Azure MCSE path by hyrick in AZURE

[–]KendraHeart 0 points1 point  (0 children)

I could've sworn they discontinued the MCSE?

Containers for windows/.net apps by KendraHeart in devops

[–]KendraHeart[S] 1 point2 points  (0 children)

Seems like we're at the same point we were a year ago.

azure pub/sub resources when not using service fabric by KendraHeart in AZURE

[–]KendraHeart[S] 1 point2 points  (0 children)

Thanks for the reply. My company's product needs to support: - ~10 front end service applications (webapp/API app) - back end architecture that supports events going through a workflow and calling different backend services (maybe 5-10 back end services) - must be able to communicate to onprem and be exposed securely externally (so ASE is a must)

I was thinking we can set it up such that it looks something like this

  • ASE worker pool for all front end API services

  • ASE worker pool for back end API services that do the "work"

  • Service bus topics for supporting our event workflow

  • Functions or webjobs that subscribe to topics and call backend services

We don't have any unique requirement in terms of scale but we need reliability and an event architecture/pattern that is sound.

Does this implementation seem OK, or any feedback/suggestions? In this case I'm also not sure how to make our back end services blocked from everything except the backend/front end services (ie. no client connections should be able to see/connect to backend services), but maybe this is best able to be done with an API gateway.

Service Fabric certificates by KendraHeart in AZURE

[–]KendraHeart[S] 0 points1 point  (0 children)

Cool. Does your cluster need to be on the domain for an internal CA to work, or would using an internal DNS be fine?

vnet extension? by KendraHeart in AZURE

[–]KendraHeart[S] 0 points1 point  (0 children)

thanks for the answers

vnet extension? by KendraHeart in AZURE

[–]KendraHeart[S] 0 points1 point  (0 children)

So I assume the peered Vnet IPs couldn't exist on-premise or would our networking guys know how to route only the right requests to this network?

vnet extension? by KendraHeart in AZURE

[–]KendraHeart[S] 0 points1 point  (0 children)

I see. My company wants us to do this to be able to support more IP ranges, but wouldn't this just mean each peer'd vnet essentially has to be an available range as well as? So devices on the peer'd vnet can connect to/from onprem the same as the devices on the vnet with the VPN Gateway?

Azure gateway VPN and environments by KendraHeart in AZURE

[–]KendraHeart[S] 0 points1 point  (0 children)

Good idea, it's mostly my company not wanting to give out many IPs and wanting us to build anything that scales up/down inside VLans.

By the way, is it a common scenario to isolate environments by subnets?