VNet and Cross-Premises Connectivity

Slides:



Advertisements
Similar presentations
© 2009 Microsoft Corporation. All rights reserved. Microsoft, Windows, Windows Vista and other product names are or may be registered.
Advertisements

© 2012 Microsoft Corporation. All rights reserved. Microsoft, Windows, Windows Vista and other product names are or may be registered trademarks and/or.
Preface Demo A Quick Thank You How Did We Do It?
© 2012 Microsoft Corporation. All rights reserved. Microsoft, Windows, Windows Vista and other product names are or may be registered trademarks and/or.
Feature: Microsoft Dynamics GP 2013 R2 Dashboards © 2013 Microsoft Corporation. All rights reserved. Microsoft, Windows, Windows Vista and other product.
© 2010 Microsoft Corporation. All rights reserved. Microsoft, Windows, Windows Vista and other product names are or may be registered.
Feature: Reprint Outstanding Transactions Report © 2013 Microsoft Corporation. All rights reserved. Microsoft, Windows, Windows Vista and other product.
Feature: Purchase Requisitions - Requester © 2013 Microsoft Corporation. All rights reserved. Microsoft, Windows, Windows Vista and other product names.
MIX 09 4/15/ :14 PM © 2009 Microsoft Corporation. All rights reserved. Microsoft, Windows, Windows Vista and other product names are or may be registered.
Feature: Payroll and HR Enhancements © 2013 Microsoft Corporation. All rights reserved. Microsoft, Windows, Windows Vista and other product names are or.
Windows 7 Training Microsoft Confidential. Windows ® 7 Compatibility Version Checking.
Feature: Purchase Order Prepayments II © 2013 Microsoft Corporation. All rights reserved. Microsoft, Windows, Windows Vista and other product names are.
Feature: OLE Notes Migration Utility
Feature: Web Client Keyboard Shortcuts © 2013 Microsoft Corporation. All rights reserved. Microsoft, Windows, Windows Vista and other product names are.
Feature: SmartList Usability Enhancements © 2013 Microsoft Corporation. All rights reserved. Microsoft, Windows, Windows Vista and other product names.
Session 1.
Built by Developers for Developers…. © 2009 Microsoft Corporation. All rights reserved. Microsoft, Windows, Windows Vista and other product names.
Feature: Assign an Item to Multiple Sites © 2013 Microsoft Corporation. All rights reserved. Microsoft, Windows, Windows Vista and other product names.
WinHEC /22/2017 © 2008 Microsoft Corporation. All rights reserved. Microsoft, Windows, Windows Vista and other product names are or may be registered.
© 2012 Microsoft Corporation. All rights reserved. Microsoft, Windows, Windows Vista and other product names are or may be registered trademarks and/or.
Connect with life Connect with life
Windows Azure Connect Name Title Microsoft Corporation.
© 2012 Microsoft Corporation. All rights reserved. Microsoft, Windows, Windows Vista and other product names are or may be registered trademarks and/or.
Feature: Suggested Item Enhancements – Sales Script and Additional Information © 2013 Microsoft Corporation. All rights reserved. Microsoft, Windows, Windows.
Feature: Customer Combiner and Modifier © 2013 Microsoft Corporation. All rights reserved. Microsoft, Windows, Windows Vista and other product names are.
Feature: Employee Self Service Timecard Entry © 2013 Microsoft Corporation. All rights reserved. Microsoft, Windows, Windows Vista and other product names.
© 2009 Microsoft Corporation. All rights reserved. Microsoft, Windows, Windows Vista and other product names are or.
demo Instance AInstance B Read “7” Write “8”

customer.
03 | Word Templates Brian Meier| Senior Lead Program Manager.
demo © 2008 Microsoft Corporation. All rights reserved. Microsoft, Windows, Windows Vista and other product names.
demo Demo.
demo QueryForeign KeyInstance /sm:body()/x:Order/x:Delivery/y:TrackingId1Z
Feature: Suggested Item Enhancements – Analysis and Assignment © 2013 Microsoft Corporation. All rights reserved. Microsoft, Windows, Windows Vista and.
projekt202 © 2009 Microsoft Corporation. All rights reserved. Microsoft, Windows, Windows Vista and other product names are.
© 2009 Microsoft Corporation. All rights reserved. Microsoft, Windows, Windows Vista and other product names are or may be registered trademarks.
© 2008 Microsoft Corporation. All rights reserved. Microsoft, Windows, Windows Vista and other product names are or.
04 | Business Analyzer Brian Meier| Senior Lead Program Manager.

IT Operations Management
Welcome to the Hands on Lab!
Modernizing your Remote Access
IT Operations Management
Microsoft Dynamics NAV 2018 – what’s new
Windows Azure Virtual Network Basics
Возможности Excel 2010, о которых следует знать
Azure Active Directory
Microsoft Virtual Academy
Title of Presentation 11/22/2018 3:34 PM
Microsoft Virtual Academy
Microsoft Virtual Academy
MIX 09 11/24/2018 9:18 PM © 2009 Microsoft Corporation. All rights reserved. Microsoft, Windows, Windows Vista and other product names are or may be registered.
Title of Presentation 12/2/2018 3:48 PM
8/04/2019 9:13 PM © 2006 Microsoft Corporation. All rights reserved. Microsoft, Windows, Windows Vista and other product names are or may be registered.
Виктор Хаджийски Катедра “Металургия на желязото и металолеене”
WINDOWS AZURE A LAP AROUND PLATFORM THE Steve Marx
PENSACOLA ENERGY WORK PLAN OCTOBER 10, 2016
Title of Presentation 5/12/ :53 PM
A - E Cloud Enterprise Symbols
Шитманов Дархан Қаражанұлы Тарих пәнінің
Title of Presentation 5/24/2019 1:26 PM
5/24/2019 6:44 PM 1/8/18 Bell #10 In a world governed by the gods, is there any room for human will? Do human choices make a difference? EXPLAIN © 2007.
日本初公開!? Vista の新機能を実演 とっちゃん わんくま同盟 7/23/2019 9:09 AM
Title of Presentation 7/24/2019 8:53 PM
Microsoft Virtual Academy
DirectAccess with Unified Access Gateway (UAG)
Presentation transcript:

VNet and Cross-Premises Connectivity 5 Cheryl McGuire | Technical Writer – Microsoft Ronald Beekelaar | Founder – Virsoft Solutions

Lessons Virtual Network Settings Cross-Premises Settings This should also be a review for the 70-642.

Virtual Network Settings

Creating a Virtual Network Management Portal Network Configuration file PowerShell REST API

Creating a Virtual Network in the Management Portal Custom Create Quick Create

Demo Create a VNet Basic Virtual Network Demo

Cross-Premises Settings

Extending Your Infrastructure Extend your datacenter with virtualization and networking 12/6/2019 Securely connect to Virtual Network from anywhere Uses VPN client in Windows OS Traverses firewalls and proxies Windows Azure datacenter On-premises datacenter VPN Site-to-Site VPN VPN Individual computers behind corporate firewall Let’s say you have individual PCs behind the firewall that you want to connect directly to Azure—or that you have remote workers. You can connect securely to the virtual network In Azure from anywhere using the VPN client in Windows. Because it works across firewalls and proxies, it doesn’t matter if users are behind your firewall, behind someone else’s firewall, or are remote. Check with YuShun Point-to-Site VPN Remote workers © 2013 Microsoft Corporation. All rights reserved. Microsoft, Windows, and other product names are or may be registered trademarks and/or trademarks in the U.S. and/or other countries. The information herein is for informational purposes only and represents the current view of Microsoft Corporation as of the date of this presentation. Because Microsoft must respond to changing market conditions, it should not be interpreted to be a commitment on the part of Microsoft, and Microsoft cannot guarantee the accuracy of any information provided after the date of this presentation. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

Cross-Premises Design Considerations Site-to-Site - Always connected - Requires a compatible VPN device with externally facing IPv4 address - Does not require individual client configuration - Branch office solution Point-to-Site - SSTP can securely traverse firewalls and NAT devices - Does not require a VPN device - Connection is configured on each client - VPN connection is manually started from the client computer

Configuration Considerations Local Networks Specifies which traffic goes across the VPN No IP address overlaps Can specify non-internal IP ranges DNS Server Cannot use Windows Azure IDNS for name resolution Region/Affinity Group Where do you want your resources? VPN Devices Check the list of device requirements

Static vs. Dynamic Routing Gateways Gateway Type - Dynamic or Static? Site-to-Site – can be either dynamic or static Point-to-Site – dynamic only If you want both site-to-site and point-to-site for the same VNet, choose dynamic Dynamic is presently in preview Static Routing Gateways Dynamic Routing Gateways GA Feature Preview Feature “Policy-based” VPN configuration On-premise VPN devices need to enumerate the combination of prefixes IPsec/IKEv1 “Route-based” VPN configuration Slightly more straightforward on-premise VPN configurations IPsec/IKEv2 Site-to-Site Only Site-to-Site and Point-to-Site

Demo Add Site-to-Site to existing VNet

Site-to-Site Settings Configuring a Site-to-Site connection requires configuration on both your Virtual Network and your VPN device. After your Gateway has been created, you’ll need the following information from the Dashboard page to configure your VPN device: Gateway IP address VPN Device Script (template) Manage Key (from the bottom of the page)

Point-to-Site Add Point-to-Site to a VNet Configure the VNet for Point-to-Site in the Management Console Create the Gateway (dynamic) Use makecert to create a self-signed root certificate (can’t use a CA) Import the .cer file (the file without private key) to Windows Azure Generate a client cert for each client and install Download the appropriate VPN client package from the Dashboard page and install it on the client computers

Point-to-Site Connection Without root cert With root cert

Point-to-Site Certificates Create your root certificate using makecert Download and install Microsoft Visual Studio Express 2013 (if you don’t already have a tool to create a certificate) In the Visual Studio Tools folder, open the x86 Native Tools Command Prompt Change to whatever folder you want your .cer file to create a copy in Make the appropriate changes and run this to create the root cert: Create client certs from the root certificate and install them on the client computers

Client VPN Package Install Download the install package from the VNet dashboard and install it on the client Installed

Demo Configure Point-to-Site VNET

12/6/2019 1:49 PM © 2010 Microsoft Corporation. All rights reserved. Microsoft, Windows, Windows Vista and other product names are or may be registered trademarks and/or trademarks in the U.S. and/or other countries. The information herein is for informational purposes only and represents the current view of Microsoft Corporation as of the date of this presentation. Because Microsoft must respond to changing market conditions, it should not be interpreted to be a commitment on the part of Microsoft, and Microsoft cannot guarantee the accuracy of any information provided after the date of this presentation. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.