Design and Implement Hybrid Networking Flashcards

1
Q

What is Windows Admin Center?

A

You plan to configure Azure Extended Network to extend an on-premises subnet into Azure.

What should you deploy first?

Windows Admin Center is used to configure and manage the solution though a wizard. All the other options are for unrelated technologies.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

Azure VPN gateway

A

a specific type of virtual network gateway that is used to send and receive encrypted traffic between an Azure virtual network and an on-premises location over the public Internet.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

Types of VPN Gateways

A

Point to site over the internet
Site to site over the internet
Site to site over a dedicated network, such as Azure ExpressRoute

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

Planning factors for VPN gateways

A

Throughput - Mbps or Gbps
Backbone - Internet or private?
Availability of a public (static) IP address
VPN device compatibility
Multiple client connections or a site-to-site link?
VPN gateway type
Azure VPN Gateway SKU

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

PolicyBased VPN

A

PolicyBased VPNs were previously called static routing gateways in the classic deployment model. Policy-based VPNs encrypt and direct packets through IPsec tunnels based on the IPsec policies configured with the combinations of address prefixes between your on-premises network and the Azure VNet. The policy (or traffic selector) is usually defined as an access list in the VPN device configuration. The value for a PolicyBased VPN type is PolicyBased. When using a PolicyBased VPN, keep in mind the following limitations:

Policy based VPNs which support IKEv1 protocols can be used with Basic Gateway SKUs only.

You can have only 1 tunnel when using a PolicyBased VPN.

You can only use PolicyBased VPNs for S2S connections, and only for certain configurations. Most VPN Gateway configurations require a RouteBased VPN.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

VPN gateway subnet

A

The gateway subnet contains the IP addresses that the virtual network gateway VMs and services use. When you create your virtual network gateway, gateway VMs are deployed to the gateway subnet and configured with the required VPN gateway settings. Never deploy anything else (for example, additional VMs) to the gateway subnet.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

network virtual appliance (NVA)

A

These types of devices are known as network virtual appliances (NVAs); they are deployed directly into a Virtual WAN hub and have an externally facing public IP address.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

Customer Resource Group

A

This will contain an application placeholder for the Managed Application. Partners can use this resource group to expose whatever customer properties they choose here.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

Managed Resource Group

A

Customers cannot configure or change resources in this resource group directly, as this is controlled by the publisher of the Managed Application. This Resource Group will contain the NetworkVirtualAppliances resource.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

NVA Infrastructure Units

A

An NVA Infrastructure Unit is a unit of aggregate bandwidth capacity for an NVA in the Virtual WAN hub.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

One NVA Infrastructure Unit

A

represents 500 Mbps of aggregate bandwidth for all branch site connections coming into this NVA.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

How many infrastructure units does Azure support in a NVA virtual hub deployment

A

1-80 NVA Infrastructure Units for a given NVA virtual hub deployment.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

ASNs reserved by Azure

A

Public ASNs: 8074, 8075, and 12076

Private ASNs: 65515, 65517, 65518, 65519, and 65520

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

ASNs reserved by IANA

A

23456, 64496-64511, 65535-65551, and 429496729

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

OpenVPN

A

users can authenticate to Azure AD when using the VPN connection

How well did you know this?
1
Not at all
2
3
4
5
Perfectly