AZ-500 Exam QuestionsBrowse all questions from this exam

AZ-500 Exam - Question 434


You have an Azure subscription.

You need to deploy an Azure virtual WAN to meet the following requirements:

• Create three secured virtual hubs located in the East US, West US, and North Europe Azure regions.

• Ensure that security rules sync between the regions.

What should you use?

Show Answer
Correct Answer: D

To create secured virtual hubs and ensure that security rules synchronize across multiple regions, Azure Firewall Manager is the correct choice. Azure Firewall Manager enables centralized management of security policies that can be applied to multiple Azure Firewall instances across various regions. This setup allows for synchronization of security rules, which aligns with the requirement to secure virtual hubs in the East US, West US, and North Europe regions.

Discussion

17 comments
Sign in to comment
vxlOption: A
Jun 16, 2023

https://azure.microsoft.com/en-us/products/virtual-network-manager

erffreOption: D
Jul 3, 2023

I think this is the reason why the answer in examtopics is "D" https://learn.microsoft.com/en-us/azure/firewall-manager/secured-virtual-hub Create a secured virtual hub Using Firewall Manager in the Azure portal, you can either create a new secured virtual hub, or convert an existing virtual hub that you previously created using Azure Virtual WAN. You may configure Virtual WAN to enable inter-region security use cases in the hub by configuring routing intent. For more information on routing intent, see Routing Intent documentation. If i have to chose, i will go with D. Virtual network manager is not designed for security.

BooMz
Jul 16, 2023

For anyone wondering, there is also a reference here which is clear. https://learn.microsoft.com/en-us/azure/firewall-manager/secure-cloud-network

lt9898
Nov 15, 2023

Agree on D - Azure Firewall Manager since it achieves synchronisation by allowing application of centrally defined policy to multiple azure firewalls in different regions -plus extending from erffre's comment- Virtual Network Manager is more focussed on 1) centrally managing your vnet topology 2) managing Security Admin Rules which are global overrides for NSG policy for governance, rather than synchronisation of policy across regions https://learn.microsoft.com/en-us/azure/virtual-network-manager/overview https://learn.microsoft.com/en-us/azure/virtual-network-manager/concept-security-admins

OrangeSGOption: D
Nov 3, 2023

Keyword is “secured virtual hubs” A secured virtual hub is an Azure Virtual WAN Hub with associated security and routing policies configured by Azure Firewall Manager.

ESAJRROption: D
Sep 30, 2023

D. Azure Firewall Manager

FerasoOption: D
Nov 2, 2023

D: Azure Firewall Manager From: https://learn.microsoft.com/en-us/azure/firewall-manager/overview An Azure Virtual WAN Hub is a Microsoft-managed resource that lets you easily create hub and spoke architectures. When security and routing policies are associated with such a hub, it is referred to as a secured virtual hub. Hub virtual network This is a standard Azure virtual network that you create and manage yourself. When security policies are associated with such a hub, it is referred to as a hub virtual network. At this time, only Azure Firewall Policy is supported. You can peer spoke virtual networks that contain your workload servers and services. You can also manage firewalls in standalone virtual networks that aren't peered to any spoke.

ErikPJordanOption: A
Sep 24, 2023

Sorry, A Azure Firewall Manager can indeed help you manage multiple Azure Firewall instances across different regions, but it is primarily focused on managing and configuring Azure Firewalls and associated policies, not on creating and managing Azure Virtual WAN hubs.

CatlynOption: D
Oct 6, 2023

D. Azure Firewall Manager

cris_examOption: D
Jan 28, 2024

Secure Virtual Hub and traffic control among the 3 regions is for sure Azure Firewall Manager. Remember, this is a security focused exam.

wardy1983Option: A
Nov 13, 2023

ttps://azure.microsoft.com/en-us/products/virtual-network-manager

wardy1983Option: A
Nov 13, 2023

https://azure.microsoft.com/en-us/products/virtual-network-manager

HR22Option: A
Jan 23, 2024

To meet the requirements of creating three secured virtual hubs in different Azure regions and ensuring that security rules sync between the regions, you should use Azure Virtual WAN.

daOption: D
Feb 1, 2024

D. Azure Firewall Manager

KRISTINMERIEANNOption: D
Apr 6, 2024

https://learn.microsoft.com/en-us/azure/firewall-manager/overview#region-availability

JaridBOption: D
May 14, 2024

D. Azure Firewall Manager

Drew294Option: A
Jul 3, 2024

I think A because https://learn.microsoft.com/en-gb/azure/virtual-network-manager/tutorial-create-secured-hub-and-spoke

Drew294Option: D
Jul 3, 2024

OK changing my answer, documentation for both describes this scenario but Firewall Manager is the more security focussed which makes sense for a security focussed exam

saira23
Jul 20, 2024

In Exam20/07/2024