AZ-104 Implement and Manage Virtual Networking • Set 19
AZ-104 Implement and Manage Virtual Networking Practice Test 19 — 15 questions with explanations. Free, no signup.
Match each NSG or ASG scenario to the most accurate Azure security behavior.
Drag a concept onto its matching description — or click a concept then click the description.
The priority 200 deny is evaluated first and blocks the flow.
The destination NIC must be added to ASG-Api for the rule to match.
The service tag does not represent the workstation's IP; a rule for the real source or a VPN path is needed.
NSGs are stateful, so the return traffic is allowed automatically.
The lower-number deny rule wins because NSGs stop at the first matching rule.