About endpoint ACLs and network security groups for classic VMs

Noriko 251 Reputation points
2023-01-16T09:09:20.71+00:00
I'm trying to change the functionality from endpoint ACLs to network security groups in order to migrate classic VMs to ARM.
In this case, after the network security group settings are completed, will the endpoint ACL settings become invalid when they are associated with the subnet? Will I still be able to use endpoint functionality unless I remove the endpoint ACL?
I asked this question because I wanted to migrate the ACL settings little by little.
Azure Virtual Machines
Azure Virtual Machines
An Azure service that is used to provision Windows and Linux virtual machines.
9,041 questions
Azure Virtual Network
Azure Virtual Network
An Azure networking service that is used to provision private networks and optionally to connect to on-premises datacenters.
2,775 questions
0 comments No comments
{count} votes

Accepted answer
  1. KapilAnanth-MSFT 49,611 Reputation points Microsoft Employee Moderator
    2023-01-16T10:27:52.7366667+00:00

    @原田 則子

    Welcome to the Microsoft Q&A Platform. Thank you for reaching out & I hope you are doing well.

    I understand that you would like to migrate to classic NSG from ACLs in existing Azure classic VM.

    NSG and ACL co-existence is not supported in classic VMs.

    In case you would like to attach a classic NSG to the VM, you must make sure the ACLs are removed from the endPoint.

    This means, there is no concept of one being preferred over the other.

    Thanks,

    Kapil


    Please don’t forget to close the thread by clicking "Accept the answer" wherever the information provided helps you, as this can be beneficial to other community members.

    1 person found this answer helpful.

0 additional answers

Sort by: Most helpful

Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.