This browser is no longer supported.
Upgrade to Microsoft Edge to take advantage of the latest features, security updates, and technical support.
Which of the following correctly describes a good practice for network segmentation in Azure landing zones?
Use one virtual network for all resources to simplify routing.
Use separate virtual networks for each workload for maximum isolation.
Use separate subnets within the same virtual network for each workload to reduce cost.
Allow all internal traffic by default to avoid configuration complexity.
What is a Network Security Group (NSG) used for in Azure?
An NSG is used to deploy and manage firewall appliances in Azure.
An NSG is used to manage user access to Azure resources.
An NSG is used to set inbound and outbound rules for network traffic.
An NSG is used to connect virtual networks to other virtual networks or on-premises networks.
What is traffic inspection, and why is it important in cloud environments?
Traffic inspection is a method of observing traffic patterns to detect unauthorized activity.
Traffic inspection is used to monitor internet traffic for content filters and application controls.
Traffic inspection is used to detect and prevent attacks before they reach their targets.
Traffic inspection is used to segregate public-facing services from private ones to reduce attack surfaces.
What does the interactive network map in Microsoft Defender for Cloud provide?
It provides a graphical view with security overlays giving recommendations and insights for hardening network resources.
It provides a list of all the users connected to the network.
It provides a real-time traffic analysis of the network.
You must answer all questions before checking your work.
Was this page helpful?