Deal of The Day! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

Microsoft AZ-700 Exam - Topic 5 Question 46 Discussion

You have an Azure subscription that contains a virtual network named Vnet1. Vnet1 contains 20 subnets and 500 virtual machines. Each subnet contains a virtual machine that runs network monitoring software.You have a network security group (NSG) named NSG1 associated to each subnet.When a new subnet is created in Vnet1, an automated process creates an additional network monitoring virtual machine in the subnet and links the subnet to NSG1.You need to create an inbound security rule in NS61 that will allow connections to the network monitoring virtual machines from an IP address of 131.107.1.15. The solution must meet the following requirements:* Ensure that only the monitoring virtual machines receive a connection from 131.107.1.15.* Minimize changes to NSG1 when a new subnet is created.What should you use as the destination in the inbound security rule?
C) an application security group
A) a virtual network
B) an IP address
D) a service tag

Microsoft AZ-700 Exam - Topic 5 Question 46 Discussion

Actual exam question for Microsoft's AZ-700 exam
Question #: 46
Topic #: 5
[All AZ-700 Questions]

You have an Azure subscription that contains a virtual network named Vnet1. Vnet1 contains 20 subnets and 500 virtual machines. Each subnet contains a virtual machine that runs network monitoring software.

You have a network security group (NSG) named NSG1 associated to each subnet.

When a new subnet is created in Vnet1, an automated process creates an additional network monitoring virtual machine in the subnet and links the subnet to NSG1.

You need to create an inbound security rule in NS61 that will allow connections to the network monitoring virtual machines from an IP address of 131.107.1.15. The solution must meet the following requirements:

* Ensure that only the monitoring virtual machines receive a connection from 131.107.1.15.

* Minimize changes to NSG1 when a new subnet is created.

What should you use as the destination in the inbound security rule?

Show Suggested Answer Hide Answer
Suggested Answer: C

Contribute your Thoughts:

0/2000 characters
Laurel
10 months ago
A virtual network option seems too broad for this scenario.
upvoted 0 times
...
Ronald
10 months ago
Wait, can you really limit it to just the monitoring VMs with that? Sounds tricky.
upvoted 0 times
...
Gwen
10 months ago
Definitely go with the application security group! Makes it easier for new subnets.
upvoted 0 times
...
Rozella
10 months ago
I think an IP address would work too, but not as flexible.
upvoted 0 times
...
Son
11 months ago
You should use an application security group for this.
upvoted 0 times
...
Milly
11 months ago
I feel like a service tag could simplify things, but it might not restrict access to just the monitoring VMs. I’m a bit confused on that part.
upvoted 0 times
...
Lauryn
11 months ago
I practiced a similar question where we had to minimize changes to NSGs, and I think using a virtual network as the destination might not be the best option here.
upvoted 0 times
...
Hildegarde
11 months ago
I'm not entirely sure, but I remember something about using an IP address for more precise control. That could work too, right?
upvoted 0 times
...
Kiley
11 months ago
I think we might need to use an application security group since it can help target specific VMs without changing the NSG too much.
upvoted 0 times
...
Olen
11 months ago
I'm feeling pretty confident about this one. The application security group option seems like the best fit for the requirements.
upvoted 0 times
...
Tegan
11 months ago
Okay, I think I've got a strategy here. The key is to find a way to target the monitoring VMs specifically, while minimizing changes when new subnets are added.
upvoted 0 times
...
Shelia
11 months ago
Hmm, I'm a bit confused by the wording here. I'll need to re-read the question a few times to make sure I understand what's being asked.
upvoted 0 times
...
Felix
11 months ago
This seems like a tricky one. I'll need to think through the requirements carefully to determine the best approach.
upvoted 0 times
...
Anglea
11 months ago
I'm pretty confident that the answer is Stackwise. That would allow the company to add more access ports without needing additional uplink ports.
upvoted 0 times
...
Frank
12 months ago
Sales rep quota targets? That's an interesting one. I wonder how that could influence adoption of the new system.
upvoted 0 times
...

Save Cancel