Visit Official SkillCertPro Website :-
Microsoft Azure Network Engineer (AZ-700) Exam Dumps 2022
For a full set of 165+ questions. Go to
https://skillcertpro.com/product/microsoft-azure-network-engineer-az-700-exam-questions/
SkillCertPro offers detailed explanations to each question which helps to understand the concepts better.
It is recommended to score above 85% in SkillCertPro exams before attempting a real exam.
SkillCertPro updates exam questions every 2 weeks.
You will get life time access and life time free updates
SkillCertPro assures 100% pass guarantee in first attempt.
Question 1:
To route traffic to your Hub Virtual Network you need to……….. To route traffic to your Secured Virtual Hub you need to…….
A. configure UDR… enter the Secure Virtual Hub Route Settings page
B. enter the Secure Hub Virtual Network Route Settings page…. enter the Secure Virtual Hub Route Settings page
C. enter the Secure Virtual Hub Route Settings page…. enter the Secure Hub Virtual Network Route Settings page
D. enter the Secure Virtual Hub Route Settings page… configure UDR
Answer: A
Explanation:
“Deploying Azure Firewall Manager for Hub Virtual Networks: Configure User Defined Routes to route traffic to your Hub Virtual Network firewall. Deploying Azure Firewall Manager for Secured Virtual Hubs: Configure route settings to route traffic to your Secured Virtual Hub”
Question 2:
Keeping the CIA triad of information security in mind, what are the differences between Basic and Standard Public IP SKUs? (Choose two)
A. Basic SKU must be configured with a NSG to deny default inbound access
B. Both Standard and Basic SKU deny inbound traffic by default but only Standard SKU denies outbound traffic by default
C. Both Standard and Basic SKU provide support for AZ scenarios but only Standard SKU supports zonal AZ
D. Only Standard Public IP SKU supports different AZ
Answer: A, D
Explanation:
“you must use a Standard SKU public IP for an availability zone scenario.” “Basic IPs are open by default, so the use of Network security groups is recommended but optional for restricting inbound or outbound traffic.”
Question 3:
You wish to deploy a zone redundant Azure Load Balancer, which SKU is the right choice?
A. Basic Load Balancer
B. Neither. You need Azure Traffic Manager
C. Both Standard and Basic SKUs
D. Standard Load Balancer
Answer: D
Explanation:
Question 4:
Multi-site configuration in Application Gateway is useful where….
A. support for multi-tenant applications is required
B. support for zonal redundancy is required
C. support for WAF services are required
D. support for regional redundancy is required
Answer: A
Explanation:
“Multi-site configurations are useful for supporting multi-tenant applications, where each tenant has its own set of virtual machines or other resources hosting a web application.”
Question 5:
Which Azure service enables your customers to use Microsoft’s backbone to connect from their VNet to services in your VNet?
A. ExpressRoute peering
B. Azure Service Endpoint
C. ExpressRoute Private Link
D. Azure Private Link Service
Answer: D
Explanation:
“Azure Private Link service is the reference to your own service that is powered by Azure Private Link. Your service that is running behind Azure standard load balancer can be enabled for Private Link access so that consumers to your service can access it privately from their own VNets. Your customers can create a private endpoint inside their VNet and map it to this service. “
For a full set of 165+ questions. Go to
https://skillcertpro.com/product/microsoft-azure-network-engineer-az-700-exam-questions/
SkillCertPro offers detailed explanations to each question which helps to understand the concepts better.
It is recommended to score above 85% in SkillCertPro exams before attempting a real exam.
SkillCertPro updates exam questions every 2 weeks.
You will get life time access and life time free updates
SkillCertPro assures 100% pass guarantee in first attempt.
Question 6:
How can you delegate DNS domains to Azure DNS?
A. Create your DNS zone, then use the four Azure NS to update your registrar's NS records
B. Create your DNS zone, then use any four publicly available Azure NS to update your registrar's NS records
C. Create your DNS zone, then use your registrar's NS records to update any four publicly available Azure NS records
D. Create your DNS zone, then use your registrar's NS records to update the four Azure NS servers
Answer: A
Explanation:
“Once the DNS zone is created, and you have the name servers, you need to update the parent domain. Each registrar has their own DNS management tools to change the name server records for a domain. In the registrar’s DNS management page, edit the NS records and replace the NS records with the ones Azure DNS created.”
Question 7:
Select the correct statements: (Choose two)
A. Each VNet can link to up to 1000 private DNS Zones for name resolution
B. Each VNet can link to up to 1000 private DNS Zones for registration
C. Each VNet can link to one private DNS zone for name resolution
D. Each VNet can link to one private DNS zone for registration
Answer: A, D
Explanation:
“Registration: Each VNet can link to one private DNS zone for registration. However, up to 100 VNets can link to the same private DNS zone for registration. Resolution: There may be many other private DNS zones for different namespaces. You can link a VNet to each of those zones for name resolution. Each VNet can link to up to 1000 private DNS Zones for name resolution.”
Question 8:
Select the correct statement for Azure VPN Gateways.
A. In Active-Active configuration, the same IP address is dynamically reassigned to the active gateway
B. In Active-Standby configuration, each VPN instance has its own unique IP address
C. In Active-Active configuration, each gateway instance will have a unique IP address and shares the same IPSec/IKE S2S VPN tunnel to your on-premises VPN device
D. In Active-active connection each Azure VPN gateway instance has a unique public IP address
E. In Active-Active configuration, the VPN gateway instances share the same load-balanced IP address
Answer: D
Explanation:
“In this configuration, each Azure gateway instance will have a unique public IP address, and each will establish an IPsec/IKE S2S VPN tunnel to your on-premises VPN device specified in your local network gateway and connection”
Question 9:
True or False: Traffic Manager supports external, non-Azure endpoints enabling it to be used with hybrid cloud and on-premises deployments
A. FALSE
B. TRUE
Answer: B
Explanation:
“Traffic Manager supports external, non-Azure endpoints enabling it to be used with hybrid cloud and on-premises deployments”
Question 10:
What is Azure Private Link?
A. It enables you to access Azure PaaS Services and Azure hosted services over a private endpoint in your virtual network
B. It enables private IP addresses in the VNet to reach the endpoint of an Azure service without needing a public IP address on the VNet. Excludes on-prem access
C. It enables you to access Azure PaaS Services and Azure hosted services over a private peering across ExpressRoute
D. It enables IPSec encryption across an ExpressRoute Private Peer
Answer: A
Explanation:
“Azure Private Link enables you to access Azure PaaS Services (for example, Azure Storage and SQL Database) and Azure hosted customer-owned/partner services over a private endpoint in your virtual network.”
For a full set of 165+ questions. Go to
https://skillcertpro.com/product/microsoft-azure-network-engineer-az-700-exam-questions/
SkillCertPro offers detailed explanations to each question which helps to understand the concepts better.
It is recommended to score above 85% in SkillCertPro exams before attempting a real exam.
SkillCertPro updates exam questions every 2 weeks.
You will get life time access and life time free updates
SkillCertPro assures 100% pass guarantee in first attempt.