Microsoft Azure Fundamentals (AZ-900)Describe Azure identity, security, and networkingEasy
A company is deploying a new application to Azure that requires secure communication between several virtual machines (VMs) located in different virtual networks (VNets). The company needs to ensure that traffic between these VNets can flow securely without transiting the public internet. Which Azure networking service should they use?
- AAzure Firewall
- BVNet Peering
- CAzure Load Balancer
- DAzure DNS
Show answer & explanationAnswer & explanation
Correct answer: B. VNet Peering
VNet Peering allows you to connect two or more Azure Virtual Networks securely. The peered VNets appear as a single network for connectivity purposes, allowing resources in each VNet to communicate directly and privately.
Why the other options are wrong
- A. Azure Firewall is a managed, cloud-based network security service that protects your Azure Virtual Network resources.
- C. Azure Load Balancer distributes incoming network traffic across multiple virtual machines or services.
- D. Azure DNS provides domain name resolution services for resources within Azure.
VNet Peering
VNet Peering is an Azure networking mechanism that connects two or more Azure Virtual Networks, allowing resources in each VNet to communicate privately.
- Connects VNets securely
- Traffic stays within Microsoft's backbone network
- Appears as a single network for connectivity
- Supports cross-subscription and cross-region peering
Memory trick: Peering is like a private bridge between your Azure neighborhoods.