🔗 View in your browser   |  ✍️ Publish on FAUN.dev   |  🦄 Become a sponsor
 
Allow loading remote contents and showing images to get the best out of this email.
ZalDo
 
Azure Weekly Newsletter, Zaldo. Curated Azure news, tutorials, tools and more!
 
 
⭐ Sponsors
 
faun.dev faun.dev
 
Our AI/ML weekly newsletter, Kala, is coming very soon!
 
 
Kala is designed specifically for AI/ML developers & enthusiasts and will feature a wide range of tutorials, news, tools, libraries, and more, including updates about OpenAI ChatGPT, Google Bard,and everything you may care about as a developer!

In order to join this weekly newsletter:
  1. Login or signup .
  2. Go to your Newsletter Settings .
  3. Update the topics you'd like to subscribe to.
 
 
www.buymeacoffee.com www.buymeacoffee.com
 
Support FAUN
 
 
FAUN is funded through crowdfunding and carefully chosen advertising. Both are critical for advancing our mission to give our community members the best experience possible.

Join other members who are already supporting us!
 
 
👉 Spread the word and help developers find you by promoting your projects on FAUN. Get in touch for more information.
 
🔗 Stories, Tutorials & Articles
 
maltheborch.com maltheborch.com
 
PowerShell Remoting on Windows using Airflow
 
 
In this article, the author explains how to use Apache Airflow for orchestration of Windows jobs through PowerShell Remoting on Windows using WinRM (Windows Remote Management).

To ensure security, the author recommends using the Just-Enough-Administration (JEA) framework, which is essentially a more advanced version of sudo and allows you to use PowerShell as an API, limiting the remote management interface to a defined set of commands and executing as a specific user.

The author explains how to register a JEA configuration and make it available to Airflow by creating a role capabilities file. The author also mentions the steps to add the PowerShell Remoting Protocol Provider to Airflow and the necessary Python packages to be installed, including apache-airflow-providers-microsoft-psrp, gssapi and krb5.

They conclude by noting that when WinRM is used with an HTTP listener, Kerberos authentication can be used to secure the communication, acting as a trusted third party, supplanting the use of SSL/TLS.
 
 
askaresh.com askaresh.com
 
Compliance Policy for Azure Virtual Desktop Session Host Virtual machine managed via Microsoft Intune
 
 
The article is about how to use Microsoft Intune Compliance Policy to manage the security and compliance of Azure Virtual Desktop (AVD) Session Host virtual machines.

It explains the steps to set up an Intune Compliance Policy, the reasons why organizations create such policies, the compliance policies supported by Azure Virtual Desktop, and the configuration options. The article also covers the process of creating the compliance policy and monitoring device compliance for AVD Session Host virtual machines.
 
 
medium.com medium.com
 
Track IP addresses consumption with Azure Application Insights
 
 
The article is about automating the tracking of Azure Virtual Network IP addresses consumption every 30 minutes through a Timer Trigger Azure Function App. The Azure Function will be deployed through Bicep, which is a domain-specific language that uses declarative syntax to deploy Azure resources and offers the best authoring experience for infrastructure-as-code solutions in Azure. The article is a continuation from part 1 where it showed how to send a custom event telemetry to an Azure Application Insights instance through PowerShell.
 
 
azure.microsoft.com azure.microsoft.com
 
Scale Azure Firewall SNAT ports with NAT Gateway for large workloads
 
 
In order to deal with outbound connectivity issues encountered when handling large scale outbound traffic in Azure, NAT Gateway can be used in combination with Azure Firewall. Azure Firewall inspects, secures, and conceals the original client IP address of all outbound internet traffic using SNAT (Source Network Address Translation). However, large-scale environments can experience SNAT port exhaustion, where all available SNAT ports run out.

This can be solved by using NAT Gateway, which provides a large SNAT port inventory with fewer public IPs and is designed to handle dynamic and large-scale workloads by allocating SNAT ports on demand and randomly selecting them. NAT Gateway also provides 50 Gbps of data throughput for outbound traffic and ensures that all outbound traffic is secure by subjecting inbound traffic to security rules set on Azure Firewall.

To set up NAT Gateway with Azure Firewall, the firewall should be deployed to a subnet within the virtual network, and the NAT Gateway should be attached to the Firewall subnet and given up to 16 public IP addresses.
 
 
azure.microsoft.com azure.microsoft.com
 
Automate your attack response with Azure DDoS Protection solution for Microsoft Sentinel
 
 
Azure DDoS Protection Solution for Microsoft Sentinel is a security solution offered by Microsoft Azure to help organizations protect their resources and applications from DDoS (Distributed Denial of Service) attacks.

Azure DDoS Protection Solution for Sentinel provides a single consumable solution package that includes an Azure DDoS Protection data connector and workbook, alert rules to retrieve the source of the DDoS attack, and a remediation IP playbook that automatically creates remediation in Azure Firewall to block the source of the attack. The solution is integrated with Microsoft Sentinel, a cloud-native security information and event management (SIEM) solution, to provide a centralized view of the attack landscape and automate the response to mitigate sophisticated attacks.

The solution is initially released for Azure Firewall and will be enhanced to support Azure Web Application Firewall (WAF) soon. The flexibility of the solution allows customers to use it with any firewall as long as it has a Sentinel Playbook. The solution provides an automated response to mitigate DDoS attacks and provides better security for organizations by blocking possible new attack vectors in other security products.
 
 

👉 Got something to share? Create your FAUN Page and start publishing your blog posts, tools, and updates. Grow your audience, and get discovered by the developer community.

 
📺 Quick Hits
 
 
Most Web services that were hit by the outage of Microsoft Azure’s cloud services on Wednesday (Feb 8) are back online after power was restored to affected sections of its infrastructure.
 
 
Microsoft has explained what caused the Azure outage last week on Wednesday (Feb 8). The outage made parts of Azure, Microsoft 365, and Power Platform inaccessible.
 
 
⭐ Supporters
 
www.youtube.com www.youtube.com
 
Subscribe to our Youtube Channel
 
 
Every day, we publish a short video to answer questions such as:
  • Why Kubernetes in Written in Go
  • Go vs. Rust, Which is Better?
  • Is Quantum Computing a Threat to Bitcoin?
  • What are the Worst Mistakes in Computer Science?
Our approach: We simplify complicated topics and make them accessible in byte-sized videos!

Join FAUN on Youtube!
 
 
faun.dev faun.dev
 
Advertise with FAUN
 
 
Meet developers where they are, not where you want them to be. Fill out the form and download our mediakit .
 
 
👉 Spread the word and help developers find you by promoting your projects on FAUN. Get in touch for more information.
 
📚 Book picks
 
www.amazon.com www.amazon.com
 
Soft Skills: The Software Developer's Life Manual
 
 
John uses a simple style to teach topics that you never knew you needed. This isn’t theory, it’s proven through the results that let him retire at 33-years old.

You’ll learn:
  • Ways To Land The Job, Keep The Job And Climb The Corporate Ladder
  • How To Stand Out From Your Competition
  • 10-Step Process To Learn Anything
  • What To Do With Your Paycheck to Maximize Your Earnings
  • Why Healthy Living and Exercise are Crucial
  • Ways to Build Your Brand
 
 
 
⚙️ Tools, Apps & Software
 
github.com github.com
 
EuroAlphabets/integration-scc-sentinel
 
 
Google Cloud Security Command Center to Azure Sentinel Connector
 
 
github.com github.com
 
thangchung/awesome-dotnet-core
 
 
A collection of awesome .NET core libraries, tools, frameworks and software
 
 
github.com github.com
 
KnudsenMorten/Azure-Recommendations-Get-In-Control
 
 
Automate Reporting of Defender for Cloud recommendations & Role Assignments with 35 different views
 
 
github.com github.com
 
vectra-ai-research/MAAD-AF
 
 
MAAD Attack Framework - An attack tool for simple, fast & effective security testing of M365 & Azure AD.
 
 

👉 Spread the word and help developers find and follow your Open Source project by promoting it on FAUN. Get in touch for more information.

 
🤔 Did you know?
 
 
The first computer mouse was invented by Douglas Engelbart in 1963.
 
 
😂 Meme of the week
 
 
 
 
❤️ Thanks for reading
 
 
👋 Keep in touch and follow us on social media:
- 💼LinkedIn
- 📝Medium
- 🐦Twitter
- 👥Facebook
- 📸Instagram

👌 Was this newsletter helpful?
We'd really appreciate it if you could forward it to your friends!

🙏 Never miss an issue!
To receive our future emails in your inbox, don't forget to add community@faun.dev to your contacts.

🤩 Want to sponsor our newsletter?
Reach out to us at sponsors@faun.dev and we'll get back to you as soon as possible.
 

ZalDo #360: Streamlining Defense Strategy with Azure DDoS Protection for Microsoft Sentinel
Legend: ✅ = Editor's Choice / ♻️ = Old but Gold / ⭐ = Promoted / 🔰 = Beginner Friendly

You received this email because you are subscribed to FAUN.dev.
We (🐾) help developers (👣) learn and grow by keeping them up with what matters.

You can manage your subscription options here (recommended) or use the old way here (legacy). If you have any problem, read this or reply to this email.