Book Image

Optimizing Microsoft Azure Workloads

By : Rithin Skaria
Book Image

Optimizing Microsoft Azure Workloads

By: Rithin Skaria

Overview of this book

It’s easy to learn and deploy resources in Microsoft Azure, without worrying about resource optimization. However, for production or mission critical workloads, it’s crucial that you follow best practices for resource deployment to attain security, reliability, operational excellence and performance. Apart from these aspects, you need to account for cost considerations, as it’s the leading reason for almost every organization’s cloud transformation. In this book, you’ll learn to leverage Microsoft Well-Architected Framework to optimize your workloads in Azure. This Framework is a set of recommended practices developed by Microsoft based on five aligned pillars; cost optimization, performance, reliability, operational excellence, and security. You’ll explore each of these pillars and discover how to perform an assessment to determine the quality of your existing workloads. Through the book, you’ll uncover different design patterns and procedures related to each of the Well-Architected Framework pillars. By the end of this book, you’ll be well-equipped to collect and assess data from an Azure environment and perform the necessary upturn of your Azure workloads.
Table of Contents (14 chapters)
1
Part 1: Well-Architected Framework Fundamentals
4
Part 2: Exploring the Well-Architected Framework Pillars and Their Principles
10
Part 3: Assessment and Recommendations

Key areas and security resources

When you are developing solutions, your focus should be on certain key areas, as defined by Microsoft for the security pillar:

  • Identity management: Use Azure AD as the identity management solution for authenticating and authorizing the users. Since Azure AD is a fully platform-managed solution, you don’t need to manage infrastructure and your developers can easily integrate Azure AD with applications. You can integrate your on-premises AD using existing domains on your own or you can create new domains. Azure AD is not only used by Azure and resources in Azure but also by other SaaS solutions such as Microsoft 365 and Dynamics 365. When it comes to consumer-facing applications, you can use Azure AD B2C, which will help your users to authenticate with social accounts such as Google, Facebook, and LinkedIn.
  • Manage access to infrastructure: Azure subscriptions will be mapped to an Azure tenant (Azure AD) when they are created. Nevertheless...