
Engage with hands-on, real-world troubleshooting of Microsoft Azure connectivity through interactive simulations, practice environments, and active instructor support that stays up to date.
This foundation lecture covers on premise Active Directory and domain services, DMZ and virtualization, and introduces Microsoft 365 and Azure along with IaaS, PaaS, and SaaS.
Explore the foundations of Microsoft domains and Active Directory, including domain controllers, Kerberos, LDAP, DNS, GPOs, and replication, and trace the shift from on premise to cloud and virtualization.
Explore how legacy directory services and Kerberos evolved into secure remote access with VPN and Raas, then secure DMZ perimeter networks and virtualization using Hyper-V for scalable cloud-ready environments.
Explore the foundations of cloud services, including IaaS, PaaS, and SaaS, and understand Azure and Microsoft 365, directory services, and on-premise to cloud synchronization.
Learn how Microsoft renames services and portals, such as Azure Active Directory to IntraID and portal URLs to admin.microsoft.com, defender.microsoft.com, purview.microsoft.com, and intune.microsoft.com; portals.examlabpractice.com provides the latest portal links.
John Christopher answers learner questions at scale, directs you to official Microsoft Docs for guidance, and points to exam lab practice, assignments, updates, and Udemy as the exam questions source.
You will receive a certificate of completion for watching all course videos; assignments don't count, and a final video will explain how to obtain your certificate.
Learn how assignments work in this course, mostly simulations, with videos driving completion; navigate Udemy issues by starting assignments, opening in a new tab, and submitting.
Create a free Azure account to get $200 credit for 30 days and access many free services for 12 months, then sign in at portal.azure.com.
Change the user principal name in Microsoft Entra ID to a business name (via a custom domain), then sign in with the new account and reset the password if prompted.
Learn how to activate a Microsoft Entra ID P2 license, explore free trials and premium features like risk-based conditional access, and follow step-by-step setup in admin.microsoft.com or portal.azure.com.
Review azure file backup logs in the backup center, interpret on-demand versus scheduled backups, and read status, vault, and filter details for a storage account recovery.
Learn to troubleshoot Azure VM backup issues by verifying provisioning, avoiding backups during updates, checking antivirus scans, and managing backup in the recovery vault to restart or delete data.
Troubleshoot Azure Backup agent issues by verifying Mars agent compatibility with OS, checking backup limits and file types, ensuring firewall allows traffic, and reviewing logs and Recovery Services vault configuration.
Explore Mab's protection capabilities for backing up servers, SQL, Exchange, Hyper-V, SharePoint, and Linux to Azure, plus key network requirements and common pitfalls to avoid.
Learn to configure and troubleshoot scheduled backups in Azure using backup center, backup policies, and recovery vaults, covering retention, region requirements, and data source options.
Learn how to redo simulations after completing an assignment by navigating to summary, then returning to the assignment and opening instructions to access the simulation link.
Troubleshoot Azure site recovery by verifying outbound firewall rules and blocked URLs, ensuring port 443 is allowed in NSG rules, and checking Recovery Services vault setup and backup center logs.
Troubleshoot site recovery in a hybrid environment by validating prerequisites in the recovery services vault, configuring Hyper-V replication to Azure, and ensuring proper network mapping and open ports.
Troubleshoot Azure backup restore issues by checking recovery vault backups, viewing backup center status for failures and warnings, and configuring alert rules and action groups.
Validate outbound port 3260 and iSCSI traffic, and confirm NSG outbound rules permit Azure VM backup restores. Check resource health, agent services, and logs via Event Viewer to diagnose failures.
Learn to clean up unused Azure resources to conserve Azure credit by deleting virtual machines, Recovery Services vaults, and resource groups using the delete flow and force delete.
Understand foundations of Azure VNet connectivity, including address spaces, subnets, DHCP, VNets, VNICs, NSGs, hub-and-spoke designs, VNet peering, and on-premises connections via VPN gateway or Expressroute.
Explore troubleshooting strategies for Azure VPN gateways, using diagnose and solve problems, site-to-site and point-to-site connectivity, logs, queries, alerts, and metrics to diagnose issues and manage costs.
Explore hub-and-spoke vnet topology by creating hub and multiple spoke networks, inspect subnets and connected devices, and diagnose connectivity failures due to absent peering.
Discover how to establish and troubleshoot global vnet peering between regions using network watcher tools, ip flow verify, next hop, and delete and re-add peering when needed.
Diagnose and resolve VNet peering issues by verifying IP configurations, enabling two-way peering between spoke and hub, and using Network Watcher topology and IP flow next hop to diagnose connectivity.
Troubleshoot Azure provided dns names for VMs by verifying hostname resolution, testing connectivity with Network Watcher ip flow verify, and opening port 80 in the network security group.
Learn to troubleshoot name resolution with a custom DNS server on Azure virtual machines, including DNS delegation from GoDaddy, DNS records, and inbound security rules to reach a web server.
Review and interpret DNS audit and debug logs from a Windows DNS server to troubleshoot queries, inspect packet details, and use Event Viewer for DNS service issues in Azure connectivity.
Learn to configure Azure private DNS zones, link them to virtual networks with auto registration, and troubleshoot name resolution using nslookup.
Explore Azure public DNS hosting, register DNS zones, and set up domain name servers. Learn to update registrar records, move hosting to Azure, and troubleshoot with nslookup, alerts, and metrics.
Troubleshoot domain delegation issues by ensuring a public DNS name for the name server, adding NS records for subdomains, and verifying port 53 with network watcher.
Clean up your Azure environment by deleting resource groups and virtual machines to save Azure credits, then proceed to the next section.
Create a virtual network gateway in Azure by naming it, selecting East US, and choosing VPN gateway generation one, linking a virtual network and public IP.
Troubleshoot Windows VPN/OpenVPN client configuration with Azure VPN gateway by configuring point-to-site, authorizing Azure Active Directory, downloading the VPN client config, and testing connectivity to a test VM.
Troubleshoot macOS VPN client configuration by validating setup, approving Azure VPN configuration, importing the profile, and verifying connectivity with network watcher and resource health.
Learn to configure certificate-based VPNs in Azure, generate and distribute root and client certificates with PowerShell and MMC, and troubleshoot connectivity using logs, NSG and firewall checks.
Set up a radius VPN connection on Azure, configure an NPS radius server, and troubleshoot common issues with radius authentication.
Investigate Azure AD authentication for VPN access by checking sign-in and audit logs, verifying user status, and using identity protection risk policies to assess risk.
Learn to perform VPN gateway packet capture, store the pcap in a storage account, generate a SAS URL, and analyze results with Wireshark for VPN troubleshooting.
Analyze vpn gateway metrics and traffic to determine latency causes. Compare site-to-site and point-to-site throughput, review tunnel usage, and set alerts.
Choose compatible on-prem VPN equipment and configure a local gateway in Azure to connect your network to the Azure VPN gateway with PowerShell scripts.
Resetting a VPN gateway helps troubleshoot site-to-site VPN tunnel connectivity between on-premises devices and the Azure VPN gateway, rebooting the gateway and briefly disconnecting all connections.
Set up a Log Analytics workspace, link your VPN gateway via diagnostic settings, then run KQL queries to monitor connection counts, bandwidth, and latency for troubleshooting.
delete unused azure resources by removing resource groups, virtual machines, and recovery services vault to conserve azure credit, following the prompts to complete force delete.
Create an express route circuit resource in Azure via the portal, configure a provider and Chicago location with 50 megabits per second, then review and create.
Verify express route is operational by sharing the service key with your telecom provider, and confirming the circuit status is enabled in portal.azure.com.
Validate the express route peering by using the azure portal diagnose and solve problems tools to test private and microsoft peering, route filters, and connectivity with your telecom provider.
Reset an ExpressRoute circuit by using PowerShell in Azure Cloud Shell, referencing the circuit with Get-AzExpressRouteCircuit and restarting with Set-AzExpressRouteCircuit inside the Express Route RG.
Configure and troubleshoot express route route filters to enable route advertisements, manage rules and circuits, set up alerts, and review activity logs for Azure connectivity.
Troubleshoot custom defined routes in an ExpressRoute environment by configuring a virtual network gateway, creating a user defined route table, and testing connectivity with network watcher and packet capturing.
Troubleshoot Azure ExpressRoute latency by following Microsoft's guidance, install a PowerShell module, and run Get-LinkLatency and Get-LinkPerformance to obtain latency data.
Clean up ExpressRoute resources by deleting resource groups to avoid wasting Azure credit. Simply paste the resource group names, click delete, and remove the resources used in this example.
Learn to troubleshoot PaaS connectivity in Azure by configuring storage accounts and app services, enabling vNet integration via the networking blade and private endpoints.
Configure an Azure firewall in a VNet with a dedicated subnet and attach a Log Analytics workspace via diagnostic settings to centralize logs for troubleshooting.
Diagnose and troubleshoot Azure PaaS configuration issues, starting with storage accounts and app services, leveraging diagnose and solve problems, activity logs, diagnostic settings, and log analytics for performance and availability.
Analyze throttling by examining the App Service plan hosting the App Service, and adjust sizing through scaling up or scaling out guided by CPU, memory, and HTTP queue length.
We really hope you'll agree, this training is way more than the average course on Udemy!
Have access to the following:
Training from an instructor of over 25 years who has trained thousands of people and also a Microsoft Certified Trainer
Lecture that explains the concepts in an easy to learn method for someone that is just starting out with this material
Instructor led hands on and simulations to practice that can be followed even if you have little to no experience
TOPICS COVERED INCLUDING HANDS ON LECTURE AND PRACTICE TUTORIALS:
Introduction
Welcome to the course
Understanding the Microsoft Environment
Having a Solid Foundation of Active Directory Domains
Having a Solid Foundation of RAS, DMZ, and Virtualization
Having a Solid Foundation of the Microsoft Cloud Services
Questions for John Christopher
Setting up for hands on
IMPORTANT Using Assignments in the course
Creating a free Azure Account
Activating an Entra ID P2 license
Troubleshoot backup issues
Review and interpret backup logs
Troubleshoot Azure VM backup issues including restarting a failed backup job
Troubleshoot issues with Azure Backup agent
Troubleshoot Azure Backup Server issues
Troubleshoot scheduled backups
Troubleshoot recovery issues
Troubleshoot Azure Site Recovery issues
Troubleshoot site recovery in hybrid scenarios
Troubleshoot restore issues for the various Azure Backup Solutions
Troubleshoot issues recovering files from Azure VM backup
Cleaning up resources
Troubleshoot virtual network (VNet) connectivity
Foundations of vNet connectivity concepts
Troubleshoot virtual private network (VPN) gateway transit issues
Troubleshoot hub-and-spoke VNet configuration issues
Troubleshoot global VNet peering connectivity issues
Troubleshoot peered connections
Troubleshoot name resolution issues
Troubleshoot name resolution in scenarios that use Azure-provided names
Troubleshoot name resolution in scenarios that use custom DNS servers
Review and interpret DNS audit logs
Troubleshoot name resolution for Azure private DNS zones
Troubleshoot issues with DNS records at public DNS providers
Troubleshoot domain delegation issues
Cleaning up before the next lesson
Troubleshoot point-to-site virtual private network (VPN) connectivity
Setting up a VPN Gateway
Troubleshoot Windows VPN/OpenVPN client configuration issues
Troubleshoot macOS VPN client configuration issues
Troubleshoot issues with certificate-based VPN connections
Troubleshoot issues with RADIUS-based VPN connections
Troubleshoot authentication issues in Azure AD, part of Microsoft Entra
Troubleshoot site-to-site virtual private network connectivity
Review & interpret network logs & captured network traffic from a VPN gateway
Determine the root cause for latency issues with VPNs
Review and interpret VPN gateway configuration scripts
Reset a VPN gateway
Troubleshoot VPN gateway issues by running Log Analytics querie
Cleaning up my azure resources
Troubleshoot Azure ExpressRoute connectivity issues
Adding an express route circuit resource to Azure
Determine whether routes are correctly configured and operational
Validate the peering configuration for an ExpressRoute circuit
Reset an ExpressRoute circuit
Troubleshoot route filtering
Troubleshoot custom defined routes
Determine the root cause of latency issues related to ExpressRoute
Cleaning up ExpressRoute resources
Troubleshoot PaaS services
Troubleshoot PaaS connectivity issues
Troubleshoot firewalls for PaaS services
Troubleshoot PaaS configuration issues
Determine the root cause for service-level throttling
Troubleshoot PaaS integration issues
Troubleshoot subnet delegation issues
Grasping concepts of Service Endpoints vs Private Endpoints
Troubleshoot issues with private endpoints and service endpoints
Cleaning up PaaS services in this section
Troubleshoot Azure AD authentication
Determine why on-premises systems cannot access Azure resources
Troubleshoot Azure AD configuration issues
Troubleshoot self-service password reset issues
Troubleshoot issues with multifactor authentication
Troubleshoot hybrid authentication
Foundational concepts for Azure AD Hybrid authentication
Troubleshoot issues with Azure AD Connect and Azure AD Connect cloud sync
Troubleshoot issues with integration between Azure AD and Azure AD DS
Troubleshoot issues with integration between Azure AD and AD FS
Troubleshoot issues with pass-through authentication and password hash synchronization
Foundational concepts on understanding Azure AD Application proxy
Troubleshoot issues with Azure AD Application Proxy
Troubleshoot authorization issues
Troubleshoot role-based access control (RBAC) issues
Troubleshoot issues storing encrypted passwords in Azure Key Vault
Troubleshoot authorization issues related to Azure AD Conditional Access policies
Troubleshoot Azure network security groups (NSGs)
Troubleshoot NSG configuration issues
Review and interpret NSG flow logs
Determine whether one or more Azure vNics are associated with an ASG
Troubleshoot Azure Firewall issues
Troubleshoot application, network, and NAT/DNAT rules
Troubleshoot Azure Firewall Manager configuration issues
Cleaning up vNet and Azure Firewall resources
Troubleshoot latency issues
Determine the root cause for Azure VM-level throttling
Determine the latency issues when connecting to Azure VMs
Troubleshoot bandwidth availability issues
Determine whether resource response times meet service-level agreements (SLAs)
Troubleshoot routing and traffic control
Review and interpret route tables
Troubleshoot issues caused by asymmetric routing
Troubleshoot issues with UDRs, routing configs & service chaining aka peering
Troubleshoot issues related to forced tunneling
Troubleshoot Border Gateway Protocol (BGP) issues
Cleaning up routing related sources in Azure
Troubleshoot load-balancing issues
Setting up web servers and a load balancer for this lesson
Determine whether VMs in a load-balanced backend pool are healthy
Troubleshoot issues with Azure Load Balancer
Review and interpret load balancer rules
Troubleshoot traffic distribution issues
Evaluate the configuration of Azure Traffic Manager
Troubleshoot issues with Azure Traffic Manager profiles
Troubleshoot port exhaustion issues
Understanding Azure Application Gateway vs Azure Front Door
Troubleshoot issues with Azure Front Door
Troubleshoot issues with Azure Application Gateway
Troubleshoot Azure Bastion and just-in-time (JIT) VM access
Troubleshoot issues deploying Azure Bastion
Validate connectivity with an Azure VM
Troubleshoot JIT VM configuration issues
Cleaning up remaining Azure resources
FINAL - Where do I go from here?
BONUS Lecture