Exposing RDP (TCP 3389) or SSH (TCP 22) to the internet is one of the most common causes of VM compromise. Automated scanners find open management ports within minutes and start brute-force and password-spray attempts, and vulnerabilities in remote access services are regularly exploited. Two Azure features remove the need for public management ports: Azure Bastion and just-in-time (JIT) VM access.
Keep reading for free
Create a free StudyToCert account to read the rest of this lesson: 4 more sections, 4 key terms, a real-world example, an exam tip and self-check questions. Every lesson, lab and practice test is free with an account.