exam questions

Exam AZ-301 All Questions

View all questions & answers for the AZ-301 exam

Exam AZ-301 topic 6 question 33 discussion

Actual exam question from Microsoft's AZ-301
Question #: 33
Topic #: 6
[All AZ-301 Questions]

You manage a solution in Azure.
You must collect usage data including MAC addresses from all devices on the network.
You need to recommend a monitoring solution.
What should you recommend?

  • A. Activity Log Analytics
  • B. Azure Network Security Group Analytics
  • C. Network Performance Monitor
  • D. Azure Application Gateway Analytics
  • E. Azure Wire Data
Show Suggested Answer Hide Answer
Suggested Answer: B 🗳️
A network security group (NSG) includes rules that allow or deny traffic to a virtual network subnet, network interface, or both. When you enable diagnostic logging for an NSG, you can log the following categories of information:
Event: Entries are logged for which NSG rules are applied to VMs, based on MAC address. The status for these rules is collected every 60 seconds.
Rule counter: Contains entries for how many times each NSG rule is applied to deny or allow traffic.
References:
https://docs.microsoft.com/en-us/azure/virtual-network/virtual-network-nsg-manage-log

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
jesszhou
Highly Voted 5 years, 1 month ago
the answer is correct
upvoted 7 times
...
macco455
Highly Voted 4 years, 9 months ago
The Network Security Group analytics solution is moving to community support since its functionality has been replaced by Traffic Analytics Therefore this is an old question and outdated. Answer should be Traffic Analytics https://docs.microsoft.com/en-us/azure/azure-monitor/insights/azure-networking-analytics#azure-network-security-group-analytics-solution-in-azure-monitor
upvoted 6 times
...
glam
Most Recent 4 years, 3 months ago
B. Azure Network Security Group Analytics
upvoted 1 times
...
azurecert2021
4 years, 4 months ago
given answer is correct Azure Monitor logs: You can use the network security group analytics solution for enhanced insights. The solution provides visualizations for NSG rules that allow or deny traffic, per MAC address, of the network interface in a virtual machine. https://docs.microsoft.com/en-us/azure/virtual-network/virtual-network-nsg-manage-log agree to below point The Network Security Group analytics solution is moving to community support since its functionality has been replaced by Traffic Analytics Therefore this is an old question and outdated. Answer should be Traffic Analytics if comes in option .
upvoted 1 times
...
sanketshah
4 years, 5 months ago
B is correct.
upvoted 2 times
...
Jimmer
4 years, 9 months ago
What if you don't have an NSG attached to your VNet?
upvoted 3 times
...
NKnab
4 years, 11 months ago
c- https://docs.microsoft.com/en-us/azure/network-watcher/network-watcher-nsg-flow-logging-overview
upvoted 1 times
...
serbay39
5 years, 1 month ago
answer is correct, https://docs.microsoft.com/en-us/azure/virtual-network/virtual-network-nsg-manage-log
upvoted 5 times
dzein
4 years, 4 months ago
thanks for the link
upvoted 1 times
...
...
gnarly
5 years, 1 month ago
NSG Analytics use NSG flow logs, same as new Traffic analytics, flow logs include MAC address. It is correct
upvoted 2 times
...
Exam_Topic1
5 years, 1 month ago
I believe the correct answer is Wire Data. NSG analytics has been replaced since 2018 "The Network Security Group analytics solution is moving to community support since its functionality has been replaced by Traffic Analytics." Wire Data 2.0 is in "preview" but seems to be available everywhere, also there is if not 1.0. As far as content of each NSG analytics is only info about when NSG rules were applied and denied or allowed. While Wire Data includes more info about the connections.
upvoted 1 times
gnarly
5 years, 1 month ago
Network data collected by the WireData solution using by the Dependency agent and Log analytics agent. It applies to VMs only.
upvoted 2 times
...
...
Rajuuu
5 years, 1 month ago
Is the answer correct.NSG applies for the network access rules to the VNET …So not sure how it will monitor the network
upvoted 1 times
Rajuuu
5 years, 1 month ago
retracted my statement ..Answer is correct…MAC address is monitoring only by NSG Analytics .. https://docs.microsoft.com/en-us/azure/azure-monitor/insights/azure-networking-analytics
upvoted 2 times
...
...
dtvAzh
5 years, 2 months ago
Azure Wire Data is the answer, https://docs.microsoft.com/en-us/azure/azure-monitor/insights/wire-data
upvoted 4 times
nieuw
5 years, 1 month ago
agreed. "When you search using wire data, you can filter and group data to view information about the top agents and top protocols. Or you can view when certain computers (IP addresses/MAC addresses) communicated with each other, for how long, and how much data was sent—basically, you view metadata about network traffic, which is search-based."
upvoted 2 times
...
JakeCallham
5 years, 1 month ago
hoewever this is in preview, so the answer is not completely correct.
upvoted 4 times
...
Jayendrana
5 years ago
The Wire Data solution has been replaced with the Service Map solution. Both use the Log Analytics agent and Dependency agent to collect network connection data into Azure Monitor.
upvoted 1 times
...
...
mjdfreeiotcloud
5 years, 3 months ago
usage data ==> so NSG analytics
upvoted 3 times
tartar
4 years, 9 months ago
B is ok
upvoted 3 times
...
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...