Microsoft Azure Security Engineer Associate AZ-500 Practice Question

Your company hosts a custom TCP service on several Azure virtual machines in the subnet ProdVnet/Subnet1. You must allow partner organizations in other Azure AD tenants to consume the service privately through Azure Private Link while ensuring the service has no public exposure. Before you create the Private Link service, which resource must you deploy in front of the virtual machines to meet Azure requirements?

  • Enable virtual network service endpoints for Microsoft.Network on ProdVnet/Subnet1.

  • Deploy an Azure Application Gateway with a private frontend IP that routes traffic to the virtual machines.

  • Deploy a Basic SKU internal Azure Load Balancer in front of the virtual machines.

  • Deploy a Standard SKU internal Azure Load Balancer with a private frontend IP and (optionally) add the virtual machines to its backend pool.

Microsoft Azure Security Engineer Associate AZ-500
Secure networking
Your Score:
Settings & Objectives
Random Mixed
Questions are selected randomly from all chosen topics, with a preference for those you haven’t seen before. You may see several questions from the same objective or domain in a row.
Rotate by Objective
Questions cycle through each objective or domain in turn, helping you avoid long streaks of questions from the same area. You may see some repeat questions, but the distribution will be more balanced across topics.

Check or uncheck an objective to set which questions you will receive.

Bash, the Crucial Exams Chat Bot
AI Bot