Choose a practice mode, answer each Azure Network Engineer AZ-700 question, then review the explanation. Wrong answers are saved locally for review.
Time left: 00:00
No wrong answers saved yet.
No questions match your filters.
Question 1
What is Azure VPN Gateway?
VPN Gateway connects networks over encrypted tunnels. Databases, storage, and CDNs are different.
Question 2
What is Azure ExpressRoute?
ExpressRoute provides private connectivity to Azure. Public routes, DNS records, and load balancers are different.
Question 3
What is Azure Virtual WAN?
Virtual WAN centralizes networking hubs. Databases, DNS zones, and firewalls are different.
Question 4
What is Azure Bastion?
Bastion provides secure remote access without exposing public IPs. Websites, databases, and storage are different.
Question 5
What is a site-to-site VPN?
Site-to-site VPNs connect entire networks. Client VPNs, DNS records, and firewalls are different.
Question 6
What is a point-to-site VPN?
Point-to-site VPNs connect individual clients. Network-to-network VPNs, load balancers, and DNS zones are different.
Question 7
What is a virtual network?
Virtual networks isolate Azure resources. Databases, firewalls, and DNS records are resources or services.
Question 8
What is a hub-spoke architecture?
Hub-spoke centralizes shared services. Single networks, DNS zones, and load balancers are different.
Question 9
What is Azure Virtual Network Manager?
Virtual Network Manager helps manage many VNets. Databases, firewalls, and DNS zones are different.
Question 10
Match each hybrid networking concept to its purpose.
VPN Gateway tunnels, ExpressRoute provides private links, Virtual WAN creates hubs, and Bastion enables secure access.
Question 11
What is a route table?
Route tables define custom routing. Databases, firewalls, and DNS zones are different.
Question 12
What is Azure Load Balancer?
Load Balancer distributes traffic at layer 4. WAF, DNS, and databases are different.
Question 13
What is Azure Application Gateway?
Application Gateway routes HTTP traffic at layer 7. DNS, databases, and storage are different.
Question 14
What is Azure Traffic Manager?
Traffic Manager routes traffic at DNS level. Databases, firewalls, and CDNs are different.
Question 15
What is Azure Front Door?
Front Door provides global HTTP routing and acceleration. DNS records, databases, and firewalls are different.
Question 16
What is Azure NAT Gateway?
NAT Gateway provides outbound internet access. Load balancers, DNS servers, and firewalls are different.
Question 17
What is a load balancing rule?
Load balancing rules map frontend traffic to backends. Firewall rules, DNS records, and storage policies are different.
Question 18
What is a health probe?
Health probes verify backend availability. Firewall rules, DNS records, and load balancers are different.
Question 19
What is session affinity?
Session affinity keeps clients on one backend. Firewall rules, DNS records, and storage policies are different.
Question 20
Match each routing concept to its purpose.
Load Balancer is L4, App Gateway is L7, Traffic Manager is DNS, and Front Door is a global edge.
Question 21
What is a private endpoint?
Private endpoints give services private IP addresses. Public sites, DNS records, and firewalls are different.
Question 22
What is a private DNS zone?
Private DNS zones resolve names inside VNets. Public records, firewalls, and load balancers are different.
Question 23
What is VNet peering?
VNet peering connects virtual networks. Public connections, DNS records, and firewalls are different.
Question 24
What is a service endpoint?
Service endpoints provide VNet access to Azure services. DNS records, firewalls, and load balancers are different.
Question 25
What is Azure Private Link?
Private Link exposes services through private endpoints. DNS zones, firewalls, and CDNs are different.
Question 26
What is DNS resolution?
DNS resolves names to IPs. Filtering, encryption, and reports are different.
Question 27
What is a private IP address?
Private IPs are used inside VNets. Public addresses, DNS records, and firewall rules are different.
Question 28
What is VNet integration?
VNet integration connects services to networks. Public sites, DNS records, and firewalls are different.
Question 29
What is Azure DNS private resolver?
Private resolver handles private DNS. Firewalls, load balancers, and databases are different.
Question 30
Match each private connectivity concept to its purpose.
Private endpoints give private access, private DNS resolves, VNet peering connects networks, and service endpoints access services.
Question 31
What is a network security group?
NSGs filter traffic with rules. Databases, DNS zones, and load balancers are different.
Question 32
What is Azure Firewall?
Azure Firewall filters network traffic. Databases, DNS zones, and load balancers are different.
Question 33
What is Azure WAF?
WAF protects web applications. DNS, databases, and CDNs are different.
Question 34
What is Azure DDoS Protection?
DDoS Protection mitigates attacks. Backups, DNS, and firewalls are different.
Question 35
What is an application security group?
ASGs group VMs by application. DNS records, firewalls, and load balancers are different.
Question 36
What is a service tag?
Service tags represent Azure service IP ranges. VM names, databases, and storage accounts are different.
Question 37
What is a network virtual appliance?
NVAs provide network functions. DNS records, databases, and load balancers are different.
Question 38
What is just-in-time access?
JIT access opens ports temporarily. Always-open ports, deletion, and DNS are different.
Question 39
What is Azure Bastion used for?
Bastion enables secure remote access. Public sites, databases, and DNS zones are different.
Question 40
Match each network security concept to its purpose.
NSGs apply traffic rules, Firewall is managed, WAF protects web apps, and DDoS defends against attacks.
Question 41
What is Network Watcher?
Network Watcher provides diagnostics. Databases, DNS zones, and load balancers are different.
Question 42
What are NSG flow logs?
Flow logs record NSG traffic decisions. DNS records, backups, and buckets are different.
Question 43
What is a connection monitor?
Connection monitors verify connectivity. Firewalls, DNS records, and load balancers are different.
Question 44
What is packet capture?
Packet capture records traffic. Blocking, DNS resolution, and IP assignment are different.
Question 45
What is topology in Network Watcher?
Topology visualizes network resources. Firewall rules, DNS records, and load balancers are different.
Question 46
What is IP flow verify?
IP flow verify checks traffic decisions. Backups, DNS queries, and load balancers are different.
Question 47
What are effective security rules?
Effective rules show applied NSG rules. DNS records, firewalls, and load balancers are different.
Question 48
What is Azure Monitor?
Azure Monitor collects monitoring data. DNS, CDN, and storage are different.
Question 49
What is NSG diagnostics?
NSG diagnostics help troubleshoot rules. Backups, DNS records, and load balancers are different.
Question 50
Match each monitoring concept to its purpose.
Network Watcher diagnoses, flow logs record traffic, connection monitors test links, and packet capture records packets.
Question 51
What is hub-spoke design?
Hub-spoke centralizes shared services. Single networks, DNS zones, and load balancers are different.
Question 52
What is Azure Virtual WAN?
Virtual WAN creates global hubs. Databases, firewalls, and DNS zones are different.
Question 53
What is a network quota?
Quotas limit resources. Models, datasets, and DNS records are different.
Question 54
What are availability zones?
Availability zones provide isolation within regions. DNS records, firewalls, and load balancers are different.
Question 55
What is transit routing?
Transit routing goes through a hub. Direct routing, DNS, and firewalls are different.
Question 56
What is network segmentation?
Segmentation isolates workloads. Merging, deleting firewalls, and DNS are different.
Question 57
What is cost optimization for networking?
Cost optimization balances spend and needs. Buying more, disabling security, and reports are different.
Question 58
What is high availability in networking?
High availability plans for failures. DNS records, firewalls, and load balancers are components.
Question 59
What is a design pattern?
Design patterns are reusable approaches. Firewall rules, DNS records, and load balancers are components.
Question 60
Match each architecture concept to its purpose.
Hub-spoke uses a central hub, Virtual WAN creates global hubs, quotas limit resources, and segmentation isolates workloads.