You have two peered virtual networks named VNet1 and VNet2 and a Network Virtual Appliance (NVA) named NetVA1. You want all traffic from VNet1 to VNet2 to be inspected by NetVA1. Which mechanism should you use?
Choose an answer
Tap an option to check your answer.
Correct answer: a route table that has custom routes.
Why this is the answer
A route table with custom routes is the correct mechanism because it allows you to define how traffic flows within and between virtual networks. By creating a custom route in VNet1 that directs traffic destined for VNet2 through NetVA1's IP address, you force the inspection. Without this, traffic between peered VNets flows directly. A local network gateway is used for connecting your Azure virtual networks to on-premises networks, not for traffic inspection between peered VNets. A service endpoint secures direct connectivity to Azure services like Storage or SQL Database, bypassing the public internet, and isn't for NVA inspection. IP address reservations are for assigning static private or public IP addresses to resources, which doesn't control traffic flow for inspection.
Pass your exam — without the endless answer hunt
Get every verified question and explanation for this exam in one place, and save hours of prep. 1,000+ certifications · 20+ languages · free to start.
Pass your exam faster → No card needed