Deploy & Manage Azure Compute Resources Flashcards

1
Q

A representation of your own network in the cloud; logical isolation of the Azure cloud dedicated to your subscription

A

Azure Virtual Network (VNet)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

VNet uses:

A
  • Create a dedicated private cloud-only VNet; - Securely extend your data center; - Enable hybrid cloud scenarios
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

A public IP address resource can be associated with:

A

VM network interfaces, internet-facing load balancers, VPN gateways, and app gateways

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

Static or dynamic IP assignment; Open by default security; For Net Interfaces, VPN Gateways, App Gateways, Internet-facing load balancers; Not zone redundant

A

Basic SKU

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

Static IP address assignment; Security by default & closed to inbound traffic; Network interfaces or public standard load balancers; Zone redundant by default

A

Standard SKU

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

Contains a list of security rules that allow or deny inbound or outbound network traffic; can be associated to a subnet or network interface

A

Network Security Group (NSG)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

NSG Rules Specifications:

A

Name, Priority, Port, Protocol, Source, Destination, Allow/Deny

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

Enables configuration of network security as an extension of an application’s structure

A

Application Security Group (ASG)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

ASG Constraints:

A
  • Limits in subscription; One ASG as the source & destination in a security rule; All network interfaces assigned to an ASG must exist in the same virtual network
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

ASG Benefits:

A

A single management experience; Increase limits on multiple dimensions; a great level of simplification; a seamless integration with your architecture

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

Managed, cloud-based network security service that protects AZ VN resources

A

Azure Firewall

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

Fully stateful firewall as a service w/ build-in high availability & unrestricted cloud scalability

A

Azure Firewall

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

Azure Firewall features:

A

Built-in high availability, Availability Zones, Unrestricted cloud scalability, Application FQDN Filtering rules, Network traffic filtering rules, Threat intelligence, Multiple public IP addresses

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

Recommended to use ___-___ network topology when deploying Azure Firewal

A

Hub(virtual network in Azure that acts as a central point of connectivity to your on-premises network), Spoke (Virtual networks that peer with the hub & can be used ti isolate workloads)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

Three rules configured in Azure Firewall:

A

NAT, Network, Application

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

When packet is inspected, rules are processed in order of:

A

Network, then Application

17
Q

The initial domain name can’t be ___ or ___. You can add a ___ ___ ___ you control.

A

changed or deleted; routable custom domain name