SIMULATION - You need to ensure that only devices connected to a 131.107.0.0/16 subnet can access data in the rg1lod1234578 Azure Storage account. To complete this task, sign in to the Azure portal.
Suggested Answer:See the explanation below.
Step 1: 1. In Azure portal go to the storage account you want to secure. Here: rg1lod1234578 2. Click on the settings menu called Firewalls and virtual networks. 3. To deny access by default, choose to allow access from Selected networks. To allow traffic from all networks, choose to allow access from All networks. 4. Click Save to apply your changes. Step 2: 1. Go to the storage account you want to secure. Here: rg1lod1234578 2. Click on the settings menu called Firewalls and virtual networks. 3. Check that you've selected to allow access from Selected networks. 4. To grant access to a virtual network with a new network rule, under Virtual networks, click Add existing virtual network, select Virtual networks and Subnets options. Enter the 131.107.0.0/16 subnet and then click Add. Note: When network rules are configured, only applications requesting data over the specified set of networks can access a storage account. You can limit access to your storage account to requests originating from specified IP addresses, IP ranges or from a list of subnets in an Azure Virtual Network (VNet). Reference: https://docs.microsoft.com/en-us/azure/storage/common/storage-network-security
Go to the storage account
Under "Security + networking" SELECT "Networking"
Select "Firewalls and virtual networks" on the top (next to Custom domain)
Under Public network access, CHOOSE the "Enable from selected virtual network and IP addresses RADIO button
Under "Virtual networks" add existing virtual network
add the network with the CIDR.
Answer is not completely correct. Last step must be performed under Firewall section.
Go to the storage account
Under "Security + networking" SELECT "Networking"
Select "Firewalls and virtual networks" on the top (next to Custom domain)
Under Public network access, CHOOSE the "Enable from selected virtual network and IP addresses RADIO button
Under "Virtual networks" add existing virtual network
add the network with the CIDR.
This section is not available anymore. Please use the main Exam Page.AZ-500 Exam Questions
Log in to ExamTopics
Sign in:
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.
Upvoting a comment with a selected answer will also increase the vote count towards that answer by one.
So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.
F117A_Stealth
Highly Voted 2 years, 7 months agoJohnyDoo
Highly Voted 3 years, 1 month agoAnil512
Most Recent 3 months agoViggy1212
8 months, 1 week ago91743b3
10 months, 1 week agorosef
1 year, 6 months agogbx077
2 years, 2 months agoAmit3
2 years, 8 months agokoreshio
2 years, 8 months ago