Common Scenarios¶
Understanding standard Azure networking patterns and their component requirements.
Architecture Scenarios¶
| Scenario | Components | Focus |
|---|---|---|
| Internet App | App Gateway, WAF | L7 Protection |
| Private App | Internal LB, Subnets | Isolation |
| Hub-Spoke | FW, VNet Peering | Centralized Egress |
| Hybrid | ExpressRoute, VPN | On-Prem Connect |
| SaaS / PE | Private Link, DNS | No Public IP |
| Multi-Region | Front Door, Global Peering | Latency / DR |
Hub-Spoke Topology¶
mermaid graph TD HB[Hub VNet] <--> S1[Spoke 1] HB <--> S2[Spoke 2] HB --- FW[Azure Firewall] HB --- GW[VNet Gateway]
Note
Scenario selection depends on your compliance requirements. A simple internet-facing app may only need a public IP, whereas a highly secure enterprise app will likely use Hub-Spoke with Firewall.