You plan to enable BGP for a Site-to-Site VPN between your datacenter and Azure. Which two Azure resources must you configure to support this BGP-enabled connection? (Choose two.)
Choose an answer
Tap an option to check your answer.
Correct answer: a virtual network gateway, a local network gateway.
Why this is the answer
A virtual network gateway is essential as it provides the IPsec VPN endpoint in Azure, allowing your Azure VNet to connect to your on-premises network. A local network gateway represents your on-premises VPN device and its network configuration to Azure, including its public IP address and the address spaces behind it. Both are fundamental components for establishing a Site-to-Site VPN connection, especially when BGP is involved for dynamic routing. Azure Application Gateway, Azure Firewall, and Azure Front Door are all networking services, but they serve different purposes like load balancing, network security, and global traffic management, respectively, and are not directly involved in establishing the foundational Site-to-Site VPN tunnel with BGP.
Pass your exam — without the endless answer hunt
Get every verified question and explanation for this exam in one place, and save hours of prep. 1,000+ certifications · 20+ languages · free to start.
Pass your exam faster → No card needed