Edit

Azure Multicloud Interconnect Preview FAQ

This article answers common questions about Azure Multicloud Interconnect.

Important

Azure Multicloud Interconnect is currently in PREVIEW. See the Supplemental Terms of Use for Microsoft Azure Previews for legal terms that apply to Azure features that are in beta, preview, or otherwise not yet released into general availability.

Azure Multicloud Interconnect basics

What is Azure Multicloud Interconnect?

Azure Multicloud Interconnect is a managed network service that provides private connectivity between Azure and a supported cloud service provider. It gives workloads that span more than one cloud a dedicated path that doesn't traverse the public internet.

For more information, see What is Azure Multicloud Interconnect Preview?.

How is Azure Multicloud Interconnect different from Azure ExpressRoute?

Azure ExpressRoute connects on-premises and colocation networks to Azure. Azure Multicloud Interconnect connects Azure to a supported cloud service provider through a managed experience, and it uses ExpressRoute as its underlying connectivity technology.

For a feature-by-feature comparison, see Azure Multicloud Interconnect and ExpressRoute.

When should I choose Azure Multicloud Interconnect instead of ExpressRoute?

Choose Azure Multicloud Interconnect for managed connectivity between Azure and a supported cloud service provider. Choose ExpressRoute for on-premises, colocation, carrier-based connectivity, or Microsoft peering scenarios.

Supported providers, regions, and limits

Which cloud providers are supported?

Azure Multicloud Interconnect supports Amazon Web Services (AWS) during preview. Support for other cloud service providers is announced separately.

See Supported cloud providers.

Which Azure regions are available during preview?

Australia East, East US, Germany West Central, and West US. Region availability is subject to change during preview.

See Supported regions.

What bandwidth is supported?

Azure Multicloud Interconnect supports 1 Gbps during preview.

See Supported bandwidth.

Is there a service-level agreement during preview?

No. Azure Multicloud Interconnect doesn't have a service-level agreement during preview.

See Service-level agreement.

Activation keys

What is an activation key?

An activation key authorizes the connection between Azure and your cloud service provider. It confirms that the cloud service provider, Azure region, bandwidth, and provider account all match the request before provisioning begins.

Who generates the activation key?

Either side generates it. Azure can generate a key that you redeem with your cloud service provider, or your provider can generate a key that you redeem in Azure.

Can I start from Azure or from my cloud provider?

Both paths are supported.

What happens if activation validation fails?

Provisioning doesn't start. Confirm that the cloud service provider, Azure region, bandwidth, and provider account details match the original request. Correct any mismatch, and then restart activation.

Networking and configuration

Do I need to configure BGP sessions?

No. Azure and the cloud service provider manage the underlying routing configuration, including virtual LANs, point-to-point addressing, and Border Gateway Protocol (BGP) sessions.

Do I need an ExpressRoute gateway?

Yes. Traffic entering Azure over the interconnect uses an ExpressRoute virtual network gateway. That gateway isn't in the outbound path for traffic that originates in Azure.

Can I connect multiple virtual networks?

Yes. An ExpressRoute virtual network gateway provides the entry point for traffic entering one or more Azure virtual networks through an ExpressRoute connection.

Which networking resources do I still manage?

You manage your Azure and provider virtual networks, gateways, connections, and virtual network attachments. You also manage address planning, route intent, firewalls, traffic inspection, access policies, workload encryption, and application-level resilience.

Security and resiliency

Is traffic encrypted?

MAC Security (MACsec) is enabled by default on the physical links between Azure and the cloud service provider. You remain responsible for workload-level encryption where your requirements call for it.

For more information, see Link encryption.

Who manages resiliency?

Azure and the cloud service provider manage the redundant infrastructure and recovery operations. A single logical interconnect is backed by redundant devices and links across physically separate locations. You monitor the logical resource and validate that your workloads meet your own recovery requirements.

For more information, see Managed resiliency.