title
Please take a moment to fill out this form. We will get back to you as soon as possible.
All fields marked with an asterisk (*) are mandatory.
Designing and Implementing Microsoft Azure Networking Solutions
Course Description
Overview
This exam measures your ability to accomplish the following technical tasks: design, implement, and manage hybrid networking; design and implement core networking infrastructure; design and implement routing; secure and monitor networks; and design and implement private access to Azure Services.You may be eligible for ACE college credit if you pass this certification exam.
Passing score: 700
Objectives
Prerequisites
- Candidates for this exam should have subject matter expertise in planning, implementing, and maintaining Azure networking solutions, including hybrid networking, connectivity, routing, security, and private access to Azure services.
- Candidates for this exam should also have expert Azure administration skills, in addition to extensive experience and knowledge of networking, hybrid connections, and network security.
Topics
- Design a site-to-site VPN connection for high availability
- Select an appropriate virtual network (VNet) gateway SKU
- Identify when to use policy-based VPN versus route-based VPN
- Create and configure a local network gateway
- Create and configure an IPsec/IKE policy
- Create and configure a virtual network gateway
- Diagnose and resolve virtual network gateway connectivity issues
- Select an appropriate virtual network gateway SKU
- Plan and configure RADIUS authentication
- Plan and configure certificate-based authentication
- Plan and configure OpenVPN authentication
- Plan and configure Azure Active Directory (Azure AD) authentication
- Implement a VPN client configuration file
- Diagnose and resolve client-side and authentication issues
- Choose between provider and direct model (ExpressRoute Direct)
- Design and implement Azure cross-region connectivity between multiple ExpressRoute locations
- Select an appropriate ExpressRoute SKU and tier
- Design and implement ExpressRoute Global Reach
- Design and implement ExpressRoute FastPath
- Choose between private peering only, Microsoft peering only, or both
- Configure private peering
- Configure Microsoft peering
- Create and configure an ExpressRoute gateway
- Connect a virtual network to an ExpressRoute circuit
- Recommend a route advertisement configuration
- Configure encryption over ExpressRoute
- Implement Bidirectional Forwarding Detection
- Diagnose and resolve ExpressRoute connection issues
- Create a VNet
- Plan and configure subnetting for services, including VNet gateways, private endpoints, firewalls, application gateways, and VNet integrated platform services
- Plan and configure subnet delegation
- Plan and configure subnetting for Azure Route Server
- Design public DNS zones
- Design private DNS zones
- Design name resolution inside a VNet
- Configure a public or private DNS zone
- Link a private DNS zone to a VNet
- Design service chaining, including gateway transit
- Design VPN connectivity between VNets
- Implement VNet peering
- Design an Azure Virtual WAN architecture, including selecting types and services
- Connect a VNet gateway to Azure Virtual WAN
- Create a hub in Virtual WAN
- Create a network virtual appliance (NVA) in a virtual hub
- Configure virtual hub routing
- Create a connection unit
- Design and implement user-defined routes (UDRs)
- Associate a route table with a subnet
- Configure forced tunneling
- Diagnose and resolve routing issues
- Design and implement Azure Route Server
- Choose an Azure Load Balancer SKU (Basic versus Standard)
- Choose between public and internal
- Create and configure an Azure Load Balancer (including cross-region)
- Implement a load balancing rule
- Create and configure inbound NAT rules
- Create explicit outbound rules for a load balancer
- Recommend Azure Application Gateway deployment options
- Choose between manual and autoscale
- Create a back-end pool
- Configure health probes
- Configure listeners
- Configure routing rules
- Configure HTTP settings
- Configure Transport Layer Security (TLS)
- Configure rewrite sets
- Choose an Azure Front Door SKU
- Configure health probes, including customization of HTTP response codes
- Configure SSL termination and end-to-end SSL encryption
- Configure multisite listeners
- Configure back-end targets
- Configure routing rules, including redirection rules
- Configure a routing method (mode)
- Configure endpoints
- Create HTTP settings
- Choose when to use a Virtual Network NAT
- Allocate public IP or public IP prefixes for a NAT gateway
- Associate a Virtual Network NAT with a subnet
- Design an Azure Firewall deployment
- Create and implement an Azure Firewall deployment
- Configure Azure Firewall rules
- Create and implement Azure Firewall Manager policies
- Create a secure hub by deploying Azure Firewall inside an Azure Virtual WAN hub
- Integrate an Azure Virtual WAN hub with a third-party NVA
- Create an NSG
- Associate an NSG to a resource
- Create an application security group (ASG)
- Associate an ASG to a NIC
- Create and configure NSG rules
- Interpret NSG flow logs
- Validate NSG flow rules
- Verify IP flow
- Configure detection or prevention mode
- Configure rule sets for Azure Front Door, including Microsoft managed and user defined
- Configure rule sets for Application Gateway, including Microsoft managed and user defined
- Implement a WAF policy
- Associate a WAF policy
- Configure network health alerts and logging by using Azure Monitor
- Create and configure a Connection Monitor instance
- Configure and use Traffic Analytics
- Configure NSG flow logs
- Enable and configure diagnostic logging
- Configure Azure Network Watcher
- Create a Private Link service
- Plan private endpoints
- Create private endpoints
- Configure access to private endpoints
- Integrate Private Link with DNS
- Integrate a Private Link service with on-premises clients
- Create service endpoints
- Configure service endpoint policies
- Configure service tags
- Configure access to service endpoints
- Configure App Service for regional VNet integration
- Configure Azure Kubernetes Service (AKS) for regional VNet integration
- Configure clients to access App Service Environment
Related Courses
-
Designing and Implementing a Microsoft Azure AI Solution
LQEX-MOC-AI-102- Duration: 1
- Delivery Format: Exam Vouchers
- Price: 165.00 USD
-
Microsoft Azure AI Fundamentals
LQEX-MOC-AI-900- Duration: 1
- Delivery Format: Exam Vouchers
- Price: 99.00 USD
Self-Paced Training Info
Learn at your own pace with anytime, anywhere training
- Same in-demand topics as instructor-led public and private classes.
- Standalone learning or supplemental reinforcement.
- e-Learning content varies by course and technology.
- View the Self-Paced version of this outline and what is included in the SPVC course.
- Learn more about e-Learning
Course Added To Shopping Cart
bla
bla
bla
bla
bla
bla
Exam Terms & Conditions
Please refer to the full terms and conditions here.
Exam Terms & Conditions
Sorry, there are no classes that meet your criteria.
Please contact us to schedule a class.
STOP! Before You Leave
Save 0% on this course!
Take advantage of our online-only offer & save 0% on any course !
Promo Code skip0 will be applied to your registration
Purchase Information
title
Please take a moment to fill out this form. We will get back to you as soon as possible.
All fields marked with an asterisk (*) are mandatory.