Skip to Content

AZ-700: What is the Best Solution to Connect Two Datacenters to Azure Virtual Network with Failover and Firewall Availability?

Discover the ideal solution for connecting two on-premises datacenters to Azure VNet1 with automatic failover and on-premises firewall availability. Learn why an active-active gateway with BGP and four tunnels is the best choice for your networking needs.

Table of Contents

Question

Your on-premises network contains two datacenters. Each datacenter contains a firewall.
You have an Azure subscription that contains an Azure Virtual Network named VNet1.
You need to recommend a solution to connect the two datacenters to VNet1. The solution must ensure availability of an on-premises firewall and automatic failover if an Azure VPN gateway fails.
What should you recommend?

A. an active-active gateway by using BGP and four tunnels
B. an active-active gateway by using two tunnels
C. an active-passive gateway by using BGP and four tunnels
D. an active-passive gateway by using two tunnels

Answer

A. an active-active gateway by using BGP and four tunnels

Explanation

The gateway must be configured as active-active. This will assign a public IP address to each gateway to which a tunnel can be connected from each on-premises firewall. This will create four tunnels total. BGP is used for automatic failover if the primary device goes offline.

Designing and Implementing Microsoft Azure Networking Solutions AZ-700 certification exam assessment practice question and answer (Q&A) dump including multiple choice questions (MCQ) and objective type questions, with detail explanation and reference available free, helpful to pass the Designing and Implementing Microsoft Azure Networking Solutions AZ-700 exam and earn Designing and Implementing Microsoft Azure Networking Solutions AZ-700 certification.