Free SSL Certificate for your Azure App Service

Azure App Service Free SSL Cert

As is generally known, all services on the Internet must be encrypted. The SSL certificates of your trusted provider serve this purpose. Such certificates are often not inexpensive and / or associated with recurring administrative effort due to their renewal. However, Microsoft offers a free SSL Certificate for your Azure App Service. In this article, I go into more detail about the advantages and disadvantages. In addition, you can find a HowTo video on how to get a free App Service Certificate yourself or read about it directly at Microsoft Docs.

App Service PHP-Version Update

AppService-PHP-Update-Banner

Von Zeit zu Zeit benötigt jede Webseite ein Update. Sei das inhaltlich, oder das System im Hintergrund. Beispielsweise solltest du, wenn immer möglich die aktuelle PHP-Version verwenden. In diesem Blogpost zeige ich auf, wie du ein App Service PHP-Version Update auf Azure ganz einfach und schnell durchführen kannst, per GUI oder CLI.

Restore Azure App Service MySQL In-App Database

Header-AppSvc-MySQL-Restore

The Azure App Service offers the possibility to have backups created automatically by Azure. This backup also includes the MySQL in-app database, which is often used for a simple WordPress site. But when testing the restore, the surprise that WordPress needs to be reinstalled. This is because the database is not restored during the restore, only the backed up file structure. But more about that later. The following tutorial shows how you can test what problem occurs and how restoring the Azure App Service MySQL in-app database works anyway.

Automatically audit and deploy Azure Resource Locks with Azure Policies

Banner - Auto Azure RG Lock with policies

You can create resources very easily on the Azure platform. This is great, but it also provides a few risks. For example, you can delete resources or entire environments just as easily. What is very helpful for tests and demos can be very dangerous for integration and production environments. So you don't have to manage this manually, I wrote an Azure Policy code. This defines the automatic auditing and provisioning of Azure Resource Locks with Azure Policies.

ARM template deployment – Hub and Spoke with Bastion

ARM Template Hub and Spoke with Bastion

With an Azure Resource Manager (ARM) template, you can create a specific infrastructure on Azure with the click of a button. The template defines the infrastructure as code and Azure is thereby told the target state of the resources. I have created such a template and published it via Github. The ARM template deployment includes a hub and spoke network topology with a central Azure bastion for secure access to VMs. This post shows you step by step how to use the template for yourself.

Use Azure Bastion with VNet peering

Azure Bastion with VNet peering

The Microsoft PaaS "Azure Bastion" is a popular service to make your Azure networks more secure. However, until now there was a drastic limit. Azure Bastion could only be used in the same VNet. VMs in a peered network could not be accessed via Bastion. This circumstance pushes up the costs, because with a hub-and-spoke topology you have to place a bastion in each VNet. But these times are over. Use Azure Bastion with VNet peering (since 05.11.2020 in preview).

Become familiar with the Cloud Adoption Framework for Azure

get used to the Cloud Adoption Framework by Yannic Graber

The cloud continues to be on the unstoppable growth path and is an omnipresent topic to this day. However, there is no general answer to the question of whether and in what form the cloud is right for companies. This must be assessed on a case-by-case basis. And this is exactly where the difficulty lies, since companies have different levels of knowledge and are at a different point. Microsoft has recognized this and provides extensive help. No matter whether you and your company are still in the very beginning or already very advanced. Become familiar with the Cloud Adoption Framework for Azure (CAF) and use it to make the right decisions and standards.

The long awaited arrival of Azure Region Resource Mover

Azure Resource Region Mover

Mit dem an der Ignite 2020 angekündigten Azure Region Resource Mover kannst du wie der Name sagt, Azure Ressourcen in eine andere Region verschieben (offizielle Bekanntgabe). Der Service ist per sofort im Public Preview Modus verfügbar. Als Azure Advisor habe ich den Region Resource Mover bereits im Februar 2020 im Private Preview Modus für euch testen können. Erfahre mehr über meine ersten Erfahrungen und lerne, wie einfach es ist, deine Azure Ressourcen in eine andere Region zu verschieben. Es ist soweit – the arrival of Azure Region Resource Mover.

Azure Bastion - Secure access to Azure VMs

az bastion secure access vms

The work forms "home office", "remote work" or even "work anywhere" are becoming increasingly important, especially in recent months. This change affects not only users, but also IT staff and system administrators. However, I am often confronted with mistrust and security concerns when dealing with such issues. This is where Azure Bastion comes into play. Bastion not only enables "work anywhere" for system administrators, but also provides increased security and secure access to your Azure VMs without the need for a VPN!

Azure Bastion Planning and Implementation

Plan and Implement Azure Bastion - Banner

Azure Bastion is an Azure service that allows you to access your Azure VMs securely and centrally via the web portal. This allows you to enable your system administrators and system specialists to "work anywhere" without any security concerns. In this article I will not focus on the service itself, but rather on the steps necessary to plan and implement Azure Bastion.

en_GBEnglish