Book Image

Azure Architecture Explained

By : David Rendón, Brett Hargreaves
Book Image

Azure Architecture Explained

By: David Rendón, Brett Hargreaves

Overview of this book

Azure is a sophisticated technology that requires a detailed understanding to reap its full potential and employ its advanced features. This book provides you with a clear path to designing optimal cloud-based solutions in Azure, by delving into the platform's intricacies. You’ll begin by understanding the effective and efficient security management and operation techniques in Azure to implement the appropriate configurations in Microsoft Entra ID. Next, you’ll explore how to modernize your applications for the cloud, examining the different computation and storage options, as well as using Azure data solutions to help migrate and monitor workloads. You’ll also find out how to build your solutions, including containers, networking components, security principles, governance, and advanced observability. With practical examples and step-by-step instructions, you’ll be empowered to work on infrastructure-as-code to effectively deploy and manage resources in your environment. By the end of this book, you’ll be well-equipped to navigate the world of cloud computing confidently.
Table of Contents (20 chapters)
1
Part 1 – Effective and Efficient Security Management and Operations in Azure
5
Part 2 – Architecting Compute and Network Solutions
12
Part 3 – Making the Most of Infrastructure-as-Code for Azure

Hybrid networking

Imagine SpringToys is evaluating the adoption of a global transit network architecture. This network will be utilized to connect the headquarters and multiple branch offices. Given the trend to enable remote work, SpringToys will address work-from-home scenarios. The organization needs users to access various resources, such as databases, files, and applications, in Azure and on-premises.

This section will review how you can leverage site-to-site VPN connections, point-to-site VPN connections, and how to configure Azure Virtual WAN.

When organizations connect on-premises resources to Azure, it is referred to as a hybrid network, and one way to enable this scenario is by using VPN connections. A virtual private network or VPN uses an encrypted tunnel within another network to establish connectivity.

VPNs are usually deployed to connect at least two trusted private networks, to one another and over an untrusted network such as the internet. Traffic is encrypted...