Q: 8
You plan to configure BGP for a Site-to-Site VPN connection between a datacenter and Azure.
Which two Azure resources should you configure? Each correct answer presents a part of the
solution. (Choose two.)
NOTE: Each correct selection is worth one point.
Options
Discussion
A/D. No explanation needed, these are the two required for BGP over S2S VPN with Azure.
I think it's A and C. Virtual network gateway makes sense, plus Azure Firewall sometimes comes up in practice tests for routing scenarios. Not 100% though, so check the official guide if unsure.
Its A and D, I think? Virtual network gateway for Azure side, local network gateway for on-prem. Can someone confirm?
A and D. Saw similar in practice tests, you need both to enable S2S VPN with BGP in Azure. Pretty sure Application Gateway and Firewall aren't involved for this setup. Correct me if wrong.
C and A tbh
A and C. Virtual network gateway for sure, but Azure Firewall can do some routing stuff so went with C.
Hard to say, A and D, but technically if the exam meant "Azure-only resources," D might cause confusion since it just points at on-prem.
Option A and D. Virtual network gateway is for the Azure side and local network gateway defines on-prem peer info needed for BGP. I think that's what exam expects, but not 100% sure so open to being corrected.
Its D and A for BGP with site-to-site VPN. Virtual network gateway is required in Azure for the VPN endpoint and BGP config, and local network gateway lets you define the on-prem peer details including ASN. Not totally sure if D is always counted as exclusively Azure but pretty sure both are expected here. Anyone see it different?
B , Application Gateway does some routing so maybe it needs to be configured in this setup depending on design.
Be respectful. No spam.