Skip to Content
Architecting Microsoft Azure Solutions: Exam Guide 70-535
book

Architecting Microsoft Azure Solutions: Exam Guide 70-535

by Sjoukje Zaal
April 2018
Intermediate to advanced
418 pages
9h 41m
English
Packt Publishing
Content preview from Architecting Microsoft Azure Solutions: Exam Guide 70-535

DMZ

A demilitarized zone (DMZ) or perimeter network is a physical or logical boundary between the internal and the external network of an organization. The external network can be the internet. The purpose is to add an additional security layer to the internal network. You don't open any ports from the internal network to the internet, but only to the DMZ. Azure offers multiple features that you can use to create a DMZ, such as Network Security Groups (NSGs), firewalls, and User Defined Routes (UDRs).

The following diagram shows an example of a physical DMZ created using a frontend VNet with two VMs in it. Only this VNet is connected to the internet.

Simple DMZ example
Become an O’Reilly member and get unlimited access to this title plus top books and audiobooks from O’Reilly and nearly 200 top publishers, thousands of courses curated by job role, 150+ live events each month,
and much more.
Start your free trial

You might also like

Exam Ref 70-535 Architecting Microsoft Azure Solutions, First Edition

Exam Ref 70-535 Architecting Microsoft Azure Solutions, First Edition

Haishi Bai, Dan Stolts, Santiago Fernandez Munoz
Microsoft Azure: Planning, Deploying, and Managing the Cloud

Microsoft Azure: Planning, Deploying, and Managing the Cloud

Julian Soh, Marshall Copeland, Anthony Puca, Micheleen Harris

Publisher Resources

ISBN: 9781788991735Supplemental Content