
Discover how to configure secure access to workloads in Azure networking through hands-on tasks, interactive simulations, and practical, one-day learning to prepare for the Microsoft Applied Skills credential.
Practice hands-on Azure by setting up your own environment and a free Azure account with Azure credit, then use browser-based interactive lab simulations and assignments.
Create a free Azure account to get $200 credit for 30 days and free services for 12 months. Learn how to sign up, create an email, and access portal.azure.com.
Microsoft renames services, like Azure Active Directory to IntraID, and updates links such as admin.microsoft.com, defender.microsoft.com, purview.microsoft.com, and Intune.microsoft.com. Use portals.examlabpractice.com and download the text file for the latest portals.
Convert your Azure account from a personal to a business account by editing the user principal name in Microsoft Entra ID, then sign in with the new account.
Watch the assignment videos before starting the lab simulations to understand how to create a rule collection group in Azure Firewall and a web app rule on portal.azure.com, then submit.
Watch all course videos to earn a certificate of completion; assignments do not matter, and a final video shows how to obtain your certificate.
Plan and configure virtual networks in Azure by designing subnets and vnets, setting up public and private IP addressing, provisioning virtual machines, and practicing in a hands-on simulation.
Plan virtual networks in Azure with a hub-and-spoke design, using distinct address spaces (10.1.0.0/16, 10.2.0.0/16), subnets, and VNet peering.
Create two Azure virtual networks with subnets and address spaces 10.1.0.0/16 (subnet 10.1.1.0/24) and 10.2.0.0/16 (subnet 10.2.1.0/24) in resource group RG practice to enable interoperation.
Plan ip addresses in Azure by understanding vnets and subnets, their dhcp assigned private ips, and how peering affects connectivity, with options for static or public ips.
Create a public ip address in Azure and associate it with a virtual machine, illustrating default settings and routing preferences such as Microsoft Network idle time four minutes.
Configure two virtual machines across distinct VNets with subnet assignments. Associate a pre-created public IP to VM1 and a new public IP to VM2, then verify private addressing and connectivity.
Learn how to redo simulations by navigating to summary, back to assignment, and opening instructions to access the simulation link anytime after completing an assignment.
Explore how to configure Azure virtual network peering by examining VPN gateways, connecting vnets, and understanding user defined routes in routing. Practice in the Azure environment and through the simulation.
Explore how Azure virtual network peering enables secure traffic flow between VNets, including regional and global peering, routing, and hub-and-spoke topology.
Explore configuring a VPN gateway for Azure networking, including site-to-site VPN, vnet-to-vnet, and point-to-site VPN, using a hub-and-spoke architecture to enable on-premises connectivity.
Set up virtual network peering between VNet one and VNet two, test connectivity between VMs via ping, and extend to a hub VNet three with two-way peerings.
Explore virtual network peering and service chaining to route traffic through a network virtual appliance, such as an Azure firewall, using user defined routes in a hub-and-spoke topology.
Learn to manage and control traffic flow in Azure deployments with routes, create custom routing tables and user defined routing, and integrate network virtual appliances and Azure firewalls.
Identify how azure routing works in hub-and-spoke networks by using user defined routes to force traffic through an azure firewall and manage internet egress from VNets.
Create and configure an Azure route table, associate it with subnets in hub and spoke VNet architectures, and enable traffic routing for a planned firewall or VPN gateway deployment.
Identify the network virtual appliance (NVA) concept and focus on Azure Firewall, demonstrating how to route traffic through the firewall via a route table to control internet access.
Configure a network virtual appliance using Azure Firewall to route virtual machine traffic through a dedicated Azure Firewall subnet, guided by a firewall policy and rules.
Route all outbound traffic through the Azure firewall using route tables. Associate routing tables with subnets and VNets, and configure a default route to the firewall appliance IP.
Explore the purpose of Azure DNS, compare public and private DNS zones, and configure DNS zones and records, including CNAME alias records, with hands-on practice in Azure.
Azure DNS provides public and private DNS zones, enabling automatic registration of virtual machines in linked VNets and supporting cross-virtual network and reverse DNS lookups.
Create a private DNS zone in Azure, link vnets, and enable auto registration so VM1, VM2, and VM3 in abc corp com can resolve each other privately.
Create a private DNS zone for ABC Corp in Azure and let VMs register names like vm1.abc corp.com. Manually create A records and explore dynamic records for private name resolution.
Link the private dns zone to multiple virtual networks and enable auto registration so virtual machines automatically register their host names in the dns zone, enabling name resolution between VMs.
Configure a private dns zone in Azure, link virtual networks, and enable auto registration. Use alias (cname) records to map multiple names to one a record, so updates propagate automatically.
Learn how to configure network security groups (NSG) for IP filtering in Azure, create effective rules, and use application security groups (ASG) to group virtual machines and control traffic.
Apply network security groups to filter IP. Configure NSG rules on VM NICs or subnets, set priorities 100–4096, and define source, destination, protocol, direction, and ports, including default deny.
Configure an NSG to allow inbound tcp 1433 traffic to the subnet hosting the SQL VM, and apply the rule at the subnet level to cover all related VMs.
Configure a network security group for subnet one in VNet one to control inbound SQL traffic on port 1433, then explore application security groups for finer control.
See how ASG groups VMs and links to a single NSG to apply rules across the whole VM set.
Create an application security group in portal.azure.com, assign VMs to the ASG from their networking settings, and configure an inbound NSG rule allowing 1433 from the ASG to SQL.
Explore configuring secure access to workloads with Azure virtual networking, using Azure Firewall and firewall policies to control traffic and enable DNS resolution for a web app.
Configure network isolation by allowing subnet one to reach the LP Cloud App at 5.65.3.99 on port 9000, while blocking all other internet traffic via a firewall rule collection.
Create a network rule collection within an Azure firewall policy to allow subnet traffic to a web app’s public address, using IP-based rules rather than URL-based rules.
Create a network rule in a premium azure firewall policy to allow subnet one (10.110.0/24) to the LP Cloud App at 5.65.3.99 over tcp port 9000.
Visualize traffic filtering with the Azure firewall by understanding default deny rules, route tables, and how subnet one can reach a web app while others stay blocked.
Operationalize Azure firewall policies by configuring network rules and route tables. Route traffic through a virtual appliance to enforce controlled internet access for subnets.
Set up a private dns zone for internal name resolution and create a cname record to map internal names to lp cloud app dot exam lab practice dot com.
Explore how Udemy role plays use ai to generate realistic learning scenarios for practice, with a demo showing optional participation and no requirement to complete the course.
Learn to clean up your lab by deleting the practice resource group and the network watcher group in portal.azure.com, using force delete to stop azure credit usage.
Learn how to obtain your Udemy certificate by completing all videos; assignments don't count, and you may need to read the certificate article or contact Udemy support.
Explore where to find more Microsoft Applied Skills courses, coupon codes, and giveaways, including the promo page, YouTube channel, and email list for free vouchers and support.
We really hope you'll agree, this training is way more then the average course on Udemy!
Have access to the following:
Training from an instructor of over 20 years who has trained thousands of people and also a Microsoft Certified Trainer
Lecture that explains the concepts in an easy to learn method for someone that is just starting out with this material
Instructor led hands on and simulations to practice that can be followed even if you have little to no experience
TOPICS COVERED INCLUDING HANDS ON LECTURE AND PRACTICE TUTORIALS:
Introduction
Welcome to the course
Introduction to how this course will work
Practicing hands on in the course
Creating a free Azure Account
DO NOT SKIP: Using Assignments in the course
Configure virtual networks
Introduction - Configure virtual networks
Plan virtual networks
Create subnets and virtual networks
Plan IP addressing
Create public IP addressing
Setup two virtual machines (VMs) and associate a public IP address
Interactive lab simulation
Configure Azure Virtual Network peering
Introduction - Configure Azure Virtual Network peering
Determine Azure Virtual Network peering uses
Determine gateway transit and connectivity
Create virtual network peering
Extend peering with user-defined routes and service chaining
Interactive lab simulation
Manage and control traffic flow in your Azure deployment with routes
Introduction - Manage and control traffic flow in your Azure deployment with routes
Identify routing capabilities of an Azure virtual network
Exercise - Create custom route table
What is an NVA?
Exercise - Create an NVA for virtual machines traffic control
Exercise - Route traffic through the NVA
Interactive lab simulation
Host your domain on Azure DNS
Introduction - Host your domain on Azure DNS
What is Azure DNS?
Configure Azure DNS to host your domain
Exercise - Create a DNS zone and an A record by using Azure DNS
Dynamically register resource name records
Exercise - Create alias records for Azure DNS
Interactive lab simulation
Configure network security groups
Introduction - Configure network security groups
Implement network security groups
Determine network security group effective rules
Create network security group rules
Visualize application security groups
Implement application security groups
Interactive lab simulation
Configure secure access to workloads with Azure virtual networking services
Introduction - Configure secure access to workloads with Azure virtual networking services
Provide network isolation and segmentation for the web application
Control the network traffic to and from the web application
Create a network rule for allowing Subnet1 traffic access to the web application
Visualize filtering traffic with the Azure Firewall
Operationalize and enforce policy to filter traffic
Record and resolve domain names internally
Interactive lab simulation
Conclusion
Cleaning up your lab environment
Getting a Udemy certificate
Additional content