@@ -83,6 +83,38 @@ param subnets subnetType[] = [
8383 securityRules : []
8484 }
8585 }
86+ {
87+ name : 'deployment-scripts'
88+ addressPrefixes : ['10.0.4.0/24' ]
89+ networkSecurityGroup : {
90+ name : 'nsg-deployment-scripts'
91+ securityRules : []
92+ }
93+ delegation : 'Microsoft.ContainerInstance/containerGroups'
94+ serviceEndpoints : ['Microsoft.Storage' ]
95+ }
96+ {
97+ name : 'jumpbox'
98+ addressPrefixes : ['10.0.12.0/23' ] // /23 (10.0.12.0 - 10.0.13.255), 512 addresses
99+ networkSecurityGroup : {
100+ name : 'nsg-jumpbox'
101+ securityRules : [
102+ {
103+ name : 'AllowRdpFromBastion'
104+ properties : {
105+ access : 'Allow'
106+ direction : 'Inbound'
107+ priority : 100
108+ protocol : 'Tcp'
109+ sourcePortRange : '*'
110+ destinationPortRange : '3389'
111+ sourceAddressPrefixes : ['10.0.10.0/26' ] // Azure Bastion subnet
112+ destinationAddressPrefixes : ['10.0.12.0/23' ]
113+ }
114+ }
115+ ]
116+ }
117+ }
86118 {
87119 name : 'AzureBastionSubnet' // Required name for Azure Bastion
88120 addressPrefixes : ['10.0.10.0/26' ]
@@ -144,38 +176,6 @@ param subnets subnetType[] = [
144176 ]
145177 }
146178 }
147- {
148- name : 'deployment-scripts'
149- addressPrefixes : ['10.0.4.0/24' ]
150- networkSecurityGroup : {
151- name : 'nsg-deployment-scripts'
152- securityRules : []
153- }
154- delegation : 'Microsoft.ContainerInstance/containerGroups'
155- serviceEndpoints : ['Microsoft.Storage' ]
156- }
157- {
158- name : 'jumpbox'
159- addressPrefixes : ['10.0.12.0/23' ] // /23 (10.0.12.0 - 10.0.13.255), 512 addresses
160- networkSecurityGroup : {
161- name : 'nsg-jumpbox'
162- securityRules : [
163- {
164- name : 'AllowRdpFromBastion'
165- properties : {
166- access : 'Allow'
167- direction : 'Inbound'
168- priority : 100
169- protocol : 'Tcp'
170- sourcePortRange : '*'
171- destinationPortRange : '3389'
172- sourceAddressPrefixes : ['10.0.10.0/26' ] // Azure Bastion subnet
173- destinationAddressPrefixes : ['10.0.12.0/23' ]
174- }
175- }
176- ]
177- }
178- }
179179]
180180
181181@description ('Optional. Tags to be applied to the resources.' )
0 commit comments