exam questions

Exam AZ-220 All Questions

View all questions & answers for the AZ-220 exam

Exam AZ-220 topic 6 question 13 discussion

Actual exam question from Microsoft's AZ-220
Question #: 13
Topic #: 6
[All AZ-220 Questions]

You have an Azure subscription that contains an Azure IoT hub and two Azure IoT Edge devices named Device1 and Device2.
You need to ensure that the IoT hub only accepts connections from Device1 and Device2.
What should you configure?

  • A. a private endpoint connection
  • B. Azure API Management
  • C. Azure Active Directory (Azure AD) Identity Protection
  • D. a gateway device
Show Suggested Answer Hide Answer
Suggested Answer: A 🗳️
Ingress connectivity to IoT Hub using Azure Private Link.
A private endpoint is a private IP address allocated inside a customer-owned VNet via which an Azure resource is reachable. Through Azure Private Link, you can set up a private endpoint for your IoT hub to allow services inside your VNet to reach IoT Hub without requiring traffic to be sent to IoT Hub's public endpoint.
Similarly, your on-premises devices can use Virtual Private Network (VPN) or ExpressRoute peering to gain connectivity to your VNet and your IoT Hub (via its private endpoint). As a result, you can restrict or completely block off connectivity to your IoT hub's public endpoints by using IoT Hub IP filter or the public network access toggle. This approach keeps connectivity to your Hub using the private endpoint for devices.
Reference:
https://docs.microsoft.com/en-us/azure/iot-hub/virtual-network-support

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
hotwheelsinsf
2 years, 2 months ago
Wow you people need to spend a little time on the answers to the questions.... Topic 5 Question 23 is the same as this one but indicates the answer there to be Azure Active Directory (Azure AD) Identity Protection So Which is it?????
upvoted 1 times
Yameo
2 years ago
I think that ip filtering and private endpoint are the correct solutions. Moreover, they never appear in the same set of answers, which is also a clue.
upvoted 1 times
...
...
PreetDP900
2 years, 2 months ago
what is the right answer guys?
upvoted 1 times
...
hotwheelsinsf
2 years, 3 months ago
Says here answer is indicates "private endpoint.. Not good for people who need accuracy when taking this upcoming Massive Test....Just Saying
upvoted 1 times
...
hotwheelsinsf
2 years, 3 months ago
Wow you people need to spend a little time on the answers to the questions.... Topic 5 Question is the same as this one but indicates the answer there to be Azure Active Directory (Azure AD) Identity Protection So Which is it?????
upvoted 2 times
PreetDP900
2 years, 2 months ago
I agreed with you. This site needs to maintain very well otherwise people who paid for these practice papers are wasting their money plus getting wrong information. On top that they pass the wrong information to their team members.
upvoted 3 times
...
...
Ouss7
2 years, 11 months ago
that can help https://docs.microsoft.com/en-us/azure/iot-hub/iot-hub-public-network-access
upvoted 1 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...