Exam AZ-304 All QuestionsBrowse all questions from this exam
Question 157

You have an on-premises network to which you deploy a virtual appliance.

You plan to deploy several Azure virtual machines and connect the on-premises network to Azure by using a Site-to-Site connection.

All network traffic that will be directed from the Azure virtual machines to a specific subnet must flow through the virtual appliance.

You need to recommend solutions to manage network traffic.

Which two options should you recommend? Each correct answer presents a complete solution.

    Correct Answer: C, D

    To ensure that all network traffic from the Azure virtual machines to a specific subnet flows through the virtual appliance, you need to control the routes and network configuration within Azure. Configuring a routing table allows you to specify custom routes that direct traffic through the appropriate virtual appliance. Implementing an Azure virtual network (VNet) is essential because it enables the creation and management of a logically isolated network environment within Azure, where you can deploy and configure virtual appliances, define subnets, and apply the routing table. ExpressRoute is not necessary in this case as it pertains to establishing a dedicated private connection between Azure and on-premises, which isn't specified as a requirement for managing the traffic through the virtual appliance.

Discussion
pj11Options: CD

ExpressRoute is an option but not a necessity. Correct Answer - C & D

levianthan

How does D route your traffic through an NVA? Not to mention that D is kind of required for all options.

DeepHouse

The virtual appliance is on-prem. So it would imply that there is some routing on prem to complete the solution. But since the question is saying that you 'plan' to deploy VMs in azure, implicitly you need a VNET, and you need to configure a route table to get it back to the S2S VPN connection to reach on-prem.

d0bermannn

not a word said that nva is on-premises

vuphongtran

"You have an on-premises network to which you deploy a virtual appliance"

beedle

D DOES NOT MAKE ANY SENSE. If you follow this guy say bye bye to $$$

Def21

The scenario does not mention VPN connectivity. Moreover, I think Microsoft's policy is that "always use Azure ExpressRoute" even if it is very expensive. Thus, I'd guess the given answer is correct.

BrettusMaximus

Express Route is the only option that connects Azure to On-Prem. Read the question "You plan to deploy ..... and connect the on-premises network "

d0bermannn

Express Route is NOT the only option that connects Azure to On-Premises, but it IS the only in conn option in this qwiz

bc5468521Options: BC

the question asks "Each correct answer presents a complete solution." so B and C is an independent complete solution.

addam23

But there are not. ExpressRoute itself won't redirect you to NVA. You still need to modify a routing table

china5000

Yes, so that's C

cakriwutOptions: BC

Correct answer should be B & C (given answer). The reason "Each correct answer presents a complete solution" . The keyword is the answer must present a complete solution . Option D - is part of the solution and it doesnt present a complete solution.

Karanvir_10Options: CD

It should be C & D, same question is in exam readiness video (Q2) https://learn.microsoft.com/en-us/shows/exam-readiness-zone/preparing-for-az-305-design-infrastructure-solutions-segment-4-of-4. There you have to only select one but the instructor has cancelled express route.

jp_mcgee

33:19 in the video is the exact same question.

flafernanOptions: CD

C, D : Why are there no other options? A. Configure Azure Traffic Manager: Azure Traffic Manager is a DNS-based load balancer that distributes traffic to different regions, endpoints, or services, but is not used for routing network traffic within a VNet or directing traffic through a specific virtual device. B. Implement Azure ExpressRoute: Azure ExpressRoute provides a private connection between your on-premises network and Azure, offering higher bandwidth and low latency. However, it is not required to route traffic through a specific virtual device within an Azure VNet.

BenHungOptions: CD

C) Azure ExpressRoute: Azure ExpressRoute is a dedicated private connection between Azure and an on-premises network. While it provides a secure and reliable connection, it is not specifically needed to manage network traffic in this scenario.

Igor_101Options: BC

The answer is BC. The first sentence "You have an on-premises network to which you deploy a virtual appliance" already implies that you have a vnet. You can't deploy an appliance without creating a vnet first or during deployment process. So this leaves only ExpressRoute and Routing Table.

achechen

how can you have a vnet in your on-premises network! Jeez!

JohnPhanOptions: BC

B,C is correct.

HetalMehta24Options: BC

B & C is correct

faeemOptions: CD

I would say C and D. My view is that the question states a site to site VPN. Express route creates a layer 2 where by S2S is over the public internet. Therefore, I would rule out express route if they want you to setup a S2S VPN. Traffic manager is a DNS load balancer. From my experience, that would not work so great as with the S2S established, to route traffic between the VPN, Azure VN and/or routing table is better option for me.

clouderaOptions: CD

** You plan to deploy several Azure virtual machines and connect the on-premises network to Azure by using a Site-to-Site connection. ** All network traffic that will be directed from the Azure virtual machines to a specific subnet A. Configure Azure Traffic Manager. B. Implement Azure ExpressRoute. Most Voted C. Configure a routing table. Most Voted D. Implement an Azure virtual network. Site-Site Connection implies to me that I can use VPN (ExpressRoute is not necessary) and to redirect traffic to a specific subnet meaning routing table. So the answer should be C and D

cloudera

DO NOT RELY ON MOST Voted answer :)

anthonyphucOptions: BC

All network traffic that will be directed from the Azure virtual machines to a specific subnet must flow through the virtual appliance. the virtual appliance is on-prem. question asked each answer is a completely solution

wn777

There is no existing site to site connection, this is part of what will be put in place

RASUKOptions: CD

Have this same question on skillpipe material from the az-304 course and there is only ONE option that is "Implement an Azure virtual Network". Don' t know where the second option came from. But would go for C.

RASUK

Would go not, definitely is Azure Routing table to use Azure Forced Tunneling. C & D are the right answers.

xyz213Options: CD

ExpressRoute is an option but not a necessity. Correct Answer - C & D

examineezerOptions: BC

"Each correct answer presents a complete solution". No it doesn't. Bad question. If this comes up though I'm going for B and C.

ZodiaCOptions: CD

10000000000%