exam questions

Exam AZ-104 All Questions

View all questions & answers for the AZ-104 exam

Exam AZ-104 topic 6 question 46 discussion

Actual exam question from Microsoft's AZ-104
Question #: 46
Topic #: 6
[All AZ-104 Questions]

You deploy Azure virtual machines to three Azure regions

Each region contains a virtual network. Each virtual network contains multiple subnets peered in a full mesh topology.

Each subnet contains a network security group (NSG) that has defined rules.

A user reports that he cannot use port 33000 to connect from a virtual machine in one region to a virtual machine in another region.

Which two options can you use to diagnose the issue? Each correct answer presents a complete solution.

NOTE: Each correct selection is worth one point.

  • A. Azure Virtual Network Manager
  • B. IP flow verify
  • C. Azure Monitor Network Insights
  • D. Connection troubleshoot
  • E. elective security rules
Show Suggested Answer Hide Answer
Suggested Answer: BD 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
zellck
Highly Voted 1 year, 9 months ago
Selected Answer: BD
BD is the answer. https://learn.microsoft.com/en-us/azure/network-watcher/network-watcher-ip-flow-verify-overview IP flow verify checks if a packet is allowed or denied to or from a virtual machine. The information consists of direction, protocol, local IP, remote IP, local port, and a remote port. If the packet is denied by a security group, the name of the rule that denied the packet is returned. While any source or destination IP can be chosen, IP flow verify helps administrators quickly diagnose connectivity issues from or to the internet and from or to the on-premises environment.
upvoted 24 times
zellck
1 year, 9 months ago
https://learn.microsoft.com/en-us/azure/network-watcher/network-watcher-connectivity-overview The connection troubleshoot feature of Network Watcher provides the capability to check a direct TCP connection from a virtual machine to a virtual machine (VM), fully qualified domain name (FQDN), URI, or IPv4 address. Network scenarios are complex, they're implemented using network security groups, firewalls, user-defined routes, and resources provided by Azure. Complex configurations make troubleshooting connectivity issues challenging. Network Watcher helps reduce the amount of time to find and detect connectivity issues. The results returned can provide insights into whether a connectivity issue is due to a platform or a user configuration issue. Connectivity can be checked with PowerShell, Azure CLI, and REST API.
upvoted 8 times
...
zellck
1 year, 9 months ago
Got this in Feb 2023 exam.
upvoted 9 times
...
...
NJTH
Highly Voted 1 year, 8 months ago
Exactly the same question was on todays exam. (7th April 2023)
upvoted 7 times
...
SeMo0o0o0o
Most Recent 1 month, 3 weeks ago
Selected Answer: BD
B & D are correct
upvoted 1 times
...
a6bd45e
4 months, 3 weeks ago
Selected Answer: BD
ChatGPT4 says B&D
upvoted 1 times
...
Cfernandes
7 months ago
It can't be D at this point because it asks, "What two options can you use to diagnose the problem?" Not to solve. Solution: B/C
upvoted 2 times
...
Amir1909
8 months, 2 weeks ago
B and E
upvoted 1 times
...
SgtDumitru
1 year ago
Selected Answer: BD
B: Check connectivity to/from a VM; D: Check connection between VMs;
upvoted 1 times
...
Hillah
1 year, 1 month ago
Azure Monitor Network Insights can help troubleshoot the mesh by showing the network topology...then IP flow helps see where exactly the problem is...my thoughts
upvoted 1 times
...
CyberKelev
1 year, 9 months ago
Selected Answer: BD
B. IP flow verify and D. Connection troubleshoot are the two options that can be used to diagnose the issue.
upvoted 3 times
...
vbohr899
1 year, 9 months ago
Cleared Exam today 26 Feb, This question was there in exam.
upvoted 4 times
RealSJ
1 year, 5 months ago
You used BD as the answer ?
upvoted 2 times
...
...
omgMerrick
1 year, 10 months ago
Selected Answer: BD
Answer is correct, B & D. The IP flow verify (B) and connection troubleshoot (D) options can be used to diagnose the issue reported by the user. IP flow verify is a feature of Azure Network Watcher that you can use to verify if a packet is allowed or denied to or from a virtual machine based on the security group rules defined on the subnet. By using IP flow verify, you can determine if a rule is blocking traffic to port 33000 from one virtual machine to another in different regions. Connection troubleshoot is another feature of Azure Network Watcher that provides a simple and easy-to-use solution for troubleshooting connectivity issues between virtual machines. With connection troubleshoot, you can determine if the network security groups (NSGs) or firewall rules are blocking traffic to port 33000, and identify the exact rule that is causing the issue.
upvoted 5 times
...
vishalgu
1 year, 10 months ago
Ans:- AD Expla: A. Azure Virtual Network Manager: It allows you to view the topology of your virtual network, and can help you diagnose issues with virtual network peering. D. Connection troubleshoot: It is a feature of Azure Network Watcher that allows you to troubleshoot and diagnose connectivity issues between virtual machines within a virtual network or across virtual networks. It can help you identify if the issue is with the NSG rules or with the virtual network peering.
upvoted 1 times
...
Ashfaque_9x
1 year, 10 months ago
Selected Answer: BD
Correct Answers B. IP flow verify D. Connection troubleshoot
upvoted 2 times
...
kamlau
1 year, 10 months ago
Selected Answer: BD
Azure Monitor Network Insights provides sth like dashboard and access to the diagnostics toolkit only, which cannot perform troubleshooting as IP flow verify and connection troubleshoot. Thus, I think the ans is B & D
upvoted 5 times
...
kamlau
1 year, 10 months ago
Azure Monitor Network Insights provides sth like dashboard and access to the diagnostics toolkit only, which cannot perform troubleshooting as IP flow verify and connection troubleshoot. Thus, I think the ans is B & D
upvoted 3 times
...
Karpovsky2222
1 year, 10 months ago
The correct answer is B and D
upvoted 6 times
1475
1 year, 10 months ago
Whats the reference
upvoted 2 times
...
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...