To allow users to access VM0 while meeting platform protection requirements, what action should you take?
Choose an answer
Tap an option to check your answer.
Correct answer: Move VM0 to Subnet1..
Why this is the answer
Moving VM0 to Subnet1 is the correct solution because Subnet1 is associated with NSG1, which allows inbound RDP from the Internet. This directly addresses the requirement for users to access VM0. Configuring a network traffic filtering rule on Firewall is incorrect because the Firewall is in a different subnet and doesn't directly control traffic to VM0 in its current location. Assigning RT1 to AzureFirewallSubnet is irrelevant as RT1 is associated with Subnet1 and doesn't impact the Firewall's routing for VM0. Configuring a DNAT rule on Firewall is also incorrect; while DNAT can translate public IPs to private IPs, it doesn't resolve the underlying issue of VM0 not having an NSG that permits RDP from the Internet.
Pass your exam — without the endless answer hunt
Get every verified question and explanation for this exam in one place, and save hours of prep. 1,000+ certifications · 20+ languages · free to start.
Pass your exam faster → No card needed