Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
Microsoft logo

Microsoft Certified:Azure Network Engineer Associate

Domain 2Objective 1

Design, Implement, and Manage a Site-To-Site VPN Connection AZ-700 Practice Questions (Page 2)

Part of the Design, implement, and manage connectivity services domain, which accounts for 20–25% of the AZ-700 exam. Microsoft does not publish an official question count, but from its 100-minute exam (~40–65 total, ~8–16 in this domain), expect 2–4 from this objective — we provide 34 practice questions to prepare you well beyond it. (estimate)

34questions here
7free pages
9concepts
20–25%of the exam

Questions 6–10

  1. 6application · medium

    A site-to-site VPN connection between your on-premises network and Azure is not establishing. The on-premises VPN device logs show that it is sending IKE proposals, but the Azure gateway is not responding. You have verified that the local network gateway's public IP address and shared key match the on-premises device. What is the most likely cause of the issue?

    Select an answer first
  2. 7expert · hard

    A site-to-site VPN connection is not establishing. The on-premises VPN device supports IKEv1 and IKEv2. The Azure VPN gateway is configured with a custom IPsec/IKE policy that specifies IKEv2, AES256, SHA256, and DHGroup14. The on-premises device is configured to use IKEv1. What is the most likely cause of the failure?

    Select an answer first
  3. 8application · medium

    A company is deploying a site-to-site VPN between its on-premises network and an Azure VNet. The VPN must support active-active mode with two on-premises VPN devices, each terminating a separate IPsec tunnel. The company anticipates sustained throughput of 1.5 Gbps across the tunnels. Which virtual network gateway SKU should you select?

    Select an answer first
  4. 9application · medium

    A company needs to connect multiple on-premises sites to Azure using a site-to-site VPN. They plan to use a route-based VPN gateway. Which scenario is a key advantage of using a route-based VPN over a policy-based VPN?

    Select an answer first
  5. 10expert · medium

    A site-to-site VPN connection is established, but you cannot reach an Azure VM from an on-premises workstation. The VM is in a subnet that has a network security group (NSG) that denies all inbound traffic from the internet. The VPN tunnel is up and the local network gateway includes the on-premises subnet. What is the most likely cause of the connectivity failure?

    Select an answer first
Finished these 5 questions?

Review the revealed explanations, or continue through the curriculum.

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by Microsoft. “AZ-700” is a trademark of its owner, used for identification only.