AZ-500 · Question #166
SIMULATION You need to ensure that the events in the NetworkSecurityGroupRuleCounter log of the VNET01- Subnet0-NSG network security group (NSG) are stored in the logs11597200 Azure Storage account…
The correct approach requires navigating to the VNET01-Subnet0-NSG Network Security Group, accessing Diagnostic Settings, and creating a new diagnostic setting that specifically selects the 'NetworkSecurityGroupRuleCounter' log category while configuring 'Archive to a storage…
Question
Explanation
The correct approach requires navigating to the VNET01-Subnet0-NSG Network Security Group, accessing Diagnostic Settings, and creating a new diagnostic setting that specifically selects the 'NetworkSecurityGroupRuleCounter' log category while configuring 'Archive to a storage account' as the destination pointing to 'logs11597200' with a retention period of 30 days. This ensures only the required log type is captured and stored in the correct storage account with the mandated retention policy. Azure Diagnostic Settings is the native mechanism for routing NSG flow and rule counter logs to long-term storage destinations such as Azure Storage accounts.
Topics
Community Discussion
No community discussion yet for this question.