AZ-700 exam dumps

AZ-700 practice question 190 of 310

Designing and Implementing Microsoft Azure Networking Solutions. Professional level, Microsoft. Free question with the correct answer and a full explanation.

AZ-700 Question 190

Select 3

An e-commerce company is deploying multiple microservices behind a single Azure Application Gateway. They require each service to be reachable based on distinct URL paths, need to defend against common web vulnerabilities using a built-in rule set, and must automatically redirect all incoming HTTP requests to HTTPS. Which three features of Azure Application Gateway should be configured to fulfill these requirements?

  1. A

    Path-based routing

  2. B

    WAF with OWASP core rule set

  3. C

    HTTP to HTTPS redirection

  4. D

    Connection draining

  5. E

    Autoscaling

Show answer and explanation

Correct answers: A, B, C

Explanation

Azure Application Gateway can be configured with path-based routing rules to distribute traffic to multiple back-end endpoints based on URL paths. When set up as a Web Application Firewall (WAF) using the OWASP core rule set, it inspects incoming requests and blocks detected threats. Enabling HTTP to HTTPS redirection ensures that all traffic is encrypted for security and compliance. For more information, see Microsoft� documentation on Azure Application Gateway: https://learn.microsoft.com/azure/application-gateway/overview.

  • A. Correct.

    Option 1: Path-based routing is required to direct traffic to specific microservices based on their URL path segments. This meets the need to differentiate multiple back-end services, each hosted at a unique path.

  • B. Correct.

    Option 2: WAF with OWASP core rule set protects against a wide range of web exploits as defined by OWASP. Since the requirement explicitly includes defending against common web vulnerabilities, enabling WAF with OWASP rules is necessary.

  • C. Correct.

    Option 3: HTTP to HTTPS redirection enforces secure connections by redirecting unencrypted (HTTP) requests to their encrypted (HTTPS) counterparts, satisfying the requirement for automatic redirection to HTTPS.

  • D. Incorrect.

    Option 4: Connection draining is useful for gracefully removing back-end instances from rotation during maintenance or deployment, but it is not specifically required by the scenario. It focuses on managing active sessions, not on routing, security, or enforcing HTTPS.

  • E. Incorrect.

    Option 5: Autoscaling helps the Application Gateway instance adapt to changing traffic loads by adding or removing capacity automatically. While useful in many production environments, the scenario never specified a need for autoscaling, so it is not a direct requirement here.

Timed practice exam

Take a AZ-700 practice test under exam conditions

70 questions in 100 minutes, drawn from this bank, with a score report and a per-question review when you finish.

Start timed exam