Yesterday, 12:28 PM
Architecting Secure Azure Networks
Published 12/2024
MP4 | Video: h264, 1920x1080 | Audio: AAC, 44.1 KHz
Language: English | Size: 4.45 GB | Duration: 12h 37m
AZ-700 Designing and Implementing Microsoft Azure Networking Solutions
What you'll learn
Understand elements of Azure Virtual Networks
Name resolution services in Azure
Virtual Network traffic routing
Design and Implement VPN Gateway
Explore Azure Virtual WAN
Design and Implement Azure ExpressRoute
Load balance non-HTTPs traffic in Azure
Load balance HTTPs traffic in Azure
Design and implement network security
Design and implement private access to azure services
Design and implement network monitoring
Requirements
Azure Fundamentals and networking knowledge will be helpful
No programming experience is needed
General cloud concepts
Description
Unlock the potential of secure and scalable cloud networks with "Architecting Secure Azure Networking." This course is your gateway to mastering the principles, tools, and strategies required to design, implement, and manage robust networking solutions in Microsoft Azure. Whether you're a cloud architect, network engineer, or IT professional, this course will provide you with the expertise to build secure and reliable Azure networks.Begin your journey with an in-depth understanding of Azure Virtual Networks, the backbone of Azure networking. Learn how to implement name resolution services and traffic routing to ensure efficient communication across your infrastructure. Discover how to design and deploy VPN gateways, explore Azure Virtual WAN, and implement Azure ExpressRoute for seamless hybrid cloud connectivity.Take a deep dive into load balancing strategies to optimize traffic, whether it's HTTPs or non-HTTPs, ensuring high availability and performance for your applications. Strengthen your security posture by implementing advanced network security measures, from firewalls to network security groups. You'll also master the art of securing private access to Azure resources using technologies like private endpoints and service endpoints.Monitoring and troubleshooting are critical to maintaining a secure network, and this course will guide you through Azure's network monitoring tools to ensure optimal performance, reliability, and compliance. Along the way, you'll gain practical insights and best practices through real-world examples and scenarios.Whether you're building cloud-native applications or managing hybrid environments, this course is tailored to empower you with the skills to architect Azure networks that meet the highest standards of security, scalability, and performance. Enroll today and take the next step in becoming a sought-after Azure networking expert!
Overview
Section 1: Introduction
Lecture 1 About course
Lecture 2 Sign-up to Azure
Lecture 3 Course pre-requisite
Lecture 4 Changing role of Network Engineer
Lecture 5 Understand IP Address classes and CIDR notation
Lecture 6 What is BGP?
Section 2: Understand elements of Azure Virtual Networks
Lecture 7 Section Objectives
Lecture 8 What is Azure Virtual Network and its capabilities?
Lecture 9 Design considerations for Virtual Networks
Lecture 10 Demo - Plan and Create a hub virtual network with subnets
Lecture 11 Azure Public IP Services
Lecture 12 Demo - Create Public IP and Public IP Prefixes
Lecture 13 Cross Virtual Network connectivity with peering
Lecture 14 Demo - Create virtual network peering
Lecture 15 Internet access with Azure Virtual NAT
Lecture 16 Demo - Implement NAT Gateway and assign to subnet
Section 3: Name resolution services in Azure
Lecture 17 Section Objectives
Lecture 18 Name resolution services in Azure
Lecture 19 Azure provided DNS
Lecture 20 Demo - Deploy Bastion, VMs and check the hostname and DNS suffix for each VM
Lecture 21 Azure Private DNS
Lecture 22 Demo - Create Private DNS Zon and link Virtual Networks
Lecture 23 Azure Public DNS
Lecture 24 Demo - Create Public DNS Zone, Delegate to Azure DNS and create sub-domains
Lecture 25 Custom DNS Server and forwarding
Lecture 26 Walkthrough - DNS Configurations Scenarios
Lecture 27 Private Link DNS
Lecture 28 Demo - Create Private Link DNS Zones and link to the VNet
Section 4: Virtual Network traffic routing
Lecture 29 Section Objectives
Lecture 30 System Routes - Default routes
Lecture 31 Demo - How to check default system routes?
Lecture 32 System routes - optional routes
Lecture 33 Demo - How to check optional system routes?
Lecture 34 Custom routes - User Defined Routes (UDRs)
Lecture 35 Azure Route Table
Lecture 36 Demo - Create Route Table, UDR and associate with subnet
Lecture 37 Real World Use case - Implement Transitive Routing using NVA
Lecture 38 What is Force Tunnelling and why to use?
Lecture 39 Discuss Azure Route Server
Lecture 40 Demo - Implement Azure Route Server and Configure BGP peering
Section 5: Design and implement Azure VPN Gateway
Lecture 41 Section Objectives
Lecture 42 Discuss VPN gateways and planning factors
Lecture 43 VPN Gateway SKU and generation
Lecture 44 Gateway types
Lecture 45 Demo - Create a route-based VPN Gateway
Lecture 46 VPN gateway configuration requirements
Lecture 47 What is Local Network Gateway (LNG)?
Lecture 48 Demo - Create Local Network Gateways (LNG)
Lecture 49 High availability options for VPN connections
Lecture 50 Connection Types
Lecture 51 Demo - Create Site-2-Site VPN Connection
Lecture 52 Demo - Create vnet to vnet connection
Lecture 53 Demo Implement Point to Site connection and access spoke VM
Section 6: Explore Azure Virtual WAN
Lecture 54 Section Objectives
Lecture 55 What is Azure Virtual WAN and its SKUs?
Lecture 56 Azure Virtual WAN resources
Lecture 57 Why to use Azure Virtual WAN?
Lecture 58 Routing capabilities in a Virtual Hub
Lecture 59 Virtual Hub Routing preference
Lecture 60 Default and None route table
Lecture 61 Virtual WAN Logical architecture
Lecture 62 Virtual WAN Reference architecture
Lecture 63 Demo - Create a Virtual WAN and add a Virtual Hub
Lecture 64 Demo - Create two spoke networks and connect to Virtual Hub
Lecture 65 Demo - Deploy VPN gateway in Virtual Hub & configure P2S
Section 7: Design and Implement Azure ExpressRoute
Lecture 66 Section Objectives
Lecture 67 Explore Azure ExpressRoute
Lecture 68 ExpressRoute Connectivity Models
Lecture 69 Demo - Create ExpressRoute circuit
Lecture 70 Demo - Explore ER Connectivity with Provider
Lecture 71 Design considerations for ExpressRoute deployment
Lecture 72 Route Filter and route advertisement
Lecture 73 Demo - Configure Route Filter for Microsoft peering
Lecture 74 Bidirectional Forwarding Detection
Lecture 75 ExpressRoute and connection encryption
Lecture 76 Design redundancy for an ExpressRoute deployment
Lecture 77 Design an ExpressRoute deployment for Azure
Lecture 78 Discuss peering for an ExpressRoute deployment
Lecture 79 Demo - Establish a private connection to the virtual network
Lecture 80 What is ExpressRoute Global Reach and why to use?
Lecture 81 What is ExpressRoute FastPath and why to use?
Lecture 82 Troubleshoot ExpressRoute connection issues
Section 8: Load balance non-HTTPs traffic in Azure
Lecture 83 Section Objectives
Lecture 84 Explore Load Balancing and options in Azure
Lecture 85 How to choose load balancing options?
Lecture 86 Explore Azure Load Balancer and its types
Lecture 87 Azure Load Balancer SKUs
Lecture 88 Demo - Create and configure Azure Load Balancer
Lecture 89 Explore Azure Traffic Manager and key features
Lecture 90 How Traffic Manager works?
Lecture 91 Traffic Manager routing methods
Lecture 92 Demo - Create a Traffic Manager profile
Section 9: Load Balance HTTPs traffic in Azure
Lecture 93 Section Objectives
Lecture 94 Explorer Azure Application Gateway
Lecture 95 How Azure Application Gateway works?
Lecture 96 Application Gateway Routing
Lecture 97 TLS/SSL Termination on Application Gateway
Lecture 98 Demo - Deploy Azure Application Gateway with backend pool
Lecture 99 Explore Azure Front Door
Lecture 100 Routing in Azure Front Door
Lecture 101 Understand Front Door redirection
Lecture 102 Demo - Create Front Door profile for a highly available WebApp
Section 10: Design and implement network security
Lecture 103 Section Objectives
Lecture 104 Discuss Azure DDoS Protection
Lecture 105 Key Features of Azure DDoS Protection Plan
Lecture 106 Demo - How to create the DDoS Protection Plan?
Lecture 107 Network security Group
Lecture 108 Demo - Create Network Security Group and assign to the subnet
Lecture 109 Application Security Group
Lecture 110 Demo - Create ASG and Add a rule in the NSG for ASG
Lecture 111 Azure Firewall and its features
Lecture 112 Rule processing in Azure Firewall
Lecture 113 Azure Firewall SKUs
Lecture 114 Demo - Deploy and configure Azure Firewall for DNAT Rule
Lecture 115 Demo - Configure Network Rule in Azure Firewall for transitive routing
Lecture 116 Demo - Configure Application Rule in Azure Firewall
Lecture 117 Azure Firewall Manager and its key functions
Lecture 118 Discuss Web Application Firewall and modes
Section 11: Design and implement private access to Azure resources
Lecture 119 Section Objectives
Lecture 120 Discuss Virtual Network service endpoints
Lecture 121 Demo - Restrict access to Storage account with service endpoint
Lecture 122 What are Service Tags?
Lecture 123 Demo - Explore Service tags in NSG and Route Table
Lecture 124 Explore Azure Private Link Service
Lecture 125 Demo - Create a private link service
Lecture 126 What is Azure private Endpoint?
Lecture 127 Different ways of name resolution in Azure
Lecture 128 Integrate private endpoints with DNS
Lecture 129 Integrate on-premises workloads using a DNS resolver
Lecture 130 Vnet and On-Prem workloads using a DNS Private Resolver
Lecture 131 Demo - Create a private endpoint for WebApp
Section 12: Design and implement network monitoring
Lecture 132 Section Objectives
Lecture 133 Explore Azure Monitor
Lecture 134 Azure Monitor Network Insights overview
Lecture 135 Azure Network Watcher
Lecture 136 Connection Monitor overview
Lecture 137 Traffic Analytics
Lecture 138 Demo - Create NSG Flow Logs and enable Traffic Analytics
Lecture 139 Demo - Create Virtual Network Flow Logs and enable Traffic Analytics
Lecture 140 Demo - Use Connection Monitor for monitoring a connection
Lecture 141 Demo - Walkthrough of the network diagnostic tools
Azure Network Engineer, Network Engineer, Hybrid Network Engineer, Network Architect, Cloud Solution Architect, Azure Architect, Solution Architect, Enterprise Architect, Security Architect, Cybersecurity Architect, Azure Engineer, Cloud Engineer, DevOps Engineer, security Engineer