Azure Fundamentals (AZ-900) · Free practice question 6 of 12
Defense in depth perimeter layer
In the defense-in-depth model, which layer is primarily concerned with protecting against distributed denial-of-service (DDoS) attacks and filtering traffic at the network edge?
- A.Perimeter
- B.Data
- C.Application
- D.Physical security
Show answer and explanation
Correct answer: A. Perimeter
Why: The perimeter layer uses protections such as DDoS mitigation and perimeter firewalls to filter large-scale attacks before they reach internal resources. The data layer protects stored information, the application layer focuses on secure code, and physical security covers access to buildings and hardware.
More free Azure Fundamentals (AZ-900) questions
- Containers vs virtual machines
- Point-to-site VPN for individual devices
- Azure File Sync caching on-premises
- Microsoft Entra Connect identity sync
- External partner access with B2B
- AzCopy command-line data transfer
- Azure Table Storage NoSQL data
- Azure operated by 21Vianet
- Azure mobile app for monitoring
- Root management group
- Azure Disk Storage for VM disks