
Christopher shares real-world insights on Azure, cybersecurity, cloud, and AI architectures from a decade of hands-on experience. Join this course to learn and grow with expert guidance.
Explore Azure's global backbone, connecting 60 regions with fiber and subsea cables, enabling low-latency access, region pairs, and availability zones for resilient, compliant cloud services.
Explore Azure regions and datacenters, including availability zones and geography, and the Azure backbone. Filter for GDPR, HIPAA, SOC 2, and ISO standards, plus disaster recovery and region pairing.
Master the Azure resource hierarchy—management groups, subscriptions, resource groups, and resources—and learn how inheritance enables governance, security, and cost control across deployments through policy and RBAC.
Explore the four Azure subscription types: free, student, pay-as-you-go, and enterprise agreement, covering credits, billing, and eligibility for learning and deployment.
Entra ID tenants provide identity services separate from Azure resources, enabling human, managed identities, and application registrations, and can operate outside Azure via the Entra admin portal.
Learn how to create an Azure subscription with free or pay-as-you-go options, including start free and sign-up steps, plus 12 months of free services.
Explore the resource hierarchy by inspecting management groups, subscriptions, and resource groups, and learn how to create a management group, rename subscriptions, and move resources.
Configure a subscription budget in Azure Cost Management, set monthly thresholds, and enable alerts on actual or forecasted spend to notify via email without stopping resources.
Explore the five Azure management tools—Azure portal, Azure PowerShell, Azure CLI, Azure Cloud Shell, and Azure Copilot—to create, update, delete, and manage resources from browser or cross-platform clients.
Navigate the azure portal to create resources, view dashboards, and deploy a virtual machine from a demo resource group, then monitor and clean up resources.
Explore how Azure PowerShell works and use its module to create, read, update, and delete Azure resources across Windows and macOS; demo creates a resource group and a virtual machine.
Install PowerShell on Windows via WinGet, then install the Azure PowerShell module for Windows and begin using it in the Azure hybrid cloud context.
Learn to use Azure PowerShell to authenticate, create a resource group and a Windows Server 2019 VM in North Europe, and manage resources from the command line.
Install and use Azure CLI to deploy and manage resources in Azure, including creating a resource group, virtual network, subnet, public IP, network interface, and a virtual machine.
Install the Azure CLI on Windows using WinGet, then close and reopen terminals to enable it, and verify the installation with az version (2.77.0).
Learn to install the Azure CLI on macOS using Homebrew, verify the installation with az version, and update the CLI.
Learn to use the Azure CLI for end-to-end resource management, creating a resource group, VNet, subnet, public IP, NIC, and a Windows Server 2022 VM.
Explore how to use Azure Cloud Shell from the portal to run the Azure CLI or PowerShell, manage storage, and create resource groups and virtual machines via the CLI.
Explore how Azure Copilot guides resource management in the portal, lists resource groups and virtual machines via resource graph queries, and ensures safe creation and deletion.
Hybrid cloud blends on premises private cloud and public cloud infrastructures to work together, with a unified management portal for interoperability and workload distribution, enabled by Azure Arc.
Explore hybrid cloud use cases like data sovereignty, centralized monitoring with Microsoft Sentinel, and security across on-prem and cloud, plus legacy integration, edge computing, and policy consistency via Azure Arc.
Hybrid cloud adoption is growing as businesses invest in flexible, compliant solutions linking on-premises and cloud technologies. Regulatory governance, AI and edge computing, and Kubernetes with Azure Arc enable orchestration.
Harness unified management with Azure Arc to centrally manage on-premises, multi-cloud, and edge assets. Enable hybrid identity, connectivity, security, and edge service delivery with Azure Local to accelerate cloud-to-edge innovation.
Azure Arc unifies governance and management across on-premises, multi-cloud, and OT resources by onboarding them to Azure Resource Manager, enabling Arc-enabled servers, VMs, Kubernetes, and databases.
Explore how Azure Arc enabled servers manage Windows, Linux, and hybrid machines with policy, tagging, and Defender for Cloud, plus onboarding and monitoring.
Demonstrates deploying Azure Arc enabled servers on a Windows Server using an Azure VM for testing, and onboarding an on-premises machine to Azure Arc.
Azure policy defines guardrails for resources by validating configurations against JSON policy definitions. Use policy initiatives and Defender for Cloud to audit or deny resource creation across management groups.
Apply Azure policy to Arc-enabled servers by assigning a policy to a subscription and resource group, enforcing anti-malware extension deployment and governance across on-prem and Arc resources.
Learn to use Azure Monitor and Log Analytics for Arc-enabled servers by enabling insights, configuring data collection rules, and viewing heartbeat and insights metrics.
Connect and manage Kubernetes clusters anywhere from a single Azure Arc control plane, enabling governance, policy, RBAC, GitOps deployments, and Defender for Kubernetes.
Extend Azure services to SQL Server instances outside Azure with Azure Arc, and manage them from a single control plane, query with Resource Graph Explorer, view inventory and databases.
Explore Microsoft Entra ID, the cloud identity and access management service formerly Azure Active Directory. Discover features like access reviews, application proxy, B2B/B2C, conditional access, and hybrid identity.
Create an Azure identity lab by provisioning a resource group named identity, a virtual network called vnet identity, and machines: dc01 and intra connect for domain controller and interconnect.
Purchase a domain to work with Azure Active Directory, choosing App Service domains or external registrars like GoDaddy or Namecheap; verify ownership with a TXT record.
Connect to the Azure Windows Server VM, install the Active Directory Domain Services role, promote the server to a new forest domain controller for Azure demos.org, and verify AD DS.
Explore intra connect in a hybrid environment, detailing password hash synchronization and pass-through authentication, plus optional federation. Compare legacy connect sync to cloud sync, noting health monitoring and forest-related feature differences.
demonstrates installing intra connect on an Azure VM, joining the Azure Demos domain, and enabling password hash synchronization with single sign-on to sync on-premises AD to Intra ID.
Open the intra ID users page to confirm on-premises Active Directory users have synchronized to Entra Connect, and verify the connect sink is enabled and the last sync time.
Explore hybrid authentication by evaluating cloud-only entry ID, on-premises Active Directory policies, and password hash sync versus pass-through authentication to match your requirements.
Explore Azure virtual networks (VNets) and subnets to securely connect resources, configure NIC interfaces, and manage traffic with application gateways, load balancers, and VNet peering.
Create an Azure VNet by first establishing a resource group in North Europe, defining the IP address space and a default subnet, and noting reserved IP addresses.
Azure network security groups filter inbound and outbound traffic at the subnet or network interface level, are stateful, and use a five-tuple for rule evaluation with default and high-priority rules.
Create a virtual machine in Azure, then configure a network security group with an inbound RDP rule from your IP and apply it to the VM’s network interface or subnet.
Enable secure remote access to an Azure VNet with point-to-site VPN for remote workers, and extend on-premises networks to Azure with site-to-site VPN.
Learn to implement a site-to-site VPN in Azure by configuring a virtual network gateway, gateway subnet, a public IP, and an IPsec connection via a local network gateway.
Secure Azure networks by deploying a cloud-native Azure Firewall and hub-and-spoke architecture for inspection, TLS inspection (premium), threat intelligence, and web content filtering.
Deploy and configure Azure firewall with premium policy, vnet, and rule collections to block traffic, enable threat intelligence, tls inspection, and idps for improved security management.
Learn how Azure Privatelink enables private endpoints to access PaaS services such as storage, SQL, or App Service over the Microsoft backbone, avoiding public internet.
Compare public internet access to PaaS services with ExpressRoute and Private Link, showing how private endpoints keep on premises traffic over the Microsoft backbone for secure, private connectivity.
Defender for cloud is a cloud native protection platform spanning devsecops, cloud security posture management, and cloud workload protection across environments, offering CSPM and cloud workload plans for Azure Arc.
Enable defender for servers on arc-enabled machines via defender for cloud environment settings, deploy to all VMs, and monitor vulnerability assessments, endpoint protection, and real-time security alerts.
Explore how Microsoft Sentinel uses a sim and soar to collect logs from cloud and on premises sources, detect threats, and automate response with dashboards, notebooks, and workbooks.
Ingest security event logs from an Azure Arc-enabled server into Sentinel by creating a Log Analytics workspace, installing the Windows Security Events solution, and configuring a data collection rule.
Explore how Azure Local extends Azure to customer owned infrastructure, enabling on-premises execution of modern and traditional apps from cloud to edge with Azure Stack HCI and Azure Arc integration.
This course contains the use of artificial intelligence.
Azure Hybrid Cloud by Christopher Nett is a meticulously organized Udemy course designed for IT professionals aiming to master Azure Hybrid Cloud. This course systematically guides you from the basics to advanced concepts of Azure Hybrid Cloud.
By mastering Azure Hybrid Cloud, you're developing expertise in essential topics in today's hybrid cloud landscape.
Key Benefits for you:
1. Azure Basics: Gain a foundational understanding of Azure services, architecture, and capabilities to support your cloud journey.
2. Hybrid Cloud: Learn the principles of hybrid cloud and how it bridges on-premises infrastructure with the public cloud.
3. Azure Hybrid Cloud: Explore Azure’s hybrid cloud solutions and their role in creating a seamless IT environment.
4. Azure Arc: Discover how Azure Arc extends Azure management and services to on-premises, multi-cloud, and edge environments.
5. Hybrid Identity: Master the integration of Entra ID and on-premises identity systems such as Microsoft Active Directory to create a secure hybrid identity framework.
6. Hybrid Connectivity: Understand networking options and best practices for securely connecting on-premises and cloud environments.
7. Hybrid Cloud Workload Protection with Microsoft Defender for Cloud: Learn to secure hybrid workloads using Microsoft Defender for Cloud’s advanced capabilities.
8. Hybrid Cloud Security Monitoring with Microsoft Sentinel: Implement Microsoft Sentinel to monitor and respond to security threats across hybrid environments.
9. Azure Local: Explore Azure Local solutions to optimize cloud performance and compliance for regional or edge-specific needs.
10. Hybrid Cloud Architectures: Design and implement robust hybrid cloud architectures tailored to your organization’s unique requirements.
This course contains promotional materials.