You have a virtual network Vnet1 that contains a virtual machine VM1 and an Azure Firewall FW1. An Azure Firewall Policy named FP1 is associated with FW1. You need to ensure that RDP requests sent to FW1's public IP are forwarded to VM1. What type of rule should you configure in FP1?
Choose an answer
Tap an option to check your answer.
Correct answer: a DNAT rule.
Why this is the answer
A DNAT (Destination Network Address Translation) rule is correct because it translates the public IP address and port of the firewall to the private IP address and port of the internal virtual machine. This allows external RDP traffic destined for the firewall's public IP to be redirected to VM1. Network rules are used for filtering traffic based on IP addresses and ports but don't perform the address translation needed for inbound connections. URL filtering is for controlling access to specific web addresses and is irrelevant here. Application rules are used for filtering traffic based on FQDNs (Fully Qualified Domain Names) and HTTP/S protocols, which is not applicable for RDP.
Pass your exam — without the endless answer hunt
Get every verified question and explanation for this exam in one place, and save hours of prep. 1,000+ certifications · 20+ languages · free to start.
Pass your exam faster → No card needed