Cyber Monday 2024! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

Microsoft Exam AZ-700 Topic 5 Question 72 Discussion

Actual exam question for Microsoft's AZ-700 exam
Question #: 72
Topic #: 5
[All AZ-700 Questions]

SIMULATION

Task 1

You plan to deploy a firewall to subnetl-2. The firewall will have an IP address of 10.1.2.4.

You need to ensure that traffic from subnetl-1 to the IP address range of 192.168.10.0/24 is routed through the firewall that will be deployed to subnetl-2. The solution must be achieved without using dynamic routing protocols.

Show Suggested Answer Hide Answer
Suggested Answer: A

To deploy a firewall to subnetl-2, you need to create a network virtual appliance (NVA) in the same virtual network as subnetl-2.An NVA is a virtual machine that performs network functions, such as firewall, routing, or load balancing1.

To create an NVA, you need to create a virtual machine in the Azure portal and select an image that has the firewall software installed.You can choose from the Azure Marketplace or upload your own image2.

To assign the IP address of 10.1.2.4 to the NVA, you need to create a static private IP address for the network interface of the virtual machine.You can do this in the IP configurations settings of the network interface3.

To ensure that traffic from subnetl-1 to the IP address range of 192.168.10.0/24 is routed through the NVA, you need to create a user-defined route (UDR) table and associate it with subnetl-1.A UDR table allows you to override the default routing behavior of Azure and specify custom routes for your subnets4.

To create a UDR table, you need to go to the Route tables service in the Azure portal and select + Create.You can give a name and a resource group for the route table5.

To create a custom route, you need to select Routes in the route table and select + Add.You can enter the following information for the route5:

Destination: 192.168.10.0/24

Next hop type: Virtual appliance

Next hop address: 10.1.2.4

To associate the route table with subnetl-1, you need to select Subnets in the route table and select + Associate.You can select the virtual network and subnet that you want to associate with the route table5.


Contribute your Thoughts:

Jimmie
2 months ago
That makes sense. We can manually add the routes to ensure traffic goes through the firewall.
upvoted 0 times
...
Zita
2 months ago
All this talk of firewalls and subnets is making me hungry. Anyone else up for a network admin's lunch special - pizza and Mountain Dew?
upvoted 0 times
Felix
1 months ago
Pizza and Mountain Dew? Sounds like a plan! I'm in for the network admin's lunch special.
upvoted 0 times
...
Harrison
1 months ago
I could go for some pizza right now. Count me in for the lunch special.
upvoted 0 times
...
Luke
1 months ago
I'm in for the network admin's lunch special! Pizza and Mountain Dew sounds perfect.
upvoted 0 times
...
...
Ilene
2 months ago
I think we can use static routes to achieve this. We just need to configure the routes on the routers.
upvoted 0 times
...
Jimmie
2 months ago
I'm not sure how to route traffic without using dynamic routing protocols.
upvoted 0 times
...
Hyman
2 months ago
I bet the firewall's default gateway is going to be the key to this one. Time to brush up on my subnet math!
upvoted 0 times
Dominic
1 months ago
User 4: Once you set up the static route, traffic from subnetl-1 to 192.168.10.0/24 will go through the firewall.
upvoted 0 times
...
Aliza
1 months ago
Make sure to configure the static route on the router in subnetl-1 to send traffic to the firewall.
upvoted 0 times
...
Norah
1 months ago
Yes, the key is setting the firewall's IP address as the default gateway for subnetl-1.
upvoted 0 times
...
Vashti
2 months ago
Have you figured out how to route traffic from subnetl-1 to subnetl-2 through the firewall?
upvoted 0 times
...
...
Emiko
3 months ago
Wait, is this a trick question? Surely there's a catch somewhere...
upvoted 0 times
Naomi
2 months ago
C) Test the connectivity to verify that traffic from subnetl-1 is being routed through the firewall in subnetl-2.
upvoted 0 times
...
Cherri
2 months ago
B) Ensure that the firewall in subnetl-2 has a rule to allow traffic from subnetl-1 to the IP address range of 192.168.10.0/24.
upvoted 0 times
...
Yvonne
2 months ago
A) Configure a static route on the router in subnetl-1 to route traffic destined for 192.168.10.0/24 through the IP address of the firewall in subnetl-2.
upvoted 0 times
...
...
Billy
3 months ago
Gotta love those static routes! No need for any fancy dynamic protocols here.
upvoted 0 times
...
Phillip
3 months ago
This looks straightforward. I'd set up a static route on subnet1-1 pointing to the firewall's IP address for the 192.168.10.0/24 network.
upvoted 0 times
Paz
1 months ago
No problem, happy to assist. Let me know if you need any more help with the configuration.
upvoted 0 times
...
Christa
2 months ago
Got it, I'll configure the static route as you suggested. Thanks for the help!
upvoted 0 times
...
Leota
2 months ago
Make sure to point it to the firewall's IP address for the 192.168.10.0/24 network.
upvoted 0 times
...
Wilford
2 months ago
That's correct! Setting up a static route on subnet1-1 is the way to go.
upvoted 0 times
...
...

Save Cancel
az-700  pass4success  az-104  200-301  200-201  cissp  350-401  350-201  350-501  350-601  350-801  350-901  az-720  az-305  pl-300  

Warning: Cannot modify header information - headers already sent by (output started at /pass.php:70) in /pass.php on line 77