Plan and implement Azure Bastion

Intermediate
Security Engineer
Azure Bastion
Azure Virtual Machines
Azure

Plan and deploy Azure Bastion to provide secure, browser-based RDP and SSH access to virtual machines without exposing public IP addresses or management ports. Select the appropriate SKU based on scale and feature requirements, deploy and configure Bastion in an Azure virtual network, and connect to VMs using both portal and native client methods.

Learning objectives

After completing this module, you can:

  • Select the appropriate Azure Bastion SKU based on scale, feature, and cost requirements
  • Deploy and configure Azure Bastion in an Azure virtual network
  • Connect to Azure virtual machines through Azure Bastion using portal and native client methods
  • Configure advanced Bastion features including native client support, shareable links, and session recording

Prerequisites

  • Working knowledge of Azure Virtual Machines, including deploying and managing VMs
  • Understanding of Azure Virtual Network concepts including subnets and public IP addresses
  • Familiarity with RDP and SSH remote access concepts

Get started with Azure

Choose the Azure account that's right for you. Pay as you go or try Azure free for up to 30 days. Sign up.