- Home
- IT Courses
- MS-AZ700T00: Designing And Implementing Microsoft Azure Networking Solutions
MS-AZ700T00: Designing And Implementing Microsoft Azure Networking Solutions
Course Code: MS-AZ700T00
This course teaches Network Engineers how to design, implement, and maintain Azure networking solutions. This course covers the process of designing, implementing, and managing core Azure networking infrastructure, Hybrid Networking connections, load balancing traffic, network routing, private access to Azure services, network security and monitoring. Learn how to design and implement a secure, reliable, network infrastructure in Azure and how to establish hybrid connectivity, routing, private access to Azure services, and monitoring in Azure.
This course is for Network Engineers looking to specialize in Azure networking solutions. An Azure Network engineer designs and implements core Azure networking infrastructure, hybrid networking connections, load balance traffic, network routing, private access to Azure services, network security and monitoring. The azure network engineer will manage networking solutions for optimal performance, resiliency, scale, and security.
Successful Azure Network Engineers start this role with experience in enterprise networking, on-premises or cloud infrastructure and network security.
- Understanding of on-premises virtualization technologies, including: VMs, virtual networking, and virtual hard disks.
- Understanding of network configurations, including TCP/IP, Domain Name System (DNS), virtual private networks (VPNs), firewalls, and encryption technologies.
- Understanding of software defined networking.
- Understanding hybrid network connectivity methods, such as VPN.
- Understanding resilience and disaster recovery, including high availability and restore operations.
This course aims to equip learners with the skills needed to design, implement, and manage Azure networking solutions. Here are the main course objectives:
- Core Network Infrastructure: Understand and implement core networking components in Azure.
- Hybrid Connectivity: Design and manage hybrid network connections, including VPNs and Azure Virtual WAN.
- Application Delivery Services: Implement solutions for load balancing and application delivery, such as Azure Application Gateway and Azure Front Door.
- Private Access to Azure Services: Design and implement private access to Azure services using Azure Private Link and virtual network service endpoints.
- Network Security: Secure Azure networking solutions using Network Security Groups, Azure Firewall, and Web Application Firewall.
- Network Monitoring: Monitor and troubleshoot Azure network environments using tools like Azure Monitor and Network Watcher.
This course will prepare delegates to write the Microsoft AZ-700: Designing and Implementing Microsoft Azure Networking Solutions exam.
Modules
In this module, you learn how to design and implement Azure networking services. You learn about virtual networks, public and private IPs, DNS, virtual network peering, routing, and Azure Virtual NAT.
Lessons
- Introduction
- Explore Azure Virtual Networks
- Configure public IP services
- Exercise: Design and implement a virtual network in Azure
- Design name resolution for your virtual network
- Exercise: Configure domain name servers settings in Azure
- Enable cross-virtual network connectivity with peering
- Exercise: Connect two Azure virtual networks using global virtual network peering
- Implement virtual network traffic routing
- Configure internet access with Azure Virtual NAT
- Summary
At the end of this module, you’re able to:
- Implement virtual networks.
- Configure public IP services.
- Design and implement name resolution.
- Design and implement cross-VNET connectivity.
- Implement virtual network routing.
- Design and implement an Azure Virtual Network NAT.
Design and implement hybrid networking solutions such as Site-to-Site VPN connections, Point-to-Site VPN connections, Azure Virtual WAN, and Virtual WAN hubs.
Lessons
- Introduction
- Design and implement Azure VPN Gateway
- Exercise: Create and configure a virtual network gateway
- Connect networks with Site-to-site VPN connections
- Connect devices to networks with Point-to-site VPN connections
- Connect remote resources by using Azure Virtual WANs
- Exercise: create a Virtual WAN by using the Azure portal
- Create a network virtual appliance (NVA) in a virtual hub
- Summary
At the end of this module, you’re able to:
- Design and implement a site-to-site VPN connection
- Design and implement a point-to-site VPN connection
- Design and implement authentication for point-to-site VPN connections
- Design and implement Azure Virtual WAN
You learn how to design and implement Azure ExpressRoute, ExpressRoute Global Reach, ExpressRoute FastPath.
Lessons
- Introduction
- Explore Azure ExpressRoute
- Design an ExpressRoute deployment
- Exercise: configure an ExpressRoute gateway
- Exercise: provision an ExpressRoute circuit
- Configure peering for an ExpressRoute deployment
- Connect an ExpressRoute circuit to a virtual network
- Connect geographically dispersed networks with ExpressRoute global reach
- Improve data path performance between networks with ExpressRoute FastPath
- Troubleshoot ExpressRoute connection issues
- Summary and resources
At the end of this module, you’re able to:
Design and implement ExpressRoute
- Design and implement ExpressRoute Global Reach
- Design and implement ExpressRoute FastPath
- Troubleshoot ExpressRoute connection issues
You learn the different load balancer options in Azure and how to choose and implement the right Azure solution for non-HTTP(S) traffic.
Lessons
- Introduction
- Explore load balancing
- Design and implement Azure load balancer using the Azure portal
- Exercise: create and configure an Azure load balancer
- Explore Azure Traffic Manager
- Exercise: create a Traffic Manager profile using the Azure portal
- Summary
At the end of this module, you’re able to:
- Identify the features and capabilities of Azure Load Balancer
- Design and implement an Azure Load Balancer
- Implement a Traffic Manager profile
You learn how to design load balancer solutions for HTTP(S) traffic and how to implement Azure Application Gateway and Azure Front Door.
Lessons
- Introduction
- Design Azure Application Gateway
- Configure Azure Application Gateway
- Exercise: Deploy Azure Application Gateway
- Design and configure Azure Front Door
- Exercise: create a Front Door for a highly available web application
- Summary
At the end of this module, you’re able to:
- Design and implement Azure Application Gateway
- Implement Azure Front Door
You learn to design and implement network security solutions such as Azure DDoS, Network Security Groups, Azure Firewall, and Web Application Firewall.
Lessons
- Introduction
- Get network security recommendations with Microsoft Defender for Cloud
- Deploy Azure DDoS Protection by using the Azure portal
- Exercise: Configure DDoS Protection on a virtual network using the Azure portal
- Deploy Network Security Groups by using the Azure portal
- Design and implement Azure Firewall
- Exercise: Deploy and configure Azure Firewall using the Azure portal
- Secure your networks with Azure Firewall Manager
- Exercise: Secure your Virtual Hub using Azure Firewall Manager
- Implement a Web Application Firewall on Azure Front Door
- Summary and resources
At the end of this module, you’re able to:
- Get network security recommendations with Microsoft Defender for Cloud
- Deploy Azure DDoS Protection by using the Azure portal
- Design and implement network security groups (NSGs)
- Design and implement Azure Firewall
- Design and implement a web application firewall (WAF) on Azure Front Door
You learn to design and implement private access to Azure Services with Azure Private Link, and virtual network service endpoints.
Lessons
- Introduction
- Explain virtual network service endpoints
- Define Private Link Service and private endpoint
- Integrate private endpoint with Domain Name Service
- Exercise: Restrict network access to PaaS resources with virtual network service endpoints using the Azure portal
- Exercise: Create an Azure private endpoint using Azure PowerShell
- Summary
At the end of this module, you’re able to:
- Explain virtual network service endpoints.
- Define Private Link Service and private endpoints.
- Integrate private endpoints with DNS.
- Design and configure private endpoints.
- Design and configure access to service endpoints.
- Integrate your App Service with Azure virtual networks.
You learn to design and implement network monitoring solutions such as Azure Monitor and Network watcher.
Lessons
- Introduction
- Monitor your networks using Azure monitor
- Exercise: monitor a load balancer resource using Azure monitor
- Monitor your networks using Azure network watcher
- Summary and resources
At the end of this module, you’re able to:
- Configure network health alerts and logging by using Azure Monitor
- Create and configure a Connection Monitor instance
- Configure and use Traffic Analytics
- Configure NSG flow logs
- Enable and configure diagnostic logging
- Configure Azure Network Watcher