Implement Storage Implement Blobs and Azure Files Manage Access Configure Diagnostics, Monitoring & Analytics Implement SQL Databases Implement Recovery Services See Websites, Cloud Service and Virtual Machines ComparisonWebsites, Cloud Service and Virtual Machines Comparison
Azure Files - SMB 2.1 Protocol
Share Access Signatures, Pt 1Share Access Signatures, Pt 1 | Stored Access PoliciesStored Access Policies
See Monitor Storage AccountMonitor Storage Account
Service Tier Common App PatternPerf ObjectivesMax Size BasicSmall databases with a single operation at a given point in time Reliability per hour2 GB StandardWorkgroup and cloud applications with multiple concurrent transactions Reliability per minute250 GB PremiumMission-critical, high transactional volume with many concurrent users Reliability per second500 GB
Read More
See Configure Azure Back Up to back up Windows ServerConfigure Azure Back Up to back up Windows Server Also Azure Backup OverviewAzure Backup Overview
See Install Backup Agent and upload vault credentialInstall Backup Agent and upload vault credential Also Administer Azure Backup with Windows PowerShellAdminister Azure Backup with Windows PowerShell
Implement Azure Active Directory Integrate Azure AD with other dirs Configure the Application Panel Integrate an app with Azure AD
User attributes are synchronized including the password hash, Authentication can be completed against either Azure or Windows Server Active Directory User attributes are synchronized, Authentication is passed back through federation and completed against Windows Server Active Directory Synchronization Federation AD FS provides conditional access to resources, Work Place Join for device registration and integrated Multi-Factor Authentication *Write back of attributes to support cloud first and co-existence
Query an Azure AD directory using the Graph API
Implement Virtual Networks Configure a Virtual Network Modify a Network Configuration Design and implement a multi-site or hybrid network
Implement Virtual Networks Service consumers Internet On premises Datacenter Azure Virtual Network Front-End Network Access Load-balanced and direct VIPs ACLs & DDoS protection Traffic Manager & Azure DNS Virtual Networks Flexible, multi-tier topology Network segmentation Internal load balancing Hybrid Connectivity Secure Internet cross premises VPN connectivity ExpressRoute – direct connectivity
Traffic Manager: DNS-based Load Balancing Performance - Direct to “closest” service based on network latency Round-robin - Distribute equally across all services Failover - Direct to “backup” service if primary fails —also included in other policies
Nested Profile for Traffic Manager MyApp.TrafficManager.net EUNorth. TrafficManager.net EUNorth. CloudApp.net EUNorth-new. CloudApp.net
Internet IP Addresses & Load Balancing DIP1DIP2 VM1 VM2 Cloud service Reserved VIP LB Internet
Azure Virtual Network VPN GW Frontend10.1/16Mid-tier10.2/16Backend10.3/16 Internet On Premises 10.0/16 S2S VPNs & ExpressRoute Direct Internet Connectivity
Network Security Groups Virtual Network Backend10.3/16Mid-tier10.2/16Frontend10.1/16 VPN GW Internet On Premises 10.0/16 S2S VPNs Internet See About NSGsAbout NSGs
Network Security Groups See About NSGsAbout NSGs
Read More
Bring Your Appliances to the Cloud
Secure point-to-site connectivity point-to-site Developers Developers POC Efforts POC Efforts Small scale deployments Small scale deployments Connect from anywhere Connect from anywhere Secure site-to-site VPN connectivity SMB, Enterprises SMB, Enterprises Connect to Azure compute Connect to Azure compute ExpressRoute private connectivity SMB & Enterprises SMB & Enterprises Mission critical workloads Mission critical workloads Backup/DR, media, HPC Backup/DR, media, HPC Connect to all Azure services Connect to all Azure services Virtual Network Express Route Traffic Manager
Multi-site & VNet-to-VNet connectivity Connect to multiple virtual networks and on-premises locations Multi-site & VNet-to- VNet Contoso NorthAm HQ ( /16) Contoso East Asia ( /16)
“Force” or redirect customer Internet-bound traffic to an on- premises site Auditing & inspecting outbound traffic from Azure Needed by many scenarios for critical security and IT policy requirements Forced Tunneling Virtual Network Backend10.3/16 Mid-tier10.2/16 Frontend10.1/16 VPN GW Internet On Premises S2S VPNs Forced Tunneled via S2S VPN Internet
© 2015 Microsoft Corporation. All rights reserved.