Microsoft Certified Azure Security Engineer Associate · Free Practice Question Easy
Question 3
You are monitoring your Azure infrastructure for potential network issues between VMs. You want to analyze the inbound and outbound traffic to and from Network Security Groups (NSGs).
Which tool should you utilize?
-
A
Network Watcher
- B VPN Gateway logging
-
C
Virtual network flow logs
-
D
Azure Monitor Metrics
Reveal correct answer
Correct answer: C
A. Network Watcher is a tool in Azure that provides a range of network monitoring and diagnostic tools, but it is not specifically designed to analyze inbound and outbound traffic to and from Network Security Groups (NSGs). It focuses more on network security group view, security group flow logs, next hop type, IP flow verify, and connection troubleshoot.
B. VPN Gateway logging is used to monitor and troubleshoot VPN connections and traffic passing through VPN gateways. It is not directly related to analyzing inbound and outbound traffic to and from Network Security Groups (NSGs).
C. Virtual network flow logs are the correct tool to utilize for analyzing inbound and outbound traffic to and from Network Security Groups (NSGs). These logs capture information about IP traffic flowing through network interfaces in a virtual network, including NSGs, allowing you to monitor and analyze network traffic patterns.
D. Azure Monitor Metrics provides monitoring data for various Azure resources, but it does not specifically focus on analyzing inbound and outbound traffic to and from Network Security Groups (NSGs). It is more geared towards performance monitoring and metrics for Azure resources.
Discussion
Think the marked answer is wrong, or have a better explanation? Share it below — comments appear after review.
