Why does "default route" setting on UDR make licensing rule for NSG disable?
Usually, if I use Windows VM, traffic to KMS server is allowed by platform rule for NSG by default.
However this platform rule is disabled if I set default route(0.0.0.0/0) in UDR.
Why UDR make this platform rule on NSG disable?
For example, when I use Azure Firewall, it requires to set default route setting on UDR to transfer all traffic to Azure Firewall.
In this case, I need to add NSG rule to allow KMS server(18.104.22.168).
Why is this behavior needed?