Reader small image

You're reading from  Designing and Implementing Microsoft Azure Networking Solutions

Product typeBook
Published inAug 2023
PublisherPackt
ISBN-139781803242033
Edition1st Edition
Tools
Concepts
Right arrow
Author (1)
David Okeyode
David Okeyode
author image
David Okeyode

David is the EMEA Azure CTO at Palo Alto Networks. Before that, he was an independent consultant helping companies secure their Azure environments through private expert level trainings and assessments. He has authored two books on Azure security - "Penetration Testing Azure for Ethical Hackers" and "Microsoft Azure Security Technologies Certification and Beyond. He has also authored multiple cloud computing courses for popular platforms like LinkedIn Learning. He holds over 15 cloud certifications and has over a decade of experience in Cybersecurity (consultancy, design, implementation). David is married to a lovely girl who makes the best banana cake in the world. They love travelling the world together!
Read more about David Okeyode

Right arrow

Understanding the security considerations of a virtual hub

So far, we have talked about how the virtual WAN makes connecting networks and routing easier. But what if we need to control and inspect the traffic between connected networks? Can we do this? The answer is yes, there are different ways we can do this, depending on what we need it for. In the next sections, we will quickly look at three common ways of doing this.

Approach 1 – deploy Azure Firewall in the virtual hub

The virtual hub (Standard tier only) supports the deployment of Azure Firewall within the hub. This creates a secured hub that can filter and inspect network traffic between virtual networks, branch offices or remote users, and the internet (Figure 7.50).

Figure 7.50 – Secured hub using Azure Firewall

Figure 7.50 – Secured hub using Azure Firewall

Traffic inspection is supported for the following scenarios:

  • Between connected virtual networks
  • Between virtual networks and branch offices (ExpressRoute...
lock icon
The rest of the page is locked
Previous PageNext Page
You have been reading a chapter from
Designing and Implementing Microsoft Azure Networking Solutions
Published in: Aug 2023Publisher: PacktISBN-13: 9781803242033

Author (1)

author image
David Okeyode

David is the EMEA Azure CTO at Palo Alto Networks. Before that, he was an independent consultant helping companies secure their Azure environments through private expert level trainings and assessments. He has authored two books on Azure security - "Penetration Testing Azure for Ethical Hackers" and "Microsoft Azure Security Technologies Certification and Beyond. He has also authored multiple cloud computing courses for popular platforms like LinkedIn Learning. He holds over 15 cloud certifications and has over a decade of experience in Cybersecurity (consultancy, design, implementation). David is married to a lovely girl who makes the best banana cake in the world. They love travelling the world together!
Read more about David Okeyode