Exam AZ-700 Designing and Implementing Microsoft Azure Networking Solutions

Exam AZ-700: Designing and Implementing Microsoft Azure Networking Solutions - Certifications | Microsoft Learn

Modules in Learning Path

Introduction to Azure Virtual Networks

In this module, you learn how to design and implement Azure networking services. You learn about virtual networks, public and private IPs, DNS, virtual network peering, routing, and Azure Virtual NAT.
At the end of this module, you're able to:

  • Implement virtual networks.
  • Configure public IP services.
  • Design and implement name resolution.
  • Design and implement cross-VNET connectivity.
  • Implement virtual network routing.
  • Design and implement an Azure Virtual Network NAT.

Relevant Resources

Azure Virtual Network
Routing in Azure
Azure Route Server
Azure Public IP
Azure Private DNS Zone
Azure Public DNS Zone
Peering Azure Virtual Networks
Azure NAT Gateway

Design and Implement Hybrid Networking

Design and implement hybrid networking solutions such as Site-to-Site VPN connections, Point-to-Site VPN connections, Azure Virtual WAN, and Virtual WAN hubs.
At the end of this module, you are able to:

  • Design and implement a site-to-site VPN connection
  • Design and implement a point-to-site VPN connection
  • Design and implement authentication for point-to-site VPN connections
  • Design and implement Azure Virtual WAN

Relevant Resources

Azure Virtual Network Gateway
Azure Virtual WAN

Design and Implement Azure ExpressRoute

You learn how to design and implement Azure ExpressRoute, ExpressRoute Global Reach, ExpressRoute FastPath.
At the end of this module, you are able to

  • Design and implement ExpressRoute
  • Design and implement ExpressRoute Global Reach
  • Design and implement ExpressRoute FastPath
  • Troubleshoot ExpressRoute connection issues

Relevant Resources

Azure ExpressRoute

Load Balance non-HTTP(S) Traffic in Azure

You learn the different load balancer options in Azure and how to choose and implement the right Azure solution for non-HTTP(S) traffic.
At the end of this module, you are able to:

  • Identify the features and capabilities of Azure Load Balancer
  • Design and implement an Azure Load Balancer
  • Implement a Traffic Manager profile

Relevant Resource

Azure Load Balancer
Azure Traffic Manager
Azure Application Gateway
Azure Front Door
Azure Virtual Network

Load Balancing options for Azure

Load Balance HTTP(S) Traffic in Azure

You learn how to design load balancer solutions for HTTP(S) traffic and how to implement Azure Application Gateway and Azure Front Door.
At the end of this module, you are able to:

  • Design and implement Azure Application Gateway
  • Implement Azure Front Door

Relevant Resources

Azure Application Gateway

Design and Implement Network Security

Network security is the process of protecting resources from unauthorized access or attack by applying controls to network traffic, allowing only legitimate traffic/requests. Azure includes a robust networking infrastructure to support your application and service connectivity requirements.

Your security requirements might include:

  • Authentication and authorization (for your application)
  • Intrusion detection and response
  • URL filtering
  • Application access control
  • DDoS protection

In this module, you will:

  • Understand how to get network security recommendations with Microsoft Defender for Cloud
  • Configure and monitor an Azure DDoS protection plan
  • Implement and manage firewalls
  • Implement network security groups (NSGs)1
  • Implement a web application firewall (WAF) on Azure Front Door
  • Configure a monitoring environment for networking

Relevant Resources

Azure Network Security Group
Azure Application Security Groups
Azure Firewall

Design and Implement Private Access to Azure Services

You'll learn to design and implement private access to Azure Services with Azure Private Link, and virtual network service endpoints.
In this module, you will:

  • Explain virtual network service endpoints.
  • Define Private Link Service and private endpoints.
  • Integrate private endpoints with DNS.
  • Design and configure private endpoints.
  • Design and configure access to service endpoints.
  • Integrate your App Service with Azure virtual networks.

Relevant Resources

Azure Service Endpoint
Azure Private Endpoint
Azure Private Link
Azure Private DNS Zone

Design and Implement Network Monitoring

You learn to design and implement network monitoring solutions such as Azure Monitor and Network watcher.
At the end of this module, you are able to:

  • Configure network health alerts and logging by using Azure Monitor
  • Create and configure a Connection Monitor instance
  • Configure and use Traffic Analytics
  • Configure NSG flow logs
  • Enable and configure diagnostic logging
  • Configure Azure Network Watcher

Relevant Resources

Azure Monitor
Azure Network Watcher

Factoid Factory

Last Minute Cram

Based on AZ-700 Designing and Implement Azure Networking Study SUPER Guide!

Virtual Networking

Public IPs

Virtual Network Peering

Gateway Transit

User Defined Routes

Nat Gateway

Azure DNS

Private DNS Zones

Public DNS Zones

Site to Site VPN

Point to Site VPN

Express Route

Virtual WAN

Load Balancing

NSGs and ASGs

Service Endpoints

Private Endpoints

Azure Firewall

Networking Monitoring