Connecting Microsoft Fabric to on-premises databases with Private Link

Azure Networking is already a complex enough topic, and if you add to the mix the moving parts of data analytics services the results are always interesting, to say the least. On top of that, documentation is not always created to explain in detail what is actually happening or why, adding insult to injury. Consequently, … Continue reading Connecting Microsoft Fabric to on-premises databases with Private Link

Private Link reality bites – service endpoints vs private link

Welcome to the sixth post in the Private Link Reality Bites series! Before we begin, let me recap the existing episodes of the series: Private Link reality bite #1: endpoints are an illusion (control plane vs data plane) Private Link reality bite #2: your routes might be lying (routing in virtual network gateways) Private Link reality bite #3: what’s … Continue reading Private Link reality bites – service endpoints vs private link

Private Link reality bites: NXDomainRedirect

Welcome to the fifth post in the Private Link Reality Bites series! Before we begin, let me recap the existing episodes of the series: Private Link reality bite #1: endpoints are an illusion (control plane vs data plane) Private Link reality bite #2: your routes might be lying (routing in virtual network gateways) Private Link reality bite #3: what’s … Continue reading Private Link reality bites: NXDomainRedirect

Private Link reality bites: what’s my source IP?

Welcome to the third post in the Private Link Reality Bites series! Before we begin, let me recap the existing episodes of the series: Private Link reality bite #1: endpoints are an illusion (control plane vs data plane) Private Link reality bite #2: your routes might be lying (routing in virtual network gateways) Private Link … Continue reading Private Link reality bites: what’s my source IP?

Private Link reality bites – Your routes might be lying

Welcome to the second post in the Private Link Reality Bites series! Before we begin, let me recap the existing episodes of the series: Private Link reality bite #1: endpoints are an illusion (control plane vs data plane) Private Link reality bite #2: your routes might be lying (routing in virtual network gateways) Private Link … Continue reading Private Link reality bites – Your routes might be lying

DRY Terraform code for Private Link and DNS

After last week’s almost-philosophical post on network complexity, let’s move on to more mundane tasks. Today I will focus on how to write efficient Terraform code to connect private endpoints and DNS, without having to copy/paste literally hundreds of lines. First things first: what the heck am I talking about? Private endpoints are a way … Continue reading DRY Terraform code for Private Link and DNS

Private Link and Azure Monitor: what is an AMPLS?

Today I came across a concept while not being too new in Azure, I had not met before: Private Link Scopes. This is something that specific services do, more concretely Azure Arc and Azure Monitor (see here for the official docs on how to configure this for Azure Monitor). In the case of the latter, … Continue reading Private Link and Azure Monitor: what is an AMPLS?

Filtering traffic to Private Endpoints with Azure Firewall

If you are reading this, you probably already know what Azure Private Link is: a representation of a service such as Azure Storage, Azure SQL Database, Azure Application Service, or even some application running in a different Virtual Network, in your own Virtual Network with a private IP address of your own. This is a … Continue reading Filtering traffic to Private Endpoints with Azure Firewall