nerdexam
Microsoft

AZ-700 · Question #293

You have an Azure subscription that contains a virtual network named VNet1 and the resources shown in the following table. You need to implement a solution for the traffic originating from VNet1…

The correct answer is D. FW1. Azure Firewall operates in a transparent proxy mode by default. In this mode, traffic is sent to the firewall using a user defined route (UDR) configuration. The firewall intercepts that traffic inline and passes it to the destination…

Submitted by rania.sa· Apr 18, 2026

Question

You have an Azure subscription that contains a virtual network named VNet1 and the resources shown in the following table. You need to implement a solution for the traffic originating from VNet1. The solution must meet the following requirements:

  • Perform transparent proxying to external web servers.
  • Inspect all outbound TLS traffic.
  • Minimize costs.

Which resource should you include in the solution?

Exhibit

AZ-700 question #293 exhibit

Options

  • AFW2
  • BAG1
  • CFD1
  • DFW1

How the community answered

(37 responses)
  • A
    14% (5)
  • B
    3% (1)
  • C
    8% (3)
  • D
    76% (28)

Explanation

Azure Firewall operates in a transparent proxy mode by default. In this mode, traffic is sent to the firewall using a user defined route (UDR) configuration. The firewall intercepts that traffic inline and passes it to the destination. https://learn.microsoft.com/en-us/azure/firewall/explicit-proxy https://learn.microsoft.com/en-us/azure/firewall/choose-firewall-sku

Community Discussion

No community discussion yet for this question.

Full AZ-700 Practice