Your Azure subscription uses Microsoft Defender for Cloud and contains an Azure Database for PostgreSQL instance. Ensure an email alert is triggered when a suspected brute-force attack against the database is detected while minimizing administrative effort. What should you configure?
Choose an answer
Tap an option to check your answer.
Correct answer: Microsoft Defender for open-source relational databases.
Why this is the answer
Microsoft Defender for open-source relational databases is the correct choice because it natively integrates with Azure Database for PostgreSQL and provides threat detection capabilities, including brute-force attack detection. When enabled, it automatically monitors for suspicious activities and can trigger alerts, minimizing administrative effort. The Azure Monitor activity log records control plane operations but doesn't inherently detect brute-force attacks on database instances. An Azure Monitor alert rule could be configured, but it would require defining specific metrics or log queries to detect the attack, which is more administrative effort than enabling Defender. The PostgreSQL Audit extension (pgAudit) logs database activities, but it doesn't provide built-in threat detection or alerting for brute-force attacks; you would still need to integrate it with another monitoring solution to achieve the desired outcome.
Pass your exam — without the endless answer hunt
Get every verified question and explanation for this exam in one place, and save hours of prep. 1,000+ certifications · 20+ languages · free to start.
Pass your exam faster → No card needed