exam questions

Exam DP-300 All Questions

View all questions & answers for the DP-300 exam

Exam DP-300 topic 7 question 19 discussion

Actual exam question from Microsoft's DP-300
Question #: 19
Topic #: 7
[All DP-300 Questions]

You have an Azure subscription that contains the resources shown in the following table.

You need to configure a connection between VM1 and MI1. The solution must meet the following requirements:
✑ The connection must be encrypted.
✑ Network latency must be minimized.
What should you implement?

  • A. a site-to-site VPN
  • B. virtual network peering
  • C. private endpoints
  • D. service endpoints
Show Suggested Answer Hide Answer
Suggested Answer: C 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
voodoo_sh
2 months, 3 weeks ago
Selected Answer: C
C: private endpoints. out of four options, for encryption, both site-to-site VPN and private endpoints provide encryption. For minimizing network latency, virtual network peering and private endpoints offer the best options. Since we need both encryption and minimized latency, private endpoints would be our best choice.
upvoted 1 times
...
bingomutant
6 months, 3 weeks ago
C - Privare endpoint - Private Endpoints: These provide a secure and encrypted connection between your Azure resources over the Azure backbone network. Private endpoints allow you to connect to your Azure SQL Managed Instance (MI1) using a private IP address within your virtual network, without exposing the traffic to the public internet. This solution provides the lowest latency since it stays within Azure’s internal network, and the traffic is encrypted.
upvoted 1 times
...
nhclord
7 months, 4 weeks ago
Selected Answer: B
The correct answer, of course, is peering. Peering encrypts communications over the Internet and makes communications transparent between VNETs in different regions, which is the case in this question. Note that there is already a VM on a subnet that already has an IP. You can't add a private endpoint to a VM.... On the other hand, we have a managed instance that also needs to be in a subnet, where it is also not possible to add a private endpoint. The documentation below explains this very well, note that there is no private endpoint for VMs: https://learn.microsoft.com/en-us/azure/azure-sql/managed-instance/vnet-existing-add-subnet?view=azuresql
upvoted 1 times
bingomutant
6 months, 3 weeks ago
nonsense - • Virtual Network Peering (B): This offers low latency since it uses the Azure backbone network, but it does not natively encrypt traffic. You would need to implement encryption at the application level, which adds complexity
upvoted 1 times
...
...
sgoncharuk
1 year, 4 months ago
B is the answer
upvoted 2 times
...
Niki1111
2 years ago
Selected Answer: C
C. private endpoints
upvoted 4 times
...
OneplusOne
2 years, 4 months ago
I think the answer is correct because using Virtual network peering is without encryption. Virtual network peering No public Internet, gateways, or encryption is required in the communication between the virtual networks. https://learn.microsoft.com/en-us/azure/virtual-network/virtual-network-peering-overview
upvoted 2 times
licna
2 years, 3 months ago
Well, how about the encryption then? Private Endpoint is just some sort of network interface allowing connection between resources. But no other answer looks like correct too, weird question.
upvoted 2 times
...
...
Manuuzzz
2 years, 4 months ago
I don't see where private endpoints encrypt traffic?
upvoted 1 times
...
Ciupaz
2 years, 7 months ago
Answer is correct: https://learn.microsoft.com/en-us/azure/private-link/private-endpoint-overview
upvoted 2 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago