Microsoft Certified: Azure Administrator AssociateImplement and manage virtual networkingEasy

A company is deploying a new application that consists of several virtual machines (VMs) in an Azure Virtual Network (VNet). The application requires that all inbound internet traffic be distributed evenly across these VMs. Additionally, the application needs to be accessible via a public IP address and support TCP and UDP protocols. Which Azure networking service should you implement?

  1. AAzure Traffic Manager
  2. BAzure Load Balancer
  3. CAzure Application Gateway
  4. DAzure Front Door
Show answer & explanation

Correct answer: B. Azure Load Balancer

Azure Load Balancer is designed to distribute incoming network traffic across multiple backend resources, such as virtual machines, based on configured load-balancing rules. It supports both TCP and UDP protocols and can expose applications via a public IP address.

Why the other options are wrong

  • A. Azure Traffic Manager is a DNS-based traffic load balancer that distributes traffic globally across endpoints, not within a VNet at the VM level.
  • C. Azure Application Gateway operates at Layer 7 (HTTP/S) and is not suitable for distributing TCP/UDP traffic.
  • D. Azure Front Door is a global, scalable entry-point that uses the Microsoft global edge network to create fast, secure, and widely scalable web applications, operating primarily at Layer 7.

Azure Load Balancer

A Layer 4 (TCP/UDP) load balancer that distributes incoming network traffic across multiple healthy virtual machines or services.

  • Operates at Layer 4 (Transport Layer)
  • Supports TCP and UDP protocols
  • Can be Public or Internal
  • Distributes traffic based on health probes and load-balancing rules

Memory trick: Load Balancer handles TCP/UDP, App Gateway handles HTTP/S, Front Door is global, Traffic Manager is DNS.

More Implement and manage virtual networking questions