In this challenge, you will create a secure network for your Azure virtual machines. First, you will reconfigure an existing incoming security rule to filter the destination to only the back-end subnet by using a new application security group, and then you will create a firewall and route table. Next, you will configure the firewall by using an application rule, and then you will add a network rule to allow domain name system (DNS) queries. Finally, you will configure Azure to support Network Watcher. Note: Once you begin a challenge you will not be able to pause, save, or return to your progress. Please ensure you have set aside enough time to complete the challenge before you start.
Learning Objectives
In this challenge, you will create a secure network for your Azure virtual machines. First, you will reconfigure an existing incoming security rule to filter the destination to only the back-end subnet by using a new application security group, and then you will create a firewall and route table. Next, you will configure the firewall by using an application rule, and then you will add a network rule to allow domain name system (DNS) queries. Finally, you will configure Azure to support Network Watcher. Note: Once you begin a challenge you will not be able to pause, save, or return to your progress. Please ensure you have set aside enough time to complete the challenge before you start.