You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
@@ -32,8 +32,6 @@ Create three virtual networks by using the portal. Each virtual network has a `n
32
32
33
33
1. On the **Basics** tab, enter or select the following information.
34
34
35
-
:::image type="content" source="./media/create-virtual-network-manager-portal/create-vnet-basic.png" alt-text="Screenshot of basic information for creating a virtual network.":::
36
-
37
35
| Setting | Value |
38
36
| ------- | ----- |
39
37
|**Subscription**| Select the subscription where you want to deploy this virtual network. |
@@ -43,8 +41,6 @@ Create three virtual networks by using the portal. Each virtual network has a `n
43
41
44
42
1. Select **Next** or the **IP addresses** tab, configure the following network address spaces, and then select **Review + create**.
45
43
46
-
:::image type="content" source="./media/create-virtual-network-manager-portal/create-vnet-ip.png" alt-text="Screenshot of IP address information for creating a virtual network.":::
47
-
48
44
| Setting | Value |
49
45
| -------- | ----- |
50
46
|**IPv4 address space**| 10.0.0.0/16 |
@@ -82,12 +78,9 @@ In this task, you manually add two virtual networks for your mesh configuration
82
78
83
79
1. From the list of network groups, select **ng-learn-prod-eastus-001**. On the **ng-learn-prod-eastus-001** pane, under **Manually add members**, select **Add virtual networks**.
84
80
85
-
:::image type="content" source="./media/create-virtual-network-manager-portal/add-static-member.png" alt-text="Screenshot of add a virtual network f.":::
86
81
87
82
1. On the **Manually add members** pane, select **vnet-learn-prod-eastus-001** and **vnet-learn-prod-eastus-002**, and then select **Add**.
88
83
89
-
:::image type="content" source="./media/create-virtual-network-manager-portal/add-virtual-networks.png" alt-text="Screenshot of selecting virtual networks on the pane for manually adding members.":::
90
-
91
84
1. On the **Network Group** pane, under **Settings**, select **Group Members**. Confirm the membership of the group that you manually selected.
92
85
93
86
:::image type="content" source="media/create-virtual-network-manager-portal/group-members-list.png" alt-text="Screenshot that shows a list of group members." lightbox="media/create-virtual-network-manager-portal/group-members-list.png":::
@@ -100,8 +93,6 @@ By using [Azure Policy](concept-azure-policy-integration.md), you define a condi
100
93
101
94
1. From the list of network groups, select **ng-learn-prod-eastus-001**. Under **Create policy to dynamically add members**, select **Create Azure policy**.
102
95
103
-
:::image type="content" source="media/create-virtual-network-manager-portal/define-dynamic-membership.png" alt-text="Screenshot of the button for creating an Azure policy.":::
104
-
105
96
1. On the **Create Azure policy** pane, select or enter the following information, and then select **Preview resources**.
106
97
107
98
:::image type="content" source="./media/create-virtual-network-manager-portal/network-group-conditional.png" alt-text="Screenshot of the pane for creating an Azure policy, including criteria for definitions.":::
@@ -134,33 +125,23 @@ Now that you created the network group and updated its membership with virtual n
134
125
135
126
1. Select **Connectivity configuration** from the dropdown menu to begin creating a connectivity configuration.
136
127
137
-
:::image type="content" source="./media/create-virtual-network-manager-portal/connectivity-configuration-dropdown.png" alt-text="Screenshot of the configuration dropdown menu.":::
138
-
139
128
1. On the **Basics** tab, enter the following information, and then select **Next: Topology**.
140
129
141
-
:::image type="content" source="./media/create-virtual-network-manager-portal/connectivity-configuration.png" alt-text="Screenshot of the pane for adding a connectivity configuration.":::
142
-
143
130
| Setting | Value |
144
131
| ------- | ----- |
145
132
|**Name**| Enter **cc-learn-prod-eastus-001**. |
146
133
|**Description**|*(Optional)* Provide a description about this connectivity configuration. |
147
134
148
135
1. On the **Topology** tab, select the **Mesh** topology, and leave the **Enable mesh connectivity across regions** checkbox cleared. Cross-region connectivity isn't required for this setup, because all the virtual networks are in the same region. When you're ready, select **Add** > **Add network group**.
149
136
150
-
:::image type="content" source="./media/create-virtual-network-manager-portal/topology-configuration.png" alt-text="Screenshot of topology selection for network group connectivity configuration.":::
151
-
152
137
1. Under **Network groups**, select **ng-learn-prod-eastus-001**. Then choose **Select** to add the network group to the configuration.
153
138
154
-
:::image type="content" source="./media/create-virtual-network-manager-portal/add-network-group-configuration.png" alt-text="Screenshot of adding a network group to a connectivity configuration.":::
155
-
156
139
1. Select the **Visualization** tab to view the topology of the configuration. This tab shows a visual representation of the network group that you added to the configuration.
157
140
158
141
:::image type="content" source="./media/create-virtual-network-manager-portal/preview-topology.png" alt-text="Screenshot of previewing a topology for network group connectivity configuration.":::
159
142
160
143
1. Select **Next: Review + Create** > **Create** to create the configuration.
161
144
162
-
:::image type="content" source="./media/create-virtual-network-manager-portal/create-connectivity-configuration.png" alt-text="Screenshot of the tab for reviewing and creating a connectivity configuration.":::
163
-
164
145
1. After the deployment finishes, select **Refresh**. The new connectivity configuration appears on the **Configurations** pane.
165
146
166
147
:::image type="content" source="./media/create-virtual-network-manager-portal/connectivity-configuration-list.png" alt-text="Screenshot of a connectivity configuration list.":::
@@ -171,12 +152,8 @@ To apply your configurations to your environment, you need to commit the configu
171
152
172
153
1. Under **Settings**, select **Deployments**. Then select **Deploy configurations**.
173
154
174
-
:::image type="content" source="./media/create-virtual-network-manager-portal/deployments.png" alt-text="Screenshot of the pane for deployments in Virtual Network Manager.":::
175
-
176
155
1. Select the following settings, and then select **Next**.
177
156
178
-
:::image type="content" source="./media/create-virtual-network-manager-portal/deploy-configuration.png" alt-text="Screenshot of the tab for configuring a goal state for network resources.":::
179
-
180
157
| Setting | Value |
181
158
| ------- | ----- |
182
159
|**Configurations**| Select **Include connectivity configurations in your goal state**. |
@@ -185,8 +162,6 @@ To apply your configurations to your environment, you need to commit the configu
185
162
186
163
1. Select **Deploy** to complete the deployment.
187
164
188
-
:::image type="content" source="./media/create-virtual-network-manager-portal/deployment-confirmation.png" alt-text="Screenshot of the tab for reviewing a deployment.":::
189
-
190
165
1. Confirm that the deployment appears in the list for the selected region. The deployment of the configuration can take a few minutes to finish.
191
166
192
167
:::image type="content" source="./media/create-virtual-network-manager-portal/deployment-in-progress.png" alt-text="Screenshot of a configuration deployment that shows a status of succeeded.":::
@@ -234,8 +209,6 @@ If you no longer need Azure Virtual Network Manager, you can remove it after you
234
209
235
210
1. On the **Delete a network group** pane, select the following options, and then select **Delete**.
236
211
237
-
:::image type="content" source="./media/create-virtual-network-manager-portal/network-group-delete-options.png" alt-text="Screenshot of Network group to be deleted option selection." lightbox="./media/create-virtual-network-manager-portal/network-group-delete-options.png":::
238
-
239
212
| Setting | Value |
240
213
| ------- | ----- |
241
214
|**Delete option**| Select **Force delete the resource and all dependent resources**. |
@@ -247,8 +220,6 @@ If you no longer need Azure Virtual Network Manager, you can remove it after you
247
220
248
221
1. On the **Delete a network manager** pane, select the following options, and then select **Delete**.
249
222
250
-
:::image type="content" source="./media/create-virtual-network-manager-portal/network-manager-delete.png" alt-text="Screenshot of the pane for deleting a network manager.":::
251
-
252
223
| Setting | Value |
253
224
| ------- | ----- |
254
225
|**Delete option**| Select **Force delete the resource and all dependent resources**. |
Copy file name to clipboardExpand all lines: articles/virtual-network-manager/how-to-create-hub-and-spoke.md
+7-24Lines changed: 7 additions & 24 deletions
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -37,16 +37,10 @@ To manually add the desired virtual networks for your Mesh configuration to your
37
37
38
38
1. From the list of network groups, select your network group and select **Add virtual networks** under *Manually add members* on the network group page.
39
39
40
-
:::image type="content" source="./media/create-virtual-network-manager-portal/add-static-member.png" alt-text="Screenshot of add a virtual network.":::
41
-
42
40
1. On the *Manually add members* page, select all the virtual networks and select **Add**.
43
41
44
-
:::image type="content" source="./media/create-virtual-network-manager-portal/add-virtual-networks.png" alt-text="Screenshot of add virtual networks to network group page.":::
45
-
46
42
1. To review the network group membership manually added, select **Group Members** on the *Network Group* page under **Settings**.
47
43
48
-
:::image type="content" source="./media/how-to-create-hub-and-spoke/group-members-list.png" alt-text="Screenshot that shows a list of group members.":::
49
-
50
44
## Create a hub and spoke connectivity configuration
51
45
52
46
This section guides you through how to create a hub-and-spoke configuration with the network group you created in the previous section.
@@ -60,31 +54,22 @@ This section guides you through how to create a hub-and-spoke configuration with
60
54
| Name | Enter a *name* for this configuration. |
61
55
| Description |*Optional* Enter a description about what this configuration does. |
62
56
63
-
1. On the **Topology** tab, select the **Hub and spoke** topology.
64
-
65
-
:::image type="content" source="media/how-to-create-hub-and-spoke/topology.png" alt-text="Screenshot of Add Topology screen for hub and spoke topology.":::
57
+
1. On the **Topology** tab, select the **Hub and spoke** topology under *Topology*.
66
58
67
59
1. Select **Delete existing peerings** checkbox if you want to remove all previously created virtual network peering between virtual networks in the network group defined in this configuration, and then select **Select a hub**.
68
-
1. On the **Select a hub** page, Select a virtual network that acts as the hub virtual network and select **Select**.
69
-
70
-
:::image type="content" source="media/how-to-create-hub-and-spoke/select-hub.png" alt-text="Screenshot of Select a hub list.":::
60
+
1. On the **Select a hub** page, Select the virtual network that will be the hub virtual network and select **Select**.
71
61
72
62
1. Then select **+ Add network groups**.
73
63
74
64
1. On the **Add network groups** page, select the network groups you want to add to this configuration. Then select **Add** to save.
75
65
76
-
1. The following three options appear next to the network group name under **Spoke network groups**:
77
-
78
-
:::image type="content" source="./media/how-to-create-hub-and-spoke/spokes-settings.png" alt-text="Screenshot of spoke network groups settings.":::
79
-
66
+
1. Select the settings you want to enable for each network group. The following three options appear next to the network group name under **Spoke network groups**:
80
67
81
-
**Direct connectivity*: Select **Enable peering within network group** if you want to establish virtual network peering between virtual networks in the network group of the same region.
82
-
**Global Mesh*: Select **Enable mesh connectivity across regions** if you want to establish virtual network peering for all virtual networks in the network group across regions.
83
-
**Gateway*: Select **Use hub as a gateway** if you have a virtual network gateway in the hub virtual network that you want this network group to use to pass traffic to on-premises.
68
+
-*Direct connectivity*: Select **Enable peering within network group** if you want to establish virtual network peering between virtual networks in the network group of the same region.
69
+
-*Global Mesh*: Select **Enable mesh connectivity across regions** if you want to establish virtual network peering for all virtual networks in the network group across regions.
70
+
-*Gateway*: Select **Use hub as a gateway** if you have a virtual network gateway in the hub virtual network that you want this network group to use to pass traffic to on-premises.
84
71
85
-
Select the settings you want to enable for each network group.
86
-
87
-
1. Finally, select **Review + Create > Create** to create the hub-and-spoke connectivity configuration.
72
+
1. Select **Review + Create > Create** to create the hub-and-spoke connectivity configuration.
88
73
89
74
## Deploy the hub and spoke configuration
90
75
@@ -93,8 +78,6 @@ To have this configuration take effect in your environment, you need to deploy t
93
78
1. Select **Deployments** under *Settings*, then select **Deploy a configuration**.
94
79
1. On the **Deploy a configuration** page, select the following settings:
95
80
96
-
:::image type="content" source="./media/create-virtual-network-manager-portal/deploy-configuration.png" alt-text="Screenshot of deploy a configuration page.":::
97
-
98
81
| Setting | Value |
99
82
| ------- | ----- |
100
83
| Configurations | Select **Include connectivity configurations in your goal state** . |
Copy file name to clipboardExpand all lines: articles/virtual-network-manager/how-to-create-mesh-network.md
-12Lines changed: 0 additions & 12 deletions
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -35,17 +35,9 @@ Azure Virtual Network manager allows you two methods for adding membership to a
35
35
To manually add the desired virtual networks for your Mesh configuration to your Network Group, follow the steps below:
36
36
37
37
1. From the list of network groups, select your network group and select **Add virtual networks** under *Manually add members* on the network group page.
38
-
39
-
:::image type="content" source="./media/create-virtual-network-manager-portal/add-static-member.png" alt-text="Screenshot of add a virtual network.":::
40
-
41
38
1. On the *Manually add members* page, select all the virtual networks and select **Add**.
42
-
43
-
:::image type="content" source="./media/create-virtual-network-manager-portal/add-virtual-networks.png" alt-text="Screenshot of add virtual networks to network group page.":::
44
-
45
39
1. To review the network group membership manually added, select **Group Members** on the *Network Group* page under **Settings**.
46
40
47
-
:::image type="content" source="./media/how-to-create-hub-and-spoke/group-members-list.png" alt-text="Screenshot that shows a list of group members.":::
48
-
49
41
## Create a mesh connectivity configuration
50
42
51
43
This section guides you through how to create a mesh configuration with the network group you created in the previous section.
@@ -63,8 +55,6 @@ This section guides you through how to create a mesh configuration with the netw
63
55
64
56
1. On the **Topology** tab, select the **Mesh** topology if not selected, and leave the **Enable mesh connectivity across regions** unchecked. Cross-region connectivity isn't required for this set up since all the virtual networks are in the same region.
65
57
66
-
:::image type="content" source="./media/create-virtual-network-manager-portal/topology-configuration.png" alt-text="Screenshot of topology selection for network group connectivity configuration.":::
67
-
68
58
1. On the *Add network groups* page, select the network groups you want to add to this configuration. Then select **Select** to save.
69
59
70
60
1. Select **Review + create** and then **Create** to create the mesh connectivity configuration.
@@ -77,8 +67,6 @@ To have this configuration take effect in your environment, you need to deploy t
77
67
78
68
1. On the *Deploy a configuration* page, select the following settings:
79
69
80
-
:::image type="content" source="media/how-to-create-mesh-network/deploy-config.png" alt-text="Screenshot of deploy a configuration page.":::
81
-
82
70
| Setting | Value |
83
71
| ------- | ----- |
84
72
| Configurations | Select **Include connectivity configurations in your goal state**. |
Copy file name to clipboardExpand all lines: articles/virtual-network-manager/how-to-define-network-group-membership-azure-policy.md
+2-2Lines changed: 2 additions & 2 deletions
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -156,7 +156,7 @@ This example uses the **OR** logical operator to separate two conditional statem
156
156
157
157
* Basic editor:
158
158
159
-
:::image type="content" source="./media/how-to-exclude-elements/or-operator.png" alt-text="Screenshot of network group conditional statement using the OR logical operator.":::
159
+
:::image type="content" source="./media/how-to-define-network-group-membership-azure-policy/or-operator.png" alt-text="Screenshot of network group conditional statement using the OR logical operator.":::
160
160
161
161
* Advanced operator:
162
162
@@ -181,7 +181,7 @@ The `"anyOf"` parameter contains both the conditional statements that are separa
181
181
182
182
* Basic editor:
183
183
184
-
:::image type="content" source="./media/how-to-exclude-elements/both-operator.png" alt-text="Screenshot of network group conditional statement using both OR and AND logical operator.":::
184
+
:::image type="content" source="./media/how-to-define-network-group-membership-azure-policy/both-operator.png" alt-text="Screenshot of network group conditional statement using both OR and AND logical operator.":::
Copy file name to clipboardExpand all lines: articles/virtual-network-manager/how-to-view-applied-configurations.md
+4-5Lines changed: 4 additions & 5 deletions
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -51,15 +51,14 @@ Learn more about [Azure Resource Graph queries using Resource Graph Explorer](..
51
51
52
52
Once your configuration has been deployed by Virtual Network Manager, you can view the applied configuration from the virtual network resource.
53
53
54
-
1. Go to your virtual network resource and select **Network Manager** under *Settings*. On the Connectivity tab, you see all the connectivity configurations the virtual network is associated with.
54
+
1. Go to your virtual network resource and select **Network Manager** under *Settings*. On the Connectivity tab, view all the connectivity configurations the virtual network is associated with.
55
55
56
56
:::image type="content" source="./media/how-to-view-applied-configurations/vnet-connectivity.png" alt-text="Screenshot of connectivity configuration associated to a virtual network.":::
57
57
58
-
2. Select the **Security admin configurations** tab to see all the security rules currently applied to your virtual network.
58
+
2. Select the **Security admin configurations** tab to view all the security rules currently applied to your virtual network.
59
59
60
60
:::image type="content" source="./media/how-to-view-applied-configurations/vnet-security.png" alt-text="Screenshot of security rules associated to a virtual network.":::
61
61
62
-
63
62
## Virtual machine visibility
64
63
65
64
At the virtual machine level, you can view security rules applied by Virtual Network Manager and the effective routes for the connectivity configurations.
@@ -72,13 +71,13 @@ At the virtual machine level, you can view security rules applied by Virtual Net
72
71
73
72
:::image type="content" source="./media/how-to-view-applied-configurations/vm-inbound-rules.png" alt-text="Screenshot of virtual machine outbound security rules.":::
74
73
75
-
3. Select the **Outbound port rules** tab to see the outbound security rules for the virtual machine.
74
+
3. Select the **Outbound port rules** tab to view the outbound security rules for the virtual machine.
76
75
77
76
:::image type="content" source="./media/how-to-view-applied-configurations/vm-outbound-rules.png" alt-text="Screenshot of virtual machine inbound security rules.":::
78
77
79
78
### Effective routes
80
79
81
-
1. To see the effective routes for the applied connectivity configuration, select the network interface name under the *Networking* settings of the virtual machine.
80
+
1. To view the effective routes for the applied connectivity configuration, select the network interface name under the *Networking* settings of the virtual machine.
0 commit comments