Multi Cloud Interview Questions & Answers
1. How can you enable communication between one Azure Virtual Network (VNet) and another?
Communication between two Azure Virtual Networks can be established using Virtual Network (VNet) Peering.
VNet Peering connects two Azure virtual networks, allowing them to communicate securely using Microsoft’s private backbone network. Once connected, both VNets behave like a single network while maintaining separate resources.
Azure supports two types of VNet Peering:
- VNet Peering – Connects VNets within the same Azure region.
- Global VNet Peering – Connects VNets located in different Azure regions.
2. Can a Virtual Network (VNet) be moved to another Azure region?
Yes.
A Virtual Network can be moved to another Azure region using an Azure Resource Manager (ARM) Template.
The process includes:
- Export the existing VNet as an ARM template.
- Modify the template parameters for the target region.
- Deploy the template in the destination Azure region.
3. What is a Network Security Group (NSG)?
A Network Security Group (NSG) is a security feature in Azure used to control inbound and outbound network traffic.
NSGs allow or deny traffic based on configured security rules.
An NSG can be associated with:
- Virtual Machine Network Interface (NIC)
- Subnet
- Both NIC and Subnet
Traffic is allowed or denied according to the priority of the security rules.
4. How many default rules are available in an NSG?
Every Network Security Group contains:
- 3 Default Inbound Rules
- 3 Default Outbound Rules
These default rules are automatically created by Azure and cannot be deleted.
5. How do you securely connect an on-premises network to an Azure Virtual Network?
Azure provides three secure connectivity options:
Azure ExpressRoute
Azure ExpressRoute provides a private, dedicated, high-bandwidth connection between an on-premises network and Azure through connectivity providers such as BSNL, Jio, and other partner networks.
Site-to-Site VPN
A Site-to-Site VPN uses Azure VPN Gateway to securely connect an on-premises VPN device with a public IP address to an Azure Virtual Network.
This option is commonly used for office networks and enterprise data centers.
Point-to-Site VPN
A Point-to-Site VPN uses Azure VPN Gateway to connect individual client computers to an Azure Virtual Network.
This is commonly used by remote employees working from home.
6. What are the different types of Azure Load Balancers?
Azure Load Balancer
Azure Load Balancer distributes incoming network traffic evenly across multiple backend servers.
Features:
- Layer 4 (Transport Layer)
- Supports TCP and UDP protocols
- Network-level load balancing
- High availability
Azure Application Gateway
Application Gateway is an application-level load balancer.
Features:
- Layer 7 (Application Layer)
- URL-based Routing
- Path-based Routing
- Supports Multiple Backend Pools
- Web Application Firewall (WAF)
- Application-aware routing
Azure Traffic Manager
Traffic Manager is a global DNS-based load balancer.
It supports several routing methods:
- Priority Routing
- Weighted Routing
- Performance Routing
- Geographic Routing
- Multi-Value Routing
- Subnet Routing
Azure Front Door
Azure Front Door is Microsoft’s global application delivery service.
Features:
- URL-based Routing
- Path-based Routing
- Global Load Balancing
- Web Application Firewall (WAF)
- Automatic HTTP to HTTPS Redirection
- Built-in CDN Support
- Intelligent Application Routing
7. What is the difference between Public and Private Load Balancers?
Public Load Balancer
A Public Load Balancer accepts traffic directly from the internet and distributes requests across multiple Azure Virtual Machines or backend resources.
It is mainly used for public-facing web applications.
Private Load Balancer
A Private Load Balancer accepts requests only from internal Azure resources within a Virtual Network.
It distributes traffic among internal applications and services that are not exposed to the internet.
8. What is the difference between VNet Peering and Global VNet Peering?
| VNet Peering | Global VNet Peering |
|---|---|
| Connects VNets within the same Azure region | Connects VNets across different Azure regions |
| Uses Microsoft’s private backbone network | Uses Microsoft’s global backbone network |
| Private IP communication | Private IP communication |
9. At which levels can an NSG be associated?
A Network Security Group can be associated with:
- Network Interface Card (NIC)
- Subnet
- Both NIC and Subnet simultaneously
This allows administrators to control traffic at different levels of the network.
10. Which Azure services support Web Application Firewall (WAF)?
The following Azure networking services support Web Application Firewall (WAF):
- Azure Application Gateway
- Azure Front Door
WAF helps protect web applications from common threats such as SQL Injection, Cross-Site Scripting (XSS), and other OWASP Top 10 vulnerabilities.
11. What is Azure Traffic Manager?
Azure Traffic Manager is a DNS-based global load balancer that distributes client requests across multiple Azure regions based on routing methods such as Priority, Performance, Weighted, Geographic, Multi-Value, and Subnet routing.
12. What is Azure Front Door?
Azure Front Door is a global application delivery and acceleration service that provides URL-based routing, path-based routing, CDN integration, automatic HTTPS redirection, intelligent traffic management, and Web Application Firewall (WAF) protection for web applications.
Contact Us
Ready to start your IT career? Get in touch with our team for course details, batch schedules, demo sessions, and enrollment assistance. We’re here to guide you every step of the way.
Office Address
4th floor, Outoff The Box, Mindspace Rd, P Janardhan Reddy Nagar, Gachibowli, Hyderabad, Telangana 500081
Company mail id
siritechhub@gmail.com
Call Now
+91 9949299943