SC-100 · Question #331
You have an Azure subscription named Sub1 that is linked to a Microsoft Entra tenant named contoso.com. Sub1 contains 20 virtual networks named Sub1_VNet1 through Sub1_VNet20. You have an Azure…
This question tests knowledge of Azure Virtual Network Manager scope, security admin rules, and cross-tenant management. The question and answer choices appear truncated, so analysis is based on available content and AVNM fundamentals.
Question
You have an Azure subscription named Sub1 that is linked to a Microsoft Entra tenant named contoso.com. Sub1 contains 20 virtual networks named Sub1_VNet1 through Sub1_VNet20. You have an Azure subscription named Sub2 that is linked to a Microsoft Entra tenant named fabrikam.com. Sub2 contains 20 virtual networks named Sub2_VNet1 through Sub2_VNet20. You need to deploy an Azure Virtual Network Manager solution that meets the following requirements:
- Blocks SSH traffic on Sub1_VNet20 and Sub2_VNet20 by using network
security groups (NSGs)
- Blocks SSH traffic on Sub1_VNet1 through Sub1_VNet19 and Sub2_VNet1
through Sub2_VNet19
- Allows SSH traffic on Sub1_VNet20 and Sub2_VNet20
- Blocks FTP traffic on all the virtual networks
- Minimizes administrative effort
What is minimum number of components required for the deployment?
Options
- A
- 1 Virtual Network Manager instance
- B
- 2 Virtual Network Manager instances that each contains:
- C
- 2 Virtual Network Manager instances that each contains:
- D
- 1 Virtual Network Manager instance
Why each option
This question tests knowledge of Azure Virtual Network Manager scope, security admin rules, and cross-tenant management. The question and answer choices appear truncated, so analysis is based on available content and AVNM fundamentals.
Concept tested: Azure Virtual Network Manager cross-tenant scope and security admin rules
Source: https://learn.microsoft.com/en-us/azure/virtual-network-manager/concept-network-manager-scope
Topics
Community Discussion
No community discussion yet for this question.