Encryption of traffic over Microsoft backbone network

Raviraj Velankar 66 Reputation points
2022-09-23T07:34:40.89+00:00

Would like to know whether traffic between Global Vnet peering ( between two Azure regions) and regional Vnet peering is encrypted or not
Would like to know if there is a integration between Azure platform and Snowflake environment through Azure private link then whether traffic flowing through Private link is encrypted or not ?
As per understanding traffic through private link is managed by Microsoft hence customer do not have any control for the same.
If the traffic is not encrypted then is there any recommendations to encrypt the traffic before sending through private link

Azure Private Link
Azure Private Link
An Azure service that provides private connectivity from a virtual network to Azure platform as a service, customer-owned, or Microsoft partner services.
469 questions
0 comments No comments
{count} votes

1 answer

Sort by: Most helpful
  1. JimmySalian-2011 41,921 Reputation points
    2022-09-23T08:04:58.013+00:00

    Hi

    Vnet peering Private and on the Microsoft hence the encryption is not required , however if the traffic is moving outside the boundary or not controlled by Microsoft as MSACSec Data Link Layer Encryption is used to encrypt the links and peering VNETs.

    Read here abou the encryption applied on the links and data in transit - encryption-overview

    regarding SnowFlak and MS there is possibility and read this Snowflake article it uses MS Backbone links - privatelink-azure.html
    244120-image.png

    Hope this helps.

    ==
    Please "Accept the answer" if the information helped you. This will help us and others in the community as well.

    0 comments No comments