SASE – The next generation of services we need to protect the mobile workspace?

SASE …. or Secure Access Service Edge is a term coined by Gartner and is about providing the next generation of security and optimized network access for end-users. When I first starting to read about this, my first thought was, so is this Zero-Trust? but no, it is a combination of multiple features, but Zero-Trust …

SASE – The next generation of services we need to protect the mobile workspace? Read More »

Azure WVD and Shortpath using IKEv2 VPN

Before I’ve written a bit about the Microsoft Windows Virtual Desktop architecture and how it handles traffic flow –> Windows Virtual Desktop Traffic Flow and GPU Workloads | Marius Sandbu (msandbu.org) A While back, Microsoft also introduced a new feature called WVD ShortPath which essentially allows the client to do a direct connection to the Session …

Azure WVD and Shortpath using IKEv2 VPN Read More »

Network Packet Trace with Netsh and analysis with Wireshark

So when you are working on a production workload and something is not right with the network on that Windows VM, what do you do? Wireshark to the rescue? well no… not quite, I wouldn’t install that on a production server since it installs WinPcap/NpCap which is an NDIS filter driver on the network card. Secondly, …

Network Packet Trace with Netsh and analysis with Wireshark Read More »

Azure Firewall Premium vs Third-Party Firewalls

Yesterday Microsoft released into public preview the premium sku of their Azure Firewall which is a managed PaaS based firewall service in Azure. Since I first wrote about Azure Firewall and some of the features, I found lacking there have been a lot of enhancements (here is the original article –> Current limitations with Azure Firewall …

Azure Firewall Premium vs Third-Party Firewalls Read More »

RDP DDoS amplification attack

s straight Last week, there was published an article from NETSCOUT Microsoft Remote Desktop Protocol (RDP) Reflection/Amplification DDoS Attack Mitigation Recommendations – January 2021 | NETSCOUT that publicly available RDP servers were used to do amplified DDoS attacks. From the article “When enabled on UDP/3389, the Microsoft Windows RDP service may be abused to launch UDP reflection/amplification …

RDP DDoS amplification attack Read More »

Latency and difference between SQL Managed Instance and SQL Server VM?

As I’ve been recently working with a project where we were looking into where to place our databases in Azure and what kind of services or IaaS based delivery, we should choose for hosting databases for some certain line of business applications. Within Azure we have three different managed Microsoft SQL offerings, but which one …

Latency and difference between SQL Managed Instance and SQL Server VM? Read More »

Cloud PC the evolution of Windows Virtual Desktop?

DaaS (Desktop as a Service) has seen a lot of uptake now during COVID-19, where organizations are moving from use of traditional VDI deliveries, going to a fully managed desktop as a service from the main vendors such as Citrix, Nutanix, VMware or others. As also described here in this ZDnet article –> https://www.zdnet.com/article/microsofts-cloud-pc-leak-reveals-new-details-on-upcoming-azure-powered-remote-desktop/ Microsoft is working …

Cloud PC the evolution of Windows Virtual Desktop? Read More »

Scroll to Top