cloud:azure
Differences
This shows you the differences between two versions of the page.
Both sides previous revisionPrevious revisionNext revision | Previous revision | ||
cloud:azure [2024/03/17 15:47] – skipidar | cloud:azure [2024/07/22 20:15] (current) – [IAM and Role Based Access Control] skipidar | ||
---|---|---|---|
Line 22: | Line 22: | ||
- | ==== Azure function ==== | ||
- | === Azure functions in Azure Portal | + | ==== Azure Messaging services ==== |
- | The runtime | + | Intro |
- | {{https://s3.eu-central-1.amazonaws.com/alf-digital-wiki-pics/sharex/ | + | https://learn.microsoft.com/en-us/ |
+ | ^AWS service ^Azure service ^ | ||
+ | |Simple Queue Service (SQS) | QUEUE | | ||
+ | |Simple Notification Service (SNS) | Service Bus | | ||
+ | |Amazon EventBridge | Event Grid | | ||
+ | |Amazon Kinesis | Event Hubs | | ||
+ | |Amazon MQ | Service Bus | | ||
- | The trigger and code. | + | ==== Azure physical infrastructure |
- | + | ||
- | Only available after uploading the code into the function, via | + | |
- | + | ||
- | '' | + | |
- | + | ||
- | {{https:// | + | |
- | + | ||
- | The Function URL | + | |
- | {{https:// | + | |
- | + | ||
- | The URL response | + | |
- | {{https:// | + | |
- | + | ||
- | + | ||
- | === Limitations of Azure functions === | + | |
- | + | ||
- | + | ||
- | * Azure functions - are NOT only serverless. | + | |
- | * You can choose a premium subscription and deploy your **Azure function** | + | |
- | * You CAN'T use a serverless function - in a private network | + | |
- | * You **CAN' | + | |
- | * http_trigger | + | |
- | * Blob trigger | + | |
- | * CosmosDB trigger | + | |
- | * EventHub trigger | + | |
- | * Queue trigger | + | |
- | * ServiceBus Queue trigger | + | |
- | * ServiceBus Topic trigger | + | |
- | * Timer Trigger | + | |
- | + | ||
- | + | ||
- | + | ||
- | === Azure physical infrastructure === | + | |
https:// | https:// | ||
Line 112: | Line 84: | ||
- | === ESXi === | + | ==== ESXi |
Bare Metal Hypervisor | Bare Metal Hypervisor | ||
Line 124: | Line 96: | ||
- | === Virtual SAN (vSAN) === | + | ==== Virtual SAN (vSAN) |
VMware vSAN ist eine Storage-Virtualisierungssoftware für Unternehmen, | VMware vSAN ist eine Storage-Virtualisierungssoftware für Unternehmen, | ||
Line 138: | Line 110: | ||
- | === Network === | + | |
+ | ==== Azure API Management ==== | ||
+ | |||
+ | |||
+ | === Policies === | ||
+ | |||
+ | * Intro https:// | ||
+ | * Example https:// | ||
+ | |||
+ | |||
+ | === Evaluation order === | ||
+ | |||
+ | Policies are **executed sequentially** based on their placement within the policy configuration. | ||
+ | ==== Network | ||
== public / private subnets == | == public / private subnets == | ||
Line 155: | Line 140: | ||
https:// | https:// | ||
{{https:// | {{https:// | ||
+ | |||
+ | |||
+ | |||
+ | ==== Azure Data Ops ==== | ||
+ | |||
+ | Data Management Landing Zone: | ||
+ | |||
+ | {{https:// | ||
+ | |||
+ | Source: | ||
+ | https:// | ||
+ | |||
+ | |||
+ | |||
+ | 2) Data Landing Zone: | ||
+ | |||
+ | {{https:// | ||
+ | |||
+ | Source: | ||
+ | https:// | ||
+ | |||
+ | |||
+ | |||
+ | ==== IAM and Role Based Access Control ==== | ||
+ | |||
+ | see | ||
+ | https:// | ||
+ | |||
+ | {{https:// | ||
+ | |||
+ | |||
+ | Azure Custom Roles: | ||
+ | |||
+ | * https:// | ||
+ | |||
+ | IAM and Role Based Access Control | ||
+ | |||
+ | <sxh java> | ||
+ | { | ||
+ | " | ||
+ | "/" | ||
+ | ], | ||
+ | " | ||
+ | " | ||
+ | " | ||
+ | " | ||
+ | { | ||
+ | " | ||
+ | " | ||
+ | " | ||
+ | " | ||
+ | ], | ||
+ | " | ||
+ | " | ||
+ | " | ||
+ | ], | ||
+ | " | ||
+ | } | ||
+ | ], | ||
+ | " | ||
+ | " | ||
+ | " | ||
+ | } | ||
+ | </ | ||
+ | |||
+ | |||
+ | Custom role, which allows to assign roles to Azure API Managers. | ||
+ | <sxh java> | ||
+ | { | ||
+ | " | ||
+ | " | ||
+ | " | ||
+ | " | ||
+ | " | ||
+ | " | ||
+ | ], | ||
+ | " | ||
+ | " | ||
+ | " | ||
+ | " | ||
+ | "/ | ||
+ | ] | ||
+ | } | ||
+ | </ | ||
+ |
cloud/azure.1710690470.txt.gz · Last modified: by skipidar