1. Home
  2. Microsoft
  3. AZ-700 Exam Info

Microsoft Designing and Implementing Microsoft Azure Networking Solutions (AZ-700) Exam Questions

Welcome to the ultimate resource for aspiring candidates preparing for the Microsoft Designing and Implementing Microsoft Azure Networking Solutions AZ-700 exam. Here, you will find all you need to know about the official syllabus, insightful discussions, expected exam format, and sample questions to help you excel in your certification journey. Our goal is to equip you with the knowledge and confidence needed to ace the exam with ease. Whether you are an experienced professional looking to validate your skills or a newcomer eager to step into the world of Microsoft Azure networking solutions, this page is designed to support your learning and preparation. Dive into the world of Azure networking solutions, explore the intricacies of the exam, and take advantage of the valuable resources provided here to enhance your understanding and performance. Let's embark on this learning journey together and pave the way for a successful career in Microsoft Azure networking.

image
4.9/5 Exam Rating | Updated 22 Aug, 2026 | 5 Exam Domains | Verified by Cassandra Bludworth Microsoft AZ-700 Certified Professional

Get Updated Microsoft AZ-700 Exam Practice Questions to Boost your Chances of Success

Check Free Microsoft AZ-700 Exam Practice Questions
Build Your Career Foundation

Build Your Career Foundation with Microsoft Azure Network Engineer Associate Certification

The Microsoft AZ-700 exam is designed for professionals who want to improve their skills in Designing and Implementing Microsoft Azure Networking Solutions technology. This Intermediate certification checks your understanding of the main concepts, tools, and best practices. It also tests your ability to use Application Gateway, ExpressRoute, Microsoft Azure, Virtual WAN, VPN Gateway, Web Application Firewall in real work situations.

The Microsoft Designing and Implementing Microsoft Azure Networking Solutions certification can be a valuable step toward building a strong foundation for your IT career. It helps employers recognize your abilities and gives you a better chance of finding new job opportunities. This certification also helps you stay up-to-date with the latest Microsoft Designing and Implementing Microsoft Azure Networking Solutions exam technologies, tools, and industry standards.

Why Become Microsoft Azure Network Engineer Associate Certified?

Stand Out to Hiring Managers

The Microsoft AZ-700 certification exam can help demonstrate your knowledge and skills, giving hiring managers a clearer view of your professional capabilities.

Build a Case for Promotions

The Microsoft AZ-700 certification can help you demonstrate your skills, strengthen your professional profile, and prepare for new career opportunities.

Higher Job Security

A Designing and Implementing Microsoft Azure Networking Solutions credential raises your value, commands higher pay, and makes you hard to replace.

Networking Opportunities

Connect with skilled Designing and Implementing Microsoft Azure Networking Solutions professionals in a network that solves problems, shares knowledge, and drives your growth.

Microsoft AZ-700 Exam Domains & Weightage

1.0 Design and implement core networking infrastructure 25-30%
2.0 Design, implement, and manage connectivity services 20-25%
3.0 Design and implement application delivery services 15-20%
4.0 Design and implement private access to Azure services 10-15%
5.0 Design and implement Azure network security services 15-20%

Microsoft AZ-700 Exam Details (Official)

Vendor Microsoft
Exam Code AZ-700
Exam Name Designing and Implementing Microsoft Azure Networking Solutions
Certification Azure Network Engineer Associate
Expected Questions in Actual Exam 60
Exam Duration 120 Minutes

Microsoft Designing and Implementing Microsoft Azure Networking Solutions Exam Objectives

  1. 1

    1.0 Design and implement core networking infrastructure (25-30%)

    • 1.1Design and implement IP addressing for Azure resources
    • 1.2Plan and implement network segmentation and address spaces
    • 1.3Create a virtual network (VNet)
    • 1.4Plan and configure subnetting for services, including VNet gateways, private endpoints, service endpoints, firewalls, application gateways, VNet-integrated platform services, and Azure Bastion
    • 1.5Plan and configure subnet delegation
    • 1.6Plan and configure shared or dedicated subnets
    • 1.7Create a prefix for public IP addresses
    • 1.8Choose when to use a public IP address prefix
    • 1.9Plan and implement a custom public IP address prefix (bring your own IP)
    • 1.10Create a public IP address
    • 1.11Associate public IP addresses to resources
    • 1.12Design and implement name resolution
    • 1.13Design name resolution inside a VNet
    • 1.14Configure DNS settings for a VNet
    • 1.15Design public DNS zones
    • 1.16Design private DNS zones
    • 1.17Configure public and private DNS zones
    • 1.18Link a private DNS zone to a VNet
    • 1.19Design and implement Azure DNS Private Resolver
    • 1.20Design and implement VNet connectivity and routing
    • 1.21Design service chaining, including gateway transit
    • 1.22Implement VNet peering
    • 1.23Implement and manage virtual network connectivity by using Azure Virtual Network Manager
    • 1.24Design and implement user-defined routes (UDRs)
    • 1.25Associate a route table with a subnet
    • 1.26Configure forced tunneling
    • 1.27Diagnose and resolve routing issues
    • 1.28Design and implement Azure Route Server
    • 1.29Identify appropriate use cases for a network address translation (NAT) gateway
    • 1.30Implement a NAT gateway
    • 1.31Monitor networks
    • 1.32Configure monitoring, network diagnostics, and logs in Azure Network Watcher
    • 1.33Monitor and troubleshoot network health by using Azure Network Watcher
    • 1.34Monitor and troubleshoot networks by using Azure Monitor Network Insights
    • 1.35Activate and monitor distributed denial-of-service (DDoS) protection
    • 1.36Evaluate network security recommendations identified by Microsoft Defender for Cloud Secure Score
    • 1.37Evaluate network security recommendations identified by Microsoft Defender For Cloud Attack Path Analysis
    • 1.38Identify network resources by using Microsoft Defender for Cloud Security Explorer
  2. 2

    2.0 Design, implement, and manage connectivity services (20-25%)

    • 2.1Design, implement, and manage a site-to-site VPN connection
    • 2.2Design a site-to-site VPN connection, including for high availability
    • 2.3Select an appropriate VNet gateway stock-keeping unit (SKU) for site-to-site VPN requirements
    • 2.4Implement a site-to-site VPN connection
    • 2.5Identify when to use a policy-based VPN versus a route-based VPN connection
    • 2.6Create and configure a local network gateway
    • 2.7Create and configure an IPsec/Internet Key Exchange (IKE) policy
    • 2.8Create and configure a virtual network gateway
    • 2.9Diagnose and resolve virtual network gateway connectivity issues
    • 2.10Implement Azure Extended Network
    • 2.11Design, implement, and manage a point-to-site VPN connection
    • 2.12Select an appropriate virtual network gateway SKU for point-to-site VPN requirements
    • 2.13Select and configure a tunnel type
    • 2.14Select an appropriate authentication method
    • 2.15Configure RADIUS authentication
    • 2.16Configure authentication by using Microsoft Entra ID
    • 2.17Implement a VPN client configuration file
    • 2.18Diagnose and resolve client-side and authentication issues
    • 2.19Specify Azure requirements for Always On VPN
    • 2.20Specify Azure requirements for Azure Network Adapter
    • 2.21Design, implement, and manage Azure ExpressRoute
    • 2.22Select an ExpressRoute connectivity model
    • 2.23Select an appropriate ExpressRoute SKU and tier
    • 2.24Design and implement ExpressRoute to meet requirements, including cross-region connectivity, redundancy, and disaster recovery
    • 2.25Design and implement ExpressRoute options, including Global Reach, FastPath, and ExpressRoute Direct
    • 2.26Choose between Azure private peering only, Microsoft peering only, or both
    • 2.27Configure Azure private peering
    • 2.28Configure Microsoft peering
    • 2.29Create and configure an ExpressRoute gateway
    • 2.30Connect a virtual network to an ExpressRoute circuit
    • 2.31Recommend a route advertisement configuration
    • 2.32Configure encryption over ExpressRoute
    • 2.33Implement Bidirectional Forwarding Detection
    • 2.34Diagnose and resolve ExpressRoute connection issues
    • 2.35Design and implement an Azure Virtual WAN architecture
    • 2.36Select a Virtual WAN SKU
    • 2.37Design a Virtual WAN architecture, including selecting types and services
    • 2.38Create a hub in Virtual WAN
    • 2.39Choose an appropriate scale unit for each gateway type
    • 2.40Deploy a gateway into a Virtual WAN hub
    • 2.41Configure virtual hub routing
    • 2.42Integrate a Virtual WAN hub with a third-party NVA for cloud connectivity
  3. 3

    3.0 Design and implement application delivery services (15-20%)

    • 3.1Design and implement Azure Load Balancer and Azure Traffic Manager
    • 3.2Map requirements to features and capabilities of Azure Load Balancer
    • 3.3Identify appropriate use cases for Azure Load Balancer
    • 3.4Choose an Azure Load Balancer SKU and tier
    • 3.5Choose between public and internal load balancers
    • 3.6Choose between regional and global load balancers
    • 3.7Create and configure an Azure Load Balancer
    • 3.8Implement Azure Traffic Manager
    • 3.9Implement a gateway load balancer
    • 3.10Implement a load balancing rule
    • 3.11Create and configure inbound NAT rules
    • 3.12Create and configure explicit outbound rules, including source network address translation (SNAT)
    • 3.13Design and implement Azure Application Gateway
    • 3.14Map requirements to features and capabilities of Azure Application Gateway
    • 3.15Identify appropriate use cases for Azure Application Gateway
    • 3.16Choose between manual and autoscale
    • 3.17Create a back-end pool
    • 3.18Configure health probes
    • 3.19Configure listeners
    • 3.20Configure routing rules
    • 3.21Configure HTTP settings
    • 3.22Configure Transport Layer Security (TLS)
    • 3.23Configure rewrite sets
    • 3.24Design and implement Azure Front Door
    • 3.25Map requirements to features and capabilities of Azure Front Door
    • 3.26Identify appropriate use cases for Azure Front Door
    • 3.27Choose an appropriate tier
    • 3.28Configure an Azure Front Door, including routing, origins, and endpoints
    • 3.29Configure SSL termination and end-to-end SSL encryption
    • 3.30Configure caching
    • 3.31Configure traffic acceleration
    • 3.32Implement rules, URL rewrite, and URL redirect
    • 3.33Secure an origin by using Azure Private Link in Azure Front Door
  4. 4

    4.0 Design and implement private access to Azure services (10-15%)

    • 4.1Design and implement Azure Private Link service and Azure private endpoints
    • 4.2Plan private endpoints
    • 4.3Create private endpoints
    • 4.4Configure access to private endpoints
    • 4.5Create a Private Link service
    • 4.6Integrate Private Link and Private Endpoint with DNS
    • 4.7Integrate a Private Link service with on-premises clients
    • 4.8Design and implement service endpoints
    • 4.9Choose when to use a service endpoint
    • 4.10Create service endpoints
    • 4.11Configure service endpoint policies
    • 4.12Configure access to service endpoints
  5. 5

    5.0 Design and implement Azure network security services (15-20%)

    • 5.1Implement and manage network security groups
    • 5.2Create a network security group (NSG)
    • 5.3Associate a NSG to a resource
    • 5.4Create an application security group (ASG)
    • 5.5Associate an ASG to a network interface card (NIC)
    • 5.6Create and configure NSG inbound and outbound security rules
    • 5.7Implement virtual network flow logs
    • 5.8Interpret virtual network flow logs
    • 5.9Verify IP flow
    • 5.10Configure an NSG for remote server administration, including Azure Bastion
    • 5.11Implement and manage virtual network security by using Azure Virtual Network Manager
    • 5.12Design and implement Azure Firewall and Azure Firewall Manager
    • 5.13Map requirements to features and capabilities of Azure Firewall
    • 5.14Select an appropriate Azure Firewall SKU
    • 5.15Design an Azure Firewall deployment
    • 5.16Create and implement an Azure Firewall deployment
    • 5.17Configure Azure Firewall rules
    • 5.18Create and implement Azure Firewall Manager policies
    • 5.19Create a secure hub by deploying Azure Firewall inside an Azure Virtual WAN hub
    • 5.20Design and implement a Web Application Firewall (WAF) deployment
    • 5.21Map requirements to features and capabilities of WAF
    • 5.22Design a WAF deployment
    • 5.23Configure detection or prevention mode
    • 5.24Configure rule sets for WAF on Azure Front Door
    • 5.25Configure rule sets for WAF on Application Gateway
    • 5.26Implement a WAF policy
    • 5.27Associate a WAF policy

Why Choose PrepBolt For Microsoft AZ-700 Practice Exam?

Pass AZ-700 Exam Faster

Microsoft AZ-700 Streamlined practice questions designed to maximize learning efficiency and minimize prep time.

Practice Like the Real Exam

Simulate real AZ-700 exam scenarios with questions structured exactly like the actual certification test.

AZ-700 Updated Questions

Microsoft AZ-700 exam Regular content updates reflecting the latest exam blueprint changes and syllabus revisions.

Trusted by thousands of professionals

Join over 50,000+ Microsoft AZ-700 satisfied professionals and students who achieved career goals with us around the world. Learn, share ideas, and grow together.

Ready to pass Microsoft AZ-700 Exam on your first attempt?

Practice with updated Microsoft AZ-700 exam questions written and reviewed by certified Microsoft professionals.

Updated: 22 Aug, 2026 Number of Practice Questions: 328
Get Free Microsoft AZ-700 Exam Practice Questions