nerdexam
Microsoft

AZ-700 · Question #294

You have an Azure subscription. The subscription contains a locally-redundant storage (LRS) account named storage1 that is deployed to the US East Azure region and has a Microsoft.Storage service…

The correct answer is D. Create a service endpoint policy. When Service Endpoint policies are applied on a subnet, the Azure Storage Service Endpoint scope gets upgraded from regional to global. This process means that all the traffic to Azure Storage is secured over service endpoint thereafter. The Service endpoint policies are also…

Submitted by priya_blr· Apr 18, 2026

Question

You have an Azure subscription. The subscription contains a locally-redundant storage (LRS) account named storage1 that is deployed to the US East Azure region and has a Microsoft.Storage service endpoint. You set Redundancy for storage1 to Read-access geo-redundant storage (RA-GRS). You need to ensure that the contents of storage1 will be accessible by using a service endpoint in a paired region. The solution must minimize administrative effort. What should you do first?

Options

  • ACreate an object replication rule for storage.
  • BDelete the existing service endpoint.
  • CFrom storage1, select Secure transfer required.
  • DCreate a service endpoint policy.

How the community answered

(46 responses)
  • A
    15% (7)
  • B
    4% (2)
  • C
    9% (4)
  • D
    72% (33)

Explanation

When Service Endpoint policies are applied on a subnet, the Azure Storage Service Endpoint scope gets upgraded from regional to global. This process means that all the traffic to Azure Storage is secured over service endpoint thereafter. The Service endpoint policies are also applicable globally. Any storage accounts that aren't explicitly allowed are denied access. https://learn.microsoft.com/en-us/azure/virtual-network/virtual-network-service-endpoint-policies-

Community Discussion

No community discussion yet for this question.

Full AZ-700 Practice