exam questions

Exam AZ-800 All Questions

View all questions & answers for the AZ-800 exam

Exam AZ-800 topic 11 question 3 discussion

Actual exam question from Microsoft's AZ-800
Question #: 3
Topic #: 11
[All AZ-800 Questions]

You need to configure remote administration to meet the security requirements.
What should you use?

  • A. an Azure Bastion host
  • B. Azure AD Privileged Identity Management (PIM)
  • C. the Remote Desktop extension for Azure Cloud Services
  • D. just in time (JIT) VM access
Show Suggested Answer Hide Answer
Suggested Answer: D 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
syu31svc
7 months, 2 weeks ago
Selected Answer: D
"Ensure that server administrators request approval before they can establish a Remote Desktop connection to an Azure virtual machine. If the request is approved, the connection must be established within two hours" https://learn.microsoft.com/en-us/azure/defender-for-cloud/just-in-time-access-usage JIT lets you allow access to your VMs only when the access is needed, on the ports needed, and for the period of time needed. D is correct
upvoted 2 times
...
johosofat
1 year ago
Selected Answer: D
This is defender for cloud now- it has more features possible - you can go to security center and add JIT now and you can also go to the vm properties and ask that way- these are the links that start down the foxhole- but im saving this for az-104 https://learn.microsoft.com/en-us/azure/defender-for-cloud/just-in-time-access-usage?tabs=jit-config-asc%2Cjit-request-asc https://learn.microsoft.com/en-us/azure/defender-for-cloud/just-in-time-access-overview?tabs=defender-for-container-arch-aks
upvoted 2 times
...
kijken
1 year ago
The question is what you should use. You use PIM = B to configure jit. It's a misleading question, but D cannot be used. It's a concept in PIM
upvoted 2 times
kijken
1 year ago
I change my mind. PIM is not needed, check this demo: https://www.youtube.com/watch?v=l-geFrA73mw
upvoted 2 times
...
...
Jawad1462
1 year ago
Selected Answer: D
Ensure that server administrators request approval before they can establish a Remote Desktop connection to an Azure virtual machine. If the request is approved, the connection must be established within two hours.
upvoted 3 times
...
Joystickj
1 year, 1 month ago
Selected Answer: D
With JIT VM you can request RDP access to a VM. With PIM you set RBAC roles.
upvoted 3 times
...
GoforIT21
1 year, 4 months ago
Selected Answer: D
JIT VM access seems to be more specifically targeted at what is needed here. (Although answer B (PIM) is bit confusing, I must admit.) See https://docs.microsoft.com/en-us/azure/defender-for-cloud/just-in-time-access-usage for the capabilities of JIT VM access.
upvoted 2 times
...
nefaxto
1 year, 4 months ago
B https://docs.microsoft.com/it-it/azure/active-directory/privileged-identity-management/pim-configure
upvoted 3 times
AnonymousJhb
1 year, 4 months ago
B is correct. JIT does not require request approval. PIM requires an approval by a 3rd person before you receive elevated perms. Ensure that server administrators request approval before they can establish a Remote Desktop connection to an Azure virtual machine. If the request is approved, the connection must be established within two hours.
upvoted 1 times
lukiduc9625
1 year, 1 month ago
It looks like the JIT require request approval...
upvoted 1 times
...
...
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago