Azure Virtual Network and PaaS Network Controls
Video Statistics and Information
Channel: John Savill's Technical Training
Views: 9,201
Rating: undefined out of 5
Keywords: virtual network, azure, vnet, network security groups, nsg, service endpoints, private link, service endpoint policies, paas, firewall, private endpoints
Id: MnARPRQ2kvk
Channel Id: undefined
Length: 40min 24sec (2424 seconds)
Published: Tue Aug 25 2020
Please note that this website is currently a work in progress! Lots of interesting data and statistics to come.
This is a good video, and it needs to be explained better in general from the Azure side.
The fact that right now PaaS services are all over the place in terms of private link endpoints being GA, public preview, private preview, as well as having dramatically different firewall behavior regarding Azure IPs (SQL Server giving you the option of "allow literally all of Azure or manage it yourself" and most other PaaS services giving you the option to allow trusted service IPs being the most striking example) certainly doesn't help the matter.
And don't even get me started about how if you turn on the firewall on storage accounts you completely break some PaaS services that require a storage account (functions on a consumption plan, batch, etc) with no workaround.
Networking in Azure needs a serious look from MS and could stand to be tidied up quite a bit.