Courseiva
Knowledge + Practice
CertificationsVendorsCareer RoadmapsLabs & ToolsStudy GuidesGlossaryPractice Questions
C
Courseiva

Free IT certification practice questions with explained answers for CCNA, CompTIA, AWS, Azure, Google Cloud, and more.

Certification Practice Questions

CCNA practice questionsSecurity+ SY0-701 practice questionsAWS SAA-C03 practice questionsAZ-104 practice questionsAZ-900 practice questionsCLF-C02 practice questionsA+ Core 1 practice questionsGoogle Cloud ACE practice questionsCySA+ CS0-003 practice questionsNetwork+ N10-009 practice questions
View all certifications →

Product

CertificationsCertification PathsExam TopicsPractice TestsExam Dumps vs Practice TestsStudy HubComparisons

Company

AboutContactEditorial PolicyQuestion Writing PolicyTrust Center

Legal

Privacy PolicyTerms of Service

Courseiva is a free IT certification practice platform offering original exam-style practice questions, detailed explanations, topic-based practice, mock exams, readiness tracking, and study analytics for Cisco, CompTIA, Microsoft, AWS, and other technology certifications.

© 2026 Courseiva. Courseiva is operated by JTNetSolutions Ltd. All rights reserved.

Courseiva is an independent certification practice platform and is not affiliated with, endorsed by, or sponsored by Cisco, Microsoft, AWS, CompTIA, Google, ISC2, ISACA, or any other certification vendor. Vendor names and certification marks are used only to identify the exams learners are preparing for.

Certifications›AZ-104›Objectives›Implement and Manage Virtual Networking
Objective 4.020% of exam

Implement and Manage Virtual Networking

AZ-104 Practice Questions

Use this page to practise Implement and Manage Virtual Networking questions for this certification. Focus on how the exam tests implement and manage virtual networking in scenario format — understanding the why behind each answer builds more durable knowledge than memorising options.

Full Practice Test →All Objectives

What this objective tests

AZ-104 Implement and Manage Virtual Networking — Key Topics

Implement and Manage Virtual Networking questions on this certification test your ability to deploy and manage implement and manage virtual networking concepts in scenario-based situations.

  • Core Implement and Manage Virtual Networking concepts and how they apply in real-world cloud scenarios.
  • How to deploy implement and manage virtual networking correctly and verify the outcome.
  • Troubleshooting implement and manage virtual networking issues by interpreting error output and system state.
  • Cloud best practices and Implement and Manage Virtual Networking design trade-offs tested by this certification.

Common exam traps

Where candidates lose marks on Implement and Manage Virtual Networking

  • ⚠Selecting the most expensive service when a simpler managed option meets the requirement.
  • ⚠Forgetting that cloud resources must be explicitly secured — defaults are rarely secure.
  • ⚠Choosing a global service fix when the issue is region-specific.
  • ⚠Overlooking cost implications of cross-region data transfer in architecture questions.

AZ-104 Implement and Manage Virtual Networking — Practice Questions

30 questions from this objective · 20% of your AZ-104 exam

Question 2mediummultiple choice
Review the full routing breakdown →

A network team wants all routers to send log messages to a centralized server at 192.0.2.50. Which command should be added to the router configuration?

Exhibit

Goal: Centralized logging server = 192.0.2.50
Question 3hardmultiple choice
Full question →

Which statement best explains the value of enabling both centralized logging and strong access controls on network devices?

Question 4mediummultiple choice
Full question →

Which statement best explains why centralized logging is valuable in security operations?

Question 5mediummultiple choice
Full question →

Why is centralized logging especially helpful during incident investigation?

Question 6mediummultiple choice
Full question →

Why is centralized logging especially useful during security investigations?

Question 7mediummultiple choice
Full question →

Why is centralized logging valuable during security incident response?

Question 8mediummultiple choice
Full question →

An operations team wants device-generated log messages collected centrally so engineers can review interface changes, warnings, and errors from one place. Which technology is most directly associated with that goal?

Question 9mediummulti select
Read the full DHCP explanation →

Which two statements accurately describe the value of centralized DHCP in enterprise networks?

Question 10hardmultiple choice
Read the full DHCP explanation →

A network team centralizes DHCP in a data center. Users in a remote branch stop receiving addresses after the branch router is replaced. Which missing configuration on the branch gateway is the strongest suspect?

Question 11mediummulti select
Read the full NAT/PAT explanation →

A network team wants reliable time, name resolution, centralized logs, and visibility into traffic patterns. Which two services directly match those goals?

Question 12mediummultiple choice
Review the full routing breakdown →

A network engineer wants device logs from routers and switches sent to a central server for long-term retention and analysis. Which service should be configured?

Question 13easymultiple choice
Full question →

A switch administrator wants log entries from multiple devices to be collected on one central server for later review. Which service should be configured?

Question 14mediummultiple choice
Full question →

Exhibit: A network engineer wants a subscription-based mechanism to stream operational updates from devices as values change, instead of polling over and over. Which approach best fits?

Exhibit

collector: 10.10.10.50
subscription: interface-counters
mode: periodic 1000ms
encoding: GPB
Question 15mediummultiple choice
Full question →

You deploy a private endpoint for an Azure Storage account. Virtual machines in VNet-App must resolve the storage account name to the private IP address of the endpoint instead of the public endpoint. What should you configure?

Question 16hardmultiple choice
Review the full subnetting walkthrough →

VM-Web01 is connected to Subnet-Web in VNet-Prod. Users on the internet cannot access the website hosted on TCP port 443. You confirm that VM-Web01 has a public IP address and the web service is running. You need to allow inbound HTTPS traffic with the least administrative effort. What should you do?

Question 17mediummultiple choice
Review the full subnetting walkthrough →

A subnet contains several application servers. You need to allow inbound TCP 3389 only from a management subnet named Subnet-Mgmt and deny RDP from all other sources. What should you do?

Question 18hardmultiple choice
Full question →

Two virtual machines named VM-Web01 and VM-Web02 host the same public web application. Users on the internet must connect through a single public IP address, and incoming requests should be distributed across both VMs. What should you deploy?

Question 19hardmultiple choice
Review the full subnetting walkthrough →

Your company deploys a network virtual appliance (NVA) in a hub subnet. All outbound internet traffic from Subnet-App in a spoke VNet must pass through the NVA for inspection. What should you configure on Subnet-App?

Question 20mediummultiple choice
Read the full VPN explanation →

You have two virtual networks named VNet-Hub and VNet-Spoke1 in the same Azure region. Resources in the two VNets must communicate privately over the Microsoft backbone without using a VPN gateway. What should you configure?

Question 21hardmultiple choice
Review the full subnetting walkthrough →

Traffic from Subnet-App to the internet is being routed through a virtual appliance unexpectedly. You need to identify which route is being applied to the network interface of VM-App01. Which Azure feature should you use?

Question 22mediummultiple choice
Read the full VPN explanation →

You have two virtual networks in the same Azure region named VNet-App and VNet-DB. Resources in the two networks must communicate privately over the Azure backbone without using VPN gateways. What should you configure?

Question 23mediummultiple choice
Full question →

You need to allow RDP access from the internet to a Windows VM named VM-Admin01 in Azure. The VM already has a public IP address. Which additional configuration is required?

Question 24hardmultiple choice
Full question →

You have an Azure load balancer in front of two virtual machines. The load balancer reports both instances as unavailable even though the VMs are running. What is the most likely cause?

Question 25hardmultiple choice
Review the full subnetting walkthrough →

A subnet contains two NSGs: one associated with the subnet and one associated with the NIC of VM-App03. You need to determine whether inbound TCP 3389 from the internet is allowed. What is the correct interpretation?

Question 26hardmultiple choice
Full question →

You create a private endpoint for an Azure Storage account and disable public network access on the account. A VM in a peered VNet cannot reach the storage account by name. The private endpoint resides in VNet-App. What is the most likely missing configuration?

Question 27mediummultiple choice
Read the full NAT/PAT explanation →

You need to expose a web application running on several VMs and distribute traffic across them based on HTTP request attributes such as URL path. Which service should you use?

Question 28mediummultiple choice
Read the full VPN explanation →

VNet-Hub and VNet-Spoke1 are in the same region and subscription. Resources in the two VNets must communicate over the Microsoft backbone without using a VPN gateway. What should you configure?

Question 29mediummultiple choice
Full question →

You need to connect VNet-Hub and VNet-Spoke so that resources in both virtual networks can communicate privately over the Microsoft backbone. Both virtual networks are in the same region. What should you configure?

Question 30hardmultiple choice
Review the full routing breakdown →

Traffic from VM-App01 is unexpectedly reaching the internet through a network virtual appliance. You need to determine which route is currently applied to the virtual machine network interface. Which Azure tool should you use?

Question 31hardmultiple choice
Full question →

A Windows VM in Azure has a public IP address, but administrators on the internet cannot connect by using Remote Desktop. You confirm that the VM is running and the guest firewall allows RDP. What is the most likely Azure-side cause?

More Implement and Manage Virtual Networking questions available in the full practice test.

Continue Practising →
←

Previous objective

Deploy and Manage Azure Compute

Next objective

Monitor and Maintain Azure Resources

→

All AZ-104 Objectives

  • 1.Manage Azure Identities and Governance20%
  • 2.Implement and Manage Storage15%
  • 3.Deploy and Manage Azure Compute20%
  • 4.Implement and Manage Virtual Networking20%
  • 5.Monitor and Maintain Azure Resources25%