Your company owns a domain name through an external registrar and wants Azure to answer public DNS queries for it, managed with the same tooling and role assignments as the rest of the estate. What does Azure DNS do here, and what does it not do?

Microsoft Certified: Azure Fundamentals (AZ-900), objective architecture-and-services. Azure architecture and services medium

Machine-checked — no person has signed for it. This question was read against the source cited below by an automated pass, which found no contradiction. That is a weaker claim than it sounds: the same kind of process wrote the question, so it can confirm its own mistake.

Treat it as a good draft rather than as settled fact, and read the source below before you rely on it. It is not used in mock exams here — only questions a person has signed for are.

The options

Correct It hosts the zone and answers queries once you point the registrar's name server records at Azure; it does not sell or register the domain name itself

Correct. Hosting a zone and registering a name are two different transactions, and Azure DNS performs the first one. Delegation is the step that connects them.

Not correct It registers the domain on your behalf and takes over billing from the registrar

Wrong. Buying a domain name is a separate purchase through a registrar or a domain product; Azure DNS is a hosting service for zones and records.

Not correct It can only resolve names inside a virtual network

Wrong — that describes a private DNS zone, which is one half of the service. Azure DNS also hosts public zones answering queries from the internet.

Not correct You must first delete the registration at the registrar so Azure can claim the name

Wrong, and it would release the name to anyone. Delegation is done by changing name server records while the registration stays exactly where it is.

Why

Azure DNS hosts records; it does not sell you the name. Public zones answer the internet for a domain you have delegated by updating name server records at your registrar, and private zones answer name lookups inside virtual networks you link to them. The benefit of moving a zone into Azure is that records become resources like any other, with role-based access control, activity logs and deployment templates.

Where this comes from

Cited
Microsoft AZ-900 study guide skill area architecture-and-services.compute-and-networking

Practise this

Reading one question is not practice. The trainer will draw a set from objective architecture-and-services and space the ones you get wrong.

Practise Microsoft Certified: Azure Fundamentals (AZ-900)

More questions on this objective

All questions on Azure architecture and services