Microsoft AZ-700 Study Guide Archives Updated on Dec 27, 2025 [Q63-Q79]

Share

Microsoft AZ-700 Study Guide Archives Updated on Dec 27, 2025

Download AZ-700 Mock Test Study Material


Microsoft AZ-700 (Designing and Implementing Microsoft Azure Networking Solutions) certification exam is designed for IT professionals who want to validate their skills and knowledge in designing and implementing Azure networking solutions. AZ-700 exam is ideal for those who work with Azure networking technologies on a daily basis, including network architects, network engineers, and network administrators.

 

NEW QUESTION # 63
You have the network topology shown in the Topology exhibit. (Click the Topology tab.)

You have the Azure firewall shown in the Firewall 1 exhibit. (Click the Firewall tab.)

You have the route table shown in the RouteTable1 exhibit. (Click the RouteTable1 tab.)

For each of the following statements, select Yes if the statement is true. Otherwise, select No.
NOTE: Each correct selection is worth one point.

Answer:

Explanation:


NEW QUESTION # 64
You have an Azure subscription.
You plan 10 implement an Azure application gateway named AGW1.
You need to implement an external TLS certificate store for AGW1. The solution must meet the following requirements:
* Keys must be stored by using the highest possible security.
* Administrative effort must be minimized.
Which type of certificate store should you use, and which type of identity should you use to access the store?
To answer, select the appropriate options in the answer area.
NOTE: Each correct answer is worth one point.

Answer:

Explanation:

Explanation:


NEW QUESTION # 65
You have an Azure subscription that contains an app named Appl. App1 is hosted on the Azure App Service instances shown in the following table.

You need to implement Azure Traffic Manager to meet the following requirements:
* App1 traffic must be assigned equally to each App Service instance in each Azure region.
* App1 traffic from North Europe must be routed to the Appl instances in the North Europe region.
* App1 traffic from North America must be routed to the Appl instances in the East US Azure region.

Answer:

Explanation:

Explanation:


NEW QUESTION # 66
Which virtual machines can VM1 and VM4 ping successfully? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.

Answer:

Explanation:


NEW QUESTION # 67
Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution.
After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen.
You have two Azure virtual networks named Vnet1 and Vnet2.
You have a Windows 10 device named Client1 that connects to Vnet1 by using a Point-to-Site (P2S) IKEv2 VPN.
You implement virtual network peering between Vnet1 and Vnet2. Vnet1 allows gateway transit.
Vnet2 can use the remote gateway.
You discover that Client1 cannot communicate with Vnet2.
You need to ensure that Client1 can communicate with Vnet2.
Solution: You enable BGP on the gateway of Vnet1.
Does this meet the goal?

  • A. No
  • B. Yes

Answer: A

Explanation:
If you make a change to the topology of your network and have Windows VPN clients, the VPN client package for Windows clients must be downloaded and installed again in order for the changes to be applied to the client.
Solution: Download the P2S configuration package, install it on the client device and reconnect.


NEW QUESTION # 68
You have two Azure App Service instances that host the web apps shown the following table.

You deploy an Azure application gateway that has one public frontend IP address and two backend pools.
You need to publish all the web apps to the application gateway. Requests must be routed based on the HTTP host headers.
What is the minimum number of listeners and routing rules you should configure? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.

Answer:

Explanation:
Explanation: 1, 2


NEW QUESTION # 69
You have an Azure Front Door instance that provides access to a web app. The web app uses a hostname of www.contoso.com.
You have the routing rules shown in the following table.

Which rule will apply to each incoming request? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point

Answer:

Explanation:

Reference:
https://docs.microsoft.com/en-us/azure/frontdoor/front-door-route-matching


NEW QUESTION # 70
You have an Azure application gateway named AppGW1 that balances requests to a web app named App1.
You need to modify the server variables in the response header of App1.
What should you configure on AppGW1?

  • A. HTTP settings
  • B. listeners
  • C. rules
  • D. rewrites

Answer: A


NEW QUESTION # 71
You have an Azure subscription that contains the resources shown in the following table.

Subnet1 is associated with a service endpoint policy named Policy1. Policy1 specifies a single resource that references storage1.
To Subnet1, you deploy an Azure Batch pool named Pool1.
You need to ensure that the compute resources in Pool1 can access storage1.
What should you do?

  • A. To Policy1, add an alias.
  • B. To Subnet1, add a subnet delegation.
  • C. To Subnet1, add a storage endpoint for the storage service.
  • D. To Policy1, add a resource.

Answer: D

Explanation:
Adding an alias is used when referencing services using specific names (e.g., DNS names), but in this case, you need to add the actual resource (storage1) to the policy, not just an alias.


NEW QUESTION # 72
You plan to implement an Azure Virtual WAN named VWAN1 that will contain a hub named Hub1.
VWAN1 will include the virtual networks shown in the following table.

You need to ensure that hosts connected to VNet1 can communicate with hosts connected to VNet3.
How should you configure the routing tables for VWAN1? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.

Answer:

Explanation:

Explanation:


NEW QUESTION # 73
You have the Azure load balancer shown in the Load Balancer exhibit.

LB2 has the backend pools shown in the Backend Pools exhibit.

You need to ensure that LB2 distributes traffic to all the members of VMSS1.
Which two actions should you perform? Each correct answer presents part of the solution.
NOTE: Each correct selection is worth one point.

  • A. Add a network interface to VMSS1.
  • B. Add a load balancing rule.
  • C. Configure a health probe.
  • D. Add a public IP address to each member of VMSS1.

Answer: B,C

Explanation:
Reference:
https://docs.microsoft.com/en-us/azure/load-balancer/quickstart-load-balancer-standard-public-portal?tabs=option-1-create-load-balancer-standard


NEW QUESTION # 74
SIMULATION

Username and password
Use the following login credentials as needed:
- To enter your username, place your cursor in the Sign in box and click on the username below.
- To enter your password, place your cursor in the Enter password box and click on the password below.
- Azure Username: [email protected]
- Azure Password: xxxxxxxxxx
- If the Azure portal does not load successfully in the browser, press CTRL-K to reload the portal in a new browser tab.
The following information is for technical support purposes only:
- Lab Instance: 12345678
You need to ensure that connections to the storage12345678 storage account can be made by using an IP address in the 10.1.1.0/24 range and the name storage12345678.privatelink.blob.core.windows.net.
To complete this task, sign in to the Azure portal.

Answer:

Explanation:


NEW QUESTION # 75
You have three on-premises networks.
You have an Azure subscription that contains a Basic Azure virtual WAN. The virtual WAN contains a single virtual hub and a virtual network gateway that is limited to a throughput of 1 Gbps.
The on-premises networks connect to the virtual WAN by using Site-to-Site (S2S) VPN connections.
You need to increase the throughput of the virtual WAN to 3 Gbps. The solution must minimize administrative effort.
What should you do?

  • A. Increase the number of gateway scale units.
  • B. Upgrade the virtual WAN to the Standard SKU.
  • C. Create an additional virtual hub.
  • D. Add an additional VPN gateway to the Azure subscription.

Answer: A

Explanation:
https://learn.microsoft.com/en-us/azure/virtual-wan/gateway-settings#s2s


NEW QUESTION # 76
Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution.
After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen.
You have an Azure application gateway that has Azure Web Application Firewall (WAF) enabled.
You configure the application gateway to direct traffic to the URL of the application gateway.
You attempt to access the URL and receive an HTTP 403 error. You view the diagnostics log and discover the following error.

You need to ensure that the URL is accessible through the application gateway.
Solution: You disable the WAF rule that has a ruleld of 920300.
Does this meet the goal?

  • A. No
  • B. Yes

Answer: B


NEW QUESTION # 77
You have the Azure App Service app shown in the App Service exhibit.

The VNet Integration settings for as12 are configured as shown in the Vnet Integration exhibit.

The Private Endpoint connections settings for as12 are configured as shown in the Private Endpoint connections exhibit.

For each of the following statements, select Yes if the statement is true. Otherwise, select No.
NOTE: Each correct selection is worth one point.

Answer:

Explanation:

Explanation:

Reference:
https://docs.microsoft.com/en-us/azure/app-service/web-sites-integrate-with-vnet


NEW QUESTION # 78
You have the Azure App Service app shown in the App Service exhibit.

The VNet Integration settings for as12 are configured as shown in the Vnet Integration exhibit.

The Private Endpoint connections settings for as12 are configured as shown in the Private Endpoint connections exhibit.

For each of the following statements, select Yes if the statement is true. Otherwise, select No.
NOTE: Each correct selection is worth one point.

Answer:

Explanation:


NEW QUESTION # 79
......


Microsoft AZ-700 exam is a challenging exam that requires a thorough understanding of Azure networking concepts and technologies. AZ-700 exam consists of multiple-choice questions and scenarios that test the candidate's ability to design and implement Azure networking solutions. AZ-700 exam is designed to test the candidate's practical knowledge and skills and is not just a theoretical exam.

 

AZ-700 Questions Prepare with Learning Information: https://www.exams4sures.com/Microsoft/AZ-700-practice-exam-dumps.html

Practice Material for AZ-700 Exam Question Preparation: https://drive.google.com/open?id=1zMui3SUZZqOsfwWKaMdxrqo6FQ-w6OAV