Skip to content
Discussion options

You must be logged in to vote

Hey @jamie-oconnell, as you say typically online is an isolated island from all other vNets outside of the workload.

So to handle DNS resolution we'd typically promote the online workload having its own private DNS zones for the zones it needs and then creating Private Endpoints to access the services in other workloads it needs.

Ive also seen this pattern used to access a set of DNS servers in the hub for DNS resolution back to on premise and attaching a private endpoint to the LB, to avoid vNet peering and to enhance security.

Hope that helps

Replies: 1 comment 1 reply

Comment options

You must be logged in to vote
1 reply
@jamie-oconnell
Comment options

Answer selected by jamie-oconnell
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Category
Q&A
Labels
None yet
2 participants