See all internet based traffic leaving azure natively - report

Jason Crawford 0 Reputation points
2023-07-20T09:57:55.28+00:00

Hi,

Does anyone know if it is possible or what type of report we can generate that will essentially show all internet-based traffic leaving Azure natively (not via the FortiGate FW’s etc.) - KQL?

Thank you in advance!

Azure Network Watcher
Azure Network Watcher
An Azure service that is used to monitor, diagnose, and gain insights into network performance and health.
159 questions
{count} votes

1 answer

Sort by: Most helpful
  1. KapilAnanth-MSFT 35,246 Reputation points Microsoft Employee
    2023-07-20T10:42:55.95+00:00

    @Jason Crawford

    Welcome to the Microsoft Q&A Platform. Thank you for reaching out & I hope you are doing well.

    Getting a report on "all internet-based traffic leaving Azure" is a pretty wide topic.

    When you say "Azure", do you mean all the PaaS and IaaS services?

    • This case will not be feasible with a single report
    • For PaaS services, every PaaS service will have it's own individual logs which you have to refer to check the traffic to Internet.

    However, for IaaS VMs, we can use something called Traffic Analytics.

    • This requires you enable NSG Flow Logs.
    • This would include VMs, VMSSs, Traffic distribution per Application gateway & Load Balancer

    Now the scenarios that applies to you are,

    A complete list of use cases can be found here : Usage scenarios of Azure Network Watcher traffic analytics

    Kindly let us know if this helps or you need further assistance on this issue.

    Thanks,

    Kapil

    0 comments No comments