This browser is no longer supported.
Upgrade to Microsoft Edge to take advantage of the latest features, security updates, and technical support.
Which of the following correctly describes a good practice for network segmentation in Azure landing zones?
Use one virtual network for all resources to simplify routing.
Use separate virtual networks for each workload for maximum isolation.
Use separate subnets within the same virtual network for each workload to reduce cost.
Allow all internal traffic by default to avoid configuration complexity.
What is a Network Security Group (NSG) used for in Azure?
An NSG is used to deploy and manage firewall appliances in Azure.
An NSG is used to manage user access to Azure resources.
An NSG is used to set inbound and outbound rules for network traffic.
An NSG is used to connect virtual networks to other virtual networks or on-premises networks.
What is traffic inspection, and why is it important in cloud environments?
Traffic inspection is a method of observing traffic patterns to detect unauthorized activity.
Traffic inspection is used to monitor internet traffic for content filters and application controls.
Traffic inspection is used to detect and prevent attacks before they reach their targets.
Traffic inspection is used to segregate public-facing services from private ones to reduce attack surfaces.
What are some benefits of using Microsoft Defender for DNS in Azure?
Defender for DNS detects and blocks all types of malicious web traffic.
Defender for DNS uses machine learning algorithms to detect threat patterns in real-time.
Defender for DNS increases the speed of DNS resolution through the use of caching.
Defender for DNS provides automatic updates of DNS records to minimize misconfigurations.
You must answer all questions before checking your work.
Was this page helpful?