Part 4: Additional Security Controls per Solution
The fourth part of the book discusses security controls for either Windows 365, Azure Virtual Desktop, or Azure infrastructure. It covers Windows 365-specific security controls such as the security guidelines, Endpoint Privilege Management to allow elevated tasks to be executed by a regular user, and how to create and export a cloud PC restore point. This part covers how to create backups of the session hosts and FSLogix profiles, how to secure access to AVD using private endpoints, and how to implement security for your AD DS environment. It concludes with securing the Azure infrastructure by configuring security at the storage level, configuring network security using Azure Firewall or NSGs, and deploying AVD on dedicated hosts. By the end of this chapter, you will have a deeper understanding of how to improve security for either Windows 365, Azure Virtual Desktop, or Azure infrastructure.
This part contains the following...