Microsoft Azure Fundamentals (AZ-900)Describe Azure architecture and servicesEasy

A consulting firm needs to provision a new network environment in Azure for a client. This environment must be logically isolated from other networks, allow for secure communication between resources within it, and enable connectivity to an on-premises network via a VPN gateway. Which Azure networking component is fundamental to meeting these requirements?

  1. AAzure Load Balancer
  2. BAzure Application Gateway
  3. CAzure Virtual Network (VNet)
  4. DAzure DNS
Show answer & explanation

Correct answer: C. Azure Virtual Network (VNet)

An Azure Virtual Network (VNet) provides a logically isolated network in Azure, allowing secure communication between resources and enabling connectivity to on-premises networks via VPN gateways.

Why the other options are wrong

  • A. Azure Load Balancer distributes incoming traffic to multiple virtual machines; it doesn't provide network isolation or VPN connectivity.
  • B. Azure Application Gateway is a web traffic load balancer that enables you to manage traffic to your web applications, not the core network isolation component.
  • D. Azure DNS hosts your DNS domains in Azure, providing name resolution, but it's not responsible for network isolation or VPN connectivity.

Azure Virtual Network (VNet)

A service that enables you to provision your own private network in Azure, providing logical isolation and allowing secure communication among Azure resources and with on-premises networks.

  • Logically isolated network.
  • Secure communication within the network.
  • Can connect to on-premises networks via VPN.
  • Foundation for many Azure services.

Memory trick: VNet is your virtual house in the cloud, setting clear boundaries.

More Describe Azure architecture and services questions