DMZ Environment in Azure

Error_401 86 Reputation points
2021-03-17T09:53:42.717+00:00

Hi, Can anybody suggest to me how do I configure DMZ environment in Azure? This is the architecture - ![78746-image.png][1] [1]: /api/attachments/78746-image.png?platform=QnA I need to know how do I configure the gateways in order to communicate in the right way Thanks

Azure Firewall
Azure Firewall
An Azure network security service that is used to protect Azure Virtual Network resources.
570 questions
Azure Virtual Network
Azure Virtual Network
An Azure networking service that is used to provision private networks and optionally to connect to on-premises datacenters.
2,158 questions
0 comments No comments
{count} votes

2 answers

Sort by: Most helpful
  1. GitaraniSharma-MSFT 47,676 Reputation points Microsoft Employee
    2021-03-19T16:39:44.097+00:00

    Hello @Error_401 ,

    Apologies for the delay in response. Thank you for reaching out & hope you are doing well.

    To learn about implementing a DMZ in Azure, see Microsoft cloud services and network security.

    The diagram you shared doesn't provide much information on your requirement but if your goal is to implement DMZ between your on-premises network and Azure virtual network, you can refer the below article:
    https://learn.microsoft.com/en-us/azure/architecture/reference-architectures/dmz/secure-vnet-dmz

    Kindly let us know if the above helps or you need further assistance on this issue.

    ----------------------------------------------------------------------------------------------------------------

    Please "Accept the answer" if the information helped you. This will help us and others in the community as well.

    0 comments No comments

  2. Ganesh Thorave 31 Reputation points
    2022-11-07T06:36:17.7+00:00

    @GitaraniSharma-MSFT

    Hope you are doing well ,we are also having similar setup.
    In Hub We have DMZ Zone(servers which are exposed to the Internet)

    My question is what is the best practice whether to place Azure firewall and APP gateway inside DMZ subnet ?
    and second question is to load balance request to DMZ servers we are planning to place Internal load balancer

    do you have any best practice diagram to achieve this kind of scenario ?
    pasting the hub part again for your reference.

    257783-image.png
    Regards
    Ganesh Thorave