Skip to main content
Answer confirmed
Question

You have an Azure virtual machine named VM1 that runs Windows Server.

You need to ensure that administrators request access to VM1 before establishing a Remote Desktop connection.

What should you configure?

Proposed answer
  • A. Azure Front Door
  • B. Microsoft Defender for Cloud
  • C. Azure AD Privileged Identity Management (PIM)
  • D. a network security group (NSG)
Suggested answer
  • B (56%)
  • C (44%)
Correct answer

Correct answer is B. Microsoft Defender for Cloud

Reference

Comments

 

MattR2

Highly Voted 5 months, 4 weeks ago 

Selected Answer: B

https://learn.microsoft.com/en-us/azure/defender-for-cloud/just-in-time-access-usage

upvoted 5 times 

Ksk08

Most Recent 4 weeks, 1 day ago 

confirm answer is C. Azure AD Privileged Identity Management (PIM)

upvoted 1 times 

Ksk08

1 week, 1 day ago 

Sorry answer should be B. PIM doesn't provide remote connection

upvoted 1 times 

ademgradd

1 month, 1 week ago 

Selected Answer: C

answer is 100% c. You need te configre priviliged identiy management to require some action.

upvoted 1 times 

AmeliusJan

4 months ago 

Selected Answer: C

request access (PIM)

upvoted 1 times 

jrodthelegend

6 months ago 

Answer is C

upvoted 2 times 

SIAMIANJI

6 months, 2 weeks ago 

Selected Answer: C

To ensure that administrators request access to VM1 before establishing a Remote Desktop connection, you should configure: C. Azure AD Privileged Identity Management (PIM) Azure AD Privileged Identity Management (PIM) allows you to manage, control, and monitor access within your Azure environment. With PIM, you can require administrative users to request and receive approval before gaining privileged access to resources such as virtual machines. By configuring PIM, you can enforce the access control policies for Remote Desktop connections to VM1 and ensure that only authorized administrators can establish connections after proper approval.

upvoted 2 times 

Kuikz

7 months, 3 weeks ago 

Selected Answer: B

correct

upvoted 1 times 

boapaulo

11 months, 2 weeks ago 

To ensure that administrators request access to VM1 before establishing a Remote Desktop connection, you must configure Azure AD Privileged Identity Management (PIM) Correct answer C:

upvoted 1 times 

Payday123

1 year ago 

Selected Answer: B

Defender JIT https://learn.microsoft.com/en-us/azure/defender-for-cloud/just-in-time-access-overview?tabs=defender-for-container-arch-aks

upvoted 3 times 

rknichols01

10 months, 3 weeks ago 

windows defender JIT is only through powershell. since this is a request for remote desktop the answer is PIM, answer C

upvoted 1 times 

MattR2

5 months, 4 weeks ago 

The JIT VM access page opens listing the ports that Defender for Cloud recommends protecting: 22 - SSH 3389 - RDP 5985 - WinRM 5986 - WinRM

upvoted 3 times 

lucacose

1 year ago 

Selected Answer: C

Privileged Identity Management (PIM) is a service in Microsoft Entra ID that enables you to manage, control, and monitor access to important resources in your organization. PIM provide just-in-time privileged access to Microsoft Entra ID and Azure resources. PIM supports the following scenarios: Privileged Role Administrator permissions - Enable approval for specific roles - Specify approver users or groups to approve requests https://learn.microsoft.com/en-us/entra/id-governance/privileged-identity-management/pim-configure

upvoted 3 times 

Payday123

1 year ago 

PIM is for roles For VMs is JIT

upvoted 10 times