系列專欄:從 AWS 視角征服 Azure:AZ-900 30 天通關實戰
難度指數:★★☆☆☆
核心考點:Regions, Availability Zones (AZ), Region Pairs, SLA 99.99%, Data Residency
本文使用antigravity cli 3.7flash low整合 manus 及claude及 gemini的初稿
昨天 Day 1 我們建立了帝國的資源管理階層(Management Groups ➔ Subscriptions ➔ Resource Groups),今天 Day 2 我們要踏出實體基礎設施的第一步 —— 「資料與運算究竟放在哪裡?」
對於熟悉 AWS 的架構師來說,Region 和 AZ 就像喝水一樣自然;但當你切換到 Azure 時,會發現微軟在地理邊界(Geography)、可用性區域(AZ)的普及率以及**區域配對(Region Pairs)**的設計邏輯上,與 AWS 有著微妙但至關重要的差異。這也是 AZ-900 每次必出的基礎題型!
我們先透過一張對照表,快速將你在 AWS 積累的經驗平移到 Azure:
| 架構層級 | AWS 核心概念 | Azure 核心概念 | 關鍵差異與 AZ-900 考點筆記 |
|---|---|---|---|
| 地理邊界 | AWS Geographic Region | Azure Geographies (地理位置) | Azure 明確定義 Geography(如 United States, Asia Pacific)作為合規與資料主權(Data Residency)邊界,通常包含 2 個以上的 Regions。 |
| 資料中心聚落 | AWS Region (區域)(例如 us-east-1) |
Azure Region (區域)(例如 East US) |
• Azure 擁有全球 60+ 個 Region,數量為公有雲之冠。• ⚠️ 大考點:AWS 每個 Region 預設至少有 3 個 AZ;但 Azure 早期並非所有 Region 都有 AZ(目前正在全面普及中)。 |
| 實體容錯單元 | AWS Availability Zone (AZ)(例如 us-east-1a) |
Azure Availability Zone (AZ)(例如 East US 1) |
• 兩者皆由 1 個或多個實體隔離的資料中心 組成(獨立供電、散熱、網路)。• 在同 Region 內將 VM 跨 AZ 部署,官方皆提供 99.99% SLA。 |
| 跨區災難備援 (DR) | Cross-Region Replication / Multi-Region(需手動搭配 S3 CRR、DynamoDB Global Tables) | Region Pairs (區域配對)(例如 East Asia ↔ Southeast Asia) |
• Azure 獨家特色:同 Geography 內預設兩兩配對。• 循序更新 (Sequenced Updates):平台維護與更新時會錯開,絕不同步重啟。• 災難優先復原:大範圍斷電時,優先拉起每對中的其中一個。 |
| 本地邊緣運算 | AWS Local Zones / Wavelength | Azure Edge Zones / Azure Stack | 延伸公有雲運算能力至接近終端用戶或私有資料中心之低延遲場景。 |
【AWS 架構邏輯】
Region (至少 3 AZs) ───[ 手動配置跨區複寫 ]───► Another Region (至少 3 AZs)
【Azure 架構邏輯】
Geography (資料主權邊界)
├── Primary Region (AZ1 / AZ2 / AZ3)
│ │
│ [ 原生 Region Pair (循序更新 / GRS 自動備援) ]
│ ▼
└── Secondary Region (AZ1 / AZ2 / AZ3)
💡 架構師重點筆記(AWS 轉換心法):
- 在 AWS:你開一個 S3 Bucket 或 RDS,如果要跨 Region 備援,你必須自己設定 Cross-Region Replication (CRR) 或 Read Replica,並指定目標 Region。
- 在 Azure:微軟在很多原生儲存(如 Azure Storage GRS - Geo-redundant storage)直接綁定了 Region Pair。你只要點選 GRS,系統自動把資料異步複製到配對區域(例如香港 East Asia ↔ 新加坡 Southeast Asia),省去手動維護通道的麻煩。
在準備 AZ-900 考試與實際架構設計時,請務必精準掌握以下專有名詞:
Azure Geography(地理位置 / 地理邊界)
Azure Region(區域)
Availability Zones (AZ, 可用性區域)
Region Pairs(區域配對 / 配對區域)
SLA (Service Level Agreement, 服務等級協定)
Data Residency / Sovereignty(資料駐留與資料主權)
進入 Titan 科技公司的第二天,營運長 (COO) 與技術長 (CTO) 把你找進了會議室:
COO:「架構師,我們主力客群 80% 集中在台灣與日本。我們之前在 AWS 都習慣開在
ap-northeast-1(東京),現在上 Azure,團隊在爭論主力資料庫到底該放 『東亞 (East Asia, 香港)』 還是 『東南亞 (Southeast Asia, 新加坡)』?」
CTO:「我們必須達到 99.99% SLA,同時 CEO 強調要有跨區災難復原 (DR),且不能讓跨區設定過於複雜或增加過多資料傳輸維護成本。另外,法遵要求資料不能隨便亂跑到歐美區。」
East Asia 預設配對區域就是 Southeast Asia,兩者皆在亞太地理邊界(Asia Pacific Geography)內,符合法遵且原生支援 GRS 異地備援。[ 用戶端:台灣 / 日本 ]
│
▼ (低延遲連線)
┌─────────────────────────────────────────────────────────────┐
│ Azure Geography: Asia Pacific │
│ │
│ 【Primary Region: East Asia (香港)】 │
│ ├── Availability Zone 1 ◄──┐ │
│ ├── Availability Zone 2 ◄──┼── [ 跨 AZ 部署 99.99% SLA ] │
│ └── Availability Zone 3 ◄──┘ │
│ │
│ │ (Azure 原生 GRS / Region Pair 異步複寫) │
│ ▼ │
│ 【Secondary Region (DR): Southeast Asia (新加坡)】 │
│ └── Paired Backup Storage / Standby DB │
└─────────────────────────────────────────────────────────────┘
為了檢驗大家是否真正掌握,精選 3 題 AZ-900 關於基礎架構的經典題目:
【Question】
Your company plans to deploy several Azure virtual machines (VMs). You need to ensure that the services running on the VMs remain available if a single data center fails, with an SLA guarantee of at least 99.99%.
What should you include in the solution?
B
【Question】
Which of the following statements about Azure Region Pairs are TRUE? (Select TWO)
B、C
【Question】
State whether the following statement is True or False:
"To guarantee high availability and compliance, Azure automatically moves your customer data to another country whenever the primary data center experiences an outage."
B (False)⚠️ 來源說明:本題改寫自 2020 年 gratisexam AZ-900 題庫(Q27),屬歷史題庫層,已與 Microsoft Learn 交叉驗證,考點至今仍然有效。
【Question】
Titan 科技要辨識「哪一種故障類型」可以透過 Azure Availability Zone 來保護服務存取。應辨識為哪一項?
D
⚠️ 來源說明:本題改寫自 2020 年 gratisexam AZ-900 題庫(Q22),屬歷史題庫層,已與 Microsoft Learn 交叉驗證,考點至今仍然有效。
【Question】
評估底線文字是否正確;若正確選「No change is needed」,若錯誤選出使敘述正確的選項。
An Azure region contains one or more data centers that are connected by using a low-latency network.
(一個 Azure 區域包含一個或多個以低延遲網路連接的資料中心。)
A (No change is needed)
| 項目 | 內容 |
|---|---|
| 對應課程章節 | 第 2 章 Azure 架構與服務 ▸ Region / Zone / Data Center、Region Pair(p69–73)+ 第 1 章 ▸ 高可用、容錯、可靠性、跨地區分佈、DR(p18–22) |
| 官方考綱領域 | Describe Azure Architecture & Services(占比 35–40%) |
| 課程涵蓋範圍 | Region 選址、Availability Zone 故障隔離、Data Center 實體層、Region Pair 的定位,以及第 1 章高可用/容錯/可靠性/災難復原 (DR) 的基礎觀念。 |
| 本文補充範圍 | 1. 量化 99.99% SLA 的達成條件(跨 2 個以上 AZ 部署)。2. 釐清 Region / AZ / Region Pair 三者的故障防護粒度差異。3. Region Pair 的「循序更新」與「災難優先復原」機制。4. 對照 AWS Region / AZ 的手動跨區自由度 vs Azure 平台預設整合度。 |
明天 Day 3,我們將深入探索 Sovereign Clouds(主權雲:Azure Government、Azure China 等特殊合規雲端架構),看看微軟如何為政府與特殊法遵市場打造實體與網路完全隔離的獨立雲!