AZ-303 Exam QuestionsBrowse all questions from this exam

AZ-303 Exam - Question 297


You create a new Azure subscription. You create a resource group named RG1. In RG1, you create the resources shown in the following table.

Exam AZ-303 Question 297

You need to configure an encrypted tunnel between your on-premises network and VNET1.

Which two additional resources should you create in Azure? Each correct answer presents part of the solution.

NOTE: Each correct selection is worth one point.

Show Answer
Correct Answer: AD

To configure an encrypted tunnel between your on-premises network and VNET1, you need to create a site-to-site connection and a local network gateway. A site-to-site connection is necessary to establish a secure IPsec/IKE (IKEv1 or IKEv2) VPN tunnel, which will link your on-premises network to the Azure virtual network. The local network gateway represents the VPN device and provides the on-premises public IP address and local network ranges. The VPN gateway (VPNGW1) already exists in your setup, so you don't need to create another one. Therefore, you should create a site-to-site connection and a local network gateway in Azure.

Discussion

12 comments
Sign in to comment
Allahham
Jul 4, 2021

it should be A & D

Tripp_F
Jul 7, 2021

The VPN gateway already exists: VPNGW1. We need three components for site to site VPN: VPN gateway, local network gateway, and site to site connection. Answers: A. Site to site connection D. Local network gateway

Gulam
Jul 4, 2021

Answer is A and D. Explanation is correct but the answer is wrong.

El_Hechizo
Jul 6, 2021

A. Site to site conn --- D. Local network see: https://www.examtopics.com/discussions/microsoft/view/38583-exam-az-303-topic-2-question-28-discussion/

rdemontis
Jul 19, 2021

A & D. Wrong answer but correct explanation

dkjwr
Oct 14, 2021

The question is "what should you create in Azure?" The local network gateway is created on-premise (according to the given answer) so should not be correct.

ElettroAle
Jan 23, 2022

No, the local network gateway is the entity that represents in Azure the on prem VPN device

Yiannisthe7th
Jul 3, 2021

BE - vpn gateway already exists

pentium75
Aug 4, 2021

A and D you mean. B is VPN gateway (already exists) and E is Point-to-Site connection (not what we're after).

MasterArmSwitch
Oct 26, 2021

B and D, site-to-site connection is not a resource. Repeated Q17 Topic 2

ZodiaC
Oct 31, 2021

A & D YOU WRONG!

jr_luciano
Jan 12, 2022

Don't talk nonsense!

Dpejic
Nov 22, 2021

On exam today 22/11/21 Score 839

BhupalS
Jan 20, 2022

Create a virtual network Create a VPN gateway Create a local network gateway Create a VPN connection Verify the connection Connect to a virtual machine

nd78
Jan 22, 2022

on Exam today 21st Jan, 2022

hanyahmedOptions: AD
Feb 13, 2022

1- Create VPN GW Subnet 2- Create Virtual network GW 3- Create local network GW 4- Create Site to Site connection