Your on-premises datacenter Site1 has a firewall FW1 that provides internet connectivity. In Azure you have a virtual WAN (VWAN1) and a hub (Hub1). You plan a site-to-site connection from Site1 to Hub1 and need to configure the connection to FW1. What should you create in VWAN1 to represent the on-premises Site1 for the site-to-site connection?
Choose an answer
Tap an option to check your answer.
Correct answer: a VPN site.
Why this is the answer
A VPN site in Azure Virtual WAN represents your on-premises VPN device (like FW1) and its associated IP addresses, address prefixes, and other connection properties. This object is essential for establishing a site-to-site VPN tunnel between your on-premises network and the Azure Virtual WAN hub. A virtual network connection connects an Azure VNet to a Virtual WAN hub, not an on-premises site. A network virtual appliance (NVA) is a virtual machine in Azure that performs network functions, not a representation of an on-premises site for VPN connectivity. A User VPN configuration is used for point-to-site VPN connections, allowing individual users to connect to Azure, not for site-to-site connections between networks.
Pass your exam — without the endless answer hunt
Get every verified question and explanation for this exam in one place, and save hours of prep. 1,000+ certifications · 20+ languages · free to start.
Pass your exam faster → No card needed