AMPLS with Multiple Endpoints

Warner, Timothy D 0 Reputation points
2024-07-11T20:29:00.7266667+00:00

If I have a single AMPLS with multiple endpoints (let's say one per region to a management VNET), how does each region send traffic to its local endpoint?

Azure Private Link
Azure Private Link
An Azure service that provides private connectivity from a virtual network to Azure platform as a service, customer-owned, or Microsoft partner services.
513 questions
{count} votes

1 answer

Sort by: Most helpful
  1. Silvia Wibowo 3,906 Reputation points Microsoft Employee
    2024-07-12T03:49:50.38+00:00

    Hi @Warner, Timothy D , I understand that you are creating a single AMPLS (Azure Monitor Private Link Scope) with multiple endpoints.

    It's important that your virtual networks do not share the same Private DNS Zone. Why? Because creating a private endpoint will update Private DNS Zone. If the second virtual network is using the same Private DNS Zone, creating the second private endpoint for the same AMPLS will overwrite the entry of the first private endpoint, impact: first virtual network can't connect to its local private endpoint.

    There's a Caution note on Private Endpoint DNS documentation:

    • Existing Private DNS Zones linked to a single Azure service should not be associated with two different Azure service Private Endpoints. This will cause a deletion of the initial A-record and result in resolution issue when attempting to access that service from each respective Private Endpoint. Create a DNS zone for each Private Endpoint of like services. Don't place records for multiple services in the same DNS zone.

    If your virtual networks aren't peered, you must also separate their DNS to use private links. After that's done, create a separate private endpoint for each network, and a separate AMPLS object. Your AMPLS objects can link to the same workspaces/components or to different ones.

    Please accept an answer if correct. Original posters help the community find answers faster by identifying the correct answer. Here is how.

    1 person found this answer helpful.
    0 comments No comments

Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.