You plan to deploy Azure Firewall Premium, enable all Premium features, and configure both network and application rules. Which rule type does the firewall evaluate first?
Choose an answer
Tap an option to check your answer.
Correct answer: threat intelligence.
Why this is the answer
Azure Firewall processes rules in a specific order. Threat intelligence-based filtering is evaluated first. This feature allows the firewall to block traffic to and from known malicious IP addresses and domains, providing an immediate layer of protection. If traffic is allowed by threat intelligence, the firewall then proceeds to evaluate network rules, followed by application rules. Network rules control traffic based on IP addresses, ports, and protocols, while application rules control traffic based on fully qualified domain names (FQDNs) and HTTP/S headers. Infrastructure rules are not a standard rule type configured by the user in Azure Firewall.
Pass your exam — without the endless answer hunt
Get every verified question and explanation for this exam in one place, and save hours of prep. 1,000+ certifications · 20+ languages · free to start.
Pass your exam faster → No card needed