← All AZ-700 Flashcard Decks

Azure Routing Flashcards

7 cards from real AZ-700 practice questions. Tap to flip, then mark Knew It or Still Learning — missed cards come back until you master them.

Read the first 7 Azure Routing flashcards as text
  1. What is the default BGP Autonomous System Number (ASN) used by Azure VPN Gateways?

    Answer: 65515

    Azure VPN Gateways use BGP ASN 65515 by default; note that Microsoft's ExpressRoute edge routers use the separate ASN 12076.

  2. Which routing protocol does Azure use to dynamically exchange routes between an ExpressRoute gateway and on-premises routers?

    Answer: BGP (Border Gateway Protocol)

    Azure ExpressRoute exclusively uses BGP to exchange routing information between Azure and on-premises or provider edge routers.

  3. What is Azure Route Server primarily designed to accomplish?

    Answer: Enable dynamic BGP route exchange between network virtual appliances and Azure virtual network gateways

    Azure Route Server acts as a BGP route reflector that enables NVAs to dynamically exchange routes with Azure's VPN and ExpressRoute gateways without requiring manual UDRs.

  4. When configuring BGP on an Azure VPN Gateway, what must the on-premises VPN device use as the BGP neighbor IP address?

    Answer: The Azure gateway's BGP IP address assigned within the GatewaySubnet

    BGP sessions are established using the gateway's BGP IP address (from GatewaySubnet address space), not its public IP, because BGP runs over the tunnel after it is established.

  5. Which Azure VPN Gateway SKU does NOT support BGP?

    Answer: Basic

    The Basic SKU does not support BGP; all VpnGw1 and higher SKUs (including AZ variants) support BGP for dynamic routing.

  6. What are APIPA BGP IP addresses (169.254.x.x) used for in Azure VPN Gateways?

    Answer: Enabling BGP peering in active-active configurations without consuming GatewaySubnet address space

    APIPA BGP addresses (in the 169.254.21.x and 169.254.22.x ranges) allow active-active VPN gateways to establish BGP sessions over IPsec tunnels without requiring extra IP addresses from the GatewaySubnet.

  7. In a hub-spoke VNet topology using Azure Route Server, what configuration change is needed to allow spokes to learn each other's routes through the hub NVA?

    Answer: Enable 'Branch-to-Branch' traffic on Azure Route Server

    Enabling the 'Branch-to-Branch' (also called hub-and-spoke or spoke-to-spoke) setting on Azure Route Server allows it to advertise routes between connected NVA BGP peers, enabling spoke-to-spoke routing via the hub NVA.