nerdexam
Microsoft

AZ-801 · Question #162

You have a management group named MG1 that contains an Azure subscription named Sub1. Sub1 contains the resources shown in the following table. | Name | Description | |------------|-------------------

The correct answer is B. Workspace1 C. Sub1. Microsoft Defender for Servers can be enabled at the Azure subscription level to protect all current and future virtual machines, or at the Log Analytics workspace level to protect all machines reporting to that specific workspace.

Secure Windows Server on-premises and hybrid infrastructures

Question

You have a management group named MG1 that contains an Azure subscription named Sub1. Sub1 contains the resources shown in the following table.
NameDescription
RG1Resource group
VM1Virtual machine
VNet1Virtual network
Workspace1Log Analytics workspace
You need to enable Microsoft Defender for Servers. From the Azure portal, on which two resources can you enable Defender for Servers? Each correct answer presents a complete solution.

Options

  • ARG1
  • BWorkspace1
  • CSub1
  • DMG1
  • EVNet1
  • FVM1

How the community answered

(47 responses)
  • A
    2% (1)
  • B
    91% (43)
  • D
    4% (2)
  • E
    2% (1)

Why each option

Microsoft Defender for Servers can be enabled at the Azure subscription level to protect all current and future virtual machines, or at the Log Analytics workspace level to protect all machines reporting to that specific workspace.

ARG1

While resource groups contain servers, Microsoft Defender for Servers is not directly enabled at the resource group level; it's managed at the subscription or workspace scope.

BWorkspace1Correct

Microsoft Defender for Servers can be enabled on a Log Analytics workspace. When enabled at this scope, all machines reporting to that workspace (including Azure VMs and on-premises servers) will be protected by Defender for Servers.

CSub1Correct

Microsoft Defender for Servers is typically enabled at the Azure subscription level. Enabling it here provides comprehensive protection for all existing and newly deployed virtual machines within that subscription.

DMG1

Management groups provide governance over subscriptions but are not the direct scope for enabling security solutions like Defender for Servers.

EVNet1

Virtual networks facilitate communication for VMs but are not the scope at which Microsoft Defender for Servers is enabled.

FVM1

Microsoft Defender for Servers is enabled at a higher scope (subscription or workspace) to protect multiple VMs, not on individual virtual machines directly.

Concept tested: Enabling Microsoft Defender for Servers scope

Source: https://learn.microsoft.com/en-us/azure/defender-for-cloud/enable-defender-for-servers

Topics

#Microsoft Defender for Cloud#Defender for Servers#Azure Security#Log Analytics Workspace

Community Discussion

No community discussion yet for this question.

Full AZ-801 Practice