Your Azure subscription contains the resources shown in the table. How do you ensure data transferred between storage1 and VM1 does NOT go over the public internet?
Choose an answer
Tap an option to check your answer.
Correct answer: A private endpoint.
Why this is the answer
A private endpoint ensures data transfer between storage1 and VM1 does not traverse the public internet by creating a private IP address for the storage account within your virtual network. This allows VM1 to connect to storage1 using a private link, keeping all traffic within the Azure backbone network. Data protection is a broad term referring to security measures, not a specific networking solution for private connectivity. Public network access setting in Firewalls and virtual networks controls whether the storage account is accessible from the public internet, but it doesn't create a private connection for specific resources. A shared access signature (SAS) provides delegated access to resources in your storage account but does not dictate the network path of the data transfer.
Pass your exam — without the endless answer hunt
Get every verified question and explanation for this exam in one place, and save hours of prep. 1,000+ certifications · 20+ languages · free to start.
Pass your exam faster → No card needed