Redesign the Production Environment Brief

Cloudride
2 min readJan 14, 2021

How to redesign the Azure production environment for enhanced security & governance, with zero disruption

The Challenge:

The Production Environment in Azure isn’t built following the Azure Best Practices and guidelines, there is a need for security, monitoring, cost, governance, high availability, and redundancy.

The Goal:

Providing an environment that will support and follow Azure best practices without compromising or interrupting the production environment and without damaging the user experience.

The Solution:

Redesign of the Production Environment in Hub & Spoke Topology, Segregating the Databases and using only private links to access, using Manage Identities and RBAC to access services, configuring monitoring, logging, and alerting

The Solution Architecture:

The Cloudride Solution:

Cloudride Architecture expert recommends to set out a plan to re-design the production environment with security enhancements as per customer needs

Segregate all components in different vNETs, Subnets, and Resource groups, Create Hub & Spoke Topology which provide a single ingress point to the environment, all the services are private.
Using Private Links is more secure than Service Endpoints (although has a cost associated with it), makes the traffic between components internal instead of exposing to the public.

Data components are backed by policy and access is controlled by RBAC.
Locking enabled on all resources,

Enable Audit Logs, Network Logs, Monitoring, and Alerting.

End Result

Enhanced security and improved Governance within a short timeframe and with zero disruption to the ongoing performance or user experience.

Call us today, or better yet — click here to book a meeting.

Originally published at https://www.cloudride.co.il.

--

--

Cloudride

Cloudride LTD, a professional services company for public cloud platforms, specialized on MS-AZURE & AWS in order to provide solutions tailored to your needs