You have an Azure subscription that contains a virtual network named VNet1. VNet1 contains the resources shown in the following table.

You need to publish App1 by using AG1 and a URL of https://app1.contoso.com. The solution must meet the following requirements:
* TLS connections must terminate on AG1.
* Minimize the number of targets in the backend pool of AG1.
* Minimize the number of deployed copies of the SSL certificate of App1.
How many locations should you import to the certificate, and how many targets should you add to the backend pool of AG1? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.

Recent Comments (The most recent comments are at the top.)
1 and 1
1- VMSS is eligible to be a backend pool target
1- Key vault for cert management and provisioning - Remember App GWY V1 is NOT key vault integrated
Also need to configure SSL profile and associate with listener and hence https/TLS connections are terminated at App GWY and not app services