QuestionQ304

Design security solutions for applications and data

You have an Azure subscription containing a virtual network named VNet1. VNet1 includes a 10-node virtual machine scale set hosting a web search app named App1. Customers access App1 from the internet, and the nodes make outbound HTTP and HTTPS connections to the internet.

You need to recommend a network security solution for App1 that meets these requirements:

  • Block inbound connections to App1 that contain security threats defined by the Open Web Application Security Project (OWASP) Core Rule Set (CRS).
  • Block outbound HTTP and HTTPS connections from the virtual machine scale set that contain security threats identified by the Microsoft Defender Threat Intelligence (Defender TI) feed.

What should the recommendation include?

Community Discussion

No comments yet. Be the first to start the discussion!