Transcript
Page 1: Azure IaaS Tips & Tricks

WINDOWS AZURE IAAS TIPS & TRICKS

• Anton Staykov• @astaykov

Page 2: Azure IaaS Tips & Tricks

THANK YOU, SPONSORS!

Page 3: Azure IaaS Tips & Tricks

The Cloud for Modern Business

Grab your benefit

aka.ms/azuretry

Deploy fast in the cloud, scale elastically and minimize test cost

Activate your Windows Azure MSDN benefit at no additional charge

aka.ms/msdnsubscr

Page 4: Azure IaaS Tips & Tricks

ABOUT ME

• Windows Azure MVP (3 times now)

• With Azure from the beginninghttp://blogs.staykov.net/@astaykov

Page 5: Azure IaaS Tips & Tricks

AGENDA

Azure IaaS Outside-In connection issues Virtual Networks IP Address predictability AD/DC – Highway to … Mail Server on Azure

Page 6: Azure IaaS Tips & Tricks

PaaS SaaSPhysical Virtual IaaS

A CONTINUOUS OFFERING FROM PRIVATE TO

PUBLIC CLOUD

Page 7: Azure IaaS Tips & Tricks

WINDOWS AZURE VIRTUAL MACHINES

Support for key server applications*

Easy storage manageability

High availability features

Advanced networking

Integration with compute PaaS

* http://bit.ly/azurevmsupport

Page 8: Azure IaaS Tips & Tricks

COMMON ISSUES

VM Disappears or was deleted (MSND /Free Trial)

Blob storage occupied (VHD not deleted)

Temporary Disk (how temporary is it?) What disk size should I chose?

Page 9: Azure IaaS Tips & Tricks

DEMO

Page 10: Azure IaaS Tips & Tricks

INTERNET CONNECTIVITY

Outside-In

Page 11: Azure IaaS Tips & Tricks

DIP

LBVIP

Virtual Machine (IaaS)

Windows Azure Cloud Service (foo.cloudapp.net)

INTERNET

NETWORKING PICTURE

Page 12: Azure IaaS Tips & Tricks

OUTSIDE-IN CONNECTIVITY

Endpoint Definition Windows Firewall Rules Corporate Firewalls PING times out

Page 13: Azure IaaS Tips & Tricks

VIRTUAL NETWORK

Page 14: Azure IaaS Tips & Tricks

VNET SCENARIOS

Define IP Address space for DIP IaaS Interconnectivity Site-to-Site Point-to-Site IaaS-to-PaaS and vice-versa

Page 15: Azure IaaS Tips & Tricks

VNET

Address Spaces 10.0.0.0 172.16.0.0 192.168.0.0

Sub Nets Gateway Sub-Net

Page 16: Azure IaaS Tips & Tricks

ADDRESS ALLOCATION SECRETS

Always and only by DHCP The first host gets the 4th IP

Address i.e. 192.168.0.4

Automatic cross-sub-net connectivity

Page 17: Azure IaaS Tips & Tricks

VNET CROSS-PREMISES

Site-to-Site Point-to-Site Local Address Management

Page 18: Azure IaaS Tips & Tricks

NAME RESOLUTION

Page 19: Azure IaaS Tips & Tricks

NAME RESOLUTION SCENARIOS

When not in VNetPaaS only (Web/Worker Roles)

IaaS only (Virtual Machines)

When in Vnet IaaS / PaaS only

IaaS + PaaS IaaS + LocalPaaS + Local IaaS + PaaS + Local

Page 20: Azure IaaS Tips & Tricks

DNS SERVER ON IAAS

Page 21: Azure IaaS Tips & Tricks

DNS SERVER SECRETS

Just for the DNS server machine, set DNS to 127.0.0.1 when deploying!

Place the DNS Server on its own subnet Remember the full format of FQDN http://bit.ly/fqdn

Page 22: Azure IaaS Tips & Tricks

IP ADDRESS ASSIGNMENT SECRETS

IP Address predictability Sub-net isolation Address Space Isolation

Page 23: Azure IaaS Tips & Tricks

AD/DC ON IAAS

Highway to Clouds

Page 24: Azure IaaS Tips & Tricks

AC/DC NETWORK LAYOUT

VNET-WE-IAASTIPS-PROD

DNS/ 192.168.30.4

Address Space 192.168.30.0/29

Sub-ADDC: 192.168.30.0/29

Address Space 172.16.0.0/22Sub-Clients: 172.16.0.0/22

Page 25: Azure IaaS Tips & Tricks

MAIL SERVER ON IAAS

Page 26: Azure IaaS Tips & Tricks

HOSTING OWN MAIL SERVER ISSUES

Public (dynamic) IP Address Reverse DNS records (PTR Records) http://bit.ly/azureptr

Page 27: Azure IaaS Tips & Tricks

KEY TAKEAWAYS

Never forget Firewall Know your IP Addresses Don’t host Email Server

(yet)

Page 28: Azure IaaS Tips & Tricks

Q&A

• Anton Staykov

• @astaykov

• http://blogs.staykov.net/


Top Related