Secure Access to Virtual Networks on Azure
In this lab, you’ll practice securing access to Azure Virtual Networks (VNets). When you’re finished with this lab, you’ll have hands-on experience working with Network Security Groups (NSGs), Azure Firewall, and Azure Bastion.
Terms and conditions apply.
Lab info
Lab author
Challenge
Secure Management Access to VMs with Azure Bastion
You’ll deploy the Azure Bastion service to a Virtual Network and use it to securely connect to Linux VMs via SSH.
Challenge
Restrict Access with Network Security Groups (NSGs)
You’ll learn how to deploy Network Security Groups (NSGs) and configure security rules. You’ll associate NSGs with subnets to enforce the rules.
Challenge
Validate Connectivity and Evaluate Effective Security Rules
You’ll run some basic connectivity tests from Virtual Machines, and then evaluate effective security rules on a VM’s network interface.
Challenge
Secure Outbound Traffic with Azure Firewall
You’ll deploy and configure an Azure Firewall and create a route table and a default route so that traffic destined to outside networks go through the Firewall. You’ll then create FQDN-base rules to allow access only to specific websites.
Provided environment for hands-on practice
We will provide the credentials and environment necessary for you to practice right within your browser.
Guided walkthrough
Follow along with the author’s guided walkthrough and build something new in your provided environment!
Did you know?
On average, you retain 75% more of your learning if you get time for practice.
Recommended prerequisites
- Azure Virtual Networks and Subnets