nerdexam
Fortinet

FCP_ZCS_AD-7.4 · Question #48

A Linux server has been deployed in the protected VNet. You need to create a list of control rules that allow or deny traffic that reaches the Linux server based on IP addresses and ports. Which…

The correct answer is D. Network security group (NSG). A Network Security Group lets you define inbound and outbound security rules based on source and destination IP addresses, ports, and protocols. By associating an NSG with the Linux server's subnet or network interface, you can explicitly allow or deny traffic reaching the…

Azure Networking and Security

Question

A Linux server has been deployed in the protected VNet. You need to create a list of control rules that allow or deny traffic that reaches the Linux server based on IP addresses and ports. Which basic Azure networking feature could be configured for that purpose?

Options

  • AVirtual network peering for automatic traffic filtering
  • BUser-defined routes (UDR)
  • CAccess control list (ACL)
  • DNetwork security group (NSG)

How the community answered

(21 responses)
  • B
    14% (3)
  • C
    10% (2)
  • D
    76% (16)

Explanation

A Network Security Group lets you define inbound and outbound security rules based on source and destination IP addresses, ports, and protocols. By associating an NSG with the Linux server's subnet or network interface, you can explicitly allow or deny traffic reaching the server.

Topics

#NSG#ACL#traffic filtering#IP and port rules

Community Discussion

No community discussion yet for this question.

Full FCP_ZCS_AD-7.4 Practice