AZ-305 · Question 52 · Domain 4.4: Design Network Solutions
You are designing the network architecture for a large enterprise.
The enterprise has an on-premises datacenter connected to Azure via ExpressRoute. In Azure, they have 50 'spoke' Virtual Networks. You need to ensure that all traffic between the spoke VNets, and all traffic from the spoke VNets to the Internet, is inspected by a centralized firewall.
Which network topology and routing configuration should you recommend?
You are designing the network architecture for a large enterprise.
The enterprise has an on-premises datacenter connected to Azure via ExpressRoute. In Azure, they have 50 'spoke' Virtual Networks. You need to ensure that all traffic between the spoke VNets, and all traffic from the spoke VNets to the Internet, is inspected by a centralized firewall.
Which network topology and routing configuration should you recommend?
Answer options:
Mesh topology with VNet Peering between all 50 spokes.
Hub and Spoke topology with Azure Firewall in the hub, and User Defined Routes (UDRs) on the spoke subnets pointing to the Firewall.
Hub and Spoke topology with Network Security Groups (NSGs) on every spoke subnet.
Azure Virtual WAN with a Basic Virtual Hub.
How to approach this question
Full Answer
Common mistakes
Practice the full Azure Solutions Architect Expert AZ-305 Practice Exam 4
55 questions · hints · full answers · grading
Expert