Skip to content

Common Scenarios

Understanding standard Azure networking patterns and their component requirements.

Architecture Scenarios

Scenario Components Focus
Internet App App Gateway, WAF L7 Protection
Private App Internal LB, Subnets Isolation
Hub-Spoke FW, VNet Peering Centralized Egress
Hybrid ExpressRoute, VPN On-Prem Connect
SaaS / PE Private Link, DNS No Public IP
Multi-Region Front Door, Global Peering Latency / DR

Hub-Spoke Topology

mermaid graph TD HB[Hub VNet] <--> S1[Spoke 1] HB <--> S2[Spoke 2] HB --- FW[Azure Firewall] HB --- GW[VNet Gateway]

Note

Scenario selection depends on your compliance requirements. A simple internet-facing app may only need a public IP, whereas a highly secure enterprise app will likely use Hub-Spoke with Firewall.

See Also

Sources