DEV Community

Cover image for Azure Firewall
Ibrahim S
Ibrahim S

Posted on

Azure Firewall

𝗔𝘇𝘂ð—ŋð—ē 𝗙ð—ķð—ŋð—ē𝘄ð—Ūð—đð—đ
👉 It can act as a threat intelligence service
👉 Rules / Policies defined manually
👉 Cloud-managed service
👉 Decision — Allow / Deny
👉 Inbound / Ingress / Incoming — Allow / Deny
👉 Outbound / Eggress / Outgoing — Allow / Deny

Image description

𝗧ð—ĩð—ŋð—ēð—ē ð—ļð—ķð—ŧð—ąð˜€ 𝗞ð—ģ ð—ŋ𝘂ð—đð—ē𝘀
1ïļâƒĢ Application rules — Outbound traffic & FQDN

❇ Inbound traffic — This traffic can come from the internet or other networks.
❇ Outbound traffic — From your network users to access websites and other resources.

2ïļâƒĢ Network rules — Inbound / Outbound traffic — Source / Destination will be desired

3ïļâƒĢ NAT / DNAT rules — Applicable Inbound traffic & VM Public IP

❇ DNAT — Destination Network Address Translation

𝗙ð—ķð—ŋð—ē𝘄ð—Ūð—đð—đ ð—Ĩ𝘂ð—đð—ē ð—Ģð—ŋð—ē𝗰ð—ēð—ąð—ēð—ŧ𝗰ð—ē (ð—Ģð—ŋð—ķ𝗞ð—ŋð—ķ𝘁ð—ķð—ē𝘀)

❇ Inbound traffic — NAT rules will be given priority.
❇ Outbound traffic — Network rules will be given priority then applicable rules.
❇ Inbound rules — NAT / Network rules
❇ Outbound rules — Network rules / Application rules

Top comments (0)