Question 61

You have two Azure subscriptions named Subscnption1 and Subscription2. Subscription1 contains a virtual network named Vnet1. Vnet1 contains an application server. Subscription2 contains a virtual network named Vnet2.
You need to provide the virtual machines in Vnet2 with access to the application server in Vnet1 by using a private endpoint.
Which four actions should you perform in sequence? To answer, move the appropriate actions from the list of actions to the answer area and arrange them in the correct order.

Question 62

You have 10 on-premises networks that are connected by using a 3rd party Software Defined Wide Area Network (SD-WAN) solution. You have an Azure subscription that contains five virtual networks.
You plan to connect the Azure virtual networks and the on-premises networks by using an Azure Virtual WAN with a single virtual WAN hub.
You need to ensure that the Azure Virtual WAN can act as a node in the 3rd party SD-WAN solution.
What should you include in the solution?
  • Question 63

    You have an Azure virtual network named Vnet1.
    You need to ensure that the virtual machines in Vnet1 can access only the Azure SQL resources in the East US Azure region. The virtual machines must be prevented from accessing any Azure Storage resources.
    Which two outbound network security group (NSG) rules should you create? Each correct answer presents part of the solution.
    NOTE: Each correct selection is worth one point.
  • Question 64

    You have an Azure subscription that contains the route tables and routes shown in the following table.

    The subscription contains the subnets shown in the following table.

    The subscription contains the virtual machines shown in the following table.

    There is a Site-to-Site VPN connection to each local network gateway.
    For each of the following statements, select Yes of the statement is true. Otherwise, select No.
    NOTE: Each correct selection is worth one point.

    Question 65

    You have an Azure subscription that contains the virtual machines shown in the following table.

    VNet1 and VNet2 are NOT connected to each other.
    You need to block traffic from SQL Server 2019 to IIS by using application security groups. The solution must minimize administrative effort.
    How should you configure the application security groups? To answer, select the appropriate options in the answer area.
    NOTE: Each correct selection is worth one point.