Soru

Zorluk: KolayConfigure Storage Account Network Access

An administrator needs to restrict access to an Azure Storage account named storage1 so that it only accepts traffic originating from a specific subnet in a virtual network. What is the correct sequence of steps to configure this network restriction in the Azure portal?

  1. 1Navigate to the storage1 storage account in the Azure portal.
  2. 2In the left navigation menu, under the Security + networking section, select Networking.
  3. 3On the Firewalls and virtual networks tab, change Public network access to 'Enabled from selected virtual networks and IP addresses'.
  4. 4Under the Virtual networks section, select 'Add existing virtual network', and then select the target virtual network and subnet.
  5. 5Select Save to apply the configuration changes.

Cevap

The correct sequence of steps is to first navigate to the storage1 storage account, go to the Networking settings under Security + networking, set the Public network access to 'Enabled from selected virtual networks and IP addresses', add the target virtual network and subnet, and then select Save to apply the changes.
To restrict access to a storage account from a specific subnet, the administrator must navigate to the storage account, access the Networking settings, change Public network access to 'Enabled from selected virtual networks and IP addresses', add the target subnet under Virtual networks, and save the settings.

Adım Adım Çözüm

1
Locate the target storage account resource.
The storage1 account page is opened.
All network settings for the resource are configured within its instance page.
2
Access the Networking blade.
The Networking configuration interface is loaded.
This blade houses firewall and virtual network access rules.
3
Restrict public network access settings.
The firewall rules are opened for configuration.
By default, access is allowed from all networks; this must be restricted to selected networks first.
4
Associate the allowed virtual network and subnet.
The subnet is added to the firewall exceptions list.
This explicitly authorizes traffic coming from that specific subnet.
5
Save the settings.
The updated network configuration is saved and active.
Firewall rules do not take effect until they are explicitly saved in the portal.

Anahtar Kavram

Azure Storage Firewall Configuration
Tahmini Süre:1m 0s
Bu soruyu puanla