ExamGecko
Home Home / Microsoft / AZ-700

Microsoft AZ-700 Practice Test - Questions Answers, Page 11

Question list
Search
Search

List of questions

Search

Related questions












You have an Azure subscription that is linked to an Azure AD tenant named contoso.onmicrosoft.com. The subscription contains the following resources:

• A virtual network named Vnet1

• An App Service plan named ASPI

• An Azure App Service named webapp1

• An Azure private DNS zone named private.contoso.com

• Virtual machines on Vnet1 that cannot communicate outside the virtual network

You need to ensure that the virtual machines on Vnet1 can access webapp1 by using a URL of https:/Avwwprivate.contosocom. Which two actions should you perform? Each correct answer presents part of the solution.

NOTE: Each correct selection is worth one point.

A.
Create a private endpoint for webapp1.
A.
Create a private endpoint for webapp1.
Answers
B.
Create a service endpoint for webapp1.
B.
Create a service endpoint for webapp1.
Answers
C.
Create a CNAME record that maps www.pnvate.contoso.com to webapp1.privatelink.azurewebsites.net.
C.
Create a CNAME record that maps www.pnvate.contoso.com to webapp1.privatelink.azurewebsites.net.
Answers
D.
Create a CNAME record that maps wwwprivatemntoso.com to webapp1.contoso.onmicrosoft.com.
D.
Create a CNAME record that maps wwwprivatemntoso.com to webapp1.contoso.onmicrosoft.com.
Answers
E.
Register an enterprise application in Azure AD for webapp1.
E.
Register an enterprise application in Azure AD for webapp1.
Answers
F.
Create a CNAME record that maps wow.private.contoso.com to webapp 1 [email protected].
F.
Create a CNAME record that maps wow.private.contoso.com to webapp 1 [email protected].
Answers
Suggested answer: A, D

You have an Azure subscription that contains the resources is shown in the following table.

You need to ensure that the apps hosted on VM1 can resolve the IP address of the What should you create first?

A.
a public DNS zone named database.windows.net
A.
a public DNS zone named database.windows.net
Answers
B.
a private DNS zone named database.windows.net
B.
a private DNS zone named database.windows.net
Answers
C.
a public DNS zone named private ink.database.windows.net
C.
a public DNS zone named private ink.database.windows.net
Answers
D.
a private DNS zone named privatelink.database.windows.net
D.
a private DNS zone named privatelink.database.windows.net
Answers
Suggested answer: C

You have an Azure subscription that contains the resources shown in the following table.

Gateway1 provides access to App1 by using a URL of http://app1.contoso.com.

You create a new web app named App2.

You need to configure Gateway1 to enable minimize administrative effort.

What should you configure on Gateway1?

A.
a backend pool and a routing
A.
a backend pool and a routing
Answers
B.
a listener and a routing rule
B.
a listener and a routing rule
Answers
C.
a listener, a backend pool, and a rule
C.
a listener, a backend pool, and a rule
Answers
D.
a listener and a backend pool
D.
a listener and a backend pool
Answers
Suggested answer: B

HOTSPOT

You have an Azure application gateway named AppGw1.

You need to create a rewrite rule for AppGw1. The solution must rewrite the URL of requests from https://www.contoso.com/fashion/shirts to ttps://www.contoso.com/buy.aspx?categoryfashion&product=shirts. How should you complete the rule? To answer NOTE: Each correct selection is worth one point appropriate options in the answer area.


Question 104
Correct answer: Question 104

HOTSPOT

You have an Azure subscription that contains the virtual machines shown in the following table.

VNet1 and VNet2 are NOT connected to each other.

You need to block traffic from SQL Server 2019 to IIS by using application security groups. The solution must minimize administrative effort. How should you configure the application security groups? To answer, select the appropriate options in the answer area. NOTE: Each correct selection is worth one point.


Question 105
Correct answer: Question 105

Explanation:

"All network interfaces assigned to an application security group have to exist in the same virtual network that the first network interface assigned to the application security group is in."

https://learn.microsoft.com/en-us/azure/virtual-network/application-security-groups

HOTSPOT

You have an Azure subscription that contains the virtual networks.shown in the following table.

You have a virtual machine named VM5 that has the following IP address configurations:

• IP address: 10.4.0.5

• Subnet mask:255.255.255.0

• Default gateway:10.4.0.1

• DNSserver:168.63.129.16

You have an Azure Private DNS zone named, fabrikam.com that contains the records shown in, the following table.

The virtual network links in the fabrikam.com DNS /one are configured as shown in the exhibit. (Click the Exhibit tab.) VMS fails to resolve the IP address for.appKfabrik3in.com.

For each of the following statements, select Yes if, the statement is true. Otherwise, select No.

NOTE: Each correct selection is worth one point.


Question 106
Correct answer: Question 106

You have two Azure virtual networks named Vnet1 and Vnet2.

You have a Windows 10 device named Client1 that connects to Vnet1 by using a Point-to-Site (P2S) IKEv2 VPN. You implement virtual network peering between Vnet1 and Vnet2. Vnet1 allows gateway transit Vnet2 can use the. You discover that Client1 cannot communicate with Vnet2.

You need to ensure that Client1 can communication with Vnet2.

Solution: You resize the gateway of Vnet1 to a larger SKU.

Does this meet the goal?

A.
Yes
A.
Yes
Answers
B.
No
B.
No
Answers
Suggested answer: B

You have an Azure Front Door instance named FD1 that is protected by using Azure Web Application Firewall (WAF). FD1 uses a frontend host named app1.contoso.com to provide access to Azure web apps hosted in the East US Azure region and the West US Azure region. You need to configure FD1 to block requests to app1.contoso.com from all countries other than the United States. What should you include in the WAF policy?

A.
a frontend host association
A.
a frontend host association
Answers
B.
a managed rule set
B.
a managed rule set
Answers
C.
a custom rule that uses a rate limit rule
C.
a custom rule that uses a rate limit rule
Answers
D.
a custom rule that uses a match rule
D.
a custom rule that uses a match rule
Answers
Suggested answer: D

Explanation:


You have an application named App1 that listens for incoming requests on a preconfigured group of 50 TCP ports and UDP ports. You install App1 on 10 Azure virtual machines.You need to implement load balancing for App1 across all the virtual machines. The solution must minimize the number of load balancing rules.What should you include in the solution?

A.
Azure Standard Load Balancer that has Floating IP enabled
A.
Azure Standard Load Balancer that has Floating IP enabled
Answers
B.
Azure Application Gateway V2 that has multiple listeners
B.
Azure Application Gateway V2 that has multiple listeners
Answers
C.
Azure Application Gateway v2 that has multiple site hosting enabled
C.
Azure Application Gateway v2 that has multiple site hosting enabled
Answers
D.
Azure Standard Load Balancer that has high availability (HA) ports enabled
D.
Azure Standard Load Balancer that has high availability (HA) ports enabled
Answers
Suggested answer: B

You have two Azure App Service instances that host the web apps shown the following table.

You deploy an Azure application gateway that has one public frontend IP address and two backend pools. You need to publish all the web apps to the application gateway. Requests must be routed based on the HTTP host headers. What is the minimum number of listeners and routing rules you should configure? To answer, select the appropriate options in the answer area. NOTE: Each correct selection is worth one point.

A.
1, 2
A.
1, 2
Answers
Suggested answer: A
Total 236 questions
Go to page: of 24