You deployed two encrypted VLAN attachments (5 Gbps) and a Cloud Router with BGP for HA VPN over Cloud Interconnect. BGP is up. What final steps complete HA VPN over Cloud Interconnect?
Choose an answer
Tap an option to check your answer.
Correct answer: Create an HA VPN gateway and associate it with the two encrypted VLAN attachments. Create a new, dedicated HA VPN Cloud Router, peer VPN gateway resources, and create the HA VPN tunnels..
Why this is the answer
For HA VPN over Cloud Interconnect, you must create a dedicated HA VPN gateway and associate it with the existing encrypted VLAN attachments. A new, dedicated Cloud Router is then required for the HA VPN tunnels to establish BGP peering with your on-premises VPN gateway. This separation ensures the Cloud Interconnect BGP session (for direct connectivity) and the HA VPN BGP session (for encrypted traffic) operate independently, enhancing reliability and simplifying configuration. The incorrect options suggest using the existing Cloud Router for both, which is not the recommended or standard practice for HA VPN over Cloud Interconnect, or mention MACsec, which is a Layer 2 encryption for Partner Interconnect and not relevant for HA VPN over Cloud Interconnect.
Pass your exam — without the endless answer hunt
Get every verified question and explanation for this exam in one place, and save hours of prep. 1,000+ certifications · 20+ languages · free to start.
Pass your exam faster → No card needed