Skip to content
Tech Master Tech Master

OneStopTechnical Forum

  • Books
  • AI
  • Networking
  • Windows
  • Linux
  • Cloud
  • Mac
  • Active Directory
  • Azure
  • Cloud
  • Exchange
  • M365
  • Server 2025
  • Storage
  • Vsphere
  • Website
  • Database
  • Security
  • Knowledge Base
  • VPN
Tech Master
Tech Master

OneStopTechnical Forum

Identify Azure virtual networking infrastructure and network components

blog.payperitem.com, April 16, 2025April 18, 2025

Azure virtual networking infrastructure provides the foundational building blocks for deploying secure, scalable, and highly available networked resources in Microsoft Azure. Components of Azure virtual networking infrastructure:


๐Ÿ”น 1. Virtual Network (VNet)

  • Core component of Azure networking, similar to a traditional on-premises network.
  • Enables resources (VMs, databases, etc.) to securely communicate.
  • VNets are isolated from each other by default.
  • Supports address space, subnets, routing, network security, and peering.

๐Ÿ”น 2. Subnets

  • Logical subdivisions of a VNet.
  • Allow you to segment your network for different workloads or services.
  • Can assign Network Security Groups (NSGs) and route tables at the subnet level.

๐Ÿ”น 3. Network Security Groups (NSGs)

  • Act as virtual firewalls that filter traffic to/from Azure resources.
  • Contain security rules that define allow/deny traffic based on source, destination, port, and protocol.

๐Ÿ”น 4. Route Tables (User-Defined Routes – UDRs)

  • Allow you to override Azureโ€™s default system routing.
  • Useful for implementing custom traffic flows, such as routing traffic through a firewall or NVA.

๐Ÿ”น 5. Azure Firewall

  • A stateful, managed firewall as a service.
  • Supports threat intelligence filtering, network and application rules, and log analytics.

๐Ÿ”น 6. Network Virtual Appliances (NVAs)

  • Third-party appliances (like Fortinet, Palo Alto, etc.) deployed in VNets.
  • Provide advanced firewall, routing, and VPN capabilities.

๐Ÿ”น 7. Azure VPN Gateway

  • Connects your on-premises network to Azure over IPsec/IKE VPN tunnels.
  • Supports site-to-site, point-to-site, and VNet-to-VNet connections.

๐Ÿ”น 8. Azure ExpressRoute

  • Private, dedicated connection from on-premises to Azure (not over the internet).
  • Provides higher bandwidth, lower latency, and more security than VPN.

๐Ÿ”น 9. Azure Application Gateway

  • A Layer 7 (HTTP/HTTPS) load balancer with features like:
    • Web Application Firewall (WAF)
    • SSL termination
    • Path-based routing

๐Ÿ”น 10. Azure Load Balancer

  • Layer 4 (TCP/UDP) load balancer.
  • Comes in two flavors:
    • Basic โ€“ simple, non-zone-redundant
    • Standard โ€“ supports high availability zones, diagnostics, and more features.

๐Ÿ”น 11. Azure Bastion

  • Provides secure RDP/SSH access to VMs without exposing public IPs.
  • Uses the Azure portal over TLS.

๐Ÿ”น 12. Private Endpoints

  • Private IPs assigned to Azure PaaS resources (like Azure Storage, SQL DB).
  • Traffic stays within your VNet via Private Link.

๐Ÿ”น 13. Public IP Addresses

  • Used to expose Azure resources to the internet.
  • Can be:
    • Static or dynamic
    • Basic or Standard SKU

๐Ÿ”น 14. VNet Peering

  • Connects two VNets, enabling traffic between them using Microsoftโ€™s backbone network.
  • Global VNet peering allows peering across regions.

๐Ÿ”น 15. DNS Services

  • Azure-provided or custom DNS settings per VNet.
  • Integrates with Azure Private DNS Zones for internal resolution.

๐Ÿ”น 16. Service Endpoints

  • Extend your VNet to Azure services directly over Azure backbone (no public internet).
  • Adds a layer of security and access control to Azure PaaS.

๐Ÿ”น 17. Network Watcher

  • Monitoring and diagnostic tool for Azure networking.
  • Offers:
    • Connection troubleshooting
    • Packet capture
    • Topology views
    • IP flow verify
Azure Cloud Security #100GbE#100GbECloudNetworking#10GbE#40GbE#5GUPF#AdaptiveResync#AdaptiveResyncNVMe#AF_XDP#AIArbitrage#AIClusterOptimization#AIInferenceonFPGA#AIModelParallelism#AIonGPUs#AIQuantTrading#AMDMPGPU#AnsibleAutomation#AnsibleForVMware#ApacheFlinkPerformance#AWSNitro#AWSVMwareCloud#Azure#AzureVMwareSolution#BareMetalCloudTuning#BareMetalServer#BatchedInferenceOptimization#BladeServers#BSOD#CacheTiering#CentOS#CephHighPerformance#CiscoACI#CiscoACIAnsible#CiscoHyperFlex#CiscoMDS#CiscoNexus#CiscoUCS#CiscoVPC#CiscoVXLAN#CloudComputing#CloudHosting#CloudMigration#CloudNative5G#Colocation#ColumnarStorageTuning#CompressionOptimization#Containerization#CUDAonVMware#CyberSecurity#CyberSecurity #WindowsSecurity #PrivacyMatters #Firewall #EndpointSecurity#DataCenter#DataCenterNetworking#DDoSProtection#DebianServer#Deduplication#DeepLearningHFT#DeepLearningInfra#DellCompellent#DellIDRAC#DellIDRACAPI#DellOpenManage#DellPowerEdge#DellPowerMax#DellPowerStore#DellUnityXT#DellVxRail#DirectFlash#DirectMarketAccess (DMA)#DirectX#DistributedTrainingInfra#DPDK#DPDKTelcoOptimizations#DPUPassthrough#DPUvsFPGA#DruidRealTimeAnalytics#DVS#DynamicCongestionControl#eBPFNetworking#EdgeAIOptimization#EdgeComputing#EnterpriseIT#ESXi#ESXiAdaptiveResync#ESXiNUMAOptimization#ESXiQueueDepth#ESXiRDMA#ESXiTuning#ETLPerformanceOptimization#FCBufferCredits#FCNPIV#FCoE#FCoEPerformance#FCPortChannel#FibreChannel#FibreChannelZoning#Firewall#FPGAforAI#FPGAforHFT#GameOptimization#GlobalEdgeRouting#GoogleCloudVMwareEngine#GPUDirectStorage#GPUPassthrough#HardenedServer#HLSforFPGA#HPC#HPCforAI#HPE3PAR#HPEAlletra#HPEGen10Plus#HPEiLO#HPEiLOAutomation#HPEInfoSight#HPEOneView#HPEPrimera#HPEProLiant#HPEStoreOnce#Hyperscale#HyperscaleLoadBalancing#HyperscaleMultiTenantSecurity#HyperV#IDSIPS#InfiniBandAI#InfrastructureAsCode#IntelFPGAAcceleration#IntelSPDK#IntrusionDetection#IOPSOptimization#IOTailLatency#iSCSI#iSCSIJumboFrames#ITInfrastructure#ITPro#JuniperNetworks#K8sMultiCloud#KafkaUltraLowLatency#KernelBypassNetworking#KubernetesCluster#KVM#LatencyArbitrageInfra#LatencyFix#LinuxServer#LUNQueueDepth#ManagedHosting#MarketDataFeedOptimization#MarketMakingAI#MellanoxConnectXPerformance#MellanoxGPUDirect#MellanoxNetworking#MellanoxRoCE#Microsegmentation#Microservices#MIGonNVIDIA#MultiAccessEdgeComputing#NASStorage#NetAppAFF#NetAppAnsibleModules#NetAppFAS#NetAppFlexGroup#NetAppMetroCluster#NetAppONTAP#NetAppSnapMirror#Networking#NeuralAccelerators#NeuralNetworkBacktesting#NFVAcceleration#NSXT#NVGPUPassthrough#NVIDIABlueField#NVMe#NVMeLatencyBenchmark#NVMeoF#NVMeoFPerformance#NVMeOverFabric#NVMePolling#NVMeQueueDepth#NVMeTCPPerformance#NVSwitchTuning#O-RANOptimization#OnChipNetworking#OpenStack#OptanePMem#P4ProgrammableNIC#PCGaming#PCIssues#PensandoDPU#PersistentMemoryRDMA#PFCforRoCE#PicoSecondPrecision#PipelinedCompute#PowerShell#ProgrammableNICs#Proxmox#PureEvergreen#PureFlashArray#PureStorage#PureX90#PyTorchXLA (Accelerated Linear Algebra for PyTorch)#QoSStorage#RAID#RDMA#RDMAonDPU#RDMAOptimization#RDMAoverEthernet#RDMAQueueDepthTuning#RDMAStorage#RedHat#ReinforcementLearningForTrading#SANStorage#SentimentAnalysisTrading#Server#ServerlessPerformanceTuning#ServerRoom#ServerSecurity#SIEM#SIEMSolutions#SOC2Compliance#SRIOV#SRIOVNetworking#SSDServers#StorageClassMemory#StorageIOControl#StorageTiers#StreamingDataOptimization#StreamProcessingAI#SubMicrosecondTrading#SysAdmin#SysAdminLife#TaskScheduler#TCPBypass#TechSupport#TelcoEdgeAI#TensorFlowXRT#Terraform#TerraformMultiCloud#TerraformVMware#TickToTradeOptimization#TinyMLPerformance#UbuntuServer#UltraLowLatencyFPGA#vCloudDirector#VectorizedQueryExecution#VFIO#vGPUPassthrough#VMDirectPathIO#vMotion#VMware#VMwareHCX#VMwarePowerCLI#VMwarePVRDMA#VMwareSmartNIC#VPSHosting#vRANPerformanceTuning#vSANDeduplication#vSANPerformance#vSANResyncImpact#vSphere#vSphereMultiCloud#vSphereOptimization#WindowsAutomation#WindowsDebugging#WindowsFix#WindowsGaming#WindowsServer#WriteAmplification#WriteBackCaching#XilinxAlveo#XilinxSmartNIC#ZeroCopyNetworking#ZeroLatencyInference#ZeroTrustArchitecture#ZFSPerformanceTuning

Post navigation

Previous post
Next post

Related Posts

Configure Radius Server

April 11, 2025April 11, 2025

Configuring a Windows RADIUS Server (typically via NPS โ€“ Network Policy Server) in a deep and secure way involves more than just installing the role and creating a basic policy. Youโ€™ll want to cover advanced aspects like: ๐Ÿ”ง 1. NPS (RADIUS) Server Installation and Registration ๐Ÿ” 2. Secure RADIUS with…

Read More

Configuring a JumpCloud policy for BYOD (Bring Your Own Device)

March 30, 2025April 2, 2025

Configuring a JumpCloud policy for BYOD (Bring Your Own Device) ensures security while allowing employees to use their personal devices. Below is a step-by-step guide to setting up JumpCloud policies to enforce security best practices for BYOD. 1. Define BYOD Security Requirements Before configuring JumpCloud, determine the security policies you…

Read More

Open-Source Storage server and client solutions

April 7, 2025April 7, 2025

๐Ÿ”น Object Storage (S3-Compatible) 1. MinIO ๐Ÿ”น Distributed File Systems 2. Ceph 3. GlusterFS ๐Ÿ”น iSCSI / Block Storage 4. TargetCLI / LIO (Linux iSCSI Target) 5. Open-iSCSI (Client) ๐Ÿ”น SMB / NFS (Traditional File Sharing) 6. Samba 7. NFS (Kernel or ganesha) ๐Ÿ”น High Performance / Cloud-Native / Modern…

Read More

Recent Posts

  • List of AD Schema Versions
  • OldNewExplorer Free Download For Windows 11, 10, 8 and 7 [Latest Version]
  • How to Get the Classic (old) Context Menu on Windows 11
  • BitLocker Recovery Keys
  • Active Directory and Server hardening

Recent Comments

No comments to show.
June 2025
M T W T F S S
 1
2345678
9101112131415
16171819202122
23242526272829
30  
« May    
Log in
©2025 Tech Master | WordPress Theme by SuperbThemes
  • Login
  • Sign Up
Forgot Password?
Lost your password? Please enter your username or email address. You will receive a link to create a new password via email.
body::-webkit-scrollbar { width: 7px; } body::-webkit-scrollbar-track { border-radius: 10px; background: #f0f0f0; } body::-webkit-scrollbar-thumb { border-radius: 50px; background: #dfdbdb }