Skip to content

Commit ec81d8d

Browse files
authored
Merge pull request #295743 from duongau/securehub
Azure Firewall - Hub page (update with scenarios)
2 parents 2eb4c82 + 110623a commit ec81d8d

File tree

1 file changed

+141
-137
lines changed

1 file changed

+141
-137
lines changed

articles/networking/security/index.yml

Lines changed: 141 additions & 137 deletions
Original file line numberDiff line numberDiff line change
@@ -9,38 +9,40 @@ metadata:
99
description: Azure network security services provide security for your resources in Azure.
1010
ms.service: azure-firewall
1111
ms.topic: hub-page
12-
author: vhorne
13-
ms.author: victorh
12+
author: duongau
13+
ms.author: duau
1414
manager: kumudD
15-
ms.date: 09/16/2024
15+
ms.date: 03/04/2025
1616

17+
# highlightedContent section (optional)
18+
# Maximum of 8 items
1719
highlightedContent:
1820
# itemType: architecture | concept | deploy | download | get-started | how-to-guide | learn | overview | quickstart | reference | tutorial | whats-new
1921
items:
22+
# Card
2023
- title: Azure network security overview
2124
itemType: overview # controls the icon image and super-title text
2225
url: ../../security/fundamentals/network-overview.md
26+
# Card
2327
- title: Azure best practices for network security
2428
itemType: concept
2529
url: ../../security/fundamentals/network-best-practices.md
30+
# Card
2631
- title: What's new in Azure Networking and Security?
2732
itemType: whats-new
2833
url: https://azure.microsoft.com/en-us/updates/?category=networking&query=security
29-
- title: Azure Well-Architected Framework review - Azure Firewall
30-
itemType: architecture
31-
url: /azure/well-architected/services/networking/azure-firewall
34+
# Card
3235
- title: Azure Networking security blog
3336
itemType: concept
3437
url: https://techcommunity.microsoft.com/t5/azure-network-security-blog/bg-p/AzureNetworkSecurityBlog
38+
# Card
3539
- title: Azure network security webinars
3640
itemType: video
3741
url: https://techcommunity.microsoft.com/t5/security-compliance-and-identity/recordings-security-community-webinars/ba-p/2865990
42+
# Card
3843
- title: Choose a secure network topology
3944
itemType: concept
4045
url: ../secure-network-topology.md
41-
- title: Azure networking services overview
42-
itemType: concept
43-
url: ../fundamentals/networking-overview.md
4446

4547
productDirectory:
4648
title: Get started
@@ -58,151 +60,153 @@ productDirectory:
5860
imageSrc: https://static.docs.com/ui/media/product/azure/ddos-protection.svg
5961
url: ../../ddos-protection/index.yml
6062

63+
# conceptualContent section (Optional; Remove if not applicable.)
6164
conceptualContent:
65+
# itemType: architecture | concept | deploy | download | get-started | how-to-guide | training | overview | quickstart | reference | sample | tutorial | video | whats-new
66+
# Supports up to 3 subsections
6267
sections:
68+
# Section 1
6369
- title: Use cases and scenarios
70+
summary: Explore common use cases and scenarios for Azure network security services.
6471
items:
65-
- title: Secure your perimeter
72+
# Card 1
73+
- title: Secure hub-and-spoke virtual network topology
6674
links:
67-
- text: Protect my outbound network connections
68-
itemType: learn
69-
url: ../../firewall/overview.md
70-
- text: Protect my inbound web application connections
71-
itemType: learn
72-
url: ../../web-application-firewall/overview.md
73-
- text: Implement a secure hybrid network
75+
- url: /azure/architecture/reference-architectures/dmz/secure-vnet-dmz?tabs=portal
76+
itemType: architecture
77+
text: Implement a secure hybrid network
78+
- url: ../../firewall/firewall-multi-hub-spoke.md
79+
itemType: concept
80+
text: Route multi hub and spoke topology with Azure Firewall
81+
- url: ../../firewall/tutorial-hybrid-portal-policy.md
82+
itemType: tutorial
83+
text: Secure hub-and-spoke virtual network topology
84+
- url: ../../ddos-protection/ddos-protection-reference-architectures.md
7485
itemType: architecture
75-
url: /azure/architecture/reference-architectures/dmz/secure-vnet-dmz?tabs=portal
76-
- title: Secure your virtual networks
86+
text: DDoS protection for network architectures
87+
# Card 2
88+
- title: Protect Virtual WANs at scale
7789
links:
78-
- text: Inspect traffic to a private endpoint
79-
itemType: reference
80-
url: https://techcommunity.microsoft.com/t5/azure-network-security-blog/deploy-azure-firewall-to-inspect-traffic-to-a-private-endpoint/ba-p/3714575
81-
- text: Monitor and troubleshoot your end-to-end Azure network infrastructure
82-
itemType: learn
83-
url: /training/modules/troubleshoot-azure-network-infrastructure/
84-
- text: Hub-spoke network topology in Azure
90+
- url: /security/zero-trust/azure-virtual-wan
8591
itemType: architecture
86-
url: /azure/architecture/reference-architectures/hybrid-networking/hub-spoke
87-
- text: Azure Network Virtual Application Firewall architecture
92+
text: Apply Zero Trust principles to Azure Virtual WAN
93+
- url: ../../firewall-manager/secured-virtual-hub.md
94+
itemType: concept
95+
text: What is a secure virtual hub?
96+
- url: ../../firewall-manager/vhubs-and-vnets.md
8897
itemType: architecture
89-
url: /azure/architecture/example-scenario/firewalls/
90-
- title: Protect your apps and services
98+
text: Azure Firewall Manager architecture
99+
- url: ../../firewall-manager/secure-cloud-network.md
100+
itemType: tutorial
101+
text: Secure your virtual hub with Azure Firewall
102+
# Card 3
103+
- title: Zero trust for web applications
91104
links:
92-
- text: Protect my service from DDoS attacks
93-
itemType: learn
94-
url: ../../ddos-protection/ddos-protection-overview.md
95-
- text: Learn more about Azure DDoS Protection
105+
- url: ../../web-application-firewall/overview.md
96106
itemType: overview
97-
url: ../../ddos-protection/index.yml
98-
- text: Introduction to Azure DDoS Protection
99-
itemType: training
100-
url: /training/modules/introduction-azure-ddos-protection/
101-
- text: Use Azure Firewall to help protect an Azure Kubernetes Service (AKS) cluster
102-
itemType: architecture
103-
url: /azure/architecture/guide/aks/aks-firewall
104-
105-
- title: Learn more about Azure network security
107+
text: WAF on Azure Application Gateway
108+
- url: ../../web-application-firewall/ag/application-gateway-web-application-firewall-portal.md
109+
itemType: quickstart
110+
text: Create an application gateway with a Web Application Firewall
111+
- url: ../../web-application-firewall/ag/policy-overview.md
112+
itemType: overview
113+
text: WAF policy for Azure Application Gateway
114+
- url: ../../application-gateway/tutorial-protect-application-gateway-ddos.md
115+
itemType: tutorial
116+
text: DDoS protection for Azure Application Gateway
117+
# Card 4
118+
- title: Deliver cloud content securely
119+
links:
120+
- url: ../../web-application-firewall/afds/afds-overview.md
121+
itemType: overview
122+
text: WAF on Azure Front Door
123+
- url: ../../web-application-firewall/afds/waf-front-door-create-portal.md
124+
itemType: quickstart
125+
text: Create a WAF policy on Azure Front Door by using the Azure portal
126+
- url: ../../web-application-firewall/afds/waf-front-door-policy-settings.md
127+
itemType: overview
128+
text: WAF policy for Azure Front Door
129+
- url: ../../frontdoor/front-door-ddos.md
130+
itemType: concept
131+
text: DDoS protection for Azure Front Door
132+
# Section 2
133+
- title: Learn more
134+
summary: Learn more about network security services.
106135
items:
107-
- title: Scenarios
108-
links:
109-
- text: Securely access my PaaS Services in Azure
110-
itemType: overview
111-
url: ../../private-link/private-link-overview.md
112-
- text: Create a private interface to connect to a service
113-
itemType: overview
114-
url: ../../private-link/private-endpoint-overview.md
115-
- text: Connect a service using a private link
116-
itemType: overview
117-
url: ../../private-link/private-link-service-overview.md
118-
- text: Apply Zero Trust principles to a spoke virtual network with Azure PaaS Services
119-
itemType: concept
120-
url: /security/zero-trust/azure-infrastructure-paas
121-
- text: Secure networks with Zero Trust
122-
itemType: concept
123-
url: /security/zero-trust/deploy/networks
124-
- text: Filter network traffic between Azure resources
125-
itemType: concept
126-
url: ../../virtual-network/network-security-groups-overview.md
127-
- text: Secure access to Azure services
128-
itemType: concept
129-
url: ../../virtual-network/virtual-network-service-endpoints-overview.md
130-
- text: Deploy security admin rules with Virtual Network manager
131-
itemType: how-to-guide
132-
url: ../../virtual-network-manager/how-to-block-network-traffic-portal.md
133-
- text: Apply Zero Trust principles to a spoke virtual network in Azure
134-
itemType: concept
135-
url: /security/zero-trust/azure-infrastructure-iaas
136-
- text: Apply Zero Trust principles to a hub virtual network in Azure
137-
itemType: concept
138-
url: /security/zero-trust/azure-infrastructure-networking
139-
- text: Implement the Zero Trust model
140-
itemType: reference
141-
url: https://techcommunity.microsoft.com/t5/azure-network-security-blog/zero-trust-with-azure-network-security/ba-p/3668280
142-
- text: Apply Zero Trust principles to an Azure Virtual WAN deployment
143-
itemType: concept
144-
url: /security/zero-trust/azure-virtual-wan
145-
146-
- title: Training
147-
links:
148-
- text: Introduction to Azure Private Link
149-
itemType: training
150-
url: /training/modules/introduction-azure-private-link/
151-
- text: Design and implement private access to Azure Services
152-
itemType: training
153-
url: /training/modules/design-implement-private-access-to-azure-services/
154-
- text: Encrypt network traffic end to end with Application gateways
155-
itemType: training
156-
url: /training/modules/end-to-end-encryption-with-app-gateway/
157-
- text: Configure network security groups
158-
itemType: training
159-
url: /training/modules/configure-network-security-groups/
160-
- text: Secure and isolate access to Azure resources by using network security groups and service endpoints
161-
itemType: training
162-
url: /training/modules/secure-and-isolate-with-nsg-and-service-endpoints/
163-
- text: Connect my on-premises network to Azure with VPN gateways
164-
itemType: training
165-
url: /training/modules/connect-on-premises-network-with-vpn-gateway/
166-
- text: Design and implement network security
167-
itemType: training
168-
url: /training/modules/design-implement-network-security-monitoring/
169-
- text: Design solutions for network security
170-
itemType: training
171-
url: /training/modules/design-solutions-network-security/
172-
- text: Design and implement network monitoring
173-
itemType: training
174-
url: /training/modules/design-implement-network-monitoring/
175-
176-
- title: Architecture
177-
links:
178-
- text: Zero-trust network for web applications with Azure Firewall and Application Gateway
179-
itemType: architecture
180-
url: /azure/architecture/example-scenario/gateway/application-gateway-before-azure-firewall
181-
- text: Azure Private Link in a hub-and-spoke network
182-
itemType: architecture
183-
url: /azure/architecture/guide/networking/private-link-hub-spoke-network
184-
- text: Guide to Private Link and DNS in Azure Virtual WAN
185-
itemType: architecture
186-
url: /azure/architecture/guide/networking/private-link-virtual-wan-dns-guide
187-
- text: Secure network access to Kubernetes
188-
itemType: architecture
189-
url: /azure/architecture/aws-professional/eks-to-aks/private-clusters
190-
- text: Extend an on-premises network using ExpressRoute
136+
# Card 1
137+
- title: Learning paths and modules
138+
links:
139+
- url: /training/paths/introduction-azure-networking-services/
140+
itemType: training
141+
text: Introduction to key Azure network security services
142+
- url: /training/modules/design-implement-network-security-monitoring/
143+
itemType: training
144+
text: Design implement network security
145+
- url: /training/modules/secure-networking/
146+
itemType: training
147+
text: Secure networking
148+
- url: /training/modules/troubleshoot-network-security-issues/
149+
itemType: training
150+
text: Troubleshoot network security issues with Microsoft Azure
151+
# footerLink (optional)
152+
footerLink:
153+
url: https://learn.microsoft.com/training/browse/
154+
text: Browse all courses, learning paths, and modules.
155+
# Card 2
156+
- title: Patterns and practices
157+
links:
158+
- url: /azure/architecture/solution-ideas/articles/azure-security-build-first-layer-defense
191159
itemType: architecture
192-
url: /azure/architecture/reference-architectures/hybrid-networking/expressroute
193-
- text: Securely managed web applications
160+
text: Build the first layer of defense with Azure Security services
161+
- url: /azure/architecture/example-scenario/gateway/application-gateway-before-azure-firewall
194162
itemType: architecture
195-
url: /azure/architecture/example-scenario/apps/fully-managed-secure-apps
196-
- text: Mission-critical baseline architecture with network control
163+
text: Zero-trust network for web applications with Azure Firewall and Application Gateway
164+
- url: /security/zero-trust/azure-infrastructure-paas
197165
itemType: architecture
198-
url: /azure/architecture/reference-architectures/containers/aks-mission-critical/mission-critical-network-architecture
199-
- text: Build the first layer of defense with Azure Security services
166+
text: Apply Zero Trust principles to a spoke virtual network with Azure PaaS Services
167+
- url: /azure/architecture/reference-architectures/containers/aks-mission-critical/mission-critical-network-architecture
200168
itemType: architecture
201-
url: /azure/architecture/solution-ideas/articles/azure-security-build-first-layer-defense
202-
- text: Secure and govern workloads with network-level segmentation
169+
text: Mission-critical baseline architecture with network control
170+
- url: /azure/well-architected/services/networking/azure-firewall
203171
itemType: architecture
204-
url: /azure/architecture/reference-architectures/hybrid-networking/network-level-segmentation
172+
text: Azure Well-Architected Framework review - Azure Firewall
173+
# footerLink (optional)
174+
footerLink:
175+
url: https://learn.microsoft.com/en-us/azure/architecture/
176+
text: Browse the Azure Architecture Center.
177+
# Card 3
178+
- title: Metrics and logs
179+
links:
180+
- url: ../../firewall/monitor-firewall.md
181+
itemType: reference
182+
text: Monitor Azure Firewall
183+
- url: ../../web-application-firewall/ag/application-gateway-waf-metrics.md
184+
itemType: reference
185+
text: Monitor Azure Application Gateway WAF
186+
- url: ../../web-application-firewall/afds/waf-front-door-monitor.md
187+
itemType: reference
188+
text: Monitor Azure Front Door WAF
189+
- url: ../../ddos-protection/monitor-ddos-protection.md
190+
itemType: reference
191+
text: Monitor Azure DDoS Protection
192+
# Card 4
193+
- title: Frequently asked questions
194+
links:
195+
- url: /azure/firewall/firewall-faq
196+
itemType: reference
197+
text: Azure Firewall FAQ
198+
- url: /azure/web-application-firewall/ag/application-gateway-waf-faq
199+
itemType: reference
200+
text: WAF on Azure Application Gateway FAQ
201+
- url: /azure/web-application-firewall/afds/waf-faq
202+
itemType: reference
203+
text: WAF on Azure Front Door FAQ
204+
- url: /azure/ddos-protection/ddos-faq
205+
itemType: reference
206+
text: Azure DDoS Protection FAQ
205207

208+
# additionalContent section (optional)
209+
# Card with summary style
206210
additionalContent:
207211
sections:
208212
- title: Networking services
@@ -214,4 +218,4 @@ additionalContent:
214218
- title: Hybrid connectivity
215219
url: /azure/networking/hybrid-connectivity/
216220
- title: Network monitoring and management
217-
url: ../monitoring-management/index.yml
221+
url: /azure/networking/monitoring-management/

0 commit comments

Comments
 (0)