Given VNet1's subnets and the listed virtual machines, for which virtual machines can you enable just-in-time (JIT) VM access while minimizing administrative effort?
Choose an answer
Tap an option to check your answer.
Correct answer: VM1, VM2, and VM3 only.
Why this is the answer
Just-in-time (JIT) VM access in Azure Security Center (now Microsoft Defender for Cloud) protects Azure VMs by locking down inbound traffic to management ports. It can be enabled for Azure Virtual Machines that are deployed using Azure Resource Manager. VM1, VM2, and VM3 are all Azure Resource Manager VMs, making them eligible for JIT. VM4 is a classic deployment model VM. JIT VM access does not support classic VMs, so it cannot be enabled for VM4. Therefore, to minimize administrative effort and enable JIT for all eligible VMs, you would select VM1, VM2, and VM3.
Pass your exam — without the endless answer hunt
Get every verified question and explanation for this exam in one place, and save hours of prep. 1,000+ certifications · 20+ languages · free to start.
Pass your exam faster → No card needed