nerdexam
Microsoft

AZ-140 · Question #106

Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might h

The correct answer is B. No. The proposed solution - configuring RDP Properties of the host pool - is incorrect for this requirement. RDP Properties control session behavior such as device redirection, audio, display resolution, and clipboard settings. They have no ability to block or permit internet traffic

Submitted by anjalisingh· Apr 18, 2026Plan and implement an Azure Virtual Desktop infrastructure

Question

Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution. After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen. You have an Azure Virtual Desktop host pool that contains five session hosts. The session hosts run Windows 10 Enterprise multi-session. You need to prevent users from accessing the internet from Azure Virtual Desktop sessions. The session hosts must be allowed to access all the required Microsoft services. Solution: You configure the RDP Properties of the host pool. Does this meet the goal?

Options

  • AYes
  • BNo

How the community answered

(55 responses)
  • A
    22% (12)
  • B
    78% (43)

Explanation

The proposed solution - configuring RDP Properties of the host pool - is incorrect for this requirement. RDP Properties control session behavior such as device redirection, audio, display resolution, and clipboard settings. They have no ability to block or permit internet traffic at the network level. To prevent internet access while still allowing session hosts to reach required Microsoft service endpoints (e.g., Azure, Windows Update, Microsoft 365), you must use a network-level control such as Azure Firewall with FQDN-based application rules, a Network Security Group (NSG) with outbound rules, or a combination of both. RDP Properties simply cannot enforce routing or firewall policy, so the solution does not meet the stated goals.

Topics

#Azure Virtual Desktop Security#Network Security#RDP Properties

Community Discussion

No community discussion yet for this question.

Full AZ-140 Practice