Skip to content

Commit 96caedb

Browse files
committed
update supported scenarios table
1 parent 2335513 commit 96caedb

File tree

1 file changed

+1
-15
lines changed

1 file changed

+1
-15
lines changed

articles/virtual-network/virtual-network-encryption-overview.md

Lines changed: 1 addition & 15 deletions
Original file line numberDiff line numberDiff line change
@@ -6,7 +6,7 @@ ms.service: virtual-network
66
author: asudbring
77
ms.author: allensu
88
ms.topic: overview
9-
ms.date: 07/16/2024
9+
ms.date: 07/18/2024
1010
ms.custom: references_regions
1111
# Customer intent: As a network administrator, I want to learn about encryption in Azure Virtual Network so that I can secure my network traffic.
1212

@@ -67,21 +67,7 @@ Virtual network encryption is supported in the following scenarios:
6767
| Virtual network peering | Supported on traffic between VMs across regional peering. |
6868
| Global virtual network peering | Supported on traffic between VMs across global peering. |
6969
| VM to Azure VPN Gateway | Supported on traffic with gateways that use Dv5 SKU instances <sup>1</sup>. |
70-
| VM to Azure Application Gateway | Not supported <sup>2</sup>. |
71-
| VM to Azure Firewall | Not supported <sup>2</sup>. |
7270
| Azure Kubernetes Service (AKS) | - Supported on AKS using Azure CNI (regular or overlay mode), Kubenet, or BYOCNI: node and pod traffic will be encrypted.<br> - Partially supported on AKS using Azure CNI Dynamic Pod IP Assignment (podSubnetId specified): node traffic will be encrypted, but pod traffic won't be encrypted.<br> - Traffic to the AKS managed control plane egresses from the virtual network and thus isn't in scope for virtual network encryption. However, this traffic is always encrypted via TLS. |
73-
| Azure App Service | Not supported <sup>2</sup>. |
74-
| Azure SQL Database | Not supported <sup>2</sup>. |
75-
| Azure Storage | Not supported <sup>2</sup>. |
76-
| Azure Functions Premium | Not supported <sup>2</sup>. |
77-
| Private Endpoint | Not supported <sup>2</sup>. |
78-
| Azure NetApp Files | Not supported <sup>2</sup>. |
79-
| VM to ExpressRoute gateway | Not supported <sup>2</sup>. |
80-
| VM to internet (using public IP address or load balancer) | Not supported <sup>2</sup>. |
81-
82-
<sup>1</sup> SKU not controlled by user.
83-
84-
<sup>2</sup> Data flows unencrypted in these scenarios.
8571

8672
> [!NOTE]
8773
> VM to PaaS injected services requires onboarding of the PaaS services to support encryption using supported VM SKUs.

0 commit comments

Comments
 (0)