Professional Documents
Culture Documents
Alvin Lau
Account Technology Strategist
What is Azure?
Why use the Cloud?
Cloud Computing Stack
What is Azure?
The only
Productive for The cloud for The cloud you
consistent
developers intelligent apps can trust
hybrid cloud
Security & Platform Services Hybrid
Management Operations
What is Azure?
Multi-Factor
Authentication Backup
Infrastructure Services
Azure compute regions https://azure.microsoft.com/en-us/global-infrastructure/regions/
Hybrid Datacentre with
Azure
The consistent hybrid cloud
Storage Backup/DR Database App Integration
Azure Site
SQL Database Azure Service
Azure Storage Recovery &
as a Service Bus
Azure Backup
Azure
System Centre
Data SQL Server
StorSimple BizTalk Services
Protection 2016
Manager
On-premises
The consistent hybrid cloud
Identity Management Connectivity Consistency
Virtual
Operations
Azure Active Networks with
Management Azure
Directory ExpressRoute
Suite (OMS)
& VPN
Azure
Active On-premises
System Center Azure Stack
Directory network
On-premises
Power of Azure in your
datacenter
Microsoft Azure Stack is a
new hybrid cloud platform
product that enables
organizations to deliver
Microsoft Azure Stack Azure services from their
own datacenter.
Azure Stack; Not just the stack
Support
More than
More than
60%
Of Azure
marketplace
images are
Linux-based
© Microsoft Corporation
Linux
SECURING THE PLATFORM EMPOWERING YOU
Securing the Platform
Perimeter
Building
Computer room
SQL
✓ Uses Hyper-V – a battle tested
Database and enterprise proven
hypervisor
Scrubbed Traffic
✓ Azure monitors and
detects internally initiated
Scrubbing Array DDoS attacks and
removes offending VMs
SLB from the network
Application
Customer
Microsoft Azure ✓ Stored data accessible only
Admin
through claims-based IDM &
Customer 1 Customer 2
Portal
Smart API
access control with private key
Access
Control
SQL
Database
✓ VM switch at the host level blocks
inter-tenant communication
Security Team
Engaged
Event
Detected
Incident
Event Assessment Security Customer
Start Event Customer Process
Confirmed Step 1
Notification
Determine
Affected
Determine Azure
Customers
Customer Impact Customer
✓ In-depth 9-step incident response process Notification
✓ Focus on containment & recovery
✓ Makes contractual commitments regarding
customer notification + provides forensics
Logic Tier
✓ Regularly performs penetration testing
DOS/IDS Layer
Database Tier
Datacenter
Zone 1
Availability Availability
Zone 2 Zone 3
Region Region
Region 1 Region 2
Industry-leading broadest
Industry-only Industry-leading high availability SLA choice of data residency
© Microsoft Corporation
Azure networking resiliency solutions
Azure networking resiliency solutions
TCP Port 80
Overview
Massively
Simple, Premium Durable
scalable object
distributed storage for queues for Flexible NoSQL
storage for
cross-platform I/O-intensive large-volume database
unstructured
file system applications cloud services
data
Blob storage tiers
Hot Cool
Standard Premium
Disk type Hard Disk Drive (HDD) Solid State Drive (SSD)
Read only
F NV NC
Compute
Optimized GPU
L High H
Storage Performance
Optimized Compute
Marketplace images
Microsoft
Open Source
Save up to 55% in Azure for Windows Server and SQL Server workloads1
Azure Hybrid Benefit for Windows Server Azure Hybrid Benefit for SQL Server
Convert, or re-use Windows licensing with Convert SQL licensing with active software
active software assurance in Azure for IaaS assurance to save up in Azure for IaaS and PaaS
Significantly reduce costs, paying the ‘base rate’ Use licenses on premise and under the Hybrid
in Azure Benefit simultaneously for 180 days
1Savings may be higher when that Azure Hybrid Benefit for Windows Server and SQL Server are used together or ‘stacked’ in IaaS
Introducing – Azure Hybrid Benefit (AHB)
Save up to 49% in Azure for Windows Server Save up to 55% in Azure for SQL Server with
with AHB AHB
Cost Pay-as-you-go WS + AHB Pay-as-you-go SQL + AHB
$$
49%
Up to 55%
$ Total monthly
savings
$$
cost of 8 vCore
Managed
Instance
Business Customer
Critical option total cost
$ License
included
With Azure
Hybrid Benefit
Disclaimers
• Sample annual cost comparison of two D2V3 Windows Server VMs. Savings based two D2V3 VMs in US West 2 Region running 744 hours/month for 12 months; Reduced compute rate at SUSE Linux Enterprise rate for US West 2. Azure pricing as of 04/24/2018. Price
subject to change.
• Actual savings may vary based on location, instance type, or usage..
Azure Reserved Virtual
→ Reserve virtual machines in advance
$$$
49%
72%
savings over
$$
80%
on-premises
3-year
discount vs. 3-year discount
pay-as-you-go vs. pay as you go
+ Azure Hybrid
Benefit
$
Free Extended Security Updates
3 years
Max 3 10 20 100
Instances
Custom Supported Supported Supported Supported Supported
Domain
Autoscaling Supported Supported Supported
Network Supported
Isolation
Price Free $0.013 $0.075 $0.10 $0.20 $0.30
What is an Azure SQL Database?
Devices Data
Apps
On-premises /
Private cloud
Microsoft Azure
Active Directory
On-premises /
Private cloud
— Identity and access management for employees, partners, and customers —
Microsoft MDM-auto
Azure AD Conditional Authenticator - enrollment / Security
Azure AD Join Enterprise State Reporting
Connect Access Password-less
Access Roaming
Microsoft Azure
Active Directory
On-premises
/ Private cloud
Sync Seamless
engine authentication
Single
sign-on MFA
Self
Azure AD Service
Windows Server Connect
Active Directory
Microsoft Azure
Active Directory
On-premises
/ Private cloud
Pass-through authentication
Pass-through
authentication
Pass-through
authentication agent Windows Server
Active Directory
Password Hash
synchronization
Windows Server
Active Directory
Federation
Windows Server
Active Directory
Password Hash
synchronization
Pass-through Federation
authentication
Pass-through
authentication agent Windows Server
Active Directory
2 Workday
3 ServiceNow
4 Schoology
5 SuccessFactors
Azure
Active Directory
I want my customers
and partners to access
the apps they need
B2C B2B
Secure collaboration
Branded experience
Other Assign B2B users access to any app
organizations or service your organization owns
SharePoint Online
& Office 365 apps
Add B2B users with accounts in
other Azure AD organizations
Microsoft Azure
Active Directory
Customers
Apps
What next?
https://azure.com/essentials
www.microsoft.com/learn
Access here:
Microsoft Learn - Free online learning
Build your skills fast with free, interactive tutorials at
Microsoft Learn, a new training experience for technical users.
New Releases
https://azure.microsoft.com/en-us/updates/
Azure Roadmap
https://azure.microsoft.com/en-us/roadmap/
More certifications than any other cloud provider
https://azure.microsoft.com/en-us/overview/trusted-cloud/
Security is embedded into Azure
https://www.microsoft.com/en-
us/TrustCenter/Security/default.aspx
References (2/6)
IDENTITY
Azure AD Connect user sign-in options
https://docs.microsoft.com/en-us/azure/active-directory/connect/active-directory-aadconnect-user-signin#choosing-
the-user-sign-in-method-for-your-organization
Azure Active Directory Pass-through Authentication: Technical deep dive
https://docs.microsoft.com/en-us/azure/active-directory/connect/active-directory-aadconnect-pass-through-
authentication-how-it-works
Azure Active Directory Pass-through Authentication: Frequently asked questions
https://docs.microsoft.com/en-us/azure/active-directory/connect/active-directory-aadconnect-pass-through-
authentication-faq
Azure Active Directory Pass-through Authentication: Current limitations
https://docs.microsoft.com/en-us/azure/active-directory/connect/active-directory-aadconnect-pass-through-
authentication-current-limitations
Azure Active Directory pricing
https://azure.microsoft.com/en-us/pricing/details/active-directory/
References (3/6)
COMPUTE
What are virtual machine scale sets in Azure?
https://docs.microsoft.com/en-us/azure/virtual-machine-scale-sets/virtual-machine-scale-sets-overview
References (5/6)
STORAGE
Azure Managed Disks Overview
https://docs.microsoft.com/en-us/azure/storage/storage-managed-disks-overview
High-performance Premium Storage and managed disks for VMs
https://docs.microsoft.com/en-us/azure/storage/common/storage-premium-storage
NETWORKING
Virtual Network Service Endpoints
https://docs.microsoft.com/en-us/azure/virtual-network/virtual-network-service-endpoints-overview
ExpressRoute overview
http://azure.microsoft.com/en-us/documentation/articles/expressroute-introduction/
https://azure.microsoft.com/en-us/blog/networking-enterprise/
References (6/6)