EMSTAC

In-dept Analysis of Cloud Applications in Azure

Details
Written by: Bobby ABUCHI
Category: Cloud Computing
Published: 16 September 2024
Hits: 373

A financial services company had recently migrated several key applications to Azure. These cloud-based applications managed critical customer data and financial transactions, so ensuring they are secure and performing optimally is essential.

Read more …

Cloud Solutions Architecture Patterns

Details
Written by: Bobby ABUCHI
Category: Cloud Computing
Published: 10 September 2024
Hits: 450

Skills: Business Continuity Solutions, Data Storage Solutions, Identity, Governance and Monitoring Solutions

Read more …

Shared Access Signatures

Details
Written by: Bobby ABUCHI
Category: Cloud Computing
Published: 04 September 2024
Hits: 658

With Shared Access Signatures (SAS) tokens in Azure, you can grant limited access to your storage resources without sharing your account keys.

Read more …

Azure Network Infrastructure Tips

Details
Written by: Bobby ABUCHI
Category: Cloud Computing
Published: 03 September 2024
Hits: 494

To allow on-premises services access to Azure storage account, without exposing the storage account to the internet, you can:

  • Set up a VPN from on-premises to Azure
  • Configure a storage account private endpoint.

VPN -> Azure Cloud + access public Azure services (without traversing the internet) = Private endpoint.

Resolve a FQDN to an IPv6 address with AAAA DNS record. 

To ensure that only certain VMs in your Azure environment can resolve FQDNs to IPs in Azure-hosted DNS zone:

  • Deploy the VMs in a single virtual network and allow the virtual network access to the private DNS zone
  • Create a private DNS zone

 

 

  1. Configuring Azure Storage Firewalls and Virtual Networks
  2. Configure Management Groups
  3. Managing costs with alerts, budgets and Azure Advisor recommendations
  4. Managing Subscriptions in Azure
  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10

In-dept Analysis of Cloud Applications in Azure

Cloud Solutions Architecture Patterns

Shared Access Signatures

Azure Network Infrastructure Tips

Configuring Azure Storage Firewalls and Virtual Networks

Configure Management Groups

Managing costs with alerts, budgets and Azure Advisor recommendations

Managing Subscriptions in Azure

Managing Resource Groups

Azure Resource Tags

Azure Resource Locks

Implement and manage Azure Policy

Interpreting Access Assignments

Assigning Roles at Different Scopes

Managing Built-in Azure Roles

Cloud and System Administration

Configure private endpoints for Azure PaaS

Configure service endpoints for Azure platform as a service (PaaS)

Implement Azure Bastion

Evaluate effective security rules in NSGs