- Видео 82
- Просмотров 237 622
Adam Stuart
Великобритания
Добавлен 6 окт 2013
Cloud Networking videos with bias towards Microsoft Azure.
Azure Virtual WAN Route Maps (with BGP Peering)
Azure Virtual WAN Route Maps (with BGP Peering)
Просмотров: 829
Видео
Azure Gateways BGP deep-dive - ExpressRoute, VPN, Route Server
Просмотров 2,7 тыс.14 дней назад
00:00 Intro 04:40 Topology detail 05:55 On-premises VPN configuration 10:07 Azure VPN Gateway configuration 12:33 Azure Route Server 13:08 VPN Gateway BGP peers 14:10 VPN Gateway BGP routes 16:38 ExpressRoute Circuit BGP peers 18:48 ExpressRoute Gateway BGP routes 20:24 Packet walk 22:40 Disable ARS Branch-to-branch Daniel's lab: github.com/dmauser/Lab/tree/master/RS-ER-VPN-Gateway-Transit
ExpressRoute AZ Gateway Powershell demo (no audio)
Просмотров 150Месяц назад
Single GatewaySubnet prefix, /27 subnet size, High perf to ERGW1AZ SKU.
Azure Firewall Private DNAT (Solutions for Overlapping IP addresses in Azure Part 2)
Просмотров 4802 месяца назад
ruclips.net/video/K3-isCrb17o/видео.html techcommunity.microsoft.com/t5/azure-network-security-blog/private-ip-dnat-support-and-scenarios-with-azure-firewall/ba-p/4230073?trk=feed-detail_main-feed-card_feed-article-content
Proxy via Private Link - Disconnected VNets, centralised Internet egress
Просмотров 5884 месяца назад
Proxy via Private Link - Disconnected VNets, centralised Internet egress
Virtual Network Flow Logs vs ExpressRoute Traffic Collector
Просмотров 6144 месяца назад
Comparing these two Azure networking visibility features, which tool is right for the job? Spoiler; there is a use case for both :).
ExpressRoute Traffic Collector
Просмотров 7065 месяцев назад
learn.microsoft.com/en-us/azure/expressroute/traffic-collector
Virtual WAN Route-maps to fix asymmetric routing
Просмотров 9345 месяцев назад
learn.microsoft.com/en-us/azure/virtual-wan/route-maps-how-to
Migrating to an AZ-enabled ExpressRoute Gateway
Просмотров 8285 месяцев назад
Discussion of why this is importance, and technical demo showing process, discussion of caveats and considerations. learn.microsoft.com/en-us/azure/expressroute/gateway-migration 00:00 Introduction 01:08 Why AZ gateways are important 03:04 ExpressRoute gateway SKU and upgrade paths 05:02 Multiple prefixes on gateway subnet 06:35 Considerations 07:15 Demo
Customisation controls for connectivity between Virtual Networks over ExpressRoute
Просмотров 6236 месяцев назад
techcommunity.microsoft.com/t5/azure-networking-blog/customisation-controls-for-connectivity-between-virtual-networks/ba-p/4147722
Who is using my ExpressRoute bandwidth? (VNet Flow logs demo, queries and dashboards)
Просмотров 1,8 тыс.6 месяцев назад
In this video we discuss the options for ExpressRoute traffic analysis including Azure Firewall top flows, ExpressRoute traffic collector and VNet Flow logs. This includes a technical demo of Flow Logs and integration with Azure Dashboards for ease of viewing. We also touch on some considerations in relation to pricing, retention, and the options of where to enable the feature. 00:00 Introducti...
Application Gateway WAF - Custom Rules and Log Scrubbing (XFF, X-forwarded-for, true-client-ip, etc)
Просмотров 6766 месяцев назад
Talk a little about chaining of Edge solutions such as Azure Front Door, Akamai or Cloudflare in front of Application Gateway, implication for tracking client IP, how to still use client data to influence AppGw/WAF logic and a technical demo of it working including removing IP data via log scrubbing.
ExpressRoute Metro SKU
Просмотров 1 тыс.7 месяцев назад
azure.microsoft.com/en-us/updates/expressroutemetro/ learn.microsoft.com/en-us/azure/expressroute/metro learn.microsoft.com/en-us/azure/expressroute/design-architecture-for-resiliency
ExpressRoute resilience - common design errors
Просмотров 2,9 тыс.8 месяцев назад
learn.microsoft.com/en-us/azure/expressroute/gateway-migration learn.microsoft.com/en-us/azure/expressroute/expressroute-howto-circuit-portal-resource-manager?pivots=expressroute-preview learn.microsoft.com/en-us/azure/expressroute/virtual-network-connectivity-guidance ruclips.net/video/CuXOszhSWjc/видео.html
Azure ExpressRoute platform filtering of transit-originated routes
Просмотров 1,2 тыс.9 месяцев назад
learn.microsoft.com/en-us/azure/virtual-wan/virtual-wan-faq#when-theres-an-expressroute-circuit-connected-as-a-bow-tie-to-a-virtual-wan-hub-and-a-standalone-vnet-what-is-the-path-for-the-standalone-vnet-to-reach-the-virtual-wan-hub
Private Link Service for high throughput inter region secure transfers
Просмотров 5299 месяцев назад
Private Link Service for high throughput inter region secure transfers
Azure Virtual WAN (non Routing Intent) Secured to Non-Secured Hub Routing
Просмотров 1 тыс.11 месяцев назад
Azure Virtual WAN (non Routing Intent) Secured to Non-Secured Hub Routing
Azure Virtual WAN - Advanced Routing Intent Designs
Просмотров 4,4 тыс.11 месяцев назад
Azure Virtual WAN - Advanced Routing Intent Designs
Secure (outbound) ExpressRoute to untrusted Third Parties with Azure Firewall
Просмотров 57811 месяцев назад
Secure (outbound) ExpressRoute to untrusted Third Parties with Azure Firewall
Does my traffic stay on the Microsoft Network?
Просмотров 1 тыс.Год назад
Does my traffic stay on the Microsoft Network?
Managing Outbound SNAT with Azure Firewall and large scale VDI
Просмотров 1,7 тыс.Год назад
Managing Outbound SNAT with Azure Firewall and large scale VDI
Azure Virtual WAN Routing Intent summary routes (ExpressRoute Transit + AVS)
Просмотров 1,6 тыс.Год назад
Azure Virtual WAN Routing Intent summary routes (ExpressRoute Transit AVS)
Azure Virtual WAN Routing Intent + Azure VMware Solutions
Просмотров 1,9 тыс.Год назад
Azure Virtual WAN Routing Intent Azure VMware Solutions
An introduction to Multicloud Networking
Просмотров 939Год назад
An introduction to Multicloud Networking
Dual Azure Firewall to handle Public IP On-Premises via Forced Tunnel
Просмотров 2,3 тыс.Год назад
Dual Azure Firewall to handle Public IP On-Premises via Forced Tunnel
Azure Networking transit routing with BGP and VPN Gateways (PS. Don't forget the return path)
Просмотров 6 тыс.Год назад
Azure Networking transit routing with BGP and VPN Gateways (PS. Don't forget the return path)
Active/Active NVA on Azure with HaPorts (Palo Alto and SAP RISE)
Просмотров 3,2 тыс.Год назад
Active/Active NVA on Azure with HaPorts (Palo Alto and SAP RISE)
Azure Private Link - optimized dataplane and global routing
Просмотров 1,9 тыс.Год назад
Azure Private Link - optimized dataplane and global routing
NVA internet breakout and default route origination in Azure VWAN (BGP Peering, Static Routes, AVS)
Просмотров 2,1 тыс.Год назад
NVA internet breakout and default route origination in Azure VWAN (BGP Peering, Static Routes, AVS)
This can now be fixed using this update, I might do a video on it soon: learn.microsoft.com/en-us/azure/dns/private-dns-fallback
I have a scenario, with no route server, where VPN GW is using a different AS number than default. I see the VPN routes in the ER GW with the CLI command "..vnet-gateway list-learned-routes...", as EBGPs pointing to VPN GW. I guess that's because they're externals, right? But why are they then not announced to the MSEEs/Circuit? Can you help me get my head around that. Thanks! From ER GW learned-routes(VPN GW has ASN 65009): 10.32.32.0/20 10.71.0.50 EBgp 10.71.0.50 65009
@@thomaswinther8774 you certainly need azure route server to make er to vpn transit work.
Very informative video.. Thank you mate
Love your videos mate, very helpful.
Thanks Adam.
Thanks Adam would this work if the azure gw was doing p2s instead of S2S, could VPN clients connect back to the express route ?
Officially that is still unsupported with Route Server, its supported on VWAN today. Doc: learn.microsoft.com/en-us/azure/route-server/route-server-faq#can-azure-route-server-provide-transit-between-expressroute-and-a-point-to-site-p2s-vpn-gateway-connection-when-enabling-the-branch-to-branch
Technically unsupported according to the docs but I have implemented it and it did work for p2s users getting to on prem. This was a split tunnel however, not full tunnel which as Adam mentioned is only supported with virtual wan
Good stuff as always! If we had FastPath enabled, how would it affect the flows?
ruclips.net/video/WyhlMU3XEKE/видео.htmlsi=vqqu5uMDxur1bllK :)
Thanks. Very informative!
Love the detail and clarity , as always 😊 , thanks @Adam and @Daniel
where did you buy Fracture sandal? Is it availanle in india ?
How long did u use the walkingshooe?
After 5 th metartasal fracture how many days days after can u walk pl reply
really appreciate the explanation. thanks!
Thanks for the great video. Just curious if adding a second prefix is a must? And does the second prefix is just for temporary use during the migration?
This feature now works without needing to add second prefix, docs have been updated on official site.
Whic will be the proxy-id/cryptomap to define on third-parti firewall? Any to Any?
Thx you so much i am also suffering 5th metatarsal facture from 1 month your video is motivation to us great sir
The mandatory snat requirement has now been removed. October 2024.
How can we preserve client IP prior to traffic being routed by Application Gateway for reporting purposes.
No kidding I've been actually waiting for exactly this video ever since Microsoft has announced this feature! Thanks a lot, amazing walkthrough ❤️
Awesome thanks Adam
“Breaking the fifth metatarsal is a stupidly disproportionate consequence just for slightly landing wrong in a ballet jump.”
Thank you for the video sir, I snapped my 5th stepping of a bus, I thought I rolled my ankle. Kept driving for about 1 1/2 hours, working y ankle thought if I can finish my shift, then take care of it after work. Tried to step off and use the restroom and once I put a little weight on it I knew it was broke. Tendon pulled and gave me a Jones fracture. At the ER they X-rayed and gave me a boot and crutches. The Orthopedic said there was 2-3 mm of space between the break. He said no surgery for now come back in 6 weeks. 4 weeks in, I’m walking around with the boot but no crutches. I’m worried and curious what he’s going to say in 2 weeks. Thanks to you and some of your commenters I can see that the dark places I’ve been is not uncommon. I’ll try to give an update, thanks again and bless you and your family, as well as the people that commented.🙏🏼🙏🏼
Is it possible to route internet traffic from a non secured hub to via the firewall in the secured hub? How is that route done?
I had the exact same break. Infact our x-rays looked exactly the same. Non surgical immobilized treatments. I was off work 6 weeks and then returned. But work is walking 3-4 miles a day. 6 weeks after returning to work at a follow-up it showed non union and I rebroke the foot exactly in the same place. So now I'm back in the boot and waitingto see a doctor to get a 2nd opinion. We will see what happens.
Wow sounds horrendous to rebreak in the same place, really hope it works out for you in the end.
Hi Adam, would scenario 1 work without the route server in place or is that necessary for NVA to talk to ER gateway? We have an almost identical scenario to scenario 1 but trying to use a VPN gateway instead of an NVA and struggling to learn the routes across the tunnel.
Hey. Er to vpn requires ars 😊
Do I need to use Virtual WAN or I can deploy Virtual Network Gateway instead because it is 3 times cheaper. Is there any alternative to Azure Firewall ? I found options to deploy custom NVA but still the overall price is really high. The goal is to get a cheap VPN solution with internet breakout.
Always great content - thank you, Adam!
Hello, Thanks a lot for your video. I have a question: I have all my VNets associated with the default RTB and propagated to none. Similarly, I have my branches associated with the default RTB and propagated to none. On my default RTB, I have the RFC1918 with the next hop set to the firewall. You mentioned that the flow will work based on the “logic of the platform.” Could you please elaborate on this? I have designed this architecture to ensure that all traffic passes through my firewall. Thanks for your time!
I'm not sure about elaborating on that, I forget what I implied, but I can tell you that the logic you describe will result in all traffic going through the FW.
@@AdamStuart1 Thank you very much for your response. Yes, I confirm that the traffic is passing through the firewall. What bothers me is that it is not possible in this case to access the firewall’s routing table to be sure. (I have already opened several tickets with Azure without success). My model assures me that all traffic passes through the firewall, but I do not have direct access to the routing table. I gain in security but lose in visibility… What a shame! I could propagate both the branches and the VNets into another routing table and not associate it with anyone, but I don’t like making such big changes to my production environment.
@@MrDiaporama Think of it like this. The VNets dont know about anything other than the RFC1918 summary routes, you can seee this in the effective routes of a VM. So they send all traffic to the only nexthop they know, the AZFW. From branches, traffic enters your Hub via the VNG, this behind the scenes us programmed with logic to route all traffic to AZFW, rather than use vnet peering. Of course you can just block/allow traffic in AZFW, or check its logs, to verify its in the dataplane.
@@AdamStuart1 Thanks a lot for your time and your answer Adam !
Thank you for posting this video! I broke my fifth metatarsal 35 years ago when I was 32 years old and now that I am 68 I broke it again! I was preparing for hurricane in Louisiana. I rolled my foot just like you did. my break is not as bad as yours. My doctor put me in a walking boot and I have been walking on it since it happened with little discomfort. My question is did your ankle lose strength because I noticed you use a shoe which allows your ankle to move. I am worried that my ankle would become weak from staying in a boot for 4 to 6 weeks.I would like to try the shoe like you have
Thank you for posting this video! I broke my fifth metatarsal 35 years ago when I was 32 years old and now that I am 68 I broke it again! I was preparing for hurricane in Louisiana. I rolled my foot just like you did. my break is not as bad as yours. My doctor put me in a walking boot and I have been walking on it since it happened with little discomfort. My question is did your ankle lose strength because I noticed you use a shoe which allows your ankle to move. I am worried that my ankle would become weak from staying in a boot for 4 to 6 weeks.I would like to try the shoe like you have
Taking off the boot to do ankle mobility exercises should help somewhat. Be sure to start easy (fully unweighted) and progress only gradually, within your pain tolerance. There are several RUclips videos on this topic if you search around.
Hello Adan, How we can inspect traffic from private link service to backends with Azure Firewall? For example AFD->PE->PLS->Private AGW->ILB->Ingress?
@@yordandimov4775 insert the azfw after appgw before backend.
@@AdamStuart1 Could it be achieved between PLS and ILB in different vents, or it's always P2P because network policies limitation where UDR cannot be applied?
Please create some videos on AKS private network
thanks..this gives me some sense of what to expect..... completed the second week today of complete rest....RHR has gone up from 44-47 to 50-52....I guess another 4-5 months before I can restart my fitness routine
That was the hardest part for me, losing the routine and feeling of being active! The broken bone was the easy part! Good luck for your recovery!
This is great thanks! Looking at a S2S option for a client, and this looks like, possibly the less complicated route!
There is also now Azure Firewall option, will do a video on this at some point techcommunity.microsoft.com/t5/azure-network-security-blog/private-ip-dnat-support-and-scenarios-with-azure-firewall/ba-p/4230073?trk=feed-detail_main-feed-card_feed-article-content
@@AdamStuart1 both interesting and expensive!
My case was jones fracture. Had been in cast for 4 weeks. Now its been 3 weeks past removing the cast ( 7 weeks totally), it can feel the recovery and no pain ( just some uncomfortable odd feeling over there) but the thing WORRYING ME IS there is a slight SWELLING ( i can see that by comparing both the foot). Is that fine?
Don't know, I'm not a Dr. I had no lasting swelling, only larger bone due to ossification.
Two years out, any complications? I'm dealing with this exact situation, 6 weeks in, nearly identical fractures.
3 years out now! After 1 year I was still getting the odd ache/pain, but nothing that has stopped me putting on over 1000 miles a year running on the foot. These days I don't get twinges. The only lasting affect is that the bone feels different, large amount of ossification around the joint, makes it feel very bumpy compared to the other foot. I do still worry about the strength of the healing, and whether or not it would break again easily if I over-rotated the foot, but thats probably all mental. Good luck with your recovery.
@@AdamStuart1 thanks for your reply! Really appreciate how thorough you're beign with all this. FWIW, I asked that exact question to my ortho here at Cedars Sinai in Los Angeles, how durable will it be two years, three, five etc, two decades down the line? His answer was that after the first two years, the calcification and added length only reduces our possibility of re-injuring it the same way, TLDR, we made our bone a little longer so it'll give a little more if we go to far with it. But lets not test that theory out...
@@HowBoutPat thats an interesting insight
Thanks, Adam. This is helpful :)
Great video, thanks
No need to put your foot up? You did not Spring your ankle? No hot or could therapy? No anti-inflammatory
No displaced is no surgery Displaced maybe?
thanks
Hi adam, three weeks ago, same metatarsal base fracture, avulsion one, NHS told me 6 weeks to recover, gave boot & crutches! How long it took you take off that, walk normal! NHS told me 3rd September for review... Thanks...
@@sasi_4395 good luck I think I cover your q in video
@@AdamStuart1 thank you, how long for you the swelling completely goes out...!?
@@AdamStuart1 Adam, that park is sunset park in Birmingham city centre, I'm living nearby, Milford grove.......
Do you have a link for that boot at 12:56 - I would love to find that.
Hi there, it was given to me by NHS. If you google "raised heel medical shoe" you will see lots of options around £15. I wish you well
How exactly does one get the IP of the virtual hub router out of their vWAN Hub?
I fractured my 5th metatarsal of left foot on 1st July, it was Jones fracture, mildly displaced. within 2hrs doctor put me in pop cast, I spent 8 days in that cast but started feeling numbness, I replaced the pop cast with fiberglass cast, but within 3 days started feeling severe pain , numbness and tingling sensations in foot. So got it remove too. So on 11th day I was out of cast and my doctor put me in a boot, I tried to put partial weight on my foot from 14th day, but I felt some pain so doctor told me to stop putting pressure on foot completely. I used walker in those days. Bruises were quite visible till 20th day, after 24th day bruises were completely gone. ( There was nothing like swelling on my foot when I removed cast only bruises were there). After 35 days I started walking without walker but only with boot, but started feeling pain at night. So I again started to use walker. After 39 day went to doctor for checkup. Doc saw my foot, moved my foot around and asked me do u feel any pain or sudden current sort of feel. I said just a slight pain. He said u can get back to your normal life now, hard callus was quite visible through the skin 😅, so he said no need for x-ray and u can start walking in joggers, u can also use boot if u feel uncomfortable, and gave me some pain killers for 2 weeks.today is 10th Aug and I'm walking in joggers with baby steps, there is slight limping, but I'm working on it. My diet was mutton almost every day for a month, veggies twice a week, seasonal fruits daily, vitamin D3, B12,b6, zinc and calcium supplements of course.
hey, how to find out that random public ip address hub is using?
Great Video Adam. This helped me a lot with my RTO. Keep it up !!
Thanks for sharing your experience. I got a fracture in my 5th metatarsal shaft 4 weeks back. Doctor has put the cast and asked to come for a check up in next 6 weeks. It is encouraging to see your recovery and how you have handled it. I am quite positive, with positive mindset and not thinking about injury body can heal a lot. Also liked your thought during injury we should keep body active and do some exercises as long as it is non weight bearing and not causing pain to the fractured foot.
I got a 5th metatarsal avulsion fracture 😢, especially managing alone
I had breast reduction surgery and went to take 1st post surgery shower, was attending to the incisions when all of a sudden I got very very dizzy and fainted ( had a Sagal response) woke up on the bathroom floor with very bad feet pain and went to er - the doctor " missed" that I had a Jones fracture and hairline fracture in the other foot even though I had xrays done! I caught it when looking over er report. Knew something wasn't right. That didn't help anything. 17:34 Anyhow I had surgery on the Jones fracture one week ago and that has been almost more painful than the break in my foot! Have to constantly keep the foot elevated or it just pounds and throbs. So their is not a swivel looking rod and 3 screws holding the bone together. So no weight bearing for 6 to 8 weeks and cam boot on the left foot for 6 to 8 weeks along with some sort of knee injury also from the fall. Can't really tell at this point if the left foot is healing- it's been in a boot for 3.5 weeks. Quite the ordeal
Thank you so much Adam! this is yet another best content from you. I wanted to understand that the first case where we are proposing using the High Resiliency ER (basically 2 circuits in different location) is that same as the Metro SKU (or the Metro SKU is more on the Primary and Seconday connections distributed across 2 cities and for now since its in preview its only in West Europe, South Asia and Switzerland North)? The reason I ask because with 2 different circuit i.e. high resiliency customer will have to pay for 2 circuits and if they use Metro SKU then its just distributing primary and secondary to 2 cities? If my understanding on Metro SKU is correct?