ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 19 - AZ-720 discussion

Report
Export

You need to resolve the issue with VM10.

What should you do?

A.
In the NSG10 inbound security rule that has a priority of 100, change the destination to ASG10
Answers
A.
In the NSG10 inbound security rule that has a priority of 100, change the destination to ASG10
B.
In NSG10, remove the inbound security rule that has a priority of 100.
Answers
B.
In NSG10, remove the inbound security rule that has a priority of 100.
C.
In the NSG10 inbound security rule that has a priority of 100, change the protocol to Any
Answers
C.
In the NSG10 inbound security rule that has a priority of 100, change the protocol to Any
D.
Add an outbound security rule to NSG1 that allows outbound traffic from ASG1 to ASG10.Configure the rule to use a priority of 100.
Answers
D.
Add an outbound security rule to NSG1 that allows outbound traffic from ASG1 to ASG10.Configure the rule to use a priority of 100.
Suggested answer: B

Explanation:

Explanation:

To resolve the issue with VM10, you need to remove the inbound security rule that has a priority of 100 in NSG10, which is blocking ICMP traffic from ASG1 to ASG10. The rule has a source of Any, a destination of VirtualNetwork, a protocol of ICMP, and an action of Deny. This means that any ICMP traffic from outside the VNet4 address space will be denied by NSG10, which is attached to subnet4.

This prevents VM1 from pinging VM10 by using ICMP, as VM1 is in VNet1 and not in VNet4. By removing this rule, you can allow ICMP traffic from ASG1 to ASG10, as there is no other rule in NSG10 that explicitly denies it. Alternatively, you could also modify the rule to change the source to VirtualNetwork or the action to Allow, but removing the rule is simpler and more effective.

asked 02/10/2024
MOHAMED RIAZ MOHAMED IBRAHIM
40 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first