Microsoft Azure Administrator Associate AZ-104 Practice Question
You are the Azure administrator for your company's virtual network infrastructure. A virtual machine named VM1 is experiencing connectivity issues to a specific endpoint. You need to determine whether network security group (NSG) rules are allowing or denying the traffic to that endpoint. Which Azure Network Watcher feature should you use?
The 'IP flow verify' feature in Azure Network Watcher is used to check if a packet is allowed or denied to or from a virtual machine. It tests the traffic against configured network security group (NSG) rules and returns the specific rule that allowed or denied the traffic. This makes it the correct tool for the scenario. 'Connection troubleshoot' provides a comprehensive, point-in-time connection check but does not specify which NSG rule is responsible for a failure. 'Packet capture' collects raw network traffic for deep analysis but does not directly report on NSG rule evaluations. 'Next hop' is used to diagnose routing issues by showing the next hop in the traffic path, not for checking security rules.
Ask Bash
Bash is our AI bot, trained to help you pass your exam. AI Generated Content may display inaccurate information, always double-check anything important.
What are Network Security Groups (NSGs) and how do they work?
Open an interactive chat with Bash
What is Azure Network Watcher and what features does it provide?
Open an interactive chat with Bash
How can I interpret the results from IP flow verify?
Open an interactive chat with Bash
Microsoft Azure Administrator Associate AZ-104
Configure and manage virtual networking
Your Score:
Report Issue
Bash, the Crucial Exams Chat Bot
AI Bot
Loading...
Loading...
Loading...
IT & Cybersecurity Package Join Premium for Full Access