Deal of The Day! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

Microsoft AZ-500 Exam - Topic 8 Question 71 Discussion

Actual exam question for Microsoft's AZ-500 exam
Question #: 71
Topic #: 8
[All AZ-500 Questions]

You have an Azure subscription that contains a resource group named RG1 and a security group serverless RG1 contains 10 virtual machine, a virtual network VNET1, and a network security group (NSG) named NSG1. ServerAdmins can access the virtual machines by using RDP.

You need to ensure that NSG1 only RDP connections to the virtual for a maximum of 60 minutes when a member of ServerAdmins requests access.

What should you configure?

Show Suggested Answer Hide Answer

Contribute your Thoughts:

0/2000 characters
James
4 months ago
Definitely B, it’s the best practice for security!
upvoted 0 times
...
Mona
4 months ago
Wait, can you really limit RDP to just 60 mins?
upvoted 0 times
...
Junita
4 months ago
C doesn’t really fit the requirement here.
upvoted 0 times
...
Felton
4 months ago
I think A might be better for managing roles.
upvoted 0 times
...
Ceola
5 months ago
B is the way to go for JIT access!
upvoted 0 times
...
Mireya
5 months ago
I thought Azure Bastion was more about secure access without exposing VMs directly. Not sure if it fits this scenario though.
upvoted 0 times
...
Olive
5 months ago
I practiced a similar question before, and I feel like the JIT policy is definitely the right choice for controlling access time.
upvoted 0 times
...
Marshall
5 months ago
I'm not entirely sure, but I remember something about Azure AD Privileged Identity Management. Could that be relevant here?
upvoted 0 times
...
Sharika
5 months ago
I think we might need to look at the Just-In-Time VM access policy for this one. It sounds like it could limit RDP access to only when it's needed.
upvoted 0 times
...
Ammie
5 months ago
I'm leaning towards the Azure Bastion host solution. That would provide secure RDP access to the VMs without the need to open up RDP ports directly.
upvoted 0 times
...
Hubert
5 months ago
Based on the details provided, I believe the correct answer is to configure a just-in-time (JIT) VM access policy in Azure Security Center. This will allow the ServerAdmins to request temporary access to the VMs for a limited duration.
upvoted 0 times
...
Ronny
5 months ago
Hmm, I'm a bit confused. There are a few options here, and I'm not sure which one is the best approach to meet the specific requirements.
upvoted 0 times
...
Cherilyn
5 months ago
This question seems straightforward. I think the key is to focus on the requirement to limit RDP access to 60 minutes for the ServerAdmins group.
upvoted 0 times
...
Jospeh
6 months ago
Adding the link to a cloud-based bookmark service seems like the most organized approach. I remember a practice question like this.
upvoted 0 times
...
Francine
10 months ago
Haha, imagine if the answer was A) an Azure policy - that would be like putting a lock on a lock! Let's stick with the JIT solution, it's the most straightforward way to handle this requirement.
upvoted 0 times
...
Candida
10 months ago
D) an Azure Bastion host on VNET1 could be another good option, as it provides secure RDP access without exposing the VMs directly to the internet.
upvoted 0 times
Melissa
9 months ago
A) an Azure policy assigned to RG1 might not be the most effective solution for restricting RDP connections to the virtual machines within the specified time frame.
upvoted 0 times
...
Gerri
9 months ago
D) an Azure Bastion host on VNET1 could also work well for secure RDP access without exposing the VMs directly to the internet.
upvoted 0 times
...
Marge
10 months ago
B) a just in time (JIT) VM access policy in Microsoft Defender for Cloud would be the best option to limit RDP connections to the virtual machines for a specific time period.
upvoted 0 times
...
...
Royal
10 months ago
I was also leaning towards the JIT VM access policy. It's a neat feature that allows you to control privileged access in a secure and auditable way.
upvoted 0 times
Tyisha
9 months ago
D) an Azure Bastion host on VNET1
upvoted 0 times
...
Mitsue
9 months ago
That's a good choice. JIT VM access policy can help restrict access to virtual machines for a limited time.
upvoted 0 times
...
Aliza
9 months ago
B) a just in time (JIT) VM access policy in Microsoft Defender for Cloud
upvoted 0 times
...
...
Lili
11 months ago
B) a just in time (JIT) VM access policy in Microsoft Defender for Cloud seems like the right choice to control RDP access to the VMs for a limited time period.
upvoted 0 times
Yun
9 months ago
I agree, using JIT access policy will help enhance security by restricting access for a specific time period.
upvoted 0 times
...
Kendra
9 months ago
That sounds like a good solution to limit RDP access to the virtual machines.
upvoted 0 times
...
Janessa
10 months ago
B) a just in time (JIT) VM access policy in Microsoft Defender for Cloud is the correct choice.
upvoted 0 times
...
...
Gearldine
11 months ago
I'm not sure about the answer. Maybe we should consider other options like D) an Azure Bastion host on VNET1.
upvoted 0 times
...
Omega
11 months ago
I agree with Genevieve. Configuring a JIT VM access policy would limit RDP connections to the virtual machines for a specific time period.
upvoted 0 times
...
Genevieve
11 months ago
I think the answer is B) a just in time (JIT) VM access policy in Microsoft Defender for Cloud.
upvoted 0 times
...

Save Cancel