SlideShare uma empresa Scribd logo
1 de 23
AZURE NETWORK WATCHER
Network Performance Monitoring and Diagnostics Service for Azure
ADIN ERMIE
 Cloud Solution Architect (Datacenter/Azure)
 SystemCenter
 Operations Management Suite
 Azure (IaaS, PaaS, Recovery Services)
 3 x MVP - Cloud and Datacenter Management
 Email: Adin.Ermie@outlook.com
 Twitter: @AdinErmie
 Blog: http://AdinErmie.com
WHAT IS AZURE NETWORKWATCHER?
Network Watcher is a regional service that enables you to
monitor and diagnose conditions at a network scenario level in,
to, and from Azure. Scenario level monitoring enables you to
diagnose problems at an end to end network level view. Network
diagnostic and visualization tools available with Network Watcher
help you understand, diagnose, and gain insights to your network
in Azure.
AZURE NETWORKWATCHER
General Availability in Regions
https://azure.microsoft.com/en-us/regions/services/
Pricing
Documentation
https://docs.microsoft.com/en-us/azure/network-watcher/
Accessibility
Azure Network Watcher Extension
https://docs.microsoft.com/en-us/azure/virtual-machines/windows/extensions-nwa
AZURE NETWORKWATCHER
Visualize your network
topology
Topology
Diagnostic tools for
networking related
issues
Network
Diagnostics
Metric
Measure and view your
network performance
and health
Logs
Configure and view
your logs
GETTING STARTED
 Register the feature
 Register-AzureRmProviderFeature -
FeatureName AllowNetworkWatcher -
ProviderNamespace
Microsoft.Network
 Register-AzureRmResourceProvider -
ProviderNamespace
Microsoft.Network
 Enable NetworkWatcher per
Region
 Packet capture extension
enabled perVirtual Machine
AZURE NETWORKWATCHER -TOPOLOGY
Visualize your network
topology
Topology
Diagnostic tools for
networking related
issues
Network
Diagnostics
Metric
Measure and view your
network performance
and health
Logs
Configure and view
your logs
TOPOLOGY
AZURE NETWORKWATCHER – NETWORK
DIAGNOSTICS
Visualize your network
topology
Topology
Diagnostic tools for
networking related
issues
Network
Diagnostics
Metric
Measure and view your
network performance
and health
Logs
Configure and view
your logs
VARIABLE PACKET CAPTURE
Configure & Manage Capture
Sessions onVMs
-
Storage Flexibility
Session Flexibility
IP FLOWVERIFY
Investigate a Flow
SECURITY GROUPVIEW
View configured and
effective network security
groups applied on aVM
NEXT HOP
Investigate Routing in Azure
VPNTROUBLESHOOTING
TroubleshootVPN Gateways & Connections
Curate Logs relevant to theVPN State
{
"startTime": "2017-01-12T10:31:41.562646-08:00",
"endTime": "2017-01-12T18:31:48.677Z",
"code": "Degraded",
"results": [
{
"id": "PlatformInActive",
"summary": "We are sorry, your VPN gateway is in standby mode",
"detail": "During this time the gateway will not initiate or accept VPN connections with on
premises VPN devices or other Azure VPN Gateways. This is a transient state while the Azure
platform is being updated.",
"recommendedActions": [
{
"actionText": "If the condition persists, please try resetting your Azure VPN gateway",
"actionUri": "https://azure.microsoft.com/en-us/documentation/articles/vpn-gateway-
resetgw-classic/",
"actionUriText": "resetting the VPN Gateway"
},
{
"actionText": "If your VPN gateway isn't up and running by the expected resolution time,
contact support",
"actionUri": "http://azure.microsoft.com/support",
"actionUriText": "contact support"
}
]
}
]
}
AZURE NETWORKWATCHER – METRICS
Visualize your network
topology
Topology
Diagnostic tools for
networking related
issues
Network
Diagnostics
Metric
Measure and view your
network performance
and health
Logs
Configure and view
your logs
NETWORK SUBSCRIPTION LIMITS
 View the usage of
network resources
against the limits in
your subscription
AZURE NETWORKWATCHER – LOGS
Visualize your network
topology
Topology
Diagnostic tools for
networking related
issues
Network
Diagnostics
Metric
Measure and view your
network performance
and health
Logs
Configure and view
your logs
NETWORK SECURITY GROUP FLOW LOGS
View traffic through a NSG
Logs formatted in JSON
Saved to Storage Blob
DIAGNOSTIC LOGS
 You can now configure
diagnostic logs for all
the network resources
in a resource group
from a single pane.
DEMOS
 Enough with the talking
already!
 Show it to me!
CURRENT LIMITATIONS
 Topology mapper only shows items that are in the same Resource Group as
theVNET
 If the Resource Group is not in a supported Region, even though theVNET
contained within it is; you will see the error “No network watcher present in
region: <REGION>”
 When performing a Packet Capture, and using the File location, the capture
is still stored/written to Azure Storage only
RESOURCES
Regional Availability: https://azure.microsoft.com/en-us/regions/services/
Pricing:
Service Page: https://azure.microsoft.com/en-us/services/network-watcher/
Documentation: https://docs.microsoft.com/en-us/azure/network-watcher/
Feedback: https://feedback.azure.com/forums/217313-
networking/category/195844-network-watcher
QUESTIONS & ANSWERS

Mais conteúdo relacionado

Mais procurados

Mais procurados (20)

TechWiseTV Workshop: Cisco SD-WAN
TechWiseTV Workshop: Cisco SD-WANTechWiseTV Workshop: Cisco SD-WAN
TechWiseTV Workshop: Cisco SD-WAN
 
Understanding Cisco Next Generation SD-WAN Solution
Understanding Cisco Next Generation SD-WAN SolutionUnderstanding Cisco Next Generation SD-WAN Solution
Understanding Cisco Next Generation SD-WAN Solution
 
私がなぜZscalerに?
私がなぜZscalerに?私がなぜZscalerに?
私がなぜZscalerに?
 
Azure active directory
Azure active directoryAzure active directory
Azure active directory
 
[NEW LAUNCH!] Scaling Tightly-coupled HPC workloads on HPC with Elastic Fabri...
[NEW LAUNCH!] Scaling Tightly-coupled HPC workloads on HPC with Elastic Fabri...[NEW LAUNCH!] Scaling Tightly-coupled HPC workloads on HPC with Elastic Fabri...
[NEW LAUNCH!] Scaling Tightly-coupled HPC workloads on HPC with Elastic Fabri...
 
Let's Talk About: Azure Networking
Let's Talk About: Azure NetworkingLet's Talk About: Azure Networking
Let's Talk About: Azure Networking
 
サポート エンジニアが語る、Microsoft Azure を支えるインフラの秘密
サポート エンジニアが語る、Microsoft Azure を支えるインフラの秘密サポート エンジニアが語る、Microsoft Azure を支えるインフラの秘密
サポート エンジニアが語る、Microsoft Azure を支えるインフラの秘密
 
Azure vnet
Azure vnetAzure vnet
Azure vnet
 
Enterprise WAN Transformation: SD-WAN, SASE, and the Pandemic
Enterprise WAN Transformation: SD-WAN, SASE, and the PandemicEnterprise WAN Transformation: SD-WAN, SASE, and the Pandemic
Enterprise WAN Transformation: SD-WAN, SASE, and the Pandemic
 
AWS Direct Connect
AWS Direct ConnectAWS Direct Connect
AWS Direct Connect
 
Windows Virtual Desktop Powered By Microsoft Azure
Windows Virtual Desktop Powered By Microsoft AzureWindows Virtual Desktop Powered By Microsoft Azure
Windows Virtual Desktop Powered By Microsoft Azure
 
Microsoft Azure Networking Basics
Microsoft Azure Networking BasicsMicrosoft Azure Networking Basics
Microsoft Azure Networking Basics
 
20190313 AWS Black Belt Online Seminar Amazon VPC Basic
20190313 AWS Black Belt Online Seminar Amazon VPC Basic20190313 AWS Black Belt Online Seminar Amazon VPC Basic
20190313 AWS Black Belt Online Seminar Amazon VPC Basic
 
Microsoft Azure ad in 10 slides
Microsoft Azure ad in 10 slidesMicrosoft Azure ad in 10 slides
Microsoft Azure ad in 10 slides
 
Amazon VPC VPN接続設定 参考資料
Amazon VPC VPN接続設定 参考資料Amazon VPC VPN接続設定 参考資料
Amazon VPC VPN接続設定 参考資料
 
Advanced Load Balancer/Traffic Manager and App Gateway for Microsoft Azure
Advanced Load Balancer/Traffic Manager and App Gateway for Microsoft AzureAdvanced Load Balancer/Traffic Manager and App Gateway for Microsoft Azure
Advanced Load Balancer/Traffic Manager and App Gateway for Microsoft Azure
 
Get started With Microsoft Azure Virtual Machine
Get started With Microsoft Azure Virtual MachineGet started With Microsoft Azure Virtual Machine
Get started With Microsoft Azure Virtual Machine
 
Black Belt Online Seminar AWS Amazon S3
Black Belt Online Seminar AWS Amazon S3Black Belt Online Seminar AWS Amazon S3
Black Belt Online Seminar AWS Amazon S3
 
20190723 AWS Black Belt Online Seminar AWS CloudHSM
20190723 AWS Black Belt Online Seminar AWS CloudHSM 20190723 AWS Black Belt Online Seminar AWS CloudHSM
20190723 AWS Black Belt Online Seminar AWS CloudHSM
 
20210119 AWS Black Belt Online Seminar AWS CloudTrail
20210119 AWS Black Belt Online Seminar AWS CloudTrail20210119 AWS Black Belt Online Seminar AWS CloudTrail
20210119 AWS Black Belt Online Seminar AWS CloudTrail
 

Semelhante a The Azure Group - Azure Network Watcher

Developing and deploying windows azure applications
Developing and deploying windows azure applicationsDeveloping and deploying windows azure applications
Developing and deploying windows azure applications
Manish Corriea
 
Brk30176 enterprise class networking in azure
Brk30176 enterprise class networking in azureBrk30176 enterprise class networking in azure
Brk30176 enterprise class networking in azure
Abou CONDE
 

Semelhante a The Azure Group - Azure Network Watcher (20)

azure_fundamentals_5674379643333389633.pptx
azure_fundamentals_5674379643333389633.pptxazure_fundamentals_5674379643333389633.pptx
azure_fundamentals_5674379643333389633.pptx
 
Azure Arc - Managing Hybrid and Multi-Cloud Platforms
Azure Arc - Managing Hybrid and Multi-Cloud PlatformsAzure Arc - Managing Hybrid and Multi-Cloud Platforms
Azure Arc - Managing Hybrid and Multi-Cloud Platforms
 
Microsoft Azure
Microsoft AzureMicrosoft Azure
Microsoft Azure
 
Azure from scratch Part 1 By Girish Kalamati
Azure from scratch Part 1 By Girish KalamatiAzure from scratch Part 1 By Girish Kalamati
Azure from scratch Part 1 By Girish Kalamati
 
Azure Stack - Azure Nights User Group
Azure Stack - Azure Nights User GroupAzure Stack - Azure Nights User Group
Azure Stack - Azure Nights User Group
 
Build modern and intelligent applications using Azure Database for PostgreSQL
Build modern and intelligent applications using Azure Database for PostgreSQLBuild modern and intelligent applications using Azure Database for PostgreSQL
Build modern and intelligent applications using Azure Database for PostgreSQL
 
2-ARC.pdf
2-ARC.pdf2-ARC.pdf
2-ARC.pdf
 
Securing your cloud perimeter with azure network security brk3185
Securing your cloud perimeter with azure network security brk3185Securing your cloud perimeter with azure network security brk3185
Securing your cloud perimeter with azure network security brk3185
 
Azure Arc Overview from Microsoft
Azure Arc Overview from MicrosoftAzure Arc Overview from Microsoft
Azure Arc Overview from Microsoft
 
Microsoft Azure Tutorial | Microsoft Cloud Computing | Microsoft Azure Traini...
Microsoft Azure Tutorial | Microsoft Cloud Computing | Microsoft Azure Traini...Microsoft Azure Tutorial | Microsoft Cloud Computing | Microsoft Azure Traini...
Microsoft Azure Tutorial | Microsoft Cloud Computing | Microsoft Azure Traini...
 
Azure F5 Solutions
Azure F5 SolutionsAzure F5 Solutions
Azure F5 Solutions
 
CCI2018 - Azure Network - Security Best Practices
CCI2018 - Azure Network - Security Best PracticesCCI2018 - Azure Network - Security Best Practices
CCI2018 - Azure Network - Security Best Practices
 
Azure Site Recovery Bootcamp
Azure Site Recovery BootcampAzure Site Recovery Bootcamp
Azure Site Recovery Bootcamp
 
Developing and deploying windows azure applications
Developing and deploying windows azure applicationsDeveloping and deploying windows azure applications
Developing and deploying windows azure applications
 
Firewalling a Service Mesh with WebAssembly.pdf
Firewalling a Service Mesh with WebAssembly.pdfFirewalling a Service Mesh with WebAssembly.pdf
Firewalling a Service Mesh with WebAssembly.pdf
 
Azure_DP_300_Vocabulary_Cards.pptx
Azure_DP_300_Vocabulary_Cards.pptxAzure_DP_300_Vocabulary_Cards.pptx
Azure_DP_300_Vocabulary_Cards.pptx
 
Azure diario de abordo
Azure diario de abordoAzure diario de abordo
Azure diario de abordo
 
Brk30176 enterprise class networking in azure
Brk30176 enterprise class networking in azureBrk30176 enterprise class networking in azure
Brk30176 enterprise class networking in azure
 
CCI2019 - Architecting and Implementing Azure Networking
CCI2019 - Architecting and Implementing Azure NetworkingCCI2019 - Architecting and Implementing Azure Networking
CCI2019 - Architecting and Implementing Azure Networking
 
Return on Ignite 2019: Azure, .NET, A.I. & Data
Return on Ignite 2019: Azure, .NET, A.I. & DataReturn on Ignite 2019: Azure, .NET, A.I. & Data
Return on Ignite 2019: Azure, .NET, A.I. & Data
 

Mais de Adin Ermie

Mais de Adin Ermie (7)

Deploying Azure DevOps using Terraform
Deploying Azure DevOps using TerraformDeploying Azure DevOps using Terraform
Deploying Azure DevOps using Terraform
 
Infrastructure-as-Code (IaC) Using Terraform (Advanced Edition)
Infrastructure-as-Code (IaC) Using Terraform (Advanced Edition)Infrastructure-as-Code (IaC) Using Terraform (Advanced Edition)
Infrastructure-as-Code (IaC) Using Terraform (Advanced Edition)
 
Infrastructure-as-Code (IaC) Using Terraform (Intermediate Edition)
Infrastructure-as-Code (IaC) Using Terraform (Intermediate Edition)Infrastructure-as-Code (IaC) Using Terraform (Intermediate Edition)
Infrastructure-as-Code (IaC) Using Terraform (Intermediate Edition)
 
Infrastructure-as-Code (IaC) using Terraform
Infrastructure-as-Code (IaC) using TerraformInfrastructure-as-Code (IaC) using Terraform
Infrastructure-as-Code (IaC) using Terraform
 
Power of the Cloud - Introduction to Microsoft Azure Security
Power of the Cloud - Introduction to Microsoft Azure SecurityPower of the Cloud - Introduction to Microsoft Azure Security
Power of the Cloud - Introduction to Microsoft Azure Security
 
Global Azure Bootcamp 2018 - Azure Resource Manager (ARM)
Global Azure Bootcamp 2018 - Azure Resource Manager (ARM)Global Azure Bootcamp 2018 - Azure Resource Manager (ARM)
Global Azure Bootcamp 2018 - Azure Resource Manager (ARM)
 
Global Azure Bootcamp 2017 - Performance and Health Management for Modern App...
Global Azure Bootcamp 2017 - Performance and Health Management for Modern App...Global Azure Bootcamp 2017 - Performance and Health Management for Modern App...
Global Azure Bootcamp 2017 - Performance and Health Management for Modern App...
 

Último

CNv6 Instructor Chapter 6 Quality of Service
CNv6 Instructor Chapter 6 Quality of ServiceCNv6 Instructor Chapter 6 Quality of Service
CNv6 Instructor Chapter 6 Quality of Service
giselly40
 
Histor y of HAM Radio presentation slide
Histor y of HAM Radio presentation slideHistor y of HAM Radio presentation slide
Histor y of HAM Radio presentation slide
vu2urc
 

Último (20)

Slack Application Development 101 Slides
Slack Application Development 101 SlidesSlack Application Development 101 Slides
Slack Application Development 101 Slides
 
Strategies for Unlocking Knowledge Management in Microsoft 365 in the Copilot...
Strategies for Unlocking Knowledge Management in Microsoft 365 in the Copilot...Strategies for Unlocking Knowledge Management in Microsoft 365 in the Copilot...
Strategies for Unlocking Knowledge Management in Microsoft 365 in the Copilot...
 
TrustArc Webinar - Stay Ahead of US State Data Privacy Law Developments
TrustArc Webinar - Stay Ahead of US State Data Privacy Law DevelopmentsTrustArc Webinar - Stay Ahead of US State Data Privacy Law Developments
TrustArc Webinar - Stay Ahead of US State Data Privacy Law Developments
 
Data Cloud, More than a CDP by Matt Robison
Data Cloud, More than a CDP by Matt RobisonData Cloud, More than a CDP by Matt Robison
Data Cloud, More than a CDP by Matt Robison
 
Understanding Discord NSFW Servers A Guide for Responsible Users.pdf
Understanding Discord NSFW Servers A Guide for Responsible Users.pdfUnderstanding Discord NSFW Servers A Guide for Responsible Users.pdf
Understanding Discord NSFW Servers A Guide for Responsible Users.pdf
 
Handwritten Text Recognition for manuscripts and early printed texts
Handwritten Text Recognition for manuscripts and early printed textsHandwritten Text Recognition for manuscripts and early printed texts
Handwritten Text Recognition for manuscripts and early printed texts
 
GenCyber Cyber Security Day Presentation
GenCyber Cyber Security Day PresentationGenCyber Cyber Security Day Presentation
GenCyber Cyber Security Day Presentation
 
CNv6 Instructor Chapter 6 Quality of Service
CNv6 Instructor Chapter 6 Quality of ServiceCNv6 Instructor Chapter 6 Quality of Service
CNv6 Instructor Chapter 6 Quality of Service
 
Breaking the Kubernetes Kill Chain: Host Path Mount
Breaking the Kubernetes Kill Chain: Host Path MountBreaking the Kubernetes Kill Chain: Host Path Mount
Breaking the Kubernetes Kill Chain: Host Path Mount
 
Presentation on how to chat with PDF using ChatGPT code interpreter
Presentation on how to chat with PDF using ChatGPT code interpreterPresentation on how to chat with PDF using ChatGPT code interpreter
Presentation on how to chat with PDF using ChatGPT code interpreter
 
Tata AIG General Insurance Company - Insurer Innovation Award 2024
Tata AIG General Insurance Company - Insurer Innovation Award 2024Tata AIG General Insurance Company - Insurer Innovation Award 2024
Tata AIG General Insurance Company - Insurer Innovation Award 2024
 
2024: Domino Containers - The Next Step. News from the Domino Container commu...
2024: Domino Containers - The Next Step. News from the Domino Container commu...2024: Domino Containers - The Next Step. News from the Domino Container commu...
2024: Domino Containers - The Next Step. News from the Domino Container commu...
 
08448380779 Call Girls In Friends Colony Women Seeking Men
08448380779 Call Girls In Friends Colony Women Seeking Men08448380779 Call Girls In Friends Colony Women Seeking Men
08448380779 Call Girls In Friends Colony Women Seeking Men
 
The 7 Things I Know About Cyber Security After 25 Years | April 2024
The 7 Things I Know About Cyber Security After 25 Years | April 2024The 7 Things I Know About Cyber Security After 25 Years | April 2024
The 7 Things I Know About Cyber Security After 25 Years | April 2024
 
Workshop - Best of Both Worlds_ Combine KG and Vector search for enhanced R...
Workshop - Best of Both Worlds_ Combine  KG and Vector search for  enhanced R...Workshop - Best of Both Worlds_ Combine  KG and Vector search for  enhanced R...
Workshop - Best of Both Worlds_ Combine KG and Vector search for enhanced R...
 
Histor y of HAM Radio presentation slide
Histor y of HAM Radio presentation slideHistor y of HAM Radio presentation slide
Histor y of HAM Radio presentation slide
 
Finology Group – Insurtech Innovation Award 2024
Finology Group – Insurtech Innovation Award 2024Finology Group – Insurtech Innovation Award 2024
Finology Group – Insurtech Innovation Award 2024
 
04-2024-HHUG-Sales-and-Marketing-Alignment.pptx
04-2024-HHUG-Sales-and-Marketing-Alignment.pptx04-2024-HHUG-Sales-and-Marketing-Alignment.pptx
04-2024-HHUG-Sales-and-Marketing-Alignment.pptx
 
Bajaj Allianz Life Insurance Company - Insurer Innovation Award 2024
Bajaj Allianz Life Insurance Company - Insurer Innovation Award 2024Bajaj Allianz Life Insurance Company - Insurer Innovation Award 2024
Bajaj Allianz Life Insurance Company - Insurer Innovation Award 2024
 
How to convert PDF to text with Nanonets
How to convert PDF to text with NanonetsHow to convert PDF to text with Nanonets
How to convert PDF to text with Nanonets
 

The Azure Group - Azure Network Watcher

  • 1. AZURE NETWORK WATCHER Network Performance Monitoring and Diagnostics Service for Azure
  • 2. ADIN ERMIE  Cloud Solution Architect (Datacenter/Azure)  SystemCenter  Operations Management Suite  Azure (IaaS, PaaS, Recovery Services)  3 x MVP - Cloud and Datacenter Management  Email: Adin.Ermie@outlook.com  Twitter: @AdinErmie  Blog: http://AdinErmie.com
  • 3. WHAT IS AZURE NETWORKWATCHER? Network Watcher is a regional service that enables you to monitor and diagnose conditions at a network scenario level in, to, and from Azure. Scenario level monitoring enables you to diagnose problems at an end to end network level view. Network diagnostic and visualization tools available with Network Watcher help you understand, diagnose, and gain insights to your network in Azure.
  • 4. AZURE NETWORKWATCHER General Availability in Regions https://azure.microsoft.com/en-us/regions/services/ Pricing Documentation https://docs.microsoft.com/en-us/azure/network-watcher/ Accessibility Azure Network Watcher Extension https://docs.microsoft.com/en-us/azure/virtual-machines/windows/extensions-nwa
  • 5. AZURE NETWORKWATCHER Visualize your network topology Topology Diagnostic tools for networking related issues Network Diagnostics Metric Measure and view your network performance and health Logs Configure and view your logs
  • 6. GETTING STARTED  Register the feature  Register-AzureRmProviderFeature - FeatureName AllowNetworkWatcher - ProviderNamespace Microsoft.Network  Register-AzureRmResourceProvider - ProviderNamespace Microsoft.Network  Enable NetworkWatcher per Region  Packet capture extension enabled perVirtual Machine
  • 7. AZURE NETWORKWATCHER -TOPOLOGY Visualize your network topology Topology Diagnostic tools for networking related issues Network Diagnostics Metric Measure and view your network performance and health Logs Configure and view your logs
  • 9. AZURE NETWORKWATCHER – NETWORK DIAGNOSTICS Visualize your network topology Topology Diagnostic tools for networking related issues Network Diagnostics Metric Measure and view your network performance and health Logs Configure and view your logs
  • 10. VARIABLE PACKET CAPTURE Configure & Manage Capture Sessions onVMs - Storage Flexibility Session Flexibility
  • 12. SECURITY GROUPVIEW View configured and effective network security groups applied on aVM
  • 14. VPNTROUBLESHOOTING TroubleshootVPN Gateways & Connections Curate Logs relevant to theVPN State { "startTime": "2017-01-12T10:31:41.562646-08:00", "endTime": "2017-01-12T18:31:48.677Z", "code": "Degraded", "results": [ { "id": "PlatformInActive", "summary": "We are sorry, your VPN gateway is in standby mode", "detail": "During this time the gateway will not initiate or accept VPN connections with on premises VPN devices or other Azure VPN Gateways. This is a transient state while the Azure platform is being updated.", "recommendedActions": [ { "actionText": "If the condition persists, please try resetting your Azure VPN gateway", "actionUri": "https://azure.microsoft.com/en-us/documentation/articles/vpn-gateway- resetgw-classic/", "actionUriText": "resetting the VPN Gateway" }, { "actionText": "If your VPN gateway isn't up and running by the expected resolution time, contact support", "actionUri": "http://azure.microsoft.com/support", "actionUriText": "contact support" } ] } ] }
  • 15. AZURE NETWORKWATCHER – METRICS Visualize your network topology Topology Diagnostic tools for networking related issues Network Diagnostics Metric Measure and view your network performance and health Logs Configure and view your logs
  • 16. NETWORK SUBSCRIPTION LIMITS  View the usage of network resources against the limits in your subscription
  • 17. AZURE NETWORKWATCHER – LOGS Visualize your network topology Topology Diagnostic tools for networking related issues Network Diagnostics Metric Measure and view your network performance and health Logs Configure and view your logs
  • 18. NETWORK SECURITY GROUP FLOW LOGS View traffic through a NSG Logs formatted in JSON Saved to Storage Blob
  • 19. DIAGNOSTIC LOGS  You can now configure diagnostic logs for all the network resources in a resource group from a single pane.
  • 20. DEMOS  Enough with the talking already!  Show it to me!
  • 21. CURRENT LIMITATIONS  Topology mapper only shows items that are in the same Resource Group as theVNET  If the Resource Group is not in a supported Region, even though theVNET contained within it is; you will see the error “No network watcher present in region: <REGION>”  When performing a Packet Capture, and using the File location, the capture is still stored/written to Azure Storage only
  • 22. RESOURCES Regional Availability: https://azure.microsoft.com/en-us/regions/services/ Pricing: Service Page: https://azure.microsoft.com/en-us/services/network-watcher/ Documentation: https://docs.microsoft.com/en-us/azure/network-watcher/ Feedback: https://feedback.azure.com/forums/217313- networking/category/195844-network-watcher

Notas do Editor

  1. Because this feature is in Public Preview, you need to register the Provider in your Azure subscription via PowerShell After registering the Provider, you will also need to enable Network Watcher per Azure Region Finally, you need to have the Packet Capture Extension installed/enabled per Virtual Machine
  2. Visualize the complete network topology of your application Topology returns the resource objects on a per virtual network basis The resources returned in the portal view are a subset of the networking components that are graphed. To see the full list of networking resources you can use PowerShell or REST PowerShell will list/show the NSG Rules
  3. Create packet capture sessions to track traffic to and from a virtual machine Diagnose network anomalies both reactively and proactivity Gathering network statistics, gaining information on network intrusions, to debug client-server communications and much more. Automate packet captures with Virtual machine alerts DEMO
  4. Checks if a packet is allowed or denied to or from a virtual machine based on 5-tuple information Shows direction, protocol, local IP, remote IP, local port, and remote port
  5. Network Security Group view returns all the configured NSG and rules that are associated at a NIC and subnet level. In addition, the effective security rules are returned for each of the NICs in a VM. Assess a VM for network vulnerabilities such as open ports Validate if your Network Security Group is working as expected based on a comparison between the configured and the effective security rules. A download button is provided to easily download all the security rules into a CSV file.
  6. Next hop gets the next hop type and IP address of a packet from a specific virtual machine and NIC Helps to determine if the packet is being directed to the destination or is the traffic being black holed Next hop also returns the route table associated with the next hop. When querying a next hop if the route is defined as a user-defined route, that route will be returned.
  7. Network Watcher diagnoses the health of the virtual network gateway or connection and return the appropriate results
  8. - Allows you to view information about ingress and egress IP traffic through a Network Security Group - Flow logs are written in JSON format and show outbound and inbound flows on a per rule basis, the NIC the flow applies to, 5-tuple information about the flow (Source/Destination IP, Source/Destination Port, Protocol), and if the traffic was allowed or denied. Logs have a retention policy that can be set from 1 day to 365 days. If a retention policy is not set, the logs are maintained forever. Can use PowerBI (Network Watcher PowerBI Flow Logs template) or OMS (Azure Network Security Groups Analytics) for visualization