You have an Azure subscription that contains the following resources:A virtual network named Vnet1Two subnets named subnet1 and AzureFirewallSubnet A public Azure Firewall named FW1A route table named RT1 that is associated to Subnet1 A rule routing of 0.0.0.0/0 to FW1 in RT1After deploying 10 servers that run Windows Server to Subnet1, you discover that none of the virtual machines wereactivated.You need to ensure that the virtual machines can be activated.What should you do?
A. On FW1, create an outbound service tag rule for AzureCloud
B. On FW1, create an outbound network rule that allows traffic to the Azure Key Management Service (KMS)
C. Deploy a NAT gateway
D. To Subnet1, associate a network security group (NSG) that allows outbound access to port 1688