Understanding Azure Firewall
Whereas individual NSGs and application security form part of your security strategy, building multiple layers, especially in enterprise systems, is a great way to secure your platform.
Azure Firewall is a cloud-based, fully managed network security appliance that would typically be placed at the edge of your network. This means that you would not typically have one firewall per solution, or even subscription – instead, you would have one per region and have all other devices, even those in different subscriptions, route through to it, as in the following example:
Azure Firewall offers some of the functionality that can be achieved from NSGs, including network traffic filtering based on the port and IP or service tags. Over and above these basic services, Azure Firewall also offers the following:
- High Availability and Scalability – As a managed...