Keep Calm and Study On - Unlock Your Success - Use #TOGETHER for 30% discount at Checkout

Exam AZ-700: Designing and Implementing Microsoft Azure Networking Solutions Practice Exam

Exam AZ-700: Designing and Implementing Microsoft Azure Networking Solutions Practice Exam


Exam AZ-700: Designing and Implementing Microsoft Azure Networking Solutions Exam

This exam measures your ability to design, implement, manage, secure, and monitor the following technical tasks: Hybrid Networking; Core Networking Infrastructure; Routing; Networks; and Private Access to Azure Services.


Who should take the exam?

Candidates for this exam should have subject matter expertise in planning, implementing, and maintaining Azure networking solutions, including hybrid networking, connectivity, routing, security, and private access to Azure services.


Skills and Knowledge

Candidates for this exam should also have expert Azure administration skills, in addition to extensive experience and knowledge of networking, hybrid connections, and network security.


Roles and Responsibilities

  • Responsibilities for the Azure Network Engineer include recommending, planning, and implementing Azure networking solutions.
  • Professionals in this role manage the solution for performance, resiliency, scale, and security.
  • They deploy networking solutions by using the Azure Portal and other methods, including PowerShell, Azure Command-Line Interface (CLI), and Azure Resource Manager templates (ARM templates).
  • The Azure Network Engineer works with solution architects, cloud administrators, security engineers, application developers, and DevOps engineers to deliver Azure solutions.


Course Outline

The AZ-700 exam covers the latest exam topics as per exam updates as on on May 2, 2023  - 

Domain 1 - Design and implement core networking infrastructure (25–30%)

1.1 Design and implement IP addressing for Azure resources

  • Plan and implement network segmentation and address spaces
  • Create a virtual network (VNet)
  • Plan and configure subnetting for services, including virtual network gateways, private endpoints, service endpoints, firewalls, application gateways, VNet-integrated platform services, and Azure Bastion
  • Plan and configure subnet delegation
  • Plan and configure shared or dedicated subnets
  • Create a Public IP Prefix
  • Choose when to use a public IP address prefix
  • Plan and implement a Custom IP address prefix (bring your own IP)
  • Create a public IP address
  • Associate public IP addresses to resources


1.2 Design and implement name resolution

  • Design name resolution inside a VNet
  • Configure DNS settings for a VNet
  • Design public DNS zones
  • Design private DNS zones
  • Configure public and private DNS zones
  • Link a private DNS zone to a VNet
  • Design and implement Azure DNS Private Resolver


1.3 Design and implement VNet connectivity and routing

  • Design service chaining, including gateway transit
  • Implement VNet peering
  • Implement and manage virtual network connectivity by using Azure Virtual Network Manager
  • Design and implement user-defined routes (UDRs)
  • Associate a route table with a subnet
  • Configure forced tunneling
  • Diagnose and resolve routing issues
  • Design and implement Azure Route Server
  • Identify appropriate use cases for Azure NAT Gateway
  • Implement Azure NAT Gateway


1.4 Monitor networks

  • Configure monitoring, network diagnostics, and logs in Azure Network Watcher
  • Monitor and troubleshoot network health by using Azure Network Watcher
  • Monitor and troubleshoot networks by using Azure Monitor for Networks
  • Activate and monitor distributed denial-of-service (DDoS) protection
  • Evaluate network security recommendations identified by Microsoft Defender for Cloud Secure Score
  • Evaluate network security recommendations identified by Microsoft Defender for Cloud attack path analysis
  • Identify network resources by using Cloud Security Explorer in Microsoft Defender for Cloud


Domain 2 - Design, implement, and manage connectivity services (20–25%)

2.1 Design, implement, and manage a site-to-site VPN connection

  • Design a site-to-site VPN connection, including for high availability
  • Select an appropriate virtual network gateway stock-keeping unit (SKU) for site-to-site VPN requirements
  • Implement a site-to-site VPN connection
  • Identify when to use a policy-based VPN versus a route-based VPN connection
  • Create and configure a local network gateway
  • Create and configure an IPsec/Internet Key Exchange (IKE) policy
  • Create and configure a virtual network gateway
  • Diagnose and resolve virtual network gateway connectivity issues
  • Implement Azure Extended Network


2.2 Design, implement, and manage a point-to-site VPN connection

  • Select an appropriate virtual network gateway SKU for point-to-site VPN requirements
  • Select and configure a tunnel type
  • Select an appropriate authentication method
  • Configure RADIUS authentication
  • Configure authentication by using Microsoft Entra ID
  • Implement a VPN client configuration file
  • Diagnose and resolve client-side and authentication issues
  • Specify Azure requirements for Always On VPN
  • Specify Azure requirements for Azure Network Adapter


2.3 Design, implement, and manage Azure ExpressRoute

  • Select an ExpressRoute connectivity model
  • Select an appropriate ExpressRoute SKU and tier
  • Design and implement ExpressRoute to meet requirements, including cross-region connectivity, redundancy, and disaster recovery
  • Design and implement ExpressRoute options, including Global Reach, FastPath, and ExpressRoute Direct
  • Choose between Azure private peering only, Microsoft peering only, or both
  • Configure Azure private peering
  • Configure Microsoft peering
  • Create and configure an ExpressRoute gateway
  • Connect a virtual network to an ExpressRoute circuit
  • Recommend a route advertisement configuration
  • Configure encryption over ExpressRoute
  • Implement Bidirectional Forwarding Detection
  • Diagnose and resolve ExpressRoute connection issues


2.4 Design and implement an Azure Virtual WAN architecture

  • Select a Virtual WAN SKU
  • Design a Virtual WAN architecture, including selecting types and services
  • Create a virtual hub in Virtual WAN
  • Choose an appropriate scale unit for each gateway type
  • Deploy a gateway into a virtual hub
  • Configure virtual hub routing
  • Integrate a virtual hub with a third-party NVA for cloud connectivity


Domain 3 - Design and implement application delivery services (15–20%)

3.1 Design and implement Azure Load Balancer and Azure Traffic Manager

  • Map requirements to features and capabilities of Azure Load Balancer
  • Identify appropriate use cases for Azure Load Balancer
  • Choose an Azure Load Balancer SKU and tier
  • Choose between public and internal load balancers
  • Choose between regional and cross-region load balancers
  • Create and configure an Azure Load Balancer
  • Implement Azure Traffic Manager
  • Implement Gateway Load Balancer
  • Implement a load balancing rule
  • Create and configure inbound NAT rules
  • Create and configure explicit outbound rules, including source network address translation (SNAT)


3.2 Design and implement Azure Application Gateway

  • Map requirements to features and capabilities of Azure Application Gateway
  • Identify appropriate use cases for Azure Application Gateway
  • Choose between manual and autoscale
  • Create a backend pool
  • Configure health probes
  • Configure listeners
  • Configure routing rules
  • Configure HTTP settings
  • Configure Transport Layer Security (TLS)
  • Configure rewrite rule sets


3.3 Design and implement Azure Front Door

  • Map requirements to features and capabilities of Azure Front Door
  • Identify appropriate use cases for Azure Front Door
  • Choose an appropriate tier
  • Configure an Azure Front Door, including routing, origins, and endpoints
  • Configure TLS termination and end-to-end TLS encryption
  • Configure caching
  • Configure traffic acceleration
  • Implement rules, URL rewrite, and URL redirect
  • Secure an origin by using Azure Private Link in Azure Front Door


Domain 4 - Design and implement private access to Azure services (10–15%)

4.1 Design and implement Azure Private Link service and Azure private endpoints

  • Plan private endpoints
  • Create private endpoints
  • Configure access to private endpoints
  • Create a Private Link service
  • Integrate Private Link and Private Endpoint with DNS
  • Integrate a Private Link service with on-premises clients


4.2 Design and implement service endpoints

  • Choose when to use a service endpoint
  • Create service endpoints
  • Configure service endpoint policies
  • Configure access to service endpoints


Domain 5 - Design and implement Azure network security services (15–20%)

5.1 Implement and manage network security groups

  • Create a network security group (NSG)
  • Associate a NSG to a subnet or network interface
  • Create an application security group (ASG)
  • Associate an ASG to a network interface
  • Create and configure NSG inbound and outbound security rules
  • Implement virtual network flow logs
  • Interpret virtual network flow logs
  • Verify IP flow
  • Configure an NSG for remote server administration, including Azure Bastion
  • Implement and manage virtual network security by using Azure Virtual Network Manager


5.2 Design and implement Azure Firewall and Azure Firewall Manager

  • Map requirements to features and capabilities of Azure Firewall
  • Select an appropriate Azure Firewall SKU
  • Design an Azure Firewall deployment
  • Create and implement an Azure Firewall deployment
  • Configure Azure Firewall rules
  • Create and implement Azure Firewall Manager policies
  • Create a secure hub by deploying Azure Firewall inside an Azure Virtual WAN hub


5.3 Design and implement a Web Application Firewall (WAF) deployment

  • Map requirements to features and capabilities of WAF
  • Design a WAF deployment
  • Configure detection or prevention mode
  • Configure rule sets for WAF on Azure Front Door
  • Configure rule sets for WAF on Application Gateway
  • Implement a WAF policy
  • Associate a WAF policy


What do we offer?

  • Full-Length Mock Test with unique questions in each test set
  • Practice objective questions with section-wise scores
  • In-depth and exhaustive explanation for every question
  • Reliable exam reports evaluating strengths and weaknesses
  • Latest Questions with an updated version
  • Tips & Tricks to crack the test
  • Unlimited access

What are our Practice Exams?

  • Practice exams have been designed by professionals and domain experts that simulate real-time exam scenario.
  • Practice exam questions have been created on the basis of content outlined in the official documentation.
  • Each set in the practice exam contains unique questions built with the intent to provide real-time experience to the candidates as well as gain more confidence during exam preparation.
  • Practice exams help to self-evaluate against the exam content and work towards building strength to clear the exam.
  • You can also create your own practice exam based on your choice and preference 

100% Assured Test Pass Guarantee

We have built the TestPrepTraining Practice exams with 100% Unconditional and assured Test Pass Guarantee! 

Tags: Microsoft Azure AZ-700 Practice Exam, Microsoft Azure AZ-700 Free Practice Test, Microsoft Azure AZ-700 Exam Questions, Microsoft Azure AZ-700 Study Guide, Microsoft Azure AZ-700 Training, Microsoft Azure AZ-700 Tutorial