Implement Windows Server IaaS VM network security
This module covers how to implement network security for Windows Server IaaS virtual machines in Azure. You learn how to configure network security groups (NSGs) with inbound and outbound security rules, priority-based processing, and default rules, deploy and configure Azure Firewall for centralized network traffic filtering, configure Windows Defender Firewall with Advanced Security for host-level protection, choose the appropriate filtering solution from NSGs, Azure Firewall, and Windows Defender Firewall, and use Azure Network Watcher to capture network traffic and log network flows for diagnostics.
Learning objectives
After completing this module, you'll be able to:
Implement Network Security Groups (NSGs) with Windows Server IaaS VMs.
Implement adaptive network hardening.
Implement Azure Firewall.
Implement Windows Defender Firewall in Windows Server IaaS VMs.
Choose an appropriate filtering solution.
Capture network traffic with Network Watcher.
Prerequisites
To get the best learning experience from this module, it's important that you have knowledge and experience in the following areas:
Managing Windows Server operating systems (OSs) and Windows Server workloads in on-premises scenarios, including AD DS, Domain Name System (DNS), the Distributed File System (DFS), Microsoft Hyper-V, and file and storage services
Common Windows Server management tools
Core Microsoft compute, storage, networking, and virtualization technologies
On-premises resiliency Windows Server based compute and storage technologies
Implementing and managing IaaS services in Azure
Microsoft Entra ID
Security-related technologies (firewalls, encryption, multifactor authentication)
Windows PowerShell scripting
Automation and monitoring
Get started with Azure
Choose the Azure account that's right for you. Pay as you go or try Azure free for up to 30 days. Sign up.