Peering option set on the hub, which owns the gateway, so that peered VNets can share its ExpressRoute or VPN gateway. The spoke sets Use remote gateways to match; on a VNet lacking a gateway the option has no effect.
Also called allowGatewayTransit.
Read more: Microsoft Learn
In the Ultra Transcenders books
Each book explains Allow gateway transit in context, with comparison tables and the common traps.
Terms in this definition
- Set
Secret permission in Key Vault for writing secrets; some older material refers to it as Create.
- Virtual hub
Inside a Virtual WAN, a VNet managed by Microsoft that contains the hub router plus the VPN, ExpressRoute and User VPN gateways. Typically there is one per region, but several hubs can share a region.
- Share
In OpenSharing, the container you fill with tables, views, volumes, models and notebooks for recipients. You need
CREATE SHAREon the metastore to make one; add a schema and all its assets, including later ones, go with history. - ExpressRoute
A dedicated private link between on-premises networks and Azure, using Microsoft peering or private peering.
- VPN gateway
Terminates IPsec tunnels for site-to-site, point-to-site and VNet-to-VNet connections, as a VPN-type virtual network gateway in GatewaySubnet. It gets a Standard static public IP when created, and that IP can't be swapped.
- Use remote gateways
A peering option set on the spoke so its traffic uses the hub's gateway. It concerns gateway transit only and has no effect on VM-to-VM traffic over the peering.
- MATCH
Used in WHERE when querying SQL Graph, it describes how to walk from node to node through edge tables, with patterns written like p1-(f1)->p2.
- VNet
A private network belonging to a single subscription and region and covering all of that region's availability zones. A VM can only use a VNet located in the same region.
Related terms
- Add-AzVirtualNetworkPeering
Az.Network cmdlet for creating a VNet peering link in a single direction. For hub-and-spoke gateway sharing, set
-AllowGatewayTransiton the link from hub to spoke and-UseRemoteGatewayson the link from spoke to hub. - Gateway transit
A peering option that lets spoke VNets use a hub's route-based VPN or ExpressRoute gateway, enabled with Allow gateway transit on the hub and Use remote gateways on the spoke.