
  • C. Set BGP to Enabled
  • D. Set Use Azure Private IP Address to Enabled

Answer: D


NEW QUESTION # 100
You have an Azure subscription that contains an app named Appl. App1 is hosted on the Azure App Service instances shown in the following table.

You need to implement Azure Traffic Manager to meet the following requirements:
* App1 traffic must be assigned equally to each App Service instance in each Azure region.
* App1 traffic from North Europe must be routed to the Appl instances in the North Europe region.
* App1 traffic from North America must be routed to the Appl instances in the East US Azure region.

Answer:

Explanation:

Explanation:


NEW QUESTION # 101
You have an Azure virtual network named Vnet1 that contains two subnets named Subnet1 and Subnet2.
You have the NAT gateway shown in the NATgateway1 exhibit.

You have the virtual machine shown in the VM1 exhibit.

Subnet1 is configured as shown in the Subnet1 exhibit.

For each of the following statements, select Yes of the statement is true. Otherwise, select No.
NOTE: Each correct selection is worth one point.

Answer:

Explanation:

Reference:
https://docs.microsoft.com/en-us/azure/virtual-network/nat-gateway/nat-gateway-resource


NEW QUESTION # 102
You have on-premises datacenters in New York and Seattle.
You have an Azure subscription that contains the ExpressRoute circuits shown in the following table.
Name
Azure region
Datacenter
ERC1
East US
New Vork
ERC2
West US2
Seattle
You need to ensure that all the data sent between the datacenters is routed via the ExoressRoute circuits. The solution must minimize costs.

Answer:

Explanation:


NEW QUESTION # 103
You need to implement name resolution for the cloud.liwareinc.com. The solution must meet the networking requirements.
What should you do? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.

Answer:

Explanation:

Reference:
https://docs.microsoft.com/en-us/azure/dns/private-dns-autoregistration
https://docs.microsoft.com/en-us/azure/virtual-network/virtual-networks-name-resolution-for-vms-and-role-instances


NEW QUESTION # 104
Hotspot Question
You have an Azure subscription that contains the resources shown in the following table.

You plan to deploy an app named App1 to meet the following requirements:
- External users must be able to access App1 from the internet.
- App1 will be load balanced across all the virtual machines.
- App1 will be hosted on VM1, VM2, VM3, and VM4.
- App1 must be available if an Azure region fails.
- Costs must be minimized.
You need to implement a global load balancer solution for App1.
What should you configure? To answer, select the appropriate options in the answer area.
NOTE: Each correct answer is worth one point.

Answer:

Explanation:


NEW QUESTION # 105
You have an Azure virtual network named Vnet1.
You need to ensure that the virtual machines in Vnet1 can access only the Azure SQL resources in the East US Azure region. The virtual machines must be prevented from accessing any Azure Storage resources.
Which two outbound network security group (NSG) rules should you create? Each correct answer presents part of the solution.
NOTE: Each correct selection is worth one point

  • A. an allow rule that has a source of IP address range of Vnet1 and destination of Sql.EastUS service tag
  • B. a deny rule that has a source of IP address range of Vnet1 and destination of Storage service tag.
  • C. a deny rule that has a source of VirtualNetwork service tag and a destination of 168.63.129.0/24 IP Addresses
  • D. a deny rule that has a source of Virtual Network service tag and a destination of Sql service tag

Answer: A,B


NEW QUESTION # 106
You have an Azure subscription that contains a virtual network named VNet1. VNet1 contains the resources shown in the following table.

You need to publish App1 by using AG1 and a URL of https://app1.contoso.com. The solution must meet the following requirements:
* TLS connections must terminate on AG1.
* Minimize the number of targets in the backend pool of AG1.
* Minimize the number of deployed copies of the SSL certificate of App1.
How many locations should you import to the certificate, and how many targets should you add to the backend pool of AG1? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.

Answer:

Explanation:


NEW QUESTION # 107
In which NSGs can you use ASG1 and to which virtual machine network interfaces can you associate ASG1?
To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.

Answer:

Explanation:

Explanation
NGS1 only
VM2, VM3, VM4 and VM5


NEW QUESTION # 108
You are planning an Azure solution that will contain the following types of resources in a single Azure region:
* Virtual machine
* Azure App Service
* Virtual Network gateway
* Azure SQL Managed Instance
App Service and SQL Managed Instance will be delegated to create resources in virtual networks.
You need to identify how many virtual networks and subnets are required for the solution. The solution must minimize costs to transfer data between virtual networks.
What should you identify? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.

Answer:

Explanation:

Explanation:

Reference:
https://docs.microsoft.com/en-us/azure/virtual-network/virtual-network-for-azure-services#services-that-can- be-deployed-into-a-virtual-network


NEW QUESTION # 109
......

100% Pass Guarantee for AZ-700 Exam Dumps with Actual Exam Questions: https://braindumps2go.actualpdf.com/AZ-700-real-questions.html