You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Copy file name to clipboardExpand all lines: articles/firewall-manager/secure-cloud-network.md
+17-17Lines changed: 17 additions & 17 deletions
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -77,7 +77,7 @@ Create your secured virtual hub using Firewall Manager.
77
77
3. On the **Firewall Manager** page under **Deployments**, select **Virtual hubs**.
78
78
4. On the **Firewall Manager | Virtual hubs** page, select **Create new secured virtual hub**.
79
79
80
-
:::image type="content" source="./media/secure-cloud-network/1-create-new-secured-virtual-hub.jpg" alt-text="Create new secured virtual hub." lightbox="./media/secure-cloud-network/1-create-new-secured-virtual-hub.jpg":::
80
+
:::image type="content" source="./media/secure-cloud-network/1-create-new-secured-virtual-hub.jpg" alt-text="Screenshot of creating a new secured virtual hub." lightbox="./media/secure-cloud-network/1-create-new-secured-virtual-hub.jpg":::
81
81
82
82
5. For **Resource group**, select **fw-manager-rg**.
83
83
6. For **Region**, select **East US**.
@@ -87,7 +87,7 @@ Create your secured virtual hub using Firewall Manager.
87
87
10. Select **New vWAN** and select **Standard** for "Type"
88
88
11. Leave the **Include VPN gateway to enable Trusted Security Partners** check box cleared.
89
89
90
-
:::image type="content" source="./media/secure-cloud-network/2-create-new-secured-virtual-hub.png" alt-text="Create new virtual hub with properties." lightbox="./media/secure-cloud-network/2-create-new-secured-virtual-hub.png":::
90
+
:::image type="content" source="./media/secure-cloud-network/2-create-new-secured-virtual-hub.png" alt-text="Screenshot of creating a new virtual hub with properties." lightbox="./media/secure-cloud-network/2-create-new-secured-virtual-hub.png":::
91
91
92
92
12. Select **Next: Azure Firewall**.
93
93
13. Accept the default **Azure Firewall****Enabled** setting.
@@ -97,17 +97,17 @@ Create your secured virtual hub using Firewall Manager.
97
97
> [!IMPORTANT]
98
98
> A Virtual WAN is a collection of hubs and services made available inside the hub. You can deploy as many Virtual WANs that you need. In a Virtual WAN hub, there are multiple services like VPN, ExpressRoute, and so on. Each of these services is automatically deployed across Availability Zones except Azure Firewall, if the region supports Availability Zones. To align with Azure Virtual WAN resiliency, you should select all available Availability Zones.
:::image type="content" source="./media/secure-cloud-network/3-azure-firewall-parameters-with-zones.png" alt-text="Screenshot of configuring Azure Firewall parameters." lightbox="./media/secure-cloud-network/3-azure-firewall-parameters-with-zones.png":::
101
101
102
102
16. Select the **Firewall Policy** to apply at the new Azure Firewall instance. Select **Default Deny Policy**, you will refine your settings later in this article.
:::image type="content" source="./media/secure-cloud-network/4-trusted-security-partner.png" alt-text="Screenshot of configuring Trusted Partners parameters." lightbox="./media/secure-cloud-network/4-trusted-security-partner.png":::
106
106
107
107
18. Accept the default **Trusted Security Partner****Disabled** setting, and select **Next: Review + create**.
108
108
19. Select **Create**.
109
109
110
-
:::image type="content" source="./media/secure-cloud-network/5-confirm-and-create.png" alt-text="Create the Firewall instance." lightbox="./media/secure-cloud-network/5-confirm-and-create.png":::
110
+
:::image type="content" source="./media/secure-cloud-network/5-confirm-and-create.png" alt-text="Screenshot of creating the Firewall instance." lightbox="./media/secure-cloud-network/5-confirm-and-create.png":::
111
111
112
112
> [!NOTE]
113
113
> It may take up to 30 minutes to create a secured virtual hub.
@@ -127,7 +127,7 @@ Now you can peer the hub and spoke virtual networks.
127
127
1. Select the **fw-manager-rg** resource group, then select the **Vwan-01** virtual WAN.
128
128
2. Under **Connectivity**, select **Virtual network connections**.
:::image type="content" source="./media/secure-cloud-network/7b-connect-the-hub-and-spoke.png" alt-text="Screenshot of adding Virtual Network connections." lightbox="./media/secure-cloud-network/7b-connect-the-hub-and-spoke.png":::
131
131
132
132
3. Select **Add connection**.
133
133
4. For **Connection name**, type **hub-spoke-01**.
@@ -175,27 +175,27 @@ A firewall policy defines collections of rules to direct traffic on one or more
175
175
176
176
1. From Firewall Manager, select **Azure Firewall policies**.
177
177
178
-
:::image type="content" source="./media/secure-cloud-network/6-create-azure-firewall-policy1.png" alt-text="Create an Azure Policy with first step." lightbox="./media/secure-cloud-network/6-create-azure-firewall-policy1.png":::
178
+
:::image type="content" source="./media/secure-cloud-network/6-create-azure-firewall-policy1.png" alt-text="Screenshot of creating an Azure Policy with first step." lightbox="./media/secure-cloud-network/6-create-azure-firewall-policy1.png":::
179
179
180
180
2. Select **Create Azure Firewall Policy**.
181
181
182
-
:::image type="content" source="./media/secure-cloud-network/6-create-azure-firewall-policy-basics 2.png" alt-text="Configure Azure Policy settings in first step." lightbox="./media/secure-cloud-network/6-create-azure-firewall-policy-basics 2.png":::
182
+
:::image type="content" source="./media/secure-cloud-network/6-create-azure-firewall-policy-basics 2.png" alt-text="Screenshot of configuring Azure Policy settings in first step." lightbox="./media/secure-cloud-network/6-create-azure-firewall-policy-basics 2.png":::
183
183
184
184
3. For **Resource group**, select **fw-manager-rg**.
185
185
4. Under **Policy details**, for the **Name** type **Policy-01** and for **Region** select **East US**.
186
186
5. For **Policy tier**, select **Standard**.
187
187
6. Select **Next: DNS Settings**.
188
188
189
-
:::image type="content" source="./media/secure-cloud-network/6-create-azure-firewall-policy-dns3.png" alt-text="Configure DNS settings." lightbox="./media/secure-cloud-network/6-create-azure-firewall-policy-dns3.png":::
189
+
:::image type="content" source="./media/secure-cloud-network/6-create-azure-firewall-policy-dns3.png" alt-text="Screenshot of configuring DNS settings." lightbox="./media/secure-cloud-network/6-create-azure-firewall-policy-dns3.png":::
:::image type="content" source="./media/secure-cloud-network/9a-firewall-warning.png" alt-text="Screenshot of Secure Connections." lightbox="./media/secure-cloud-network/9a-firewall-warning.png":::
285
285
286
286
> [!NOTE]
287
287
> It takes a few minutes to update the route tables.
288
288
289
289
8. Verify that the two connections show Azure Firewall secures both Internet and private traffic.
290
290
291
-
:::image type="content" source="./media/secure-cloud-network/9b-secured-connections.png" alt-text="Secure Connections Final Status" lightbox="./media/secure-cloud-network/9b-secured-connections.png":::
291
+
:::image type="content" source="./media/secure-cloud-network/9b-secured-connections.png" alt-text="Screenshot of Secure Connections final status." lightbox="./media/secure-cloud-network/9b-secured-connections.png":::
0 commit comments