Onur Dogruoz
Agenda Previous Sessions: Introduction to Azure Infrastructure as a Service (IaaS), Azure portal, role-based access control (RBAC), calculator overview VM Types, Azure Hybrid Use Benefits(AHUB), Backup/DR Strategies with Azure, Azure Storage, StorSimple This Session: Azure Networking Basics, On-prem connectivity options DEMO Create VNET/Gateway Cost-estimation for VNET/Gateways Future Sessions: How to move to Azure
Core services of Azure IaaS
Users Azure Virtual Network Internet Backend Connectivity ExpressRoute VPN Gateways
Accelerated Networking provides up to 25Gbps of throughput and reduces network latency up to 10x!
On Premises 10.0/16 Internet VPN & ExpressRoute Azure Direct Internet Connectivity VPN GW Backend 10.3/16 Mid-tier 10.2/16 Virtual Network Frontend 10.1/16
Internet
Virtual Machine NIC2 NIC1 Default 10.3.3.33 10.2.2.22 10.1.1.11 VIP 133.44.55.66 Internet Backend Subnet Mgmt Subnet Virtual Network Frontend Subnet
Virtual machines (VM) Internet-facing load balancers VPN gateways Application gateways VMs Internal load balancers (ILBs) Application gateways
Security layers, Protection, and Isolation or Public IPs
On Premises 10.0/16 ExpressRoute and VPNs VPN GW Internet Virtual Network Backend 10.3/16 Mid-tier 10.2/16 Frontend 10.1/16
On Premises Internet Forced Tunneled via S2S VPN VPN GW S2S VPN
Internet Connectivity Secure point-to-site connectivity Secure site-to-site VPN connectivity Consumers Access over public IP DNS resolution Connect from anywhere Developers POC Efforts Small scale deployments Connect from anywhere SMB, Enterprises Connect to Azure compute ExpressRoute private connectivity SMB & Enterprises Mission critical workloads Backup/DR, media, HPC Connect to Microsoft services
WAN WAN
WAN ExpressRoute provides a private, dedicated, high-throughput network connection to Microsoft
Virtual Network Gateway SKU ExpressRoute GW Throughput VPN GW ExpressRoute Coexistence VPN GW Throughput VPN GW Max IPsec Tunnels Cost (USD) / Hour Basic 500 Mbps No 100 Mbps 10 $0.04 Standard 1000 Mbps Yes 100 Mbps 10 $0.19 Performance 2000 Mbps Yes 200 Mbps 30 $0.49
Azure Network Service Business Value This unlocks consumption for the customer because Virtual Networks and Virtual Network Peering Foundation on which IaaS and some PaaS is running at high speed (up to 25 Gbps!) I don t need to worry about capex and opex related to running my network, and I can build my virtual DC in Azure ExpressRoute and VPN Extends your on-premises network into the Microsoft Cloud over a dedicated private connection (ER) or over the internet (VPN) I get a reliable (SLA-backed), high bandwidth connection to Azure, enabling their digital transformation strategy to leverage the cloud Load Balancing and Web Application Firewall Deliver global high availability, low latency secure access and network performance to your applications My applications is protected from common threats and can easily scale to meet global demand without purchasing new hardware CDN Provides global solution for delivering internet facing workloads - web app s, media and storage My users experience lower latency and faster performance, irrespective of their geographic location Azure DNS DNS name resolution services using global Azure infrastructure services I can use the same credentials, familiar APIs and tools as well as the common Azure billing framework to get a fast & reliable DNS service
1. 2. 3. 4. 5. 6. 7.
https://docs.microsoft.com/en-us/azure/guidance/ http://aka.ms/architecture https://docs.microsoft.com/en-us/azure/
Typical starting points on IaaS Web and mobile Line of business apps like SAP, SharePoint Microservice apps Dev and test Big data and analytics Internet of Things Backup, recovery, and archive High performance computing Digital media
2016 Microsoft Corporation. All rights reserved. Microsoft, Windows, and other product names are or may be registered trademarks and/or trademarks in the U.S. and/or other countries. The information herein is for informational purposes only and represents the current view of Microsoft Corporation as of the date of this presentation. Because Microsoft must respond to changing market conditions, it should not be interpreted to be a commitment on the part of Microsoft, and Microsoft cannot guarantee the accuracy of any information provided after the date of this presentation. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.