You have an Azure application gateway for a web app named App1. The application gateway allows end-to-end encryption.
You configure the listener for HTTPS by uploading an enterprise signed certificate.
You need to ensure that the application gateway can provide end-to-end encryption for App1. What should you do?
A. Set Listener type to Multi site.
B. Increase the Unhealthy threshold setting in the custom probe.
C. Upload the public key certificate to the HTTPS settings.
D. Enable the SSL profile for the listener.
You have an Azure subscription that contains a virtual network named VNet1. VNet1 contains a subnet named Subnet1.
You deploy an instance of Azure Application Gateway v2 named AppGw1 to Subnet1. You create a network security group (NSG) named NSG1 and link NSG1 to Subnet1.
You need to ensure that AppGw1 will only load balance traffic that originates from VNet1. The solution must minimize the impact on the functionality of AppGw1.
What should you add to NSG1?
A. an outbound rule that has a priority of 4096 and blocks all internet traffic
B. an inbound rule that has a priority of 4096 and blocks all internet traffic
C. an inbound rule that has a priority of 100 and blocks all internet traffic
D. an outbound rule that has a priority 100 and blocks all internet traffic
You have an Azure subscription that contains an Azure Virtual WAN named VWAN1. VWAN1 contains a hub named Hub1.
Hub1 has a security status of Unsecured.
You need to ensure that the security status of Hub1 is marked as Secured.
Solution: You implement Azure NAT Gateway.
Does this meet the requirement?
A. Yes
B. No
HOTSPOT
Your company has 10 instances of a web service. Each instance is hosted in a different Azure region and is accessible through a public endpoint.
The development department at the company is creating an application named App1. Every 10 minutes, App1 will use a list of endpoints and connect to the first available endpoint.
You plan to use Azure Traffic Manager to maintain the list of endpoints.
You need to configure a Traffic Manager profile that will minimize the impact of DNS caching.
What should you configure? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.
Hot Area:

You have the Azure App Service app shown below.

The VNet Integration settings for as123 are configured as shown below.

The Private Endpoint connections settings for as123 are configured as shown below.

Select Yes of the below statement is true. Otherwise, select No.
Hot Area:

HOTSPOT
You have an Azure load balancer that has the following configurations:
1.
Name: LB1
2.
Location: East US 2
3.
SKU: Standard
4.
Private IP address: 10.3.0.7
5.
Load balancing rule: rule1 (Tcp/80)
6.
Health probe: probe1 (Http:80)
7.
NAT rules: 0 inbound
The backend pool of LB1 has the following configurations:
1.
Name: backend1
2.
Virtual network: Vnet2
3.
Backend pool configuration: NIC
4.
IP version: IPv4
5.
Virtual machines: VM1, VM2, VM3
You have an Azure virtual machine named VM4 that has the following network configurations:
1.
Network interface: vm4981
2.
Virtual network/subnet: Vnet3/Subnet3
3.
NIC private IP address: 10.4.0.4
4.
Accelerated networking: Enabled
For each of the following statements, select Yes if the statement is true. Otherwise, select No.
NOTE: Each correct selection is worth one point.
Hot Area:

HOTSPOT
You have an Azure subscription that contains a virtual network named VNet1. VNet1 contains the resources shown in the following table.

You need to publish App1 by using AG1 and a URL of https://app1.contoso.com. The solution must meet the following requirements:
1.
TLS connections must terminate on AG1.
2.
Minimize the number of targets in the backend pool of AG1.
3.
Minimize the number of deployed copies of the SSL certificate of App1.
How many locations should you import to the certificate, and how many targets should you add to the backend pool of AG1? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.
Hot Area:

HOTSPOT
You have an Azure subscription that contains an app named App1. App1 is deployed to the Azure App Service apps shown in the following table.

You need to publish App1 by using Azure Front Door. The solution must ensure that all the requests to App1 are load balanced between all the available worker instances.
What is the minimum number of origin groups and origins that you should configure? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.
Hot Area:

HOTSPOT
You have an Azure subscription that contains the virtual networks shown in the following table.

The subscription contains the virtual machines shown in the following table.

You create a load balancer named LB1 that has the following configurations:
1.
SKU: Basic
2.
Type: Internal
3.
Subnet: Subnetl2
4.
Virtual network VNet1
For each of the following statements, select Yes if the statement is true. Otherwise, select No. NOTE: Each correct selection is worth one point.
Hot Area:

DRAG DROP
You have three on-premises sites. Each site has a third-party VPN device.
You have an Azure virtual WAN named VWAN1 that has a hub named Hub1. Hub1 connects two of the three on-premises sites by using a Site-to-Site VPN connection.
You need to connect the third site to the other two sites by using Hub1.
Which four actions should you perform in sequence? To answer, move the appropriate actions from the list of actions to the answer area and arrange them in the correct order.
Select and Place:
