AZ-700 exam dumps

AZ-700 practice question 207 of 310

Designing and Implementing Microsoft Azure Networking Solutions. Professional level, Microsoft. Free question with the correct answer and a full explanation.

AZ-700 Question 207

Single answer

You manage a web application hosted on Azure Virtual Machines behind an Azure Application Gateway. You have created a rewrite set to add a custom response header named 'Strict-Transport-Security' to every response. However, after configuring the rewrite rule, you do not see the header being included in the responses from the application. Which of the following actions must you take to ensure the rewrite rule is actually applied to traffic?

  1. A

    A) Associate the rewrite set with the Application Gateway� routing rule or listener.

  2. B

    B) Modify the Web Application Firewall (WAF) policy to include the rewrite set as a custom rule.

  3. C

    C) Enable end-to-end SSL on the Application Gateway and its backend pools.

  4. D

    D) Add a path-based rule in the Application Gateway and reference the custom header.

Show answer and explanation

Correct answer: A

Explanation

In Azure Application Gateway, creating a rewrite set and defining the rules is only the first step. You must associate the rewrite set with the appropriate routing rule or listener to make the rules active. According to Microsoft documentation (https://learn.microsoft.com/azure/application-gateway/rewrite-http-headers#associating-a-rewrite-set), a rewrite set will not be applied to traffic unless explicitly linked to the routing configuration handling that traffic.

  • A. Correct.

    A) Correct. To apply any rewrite rule, you must associate the rewrite set with either the routing rule or the listener in the Application Gateway. Merely creating a rewrite set is not enough; it has to be linked to the rule that handles the traffic.

  • B. Incorrect.

    B) Incorrect. Although WAF policies can manage security rules, they do not automatically apply rewrite rules to traffic. WAF custom rules deal with threat detection or blocking, not adding headers.

  • C. Incorrect.

    C) Incorrect. While end-to-end SSL might be important for security, it does not affect whether a rewrite set is applied. TLS termination settings and rewrite sets serve different purposes.

  • D. Incorrect.

    D) Incorrect. Path-based routing rules do control how traffic is routed, but they do not automatically apply rewrite sets. Adding or referencing the header in a path-based rule alone will not insert the header; you still need to bind the rewrite set to the rule.

Timed practice exam

Take a AZ-700 practice test under exam conditions

70 questions in 100 minutes, drawn from this bank, with a score report and a per-question review when you finish.

Start timed exam