ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 116 - AZ-720 discussion

Report
Export

HOTSPOT

A company uses Azure Firewall. The firewall uses the following rules:

The company requires the following:

• Block outbound connections to Contoso.com on ports 80 and 443. You configure the NetRC2 firewall rule to block the connections. Users report that they can still access Contoso.com on port 80

• Allow outbound connections to Adatuin.com on ports 80 and 443. You configure the AppRC2 firewall rule to allow the connections. Users report that they can access the Adaturn com website by using the IP address but not by using the fully qualified domain name (FQDN).

You need to troubleshoot the rules that are causing the issues.

Which rules should you review? To answer, select the appropriate options in the answer area.


Question 116
Correct answer: Question 116

Explanation:

Domain: Contoso.com

Rule: NetRC1

Explanation: The NetRC1 rule has a higher priority (lower number) than the NetRC2 rule, so it is processed first. The NetRC1 rule allows outbound connections to Contoso.com on ports 80 and 443,

so it overrides the NetRC2 rule that blocks them. To block the connections, you need to review the NetRC1 rule and either change its action to deny, change its priority to a lower value, or remove Contoso.com from its destination FQDNs.

Domain: Adatum.com Rule: NetRC1

Explanation: The NetRC1 rule also blocks outbound connections to Adatum.com on ports 80 and 443, regardless of the AppRC2 rule that allows them. This is because network rules are always processed before application rules1, and network rules do not support FQDN filtering based on the SNI header2. To allow the connections, you need to review the NetRC1 rule and either change its action to allow, change its priority to a lower value, or remove Adatum.com from its destination FQDNs.

1: Azure Firewall policy rule sets

2: Azure Firewall FQDN filtering in network rules

asked 02/10/2024
J. Cuylits
34 questions
User
0 comments
Sorted by

Leave a comment first