Skip to content

Commit 7cc46fa

Browse files
MikeWeiner-MicrosoftMikeWeiner-Microsoft
authored andcommitted
topology and constraint updates
1 parent e1c2e1f commit 7cc46fa

File tree

1 file changed

+14
-14
lines changed

1 file changed

+14
-14
lines changed

articles/baremetal-infrastructure/workloads/nc2-on-azure/architecture.md

Lines changed: 14 additions & 14 deletions
Original file line numberDiff line numberDiff line change
@@ -6,7 +6,7 @@ description: Learn about the architecture of several configurations of BareMetal
66
ms.topic: reference
77
ms.subservice: baremetal-nutanix
88
ms.custom: engagement-fy23
9-
ms.date: 04/08/2025
9+
ms.date: 04/23/2025
1010
ms.service: azure-baremetal-infrastructure
1111
---
1212

@@ -103,34 +103,34 @@ The following table describes the network topologies supported by each network f
103103
| :------------------- |:---------------:|
104104
|Connectivity to BareMetal Infrastructure (BMI) in a local VNet| Yes |
105105
|Connectivity to BMI in a peered VNet (Same region)|Yes |
106-
|Connectivity to BMI in a peered VNet\* (Cross region or global peering) with VWAN\*|Yes |
107-
|Connectivity to BMI in a peered VNet* (Cross region or global peering)* without VWAN| No|
108-
|On-premises connectivity to Delegated Subnet via Global and Local Expressroute |Yes|
109-
|ExpressRoute (ER) FastPath |No |
106+
|Connectivity to BMI in a peered VNet (Cross region or global peering) with VWAN |Yes |
107+
|Connectivity to BMI in a peered VNet (Cross region or global peering) without VWAN*| No|
108+
|On-premises connectivity to Delegated Subnet via Global and Local ExpressRoute |Yes|
110109
|Connectivity from on-premises to BMI in a spoke VNet over ExpressRoute gateway and VNet peering with gateway transit|Yes |
111-
|On-premises connectivity to Delegated Subnet via VPN GW| Yes |
110+
|ExpressRoute (ER) FastPath |No |
111+
|On-premises connectivity to Delegated Subnet via VPN Gateway| Yes |
112112
|Connectivity from on-premises to BMI in a spoke VNet over VPN gateway and VNet peering with gateway transit| Yes |
113-
|Connectivity over Active/Passive VPN gateways| Yes |
114-
|Connectivity over Active/Active VPN gateways| No |
113+
|Connectivity over Active/Passive VPN Gateways| Yes |
114+
|Connectivity over Active/Active VPN Gateways| No |
115115
|Connectivity over Active/Active Zone Redundant gateways| No |
116116
|Transit connectivity via vWAN for Spoke Delegated VNETS| Yes |
117117
|On-premises connectivity to Delegated subnet via vWAN attached SD-WAN| No|
118-
|On-premises connectivity via Secured HUB(Az Firewall NVA) | No|
119-
|Connectivity from UVMs on NC2 nodes to Azure resources|Yes|
118+
|VWAN enables traffic inspection via NVA (Secure vWAN)**|Yes|
119+
|[User-defined routes (UDRs)](../../../virtual-network/virtual-networks-udr-overview.md#user-defined) on NC2 on Azure-delegated subnets| Yes|
120+
|Connectivity from BareMetal to [service endpoints](../../../virtual-network/virtual-network-service-endpoints-overview.md) or [private endpoints][def] in a different spoke Vnet connected to vWAN|Yes|
121+
|Connectivity from BareMetal to [service endpoints](../../../virtual-network/virtual-network-service-endpoints-overview.md) or [private endpoints][def] in the same Vnet on Azure-delegated subnets|No|
122+
|Connectivity from User VMs (UVMs) on NC2 nodes to Azure resources|Yes|
120123

121124
\* You can overcome this limitation by setting Site-to-Site VPN.
122125

126+
\** If using Routing Intent you must add either the full delegated subnet CIDR or a more specific CIDR range as "Additional Prefixes" section under the Routing Intent and Routing Policies page in the portal
123127
## Constraints
124128

125129
The following table describes what’s supported for each network features configuration:
126130

127131
|Features |Support or Limit|
128132
| :------------------- | -------------------: |
129133
|Delegated subnet per VNet |1|
130-
|VWAN enables traffic inspection via NVA (Virtual WAN Hub routing intent)|Yes|
131-
|[User-defined routes (UDRs)](../../../virtual-network/virtual-networks-udr-overview.md#user-defined) on NC2 on Azure-delegated subnets without VWAN| Yes|
132-
|Connectivity from BareMetal to [service endpoints](../../../virtual-network/virtual-network-service-endpoints-overview.md) or [private endpoints][def] in a different spoke Vnet connected to vWAN|Yes|
133-
|Connectivity from BareMetal to [service endpoints](../../../virtual-network/virtual-network-service-endpoints-overview.md) or [private endpoints][def] in the same Vnet on Azure-delegated subnets|No|
134134
|[Network Security Groups](../../../virtual-network/network-security-groups-overview.md) on NC2 on Azure-delegated subnets|No|
135135
|Load balancers for NC2 on Azure traffic|No|
136136
|Dual stack (IPv4 and IPv6) virtual network|IPv4 only supported|

0 commit comments

Comments
 (0)