15 questions across 5 exams
You are designing a global e-commerce application. The web tier is hosted on Azure App Service in three regions: East US, West Europe, and Southeast Asia. The application requires: - Global load balancing to route users to the closest region. - SSL offloading and Web Application Firewall (WAF) protection at the edge. - Caching of static assets (images, CSS) at the edge. - Protection against massive DDoS attacks. Which load balancing solution should you recommend?
You are deploying a cluster of virtual machines for a highly available application. You need to decide between using an Availability Set or Availability Zones. Which TWO statements accurately describe the differences and SLA implications of these options? (Select TWO)
You are designing the storage architecture for a new application. The application will use Azure Blob Storage to store user-uploaded documents. The business requires that the documents remain available even if an entire Azure region goes offline. Furthermore, the application must be able to read the documents from the secondary region immediately, without waiting for Microsoft to initiate a failover. Which storage redundancy option should you recommend?
A global e-commerce company hosts its web application in three Azure regions: US East, Europe West, and Asia East. The architecture must meet the following requirements: - Route users to the closest region to minimize latency. - Provide SSL/TLS termination at the edge. - Protect the application against OWASP top 10 vulnerabilities (e.g., SQL injection, cross-site scripting). - Cache static content at the edge. Which global load balancing solution should you recommend?
You are designing the compute architecture for a new application using Azure Virtual Machines. The business requires a 99.99% Service Level Agreement (SLA) for VM uptime. Which TWO architectural patterns can you use to achieve this SLA? (Select TWO)
A company has deployed two Azure Virtual Machines running a custom TCP-based application on port 5000. The VMs are deployed in the same Virtual Network but in different Availability Zones. You need to distribute incoming internet traffic across both VMs. The solution must support health probes to detect if the application on port 5000 stops responding, and it must be as cost-effective as possible. Which service should you recommend?
You are designing a global routing architecture for a multi-region application. The application consists of a frontend web app (HTTP/HTTPS) and a backend UDP-based gaming server. You need to route users to the closest region for both the web app and the gaming server. If a region fails, traffic must automatically fail over to the next closest region. Which load balancing solution should you recommend?
You are designing the compute architecture for a highly available web application using Azure Virtual Machines. The business requires a guaranteed SLA of 99.99% for VM uptime. You plan to deploy the VMs across multiple physical locations within the same Azure region to protect against datacenter-level failures (e.g., power, cooling, network). Which TWO architectural components must you use to achieve this SLA? (Select TWO)
You are deploying an Azure Application Gateway v2 to load balance traffic for a critical web application. The backend pool consists of Virtual Machine Scale Sets deployed across Availability Zones 1, 2, and 3. You need to ensure that the Application Gateway itself is highly available and can survive the failure of a single Availability Zone. How should you configure the Application Gateway?
You are designing an active-active multi-region architecture for a global web application. The application consists of stateless web servers and an Azure Cosmos DB backend. You need to route user traffic to the closest region, provide automatic failover if a region goes down, and protect the application from DDoS attacks and common web vulnerabilities. Which THREE services should you include in your design? (Select THREE)
You are deploying a cluster of 3 Virtual Machines in a single Azure region. You need to ensure that the VMs are protected from a datacenter-level failure (e.g., power or cooling failure in one building). Which high availability feature should you use?
You are designing a load balancing solution for a multi-tier application. The web tier requires SSL termination, cookie-based session affinity, and URL path-based routing. The application is hosted entirely within a single Azure region. Which load balancing service should you recommend?
You are deploying a 3-tier application on Azure VMs. You need to ensure a 99.99% SLA for the VMs. The architecture must protect against a datacenter-level failure within the region. What should you use?
You are designing a global e-commerce website hosted on Azure App Service across 3 regions. You need to route user traffic to the closest region, provide SSL offloading, and protect against SQL injection. Which TWO services should you combine? (Select TWO)
You need to ensure an Azure Storage account remains available if a single datacenter in an Azure region fails. You do not need cross-region replication. Which redundancy option should you choose?
Full answers, grading, and explanations on why each answer is correct.