SlideShare a Scribd company logo
1 of 25
Download to read offline
Azure Landing Zones
2nd May 2022 - Community Call
This meeting is being recorded
Agenda
• Welcome
• What’s New?
• ALZ-Bicep Update
• ALZ Terraform Module Update
• Q & A
Before we get started...
At any point, if you have a question please put it
in the chat!
(we have some of team here to help 😎)
Also we may stop and discuss your
question/point at that time, we want this to be
an open discussion with all of you 🙂
ALZ What’s New?
https://aka.ms/ALZ/WhatsNew
Single place to
stay up-to-
date
Plan for VM
Remote Access
https://aka.ms/ALZ/WhatsNew
New CAF doc
Independent software
vendor (ISV)
considerations for Azure
landing zones
https://aka.ms/ALZ/WhatsNew
New CAF doc
Adopt policy-
driven guardrails
https://aka.ms/ALZ/WhatsNew
New
CAF
doc
Tailor the Azure
landing zone
architecture
https://aka.ms/ALZ/WhatsNew
New CAF doc
Deploy Azure
landing zones by
using Terraform
https://aka.ms/ALZ/WhatsNew New
CAF
doc
Azure Landing Zones Terraform Module – v2.0.0
Virtual WAN support is now available in v2.0.0🥳🥳
 Also, a ton of bug fixes, improvements and enhancements 🏋️
 20 issues closed out with release ✅
 Check the release notes & Upgrade Guide for all the information you need
 New features, upgrade notes, breaking changes, etc.
 Rename from ESLZ to ALZ starting also 👍
https://aka.ms/ALZ/TF
Updated & New
FAQ pages
Enterprise-scale FAQ - Cloud
Adoption Framework |
Microsoft Docs –
Architecture
FAQ · Azure/Enterprise-Scale
Wiki (github.com) –
Implementation
Dev/Test/Prod
Approach Guidance
ALZ Accelerator Update (Portal Experience)
• Added telemetry to help us see usage patterns
• Can be disabled, see docs
• Increased the “preparingToLaunch” artificial ARM delay to improve
policy assignment success – helping issue #902
• Added warning messages to use different dedicated subscriptions for
platform subscriptions
ALZ Accelerator Update (Portal Experience)
• Updated to deploy an Azure Firewall Policy Premium SKU instead of
Standard when Premium is selected for the Azure Firewall in a Hub &
Spoke VNet Connectivity model.
• Updated to deploy an Azure Firewall Policy for customers using the
Virtual WAN connectivity model.
ALZ Policy Updates
• Replaced ‘Deploy-Default-Udr’ policy with ‘Deploy-Custom-Route-Table’ that allows deploying
custom route tables with an arbitrary set of UDRs (including a 0/0 default route if needed). See
here for usage details
• Updated ‘Deploy-Budget’ policy, to v1.1.0, adding new parameter of ‘budgetName’ that defaults
to: ‘budget-set-by-policy’
• Added ‘AuditEvent’ to ‘Deploy-Diagnostics-AA’
• Renamed ‘Deploy-ASCDF-Config’ to ‘Deploy-MDFC-Config’ and updated version to 3.0.0
• Aligning to renaming changes in platform
• Updated ‘Deny-Subnet-Without-Nsg’ & ‘Deny-Subnet-Without-Udr’ to version 2.0.0
• Covering all scenarios/ways that subnets can be created to ensure they are captured
• Added new custom policy definition called ‘Deny vNet peering to non-approved vNets’
• Useful in scenarios where you only want to allow vNet peering to say a central hub vNet and not allow
other vNet peerings between landing zones to be enabled.
ALZ Policy Updates – AzAdvertizer Integration
• Started integration with AzAdvertizer
• Covering Policy Definitions & Initiatives
• Use type column filtering to ‘ESLZ’ (working on rename to ALZ)
We Want You!
To contribute to ALZ
 Create issues, bugs and feature requests on any of our repos
 Tell us where we can improve existing guidance or provide new guidance
https://aka.ms/ALZ/Repo
Create an issue/feature request:
Update docs/wiki:
ALZ Bicep Update
• Public Preview launched at start of February 🥳
• Lots of activity and usage seen across customers, partners and
others 👍
• 214 stars ✨
• Good number of contributions from external contributors
• Complete coverage for the ALZ required resources
• Currently v0.6.1
• Using GitHub releases to help everyone keep track of updates
and changes etc.
• Especially any breaking changes
• Modules are ready for usage in production, they are just normal
supported Bicep templates/modules 👍
• Added a Consumer Guide to help with usage patterns/scenarios
• Upcoming “Schooled in ALZ Bicep” episode with JohnnyChipz
(MVP) – stay tuned here
ALZ Bicep Modules High Level
Management Groups
Custom Policy Definitions
Policy Assignments
Subscription Placement
Logging & Automation
VWAN
(Contoso)
Modules Orchestration Templates
Hub Network - Traditional
No Hybrid
Connectivity
(Wingtip)
Users can choose an
orchestration
template
Hub &
Spoke
(Adventure
Works)
Hub Network - VWAN
Custom Role Definitions
RBAC Role Assignments
GA Goal
OR
OR
Simplest Path
GA Goal
https://github.com/Azure/bicep/issues/
5371
Now fixed which enables this for us.
We are testing currently
ALZ Bicep Modules High Level
Management Groups
Custom Policy Definitions
Policy Assignments
Subscription Placement
Logging & Automation
Modules
Hub Network - Traditional
Or users can choose
to use individual
modules (with
sequencing
guidance)
Hub Network - VWAN
Custom Role Definitions
RBAC Role Assignments
Flexibility Option 1
ALZ Bicep Modules High Level
Management Groups
Custom Policy Definitions
Policy Assignments
Subscription Placement
Logging & Automation
Modules
Hub Network - Traditional
Or users can choose
to build their own
orchestration
module/s using
individual modules
(with sequencing
guidance)
Hub Network - VWAN
Custom Role Definitions
RBAC Role Assignments
Flexibility Option 2
OR
AND
ALZ Bicep Modules High Level
Management Groups
Custom Policy Definitions
Policy Assignments
Subscription Placement
Logging & Automation
Modules
Hub Network - Traditional
Or users can choose
to build their own
orchestration
module/s using
individual modules
(with sequencing
guidance)
Hub Network - VWAN
Custom Role Definitions
RBAC Role Assignments
Flexibility Option 3
OR
What does “evergreen” mean to you?
Let us know in the feedback survey – Question 2
https://aka.ms/ALZCommunitySurvey
Q & A
Thank You!
https://aka.ms/ALZCommunitySurvey
Stay up-to-date:
https://aka.ms/ALZ/WhatsNew

More Related Content

Similar to ALZ-Community-Call-02052022.pdf

Cloud Foundry: Hands-on Deployment Workshop
Cloud Foundry: Hands-on Deployment WorkshopCloud Foundry: Hands-on Deployment Workshop
Cloud Foundry: Hands-on Deployment WorkshopManuel Garcia
 
VMworld 2013: Deploying vSphere with OpenStack: What It Means to Your Cloud E...
VMworld 2013: Deploying vSphere with OpenStack: What It Means to Your Cloud E...VMworld 2013: Deploying vSphere with OpenStack: What It Means to Your Cloud E...
VMworld 2013: Deploying vSphere with OpenStack: What It Means to Your Cloud E...VMworld
 
Discover the OVH Dedicated Cloud Webinar
Discover the OVH Dedicated Cloud WebinarDiscover the OVH Dedicated Cloud Webinar
Discover the OVH Dedicated Cloud WebinarOVHcloud
 
Azure from scratch part 3 By Girish Kalamati
Azure from scratch part 3 By Girish KalamatiAzure from scratch part 3 By Girish Kalamati
Azure from scratch part 3 By Girish KalamatiGirish Kalamati
 
Introducing Azure Arc
Introducing Azure ArcIntroducing Azure Arc
Introducing Azure ArcMohamed Wali
 
IBM InterConnect 2015 - IIB in the Cloud
IBM InterConnect 2015 - IIB in the CloudIBM InterConnect 2015 - IIB in the Cloud
IBM InterConnect 2015 - IIB in the CloudAndrew Coleman
 
Should I move my database to the cloud?
Should I move my database to the cloud?Should I move my database to the cloud?
Should I move my database to the cloud?James Serra
 
Manage your kubernetes cluster with cluster api, azure and git ops
Manage your kubernetes cluster with cluster api, azure and git opsManage your kubernetes cluster with cluster api, azure and git ops
Manage your kubernetes cluster with cluster api, azure and git opsJorge Arteiro
 
recent CF repositories
recent CF repositoriesrecent CF repositories
recent CF repositoriesKen Ojiri
 
AWS Webcast - Datacenter Migration to AWS
AWS Webcast - Datacenter Migration to AWSAWS Webcast - Datacenter Migration to AWS
AWS Webcast - Datacenter Migration to AWSAmazon Web Services
 
Hello OpenStack, Meet Hadoop
Hello OpenStack, Meet HadoopHello OpenStack, Meet Hadoop
Hello OpenStack, Meet HadoopDataWorks Summit
 
Innovation morning agenda+azure arc
Innovation morning agenda+azure arcInnovation morning agenda+azure arc
Innovation morning agenda+azure arcClaudia Angelelli
 
Mvpskill Saturday EP_37 12 Sept 2563 - Azure Products Update + DEMO
Mvpskill Saturday EP_37 12 Sept 2563 - Azure Products Update + DEMOMvpskill Saturday EP_37 12 Sept 2563 - Azure Products Update + DEMO
Mvpskill Saturday EP_37 12 Sept 2563 - Azure Products Update + DEMOKumton Suttiraksiri
 
What’s New in CloudStack 4.15 - CloudStack European User Group Virtual, May 2021
What’s New in CloudStack 4.15 - CloudStack European User Group Virtual, May 2021What’s New in CloudStack 4.15 - CloudStack European User Group Virtual, May 2021
What’s New in CloudStack 4.15 - CloudStack European User Group Virtual, May 2021ShapeBlue
 
VMware - Application Portability
VMware - Application PortabilityVMware - Application Portability
VMware - Application PortabilityVMUG IT
 
How to build the Cloud Native applications the way you want – not the way the...
How to build the Cloud Native applications the way you want – not the way the...How to build the Cloud Native applications the way you want – not the way the...
How to build the Cloud Native applications the way you want – not the way the...Eficode
 
Spinnaker for Azure
Spinnaker for AzureSpinnaker for Azure
Spinnaker for AzureLarry Guger
 
Implement SQL Server on an Azure VM
Implement SQL Server on an Azure VMImplement SQL Server on an Azure VM
Implement SQL Server on an Azure VMJames Serra
 
As a Service: Cloud Foundry on OpenStack - Lessons Learnt
As a Service: Cloud Foundry on OpenStack - Lessons LearntAs a Service: Cloud Foundry on OpenStack - Lessons Learnt
As a Service: Cloud Foundry on OpenStack - Lessons LearntAnimesh Singh
 

Similar to ALZ-Community-Call-02052022.pdf (20)

Cloud Foundry: Hands-on Deployment Workshop
Cloud Foundry: Hands-on Deployment WorkshopCloud Foundry: Hands-on Deployment Workshop
Cloud Foundry: Hands-on Deployment Workshop
 
VMworld 2013: Deploying vSphere with OpenStack: What It Means to Your Cloud E...
VMworld 2013: Deploying vSphere with OpenStack: What It Means to Your Cloud E...VMworld 2013: Deploying vSphere with OpenStack: What It Means to Your Cloud E...
VMworld 2013: Deploying vSphere with OpenStack: What It Means to Your Cloud E...
 
Discover the OVH Dedicated Cloud Webinar
Discover the OVH Dedicated Cloud WebinarDiscover the OVH Dedicated Cloud Webinar
Discover the OVH Dedicated Cloud Webinar
 
Azure from scratch part 3 By Girish Kalamati
Azure from scratch part 3 By Girish KalamatiAzure from scratch part 3 By Girish Kalamati
Azure from scratch part 3 By Girish Kalamati
 
Introducing Azure Arc
Introducing Azure ArcIntroducing Azure Arc
Introducing Azure Arc
 
IBM InterConnect 2015 - IIB in the Cloud
IBM InterConnect 2015 - IIB in the CloudIBM InterConnect 2015 - IIB in the Cloud
IBM InterConnect 2015 - IIB in the Cloud
 
Should I move my database to the cloud?
Should I move my database to the cloud?Should I move my database to the cloud?
Should I move my database to the cloud?
 
Manage your kubernetes cluster with cluster api, azure and git ops
Manage your kubernetes cluster with cluster api, azure and git opsManage your kubernetes cluster with cluster api, azure and git ops
Manage your kubernetes cluster with cluster api, azure and git ops
 
recent CF repositories
recent CF repositoriesrecent CF repositories
recent CF repositories
 
AWS Webcast - Datacenter Migration to AWS
AWS Webcast - Datacenter Migration to AWSAWS Webcast - Datacenter Migration to AWS
AWS Webcast - Datacenter Migration to AWS
 
Hello OpenStack, Meet Hadoop
Hello OpenStack, Meet HadoopHello OpenStack, Meet Hadoop
Hello OpenStack, Meet Hadoop
 
Innovation morning agenda+azure arc
Innovation morning agenda+azure arcInnovation morning agenda+azure arc
Innovation morning agenda+azure arc
 
Mvpskill Saturday EP_37 12 Sept 2563 - Azure Products Update + DEMO
Mvpskill Saturday EP_37 12 Sept 2563 - Azure Products Update + DEMOMvpskill Saturday EP_37 12 Sept 2563 - Azure Products Update + DEMO
Mvpskill Saturday EP_37 12 Sept 2563 - Azure Products Update + DEMO
 
Power of Azure Devops
Power of Azure DevopsPower of Azure Devops
Power of Azure Devops
 
What’s New in CloudStack 4.15 - CloudStack European User Group Virtual, May 2021
What’s New in CloudStack 4.15 - CloudStack European User Group Virtual, May 2021What’s New in CloudStack 4.15 - CloudStack European User Group Virtual, May 2021
What’s New in CloudStack 4.15 - CloudStack European User Group Virtual, May 2021
 
VMware - Application Portability
VMware - Application PortabilityVMware - Application Portability
VMware - Application Portability
 
How to build the Cloud Native applications the way you want – not the way the...
How to build the Cloud Native applications the way you want – not the way the...How to build the Cloud Native applications the way you want – not the way the...
How to build the Cloud Native applications the way you want – not the way the...
 
Spinnaker for Azure
Spinnaker for AzureSpinnaker for Azure
Spinnaker for Azure
 
Implement SQL Server on an Azure VM
Implement SQL Server on an Azure VMImplement SQL Server on an Azure VM
Implement SQL Server on an Azure VM
 
As a Service: Cloud Foundry on OpenStack - Lessons Learnt
As a Service: Cloud Foundry on OpenStack - Lessons LearntAs a Service: Cloud Foundry on OpenStack - Lessons Learnt
As a Service: Cloud Foundry on OpenStack - Lessons Learnt
 

Recently uploaded

(MEERA) Dapodi Call Girls Just Call 7001035870 [ Cash on Delivery ] Pune Escorts
(MEERA) Dapodi Call Girls Just Call 7001035870 [ Cash on Delivery ] Pune Escorts(MEERA) Dapodi Call Girls Just Call 7001035870 [ Cash on Delivery ] Pune Escorts
(MEERA) Dapodi Call Girls Just Call 7001035870 [ Cash on Delivery ] Pune Escortsranjana rawat
 
Call Girls in Nagpur Suman Call 7001035870 Meet With Nagpur Escorts
Call Girls in Nagpur Suman Call 7001035870 Meet With Nagpur EscortsCall Girls in Nagpur Suman Call 7001035870 Meet With Nagpur Escorts
Call Girls in Nagpur Suman Call 7001035870 Meet With Nagpur EscortsCall Girls in Nagpur High Profile
 
College Call Girls Nashik Nehal 7001305949 Independent Escort Service Nashik
College Call Girls Nashik Nehal 7001305949 Independent Escort Service NashikCollege Call Girls Nashik Nehal 7001305949 Independent Escort Service Nashik
College Call Girls Nashik Nehal 7001305949 Independent Escort Service NashikCall Girls in Nagpur High Profile
 
SPICE PARK APR2024 ( 6,793 SPICE Models )
SPICE PARK APR2024 ( 6,793 SPICE Models )SPICE PARK APR2024 ( 6,793 SPICE Models )
SPICE PARK APR2024 ( 6,793 SPICE Models )Tsuyoshi Horigome
 
Introduction and different types of Ethernet.pptx
Introduction and different types of Ethernet.pptxIntroduction and different types of Ethernet.pptx
Introduction and different types of Ethernet.pptxupamatechverse
 
chaitra-1.pptx fake news detection using machine learning
chaitra-1.pptx  fake news detection using machine learningchaitra-1.pptx  fake news detection using machine learning
chaitra-1.pptx fake news detection using machine learningmisbanausheenparvam
 
HARDNESS, FRACTURE TOUGHNESS AND STRENGTH OF CERAMICS
HARDNESS, FRACTURE TOUGHNESS AND STRENGTH OF CERAMICSHARDNESS, FRACTURE TOUGHNESS AND STRENGTH OF CERAMICS
HARDNESS, FRACTURE TOUGHNESS AND STRENGTH OF CERAMICSRajkumarAkumalla
 
(RIA) Call Girls Bhosari ( 7001035870 ) HI-Fi Pune Escorts Service
(RIA) Call Girls Bhosari ( 7001035870 ) HI-Fi Pune Escorts Service(RIA) Call Girls Bhosari ( 7001035870 ) HI-Fi Pune Escorts Service
(RIA) Call Girls Bhosari ( 7001035870 ) HI-Fi Pune Escorts Serviceranjana rawat
 
Gfe Mayur Vihar Call Girls Service WhatsApp -> 9999965857 Available 24x7 ^ De...
Gfe Mayur Vihar Call Girls Service WhatsApp -> 9999965857 Available 24x7 ^ De...Gfe Mayur Vihar Call Girls Service WhatsApp -> 9999965857 Available 24x7 ^ De...
Gfe Mayur Vihar Call Girls Service WhatsApp -> 9999965857 Available 24x7 ^ De...srsj9000
 
Analog to Digital and Digital to Analog Converter
Analog to Digital and Digital to Analog ConverterAnalog to Digital and Digital to Analog Converter
Analog to Digital and Digital to Analog ConverterAbhinavSharma374939
 
Software Development Life Cycle By Team Orange (Dept. of Pharmacy)
Software Development Life Cycle By  Team Orange (Dept. of Pharmacy)Software Development Life Cycle By  Team Orange (Dept. of Pharmacy)
Software Development Life Cycle By Team Orange (Dept. of Pharmacy)Suman Mia
 
VIP Call Girls Service Hitech City Hyderabad Call +91-8250192130
VIP Call Girls Service Hitech City Hyderabad Call +91-8250192130VIP Call Girls Service Hitech City Hyderabad Call +91-8250192130
VIP Call Girls Service Hitech City Hyderabad Call +91-8250192130Suhani Kapoor
 
High Profile Call Girls Nagpur Meera Call 7001035870 Meet With Nagpur Escorts
High Profile Call Girls Nagpur Meera Call 7001035870 Meet With Nagpur EscortsHigh Profile Call Girls Nagpur Meera Call 7001035870 Meet With Nagpur Escorts
High Profile Call Girls Nagpur Meera Call 7001035870 Meet With Nagpur EscortsCall Girls in Nagpur High Profile
 
Processing & Properties of Floor and Wall Tiles.pptx
Processing & Properties of Floor and Wall Tiles.pptxProcessing & Properties of Floor and Wall Tiles.pptx
Processing & Properties of Floor and Wall Tiles.pptxpranjaldaimarysona
 
Architect Hassan Khalil Portfolio for 2024
Architect Hassan Khalil Portfolio for 2024Architect Hassan Khalil Portfolio for 2024
Architect Hassan Khalil Portfolio for 2024hassan khalil
 
Microscopic Analysis of Ceramic Materials.pptx
Microscopic Analysis of Ceramic Materials.pptxMicroscopic Analysis of Ceramic Materials.pptx
Microscopic Analysis of Ceramic Materials.pptxpurnimasatapathy1234
 
the ladakh protest in leh ladakh 2024 sonam wangchuk.pptx
the ladakh protest in leh ladakh 2024 sonam wangchuk.pptxthe ladakh protest in leh ladakh 2024 sonam wangchuk.pptx
the ladakh protest in leh ladakh 2024 sonam wangchuk.pptxhumanexperienceaaa
 
Call Girls Delhi {Jodhpur} 9711199012 high profile service
Call Girls Delhi {Jodhpur} 9711199012 high profile serviceCall Girls Delhi {Jodhpur} 9711199012 high profile service
Call Girls Delhi {Jodhpur} 9711199012 high profile servicerehmti665
 

Recently uploaded (20)

(MEERA) Dapodi Call Girls Just Call 7001035870 [ Cash on Delivery ] Pune Escorts
(MEERA) Dapodi Call Girls Just Call 7001035870 [ Cash on Delivery ] Pune Escorts(MEERA) Dapodi Call Girls Just Call 7001035870 [ Cash on Delivery ] Pune Escorts
(MEERA) Dapodi Call Girls Just Call 7001035870 [ Cash on Delivery ] Pune Escorts
 
Call Girls in Nagpur Suman Call 7001035870 Meet With Nagpur Escorts
Call Girls in Nagpur Suman Call 7001035870 Meet With Nagpur EscortsCall Girls in Nagpur Suman Call 7001035870 Meet With Nagpur Escorts
Call Girls in Nagpur Suman Call 7001035870 Meet With Nagpur Escorts
 
Call Us -/9953056974- Call Girls In Vikaspuri-/- Delhi NCR
Call Us -/9953056974- Call Girls In Vikaspuri-/- Delhi NCRCall Us -/9953056974- Call Girls In Vikaspuri-/- Delhi NCR
Call Us -/9953056974- Call Girls In Vikaspuri-/- Delhi NCR
 
Exploring_Network_Security_with_JA3_by_Rakesh Seal.pptx
Exploring_Network_Security_with_JA3_by_Rakesh Seal.pptxExploring_Network_Security_with_JA3_by_Rakesh Seal.pptx
Exploring_Network_Security_with_JA3_by_Rakesh Seal.pptx
 
College Call Girls Nashik Nehal 7001305949 Independent Escort Service Nashik
College Call Girls Nashik Nehal 7001305949 Independent Escort Service NashikCollege Call Girls Nashik Nehal 7001305949 Independent Escort Service Nashik
College Call Girls Nashik Nehal 7001305949 Independent Escort Service Nashik
 
SPICE PARK APR2024 ( 6,793 SPICE Models )
SPICE PARK APR2024 ( 6,793 SPICE Models )SPICE PARK APR2024 ( 6,793 SPICE Models )
SPICE PARK APR2024 ( 6,793 SPICE Models )
 
Introduction and different types of Ethernet.pptx
Introduction and different types of Ethernet.pptxIntroduction and different types of Ethernet.pptx
Introduction and different types of Ethernet.pptx
 
chaitra-1.pptx fake news detection using machine learning
chaitra-1.pptx  fake news detection using machine learningchaitra-1.pptx  fake news detection using machine learning
chaitra-1.pptx fake news detection using machine learning
 
HARDNESS, FRACTURE TOUGHNESS AND STRENGTH OF CERAMICS
HARDNESS, FRACTURE TOUGHNESS AND STRENGTH OF CERAMICSHARDNESS, FRACTURE TOUGHNESS AND STRENGTH OF CERAMICS
HARDNESS, FRACTURE TOUGHNESS AND STRENGTH OF CERAMICS
 
(RIA) Call Girls Bhosari ( 7001035870 ) HI-Fi Pune Escorts Service
(RIA) Call Girls Bhosari ( 7001035870 ) HI-Fi Pune Escorts Service(RIA) Call Girls Bhosari ( 7001035870 ) HI-Fi Pune Escorts Service
(RIA) Call Girls Bhosari ( 7001035870 ) HI-Fi Pune Escorts Service
 
Gfe Mayur Vihar Call Girls Service WhatsApp -> 9999965857 Available 24x7 ^ De...
Gfe Mayur Vihar Call Girls Service WhatsApp -> 9999965857 Available 24x7 ^ De...Gfe Mayur Vihar Call Girls Service WhatsApp -> 9999965857 Available 24x7 ^ De...
Gfe Mayur Vihar Call Girls Service WhatsApp -> 9999965857 Available 24x7 ^ De...
 
Analog to Digital and Digital to Analog Converter
Analog to Digital and Digital to Analog ConverterAnalog to Digital and Digital to Analog Converter
Analog to Digital and Digital to Analog Converter
 
Software Development Life Cycle By Team Orange (Dept. of Pharmacy)
Software Development Life Cycle By  Team Orange (Dept. of Pharmacy)Software Development Life Cycle By  Team Orange (Dept. of Pharmacy)
Software Development Life Cycle By Team Orange (Dept. of Pharmacy)
 
VIP Call Girls Service Hitech City Hyderabad Call +91-8250192130
VIP Call Girls Service Hitech City Hyderabad Call +91-8250192130VIP Call Girls Service Hitech City Hyderabad Call +91-8250192130
VIP Call Girls Service Hitech City Hyderabad Call +91-8250192130
 
High Profile Call Girls Nagpur Meera Call 7001035870 Meet With Nagpur Escorts
High Profile Call Girls Nagpur Meera Call 7001035870 Meet With Nagpur EscortsHigh Profile Call Girls Nagpur Meera Call 7001035870 Meet With Nagpur Escorts
High Profile Call Girls Nagpur Meera Call 7001035870 Meet With Nagpur Escorts
 
Processing & Properties of Floor and Wall Tiles.pptx
Processing & Properties of Floor and Wall Tiles.pptxProcessing & Properties of Floor and Wall Tiles.pptx
Processing & Properties of Floor and Wall Tiles.pptx
 
Architect Hassan Khalil Portfolio for 2024
Architect Hassan Khalil Portfolio for 2024Architect Hassan Khalil Portfolio for 2024
Architect Hassan Khalil Portfolio for 2024
 
Microscopic Analysis of Ceramic Materials.pptx
Microscopic Analysis of Ceramic Materials.pptxMicroscopic Analysis of Ceramic Materials.pptx
Microscopic Analysis of Ceramic Materials.pptx
 
the ladakh protest in leh ladakh 2024 sonam wangchuk.pptx
the ladakh protest in leh ladakh 2024 sonam wangchuk.pptxthe ladakh protest in leh ladakh 2024 sonam wangchuk.pptx
the ladakh protest in leh ladakh 2024 sonam wangchuk.pptx
 
Call Girls Delhi {Jodhpur} 9711199012 high profile service
Call Girls Delhi {Jodhpur} 9711199012 high profile serviceCall Girls Delhi {Jodhpur} 9711199012 high profile service
Call Girls Delhi {Jodhpur} 9711199012 high profile service
 

ALZ-Community-Call-02052022.pdf

  • 1. Azure Landing Zones 2nd May 2022 - Community Call
  • 2. This meeting is being recorded
  • 3. Agenda • Welcome • What’s New? • ALZ-Bicep Update • ALZ Terraform Module Update • Q & A
  • 4. Before we get started... At any point, if you have a question please put it in the chat! (we have some of team here to help 😎) Also we may stop and discuss your question/point at that time, we want this to be an open discussion with all of you 🙂
  • 6. Plan for VM Remote Access https://aka.ms/ALZ/WhatsNew New CAF doc
  • 7. Independent software vendor (ISV) considerations for Azure landing zones https://aka.ms/ALZ/WhatsNew New CAF doc
  • 9. Tailor the Azure landing zone architecture https://aka.ms/ALZ/WhatsNew New CAF doc
  • 10. Deploy Azure landing zones by using Terraform https://aka.ms/ALZ/WhatsNew New CAF doc
  • 11. Azure Landing Zones Terraform Module – v2.0.0 Virtual WAN support is now available in v2.0.0🥳🥳  Also, a ton of bug fixes, improvements and enhancements 🏋️  20 issues closed out with release ✅  Check the release notes & Upgrade Guide for all the information you need  New features, upgrade notes, breaking changes, etc.  Rename from ESLZ to ALZ starting also 👍 https://aka.ms/ALZ/TF
  • 12. Updated & New FAQ pages Enterprise-scale FAQ - Cloud Adoption Framework | Microsoft Docs – Architecture FAQ · Azure/Enterprise-Scale Wiki (github.com) – Implementation Dev/Test/Prod Approach Guidance
  • 13. ALZ Accelerator Update (Portal Experience) • Added telemetry to help us see usage patterns • Can be disabled, see docs • Increased the “preparingToLaunch” artificial ARM delay to improve policy assignment success – helping issue #902 • Added warning messages to use different dedicated subscriptions for platform subscriptions
  • 14. ALZ Accelerator Update (Portal Experience) • Updated to deploy an Azure Firewall Policy Premium SKU instead of Standard when Premium is selected for the Azure Firewall in a Hub & Spoke VNet Connectivity model. • Updated to deploy an Azure Firewall Policy for customers using the Virtual WAN connectivity model.
  • 15. ALZ Policy Updates • Replaced ‘Deploy-Default-Udr’ policy with ‘Deploy-Custom-Route-Table’ that allows deploying custom route tables with an arbitrary set of UDRs (including a 0/0 default route if needed). See here for usage details • Updated ‘Deploy-Budget’ policy, to v1.1.0, adding new parameter of ‘budgetName’ that defaults to: ‘budget-set-by-policy’ • Added ‘AuditEvent’ to ‘Deploy-Diagnostics-AA’ • Renamed ‘Deploy-ASCDF-Config’ to ‘Deploy-MDFC-Config’ and updated version to 3.0.0 • Aligning to renaming changes in platform • Updated ‘Deny-Subnet-Without-Nsg’ & ‘Deny-Subnet-Without-Udr’ to version 2.0.0 • Covering all scenarios/ways that subnets can be created to ensure they are captured • Added new custom policy definition called ‘Deny vNet peering to non-approved vNets’ • Useful in scenarios where you only want to allow vNet peering to say a central hub vNet and not allow other vNet peerings between landing zones to be enabled.
  • 16. ALZ Policy Updates – AzAdvertizer Integration • Started integration with AzAdvertizer • Covering Policy Definitions & Initiatives • Use type column filtering to ‘ESLZ’ (working on rename to ALZ)
  • 17. We Want You! To contribute to ALZ  Create issues, bugs and feature requests on any of our repos  Tell us where we can improve existing guidance or provide new guidance https://aka.ms/ALZ/Repo Create an issue/feature request: Update docs/wiki:
  • 18. ALZ Bicep Update • Public Preview launched at start of February 🥳 • Lots of activity and usage seen across customers, partners and others 👍 • 214 stars ✨ • Good number of contributions from external contributors • Complete coverage for the ALZ required resources • Currently v0.6.1 • Using GitHub releases to help everyone keep track of updates and changes etc. • Especially any breaking changes • Modules are ready for usage in production, they are just normal supported Bicep templates/modules 👍 • Added a Consumer Guide to help with usage patterns/scenarios • Upcoming “Schooled in ALZ Bicep” episode with JohnnyChipz (MVP) – stay tuned here
  • 19. ALZ Bicep Modules High Level Management Groups Custom Policy Definitions Policy Assignments Subscription Placement Logging & Automation VWAN (Contoso) Modules Orchestration Templates Hub Network - Traditional No Hybrid Connectivity (Wingtip) Users can choose an orchestration template Hub & Spoke (Adventure Works) Hub Network - VWAN Custom Role Definitions RBAC Role Assignments GA Goal OR OR Simplest Path GA Goal https://github.com/Azure/bicep/issues/ 5371 Now fixed which enables this for us. We are testing currently
  • 20. ALZ Bicep Modules High Level Management Groups Custom Policy Definitions Policy Assignments Subscription Placement Logging & Automation Modules Hub Network - Traditional Or users can choose to use individual modules (with sequencing guidance) Hub Network - VWAN Custom Role Definitions RBAC Role Assignments Flexibility Option 1
  • 21. ALZ Bicep Modules High Level Management Groups Custom Policy Definitions Policy Assignments Subscription Placement Logging & Automation Modules Hub Network - Traditional Or users can choose to build their own orchestration module/s using individual modules (with sequencing guidance) Hub Network - VWAN Custom Role Definitions RBAC Role Assignments Flexibility Option 2 OR AND
  • 22. ALZ Bicep Modules High Level Management Groups Custom Policy Definitions Policy Assignments Subscription Placement Logging & Automation Modules Hub Network - Traditional Or users can choose to build their own orchestration module/s using individual modules (with sequencing guidance) Hub Network - VWAN Custom Role Definitions RBAC Role Assignments Flexibility Option 3 OR
  • 23. What does “evergreen” mean to you? Let us know in the feedback survey – Question 2 https://aka.ms/ALZCommunitySurvey
  • 24. Q & A