Book Image

Implementing Azure Solutions - Second Edition

By : Florian Klaffenbach, Markus Klein, Sebastian Hoppe, Oliver Michalski, Jan-Henrik Damaschke
Book Image

Implementing Azure Solutions - Second Edition

By: Florian Klaffenbach, Markus Klein, Sebastian Hoppe, Oliver Michalski, Jan-Henrik Damaschke

Overview of this book

<p>Microsoft Azure offers numerous solutions that can shape the future of any business. However, the major challenge that architects and administrators face lies in implementing these solutions. </p><p>Implementing Azure Solutions helps you overcome this challenge by enabling you to implement Azure Solutions effectively. The book begins by guiding you in choosing the backend structure for your solutions. You will then work with the Azure toolkit and learn how to use Azure Managed Apps to share your solutions with the Azure service catalog. The book then focuses on various implementation techniques and best practices such as implementing Azure Cloud Services by configuring, deploying, and managing cloud services. As you progress through the chapters, you’ll learn how to work with Azure-managed Kubernetes and Azure Container Services. </p><p>By the end of the book, you will be able to build robust cloud solutions on Azure.</p>
Table of Contents (14 chapters)

Optimization of Azure-related communication traffic

As you already learned in Chapter 3, Deploying and Synchronizing Azure Active Directory, replication traffic for your hybrid identities normally goes over the internet. It's only encrypted using SSL on port 443.

There is an option to optimize security for that traffic by placing the VMs in Azure. They will still communicate with the Azure public IP from Azure AD, but the traffic is handled on the internal switches and router from Microsoft and the traffic doesn't leave the Azure datacenter.

To get the AD account from your on-premises setup, you build up a VPN tunnel or use ExpressRoute to build a secure connection. Afterwards, you place an AD domain controller (DC) in Azure and replicate from a bridgehead DC in your on-premises datacenter.

The following diagram shows the concept and VM placement: