Microsoft Azure Administrator Associate AZ-104 Practice Question
An organization has deployed multiple virtual machines (VMs) within an Azure virtual network. The VMs do not have public IP addresses, and network security group (NSG) rules prevent inbound internet traffic. Administrators need a secure method to manage these VMs remotely over the internet without modifying NSG rules or assigning public IPs to the VMs. What should the administrators implement to achieve this requirement?
Deploy an Azure Bastion host in the virtual network.
Enable just-in-time (JIT) VM access for the VMs.
Configure a point-to-site VPN connection to the virtual network.
Add a public load balancer to provide access to the VMs.