Microsoft Azure Security Engineer Associate AZ-500 Practice Question
Contoso publishes its web application through Azure Front Door Standard/Premium with a global WAF policy. You must add two custom rules: Rule A blocks any request whose header X-Bot equals BadBot. Rule B allows any request originating from partner subnet 203.0.113.0/24, even when it matches other rules. Which configuration guarantees the intended behavior?
Create Rule B with action Allow and priority 10, and Rule A with action Block and priority 20.
Create Rule A with action Block and priority 5, and Rule B with action Allow and priority 50.
Create Rule A with action Block and priority 500, and Rule B with action Allow and priority 501.
Create Rule B with action Allow and priority 1000, and Rule A with action Block and priority 1.
Azure WAF evaluates custom rules before managed rules and processes them in ascending order of the Priority value. When a request matches a custom rule, evaluation stops and the rule's action is applied. Therefore, the Allow rule for the partner subnet must have a lower numerical priority than the Block rule so that it is evaluated first. Giving Rule B priority 10 and Rule A priority 20 achieves this; any partner traffic is allowed before the header-based block rule is considered. The other options either give the block rule precedence or assign priorities that do not guarantee the correct order.
Ask Bash
Bash is our AI bot, trained to help you pass your exam. AI Generated Content may display inaccurate information, always double-check anything important.
What is Azure Front Door Standard/Premium?
Open an interactive chat with Bash
What is a Web Application Firewall (WAF)?
Open an interactive chat with Bash
How does Azure WAF evaluate custom rules?
Open an interactive chat with Bash
Microsoft Azure Security Engineer Associate AZ-500
Secure networking
Your Score:
Report Issue
Bash, the Crucial Exams Chat Bot
AI Bot
Loading...
Loading...
Loading...
Pass with Confidence.
IT & Cybersecurity Package
You have hit the limits of our free tier, become a Premium Member today for unlimited access.
Military, Healthcare worker, Gov. employee or Teacher? See if you qualify for a Community Discount.
Monthly
$19.99
$19.99/mo
Billed monthly, Cancel any time.
3 Month Pass
$44.99
$14.99/mo
One time purchase of $44.99, Does not auto-renew.
MOST POPULAR
Annual Pass
$119.99
$9.99/mo
One time purchase of $119.99, Does not auto-renew.
BEST DEAL
Lifetime Pass
$189.99
One time purchase, Good for life.
What You Get
All IT & Cybersecurity Package plans include the following perks and exams .