exam questions

Exam AZ-104 All Questions

View all questions & answers for the AZ-104 exam

Exam AZ-104 topic 4 question 48 discussion

Actual exam question from Microsoft's AZ-104
Question #: 48
Topic #: 4
[All AZ-104 Questions]

HOTSPOT -
You have an Azure subscription named Subscription1. Subscription1 contains a virtual machine named VM1.
You install and configure a web server and a DNS server on VM1.
VM1 has the effective network security rules shown in the following exhibit:

Use the drop-down menus to select the answer choice that completes each statement based on the information presented in the graphic.
NOTE: Each correct selection is worth one point.
Hot Area:

Show Suggested Answer Hide Answer
Suggested Answer:
Box 1:
Rule2 blocks ports 50-60, which includes port 53, the DNS port. Internet users can reach to the Web server, since it uses port 80.
Box 2:
If Rule2 is removed internet users can reach the DNS server as well.
Note: Rules are processed in priority order, with lower numbers processed before higher numbers, because lower numbers have higher priority. Once traffic matches a rule, processing stops. As a result, any rules that exist with lower priorities (higher numbers) that have the same attributes as rules with higher priorities are not processed.
Reference:
https://docs.microsoft.com/en-us/azure/virtual-network/security-overview

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
khengoolman
Highly Voted 3 years, 4 months ago
Passed today with 947. This question appeared, correct Answer
upvoted 61 times
nimeshabhinav
3 years, 2 months ago
It looks like all 300 questions appeared in your exam :D . I see your comments everywhere.
upvoted 92 times
Kumud31
3 years, 1 month ago
YES,I bet
upvoted 2 times
miloashis
3 years ago
VERY TRUE BRO!!
upvoted 1 times
...
...
FlowerChoc1
1 year, 11 months ago
The dude is everywhere. What a loooooonnnng exam lol!
upvoted 9 times
...
Sohail_Ryder
2 years, 10 months ago
There are bunch of other people too saying the same thing.
upvoted 2 times
...
...
subramani2018
3 years ago
Is all questions with same pattermn come from here or any changes
upvoted 2 times
...
...
Juli98
Highly Voted 3 years, 1 month ago
Correct. Usually : DNS = Port 53 WEB = Port 80 (http) or 443 (https). Rule are processed by priority order A number between 100 and 4096. Rules are processed in priority order, with lower numbers processed before higher numbers, because lower numbers have higher priority. Once traffic matches a rule, processing stops. As a result, any rules that exist with lower priorities (higher numbers) that have the same attributes as rules with higher priorities are not processed. https://docs.microsoft.com/en-us/azure/virtual-network/network-security-groups-overview Rule 2 Blocked DNS (Range 50-60) First match > DNS Blocked Rule 1 Allow http (Range 50-500) First Match > http Allow. If we delete Rule 2, Rule 1 Allows http and DNS. First match > It works.
upvoted 47 times
Learner2022
1 year, 7 months ago
Wouldn’t rule 1 is the higher priority rule as it is a lower number ?Therefore it won’t change the outcome if rule 2 is deleted?
upvoted 1 times
Learner2022
1 year, 5 months ago
My bad. It is the priority number not the rule name that determines the priority.
upvoted 1 times
...
...
...
[Removed]
Most Recent 5 months, 4 weeks ago
CORRECT Rule2 denies DNS 53 Rule1 allows http 80 and https 443
upvoted 2 times
...
Forkbeard
9 months, 3 weeks ago
What about the RDP rule? I think internet users: - cannot connect to the DNS server because of Rule2 - can connect to RDP because of the RDP rule - can connect to the web server because of Rule1 If you delete Rule2, internet users: - can connect to RDP because of the RDP rule - can connect to the DNS server because of Rule1 - cannot connect to the web server The picture does not match the question.
upvoted 1 times
...
[Removed]
2 years, 1 month ago
NO DNS questions have been showing up my past 2 tests, wierd
upvoted 5 times
...
EmnCours
2 years, 6 months ago
correct Answer
upvoted 1 times
EmnCours
2 years, 6 months ago
Box 1: Rule2 blocks ports 50-60, which includes port 53, the DNS port. Internet users can reach to the Web server, since it uses port 80. Box 2: If Rule2 is removed internet users can reach the DNS server as well. Note: Rules are processed in priority order, with lower numbers processed before higher numbers, because lower numbers have higher priority. Once traffic matches a rule, processing stops. As a result, any rules that exist with lower priorities (higher numbers) that have the same attributes as rules with higher priorities are not processed.
upvoted 7 times
...
...
Pasmo
2 years, 10 months ago
Answer is correct Rule 2 Blocked DNS (Range 50-60) First match > DNS Blocked. port 80 not affected After deleting rule 2 Rule 1 Allow DNS (Range 50-500) First Match > port 53 and the port 80 and 443 is allowed.
upvoted 3 times
...
DrJoness
2 years, 11 months ago
Question appeared in exam today. The answer is correct.
upvoted 1 times
...
shyams9977
2 years, 11 months ago
This question was in exam on 20-03-2022
upvoted 1 times
...
shyams9977
2 years, 11 months ago
This question on exam 20/3/2022
upvoted 1 times
...
Dobby25
2 years, 11 months ago
Received this on my exam today 19/03/2022
upvoted 1 times
...
benvdw
2 years, 11 months ago
on exam 13/3/2022
upvoted 1 times
...
theorut
3 years ago
keep also in mind dns uses UDP on port 53.
upvoted 3 times
...
ahyaa
3 years ago
This question appeared in my exam today Feb 26, 2022, and I got 784! yay!! I passed!!! thank you, review buddies!!
upvoted 4 times
...
subramani2018
3 years ago
Do we have voucher code to unlock all questions in az104..if 50percent off, please let me know
upvoted 2 times
...
H3adcap
3 years ago
Was in exam today 17/22/2022
upvoted 3 times
...
Krypt11
3 years, 4 months ago
Correct
upvoted 1 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago