Cyber Monday 2024! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

Microsoft Exam AZ-104 Topic 3 Question 109 Discussion

Actual exam question for Microsoft's AZ-104 exam
Question #: 109
Topic #: 3
[All AZ-104 Questions]

You have an Azure subscription that contains 10 virtual networks. The virtual networks are hosted in separate resource groups.

Another administrator plans to create several network security groups (NSGs) in the subscription.

You need to ensure that when an NSG is created, it automatically blocks TCP port 8080 between the virtual networks.

Solution: You configure a custom policy definition, and then you assign the Azure policy to the subscription.

Does this meet the goal?

Show Suggested Answer Hide Answer
Suggested Answer: A

Contribute your Thoughts:

Cristal
2 months ago
Wait, we're blocking port 8080? I thought that was the port for my secret dance party app! Oh well, I guess the IT police won't be crashing the virtual network dance floor anymore.
upvoted 0 times
...
Joanne
2 months ago
I agree with Jospeh. This is a clean and scalable solution, especially if you have a lot of virtual networks. Plus, it's always good to use Azure Policy to enforce consistent security configurations.
upvoted 0 times
Mertie
1 months ago
User 4: Why do you think it's not a good solution?
upvoted 0 times
...
Jospeh
1 months ago
No
upvoted 0 times
...
Jerlene
2 months ago
I agree, using Azure Policy for this scenario is a good idea.
upvoted 0 times
...
Arleen
2 months ago
Yes
upvoted 0 times
...
...
Glen
3 months ago
I believe so, so I would say Yes, it meets the goal.
upvoted 0 times
...
Desirae
3 months ago
But will that automatically block TCP port 8080 between the virtual networks?
upvoted 0 times
...
Rosio
3 months ago
Hmm, I'm not sure. Doesn't this seem a bit overkill? Can't we just create a rule in each NSG to block that port instead?
upvoted 0 times
Mindy
2 months ago
I agree with Mindy, creating a rule in each NSG might be simpler
upvoted 0 times
...
Celestine
2 months ago
No
upvoted 0 times
...
Bok
2 months ago
Yes
upvoted 0 times
...
...
Glen
3 months ago
I think the solution is to configure a custom policy definition and assign it to the subscription.
upvoted 0 times
...
Jospeh
3 months ago
Yes, this solution seems logical. Configuring a custom policy definition and assigning it to the subscription will ensure that all new NSGs automatically block TCP port 8080 between the virtual networks.
upvoted 0 times
Jessenia
2 months ago
I agree. It's important to have that level of control over network security in a multi-virtual network environment.
upvoted 0 times
...
Rhea
3 months ago
Yes, this solution seems logical. Configuring a custom policy definition and assigning it to the subscription will ensure that all new NSGs automatically block TCP port 8080 between the virtual networks.
upvoted 0 times
...
...

Save Cancel
az-700  pass4success  az-104  200-301  200-201  cissp  350-401  350-201  350-501  350-601  350-801  350-901  az-720  az-305  pl-300  

Warning: Cannot modify header information - headers already sent by (output started at /pass.php:70) in /pass.php on line 77