AZ-700 Exam Question 131

You have the Azure load balancer shown in the Load Balancer exhibit.

LB2 has the backend pools shown in the Backend Pools exhibit.

You need to ensure that LB2 distributes traffic to all the members of VMSS1.
Which two actions should you perform? Each correct answer presents part of the solution.
NOTE: Each correct selection is worth one point.
  • AZ-700 Exam Question 132

    Hotspot Question
    Your on-premises network contains the subnets shown in the following table.

    The network contains a firewall named FW1 that uses a public IP address of 131.107.100.200.
    You have an Azure subscription that contains the resources shown in the following table.

    You plan to configure a Site-to-Site (S2S) VPN named VPN1 that will connect GW1 to FW1.
    You need to configure LNG1 to support VPN1. The solution must meet the following requirements:
    - Ensure that the resources on Subnet1 and Subnet2 can communicate with the resources on VNet1.
    - Minimize administrative effort.
    How should you configure LNG1? To answer, select the appropriate options in the answer area.
    NOTE: Each correct selection is worth one point.

    AZ-700 Exam Question 133

    Hotspot Question
    You have an Azure subscription that contains two virtual machines.
    You monitor traffic between the virtual machines by using NSG flow logs.
    You have a network security group (NSG) flow log that has the following entries.
    1493763938,185.170.185.105,10.2.0.4,35370,23,T,I,A,B,,,,
    1493695838,185.170.185.105,10.2.0.4,35370,23,T,I,A,C,200,500,100,300
    1493696138,185.170.185.105,10.2.0.4,35370,23,T,I,A,E,1000,6000,500,1200 You need to identify the following metrics from the log entries:
    - The total number of packets transferred between the virtual machines
    - The total amount of bytes transferred between the virtual machines
    What should you identity? To answer, select the appropriate options in the answer area.
    NOTE: Each correct selection is worth one point.

    AZ-700 Exam Question 134

    You have an on-premises datacenter named DC1 that contains two routers.
    You have an Azure subscription. The subscription contains a virtual network named VNet1 and a zone-redundant ExpressRoute virtual network gateway named GW1 that uses the ErGw3Az SKU. GW1 is attached to VNet1 DC1 is connected to VNet1 by using an ExpressRoute Standard circuit named Circuit1. The DC1 routers are configured as endpoints for Circuit1. Circuit1 traffic traverses two physical links.
    During a link outage, the connection takes three minutes to fail over.
    You need to ensure that failovers between the links take less than one second.
    What should you do?
  • AZ-700 Exam Question 135

    Case Study 1 - Litware. Inc
    Overview
    Litware. Inc. is a financial company that has a main datacenter in Boston and 20 branch offices across the United States. Users have Android, iOS, and Windows 10 devices.
    Existing Environment:
    Hybrid Environment
    The on-prernises network contains an Active Directory forest named litwareinc.com that syncs to an Azure Active Directory (Azure AD) tenant named litwareinc.com by usinq Azure AD Connect.
    All the offices connect to a virtual network named Vnetl by using a Site-to-Site VPN connection.
    Azure Environment
    Litware has an Azure subscription named Sub1 that is linked to the litwareinc.com Azure AD tenant. Sub1 contains resources in the East US Azure region as shown in the following table.

    A diagram of the resource in the East US Azure region is shown in the Network Diagram exhibit.
    There is bidirectional peering between Vnet1 and Vnet2. There is bidirectional peering between Vnet1 and Vnet3. Currently, Vnet2 and Vnet3 cannot communicate directly.
    Azure Environment Diagram

    Requirements:
    Business Requirements
    Litware wants to minimize costs whenever possible, as long as all other requirements are met.
    Virtual Networking Requirements
    Litware identifies the following virtual networking requirements:
    - Direct the default route of 0.0.0.0/0 on Vnet2 and Vnet3 to the
    Boston datacenter over an ExpressRoute circuit.
    - Ensure that the records in the cloud.litwareinc.com zone can be
    resolved from the on-premises locations.
    - Automatically register the DNS names of Azure virtual machines to the cloud.litwareinc.com zone.
    - Minimize the size of the subnets allocated to platform-managed
    services.
    - Allow traffic from VMScaleSet1 to VMScaleSet2 on the TCP port 443
    only.
    Hybrid Networking Requirements
    Litware identifies the following hybrid networking requirements:
    - Users must be able to connect to Vnet1 by using a Point-to-Site (P2S) VPN when working remotely. Connections must be authenticated by Azure AD.
    - Latency of the traffic between the Boston datacenter and all the
    virtual networks must be minimized.
    - The Boston datacenter must connect to the Azure virtual networks by
    using an ExpressRoute FastPath connection.
    - Traffic between Vnet2 and Vnet3 must be routed through Vnet1.
    PaaS Networking Requirements
    Litware identifies the following networking requirements for platform as a service (PaaS):
    - The storage1 account must be accessible from all on-premises
    locations without exposing the public endpoint of storage1.
    - The storage2 account must be accessible from Vnet2 and Vnet3 without
    exposing the public endpoint of storage2.
    You need to connect Vnet2 and Vnet3. The solution must meet the virtual networking requirements and the business requirements.
    Which two actions should you include in the solution? Each correct answer presents part of the solution.
    NOTE: Each correct selection is worth one point.