
Ultimate access to all questions.
In a scenario where you are responsible for securing a critical application hosted on Azure virtual machines, you need to ensure that these VMs are accessible only from specific internal subnets within your organization's Azure Virtual Network. Additionally, the solution must be cost-effective and easily scalable to accommodate future growth. Considering these requirements, which Azure networking feature would you use to restrict access to these VMs, and why? (Choose two options if applicable.)
A
Azure Network Security Groups (NSGs) for defining inbound and outbound traffic rules based on source and destination IP addresses, ports, and protocols.
B
Azure Virtual Network Peering for connecting multiple virtual networks to enable communication between resources in different virtual networks.
C
Azure VPN Gateway for establishing secure, cross-premises connectivity between your Azure virtual network and your on-premises infrastructure.
D
Azure ExpressRoute for creating private connections between Azure datacenters and infrastructure on your premises or in a colocation environment.
E
Azure Firewall for providing high-level security and network traffic filtering capabilities across multiple virtual networks and subscriptions.