Azure Firewall and Service Endpoints
Explains how to inspect Azure Service Endpoint traffic using Azure Firewall, covering configuration and rule considerations.
Explains how to inspect Azure Service Endpoint traffic using Azure Firewall, covering configuration and rule considerations.
Advanced techniques for using Azure VNet Flow Logs and Traffic Analytics to identify and fine-tune network security rules.
A technical guide exploring Azure's Network Security Perimeter service, covering its features and use for securing PaaS service public endpoints.
Explains why traditional DMZ and secure zone network designs offer little security in Azure, advocating for modern micro-segmentation approaches.
Explains the critical role of micro-segmentation in Azure network security, using analogies and Microsoft's zero-trust principles to advocate for proactive defense.
A deep dive into Azure Route Table planning, comparing 1:N vs 1:1 subnet associations and recommending a granular, automated approach.
Explains why routing is critical for security in Azure networks and how misconfigurations can bypass firewalls.
Explains a critical security misconception in Azure Network Security Groups: the 'VirtualNetwork' default rule allows traffic from more sources than expected, creating a vulnerability.
Explains how Azure Network Security Groups (NSGs) work, tracing their origins to Hyper-V Port ACLs and covering Admin Rules.
Explains how to configure Azure Storage Account firewalls and virtual networks using the Azure Verified Module for Terraform.
Explains Azure NSG default rules and how to properly configure them for secure network microsegmentation.
A guide on using Azure Virtual Network Manager to centrally govern and manage large-scale Azure virtual networks, including connectivity, security, and routing.
Explains how to use Azure Resource Explorer to manage large Access Control Lists (ACLs) directly via the ARM API, avoiding manual portal work.
Microsoft announces general availability of its Entra Suite, a comprehensive set of identity and network access security solutions for Zero Trust environments.
A technical guide on configuring Azure Virtual WAN to route inter-hub VPN traffic through Azure Firewall for enhanced security.
A technical guide on manually deploying Azure Firewall within an Azure Virtual WAN hub, covering policy creation and configuration steps.
Explains how to use Kubernetes NetworkPolicy to isolate network traffic between namespaces and control Pod communication.
Microsoft is retiring default outbound internet access for new Azure VMs in 2025, moving to a secure-by-default model and requiring explicit configuration.
Analysis of the NSA and CISA's top 10 cybersecurity misconfigurations, offering insights for IT and business leaders on common network security risks.
A practical, hands-on guide to SSH port forwarding, focusing on useful commands and techniques for network traversal and security testing.