Deal of The Day! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

Microsoft AZ-700 Exam - Topic 8 Question 54 Discussion

Actual exam question for Microsoft's AZ-700 exam
Question #: 54
Topic #: 8
[All AZ-700 Questions]

You have an Azure subscription that contains a virtual network named VNet1. VNet1 contains a subnet named Subnet1

You deploy an instance of Azure Application Gateway v2 named AppGw1 to Subnet1. You create a network security group (NSG) named NSG1 and link NSG1 to Subnet1.

You need to ensure that AppGw1 will only load balance traffic that originates from VNet1. The solution must minimize the impact on the functionality of AppGw1.

What should you add to NSG1?

Show Suggested Answer Hide Answer
Suggested Answer: C

Contribute your Thoughts:

0/2000 characters
Novella
4 months ago
Definitely need an outbound rule, can't let random traffic in.
upvoted 0 times
...
Felix
4 months ago
Wait, why would you block all traffic? That sounds risky!
upvoted 0 times
...
Lettie
4 months ago
Not sure about that, B seems more flexible with the priority.
upvoted 0 times
...
Owen
4 months ago
I think option A is the best choice here.
upvoted 0 times
...
Rebeca
5 months ago
You need to block all internet traffic for AppGw1 to work properly.
upvoted 0 times
...
Abraham
5 months ago
I lean towards option A because it mentions outbound rules, which seems more relevant for controlling traffic leaving the subnet. But I'm still a bit unsure.
upvoted 0 times
...
Golda
5 months ago
I feel like blocking all internet traffic is the right approach, but I can't remember if it should be inbound or outbound. This is tricky!
upvoted 0 times
...
Shannon
5 months ago
I think we practiced a similar question where we had to block internet traffic. If I recall correctly, it was about setting the right priority for the rules.
upvoted 0 times
...
Alfred
5 months ago
I remember we discussed NSGs and their rules in class, but I'm not sure if I should focus on inbound or outbound rules for this question.
upvoted 0 times
...
Felice
5 months ago
Ah, I see now. The key is to use an outbound rule with a priority of 100 to block all internet traffic. That way, the Application Gateway can still function as needed, but external traffic will be blocked. Nice!
upvoted 0 times
...
Edna
5 months ago
Based on the question, I think the best approach would be to add an outbound rule with a priority of 100 to block all internet traffic. That should do the trick while minimizing the impact on the Application Gateway.
upvoted 0 times
...
Lauran
5 months ago
I'm a bit confused on the priority levels here. Should we use a higher priority like 4096 to make sure the rule takes precedence?
upvoted 0 times
...
Elfrieda
5 months ago
Okay, let's see. We need to ensure that the Application Gateway only load balances traffic from the VNet. I'm thinking an outbound rule might be the way to go, but I'm not sure about the priority.
upvoted 0 times
...
Alyce
6 months ago
Hmm, this seems like a tricky one. I'll need to think through the requirements carefully to make sure I don't miss anything.
upvoted 0 times
...
Leonora
6 months ago
Ah, this is a good one. I remember learning about this in the course material, so I think I've got a good handle on it.
upvoted 0 times
...
Vivan
6 months ago
I'm pretty sure MyISAM and InnoDB are the two storage engines that provide a consistent view of the data. I'll double-check the details, but those seem like the most likely answers.
upvoted 0 times
...
Kaycee
6 months ago
This looks like a tricky one. I'll need to think through the options carefully to avoid any downtime.
upvoted 0 times
...
Claribel
2 years ago
That makes sense. It ensures AppGw1 only load balances traffic from VNet1.
upvoted 0 times
...
Kris
2 years ago
I believe we should use a priority of 4096 to block all internet traffic.
upvoted 0 times
...
Marguerita
2 years ago
I agree. But which priority should we use?
upvoted 0 times
...
Rene
2 years ago
I think we should add an inbound rule to NSG1.
upvoted 0 times
...
Buddy
2 years ago
You guys are overthinking this. The answer is clearly B - an outbound rule with a priority of 4096 to block all internet traffic. That way, any outbound traffic from the application gateway is restricted to just the VNet1 subnet. Easy peasy!
upvoted 0 times
...
Arthur
2 years ago
Hmm, I'm not sure about option C. Wouldn't that also block any legitimate traffic trying to access the application gateway from outside VNet1? I'm thinking option D might be the better choice - an inbound rule with a priority of 100 to block all internet traffic. That way, we're still allowing traffic from VNet1 to access the gateway.
upvoted 0 times
...
Allene
2 years ago
I agree, an outbound rule blocking all internet traffic would be overkill. We need a more targeted approach. I'm leaning towards option C - an inbound rule with a priority of 4096 to block all internet traffic. That way, we're specifically targeting the inbound traffic to the subnet, which aligns with the requirement.
upvoted 0 times
...
Ria
2 years ago
This is a tricky question. We need to ensure that AppGw1 can only load balance traffic from VNet1, but we don't want to disrupt the overall functionality of AppGw1. Adding an outbound rule to block all internet traffic seems too restrictive.
upvoted 0 times
Eladia
2 years ago
Got it, so option C) is the optimal choice to restrict traffic to VNet1 only.
upvoted 0 times
...
Nickie
2 years ago
Yes, it will only block internet traffic, not traffic originating from VNet1.
upvoted 0 times
...
Queenie
2 years ago
But won't blocking all internet traffic impact the functionality of the AppGw1?
upvoted 0 times
...
Ashley
2 years ago
That makes sense. Option C) with priority 4096 seems like the safer choice.
upvoted 0 times
...
Bernardo
2 years ago
Because if we use priority 100, it may affect other rules and impact functionality.
upvoted 0 times
...
Lisandra
2 years ago
Why not option D) an inbound rule with priority 100 to block internet traffic?
upvoted 0 times
...
Hyun
2 years ago
C) an inbound rule that has a priority of 4096 and blocks all internet traffic
upvoted 0 times
...
...

Save Cancel