Microsoft Azure Administrator Associate AZ-104 Practice Question
Your virtual machines in an Azure virtual network need to securely access an Azure Storage account without traversing the public internet. All traffic must stay within the Azure network infrastructure. What should you configure to meet these requirements?
Configure a virtual network service endpoint for the storage account.
Enable Azure Firewall between the virtual network and the storage account.
Implement a private endpoint connection to the storage account.
Create a user-defined route to direct traffic to the storage account.
Implementing a private endpoint connection to the storage account meets the requirements by assigning a private IP address from your virtual network to the storage account. This ensures all traffic remains within the Azure network infrastructure and does not traverse the public internet. Configuring a virtual network service endpoint allows resources in the VNet to use optimized routing to the service, but the service is still accessed over its public IP address. Enabling Azure Firewall provides traffic filtering but does not change the path of the traffic. Creating a user-defined route does not provide private connectivity to the storage account.
Ask Bash
Bash is our AI bot, trained to help you pass your exam. AI Generated Content may display inaccurate information, always double-check anything important.
What is a private endpoint connection in Azure?
Open an interactive chat with Bash
How do virtual network service endpoints differ from private endpoints?
Open an interactive chat with Bash
What role does Azure Firewall play in securing Azure resources?
Open an interactive chat with Bash
Microsoft Azure Administrator Associate AZ-104
Configure and manage virtual networking
Your Score:
Report Issue
Bash, the Crucial Exams Chat Bot
AI Bot
Loading...
Loading...
Loading...
IT & Cybersecurity Package Join Premium for Full Access