Networking NSG DNS LB

Network Security & Connectivity Controls

NSG rule priority testing, VNet peering, Standard LB, DNS, and Network Watcher validation.

Problem

Azure networking involves multiple overlapping controls (NSGs, UDRs, DNS, peering). Misunderstanding rule priority or DNS resolution causes connectivity failures that are difficult to troubleshoot without systematic testing.

Architecture

Multi-subnet VNets with NSGs at subnet and NIC level. Public and Private DNS zones with VNet linking. Standard Load Balancer with backend pools and health probes. Network Watcher for connectivity validation.

Nsg B Association

Nsg B Association

Overlaping Deny

Overlaping Deny

Ping

Ping

Tcp

Tcp

Implementation

Diagram

Diagram

Public Dns Zone Overview

Public Dns Zone Overview

Private Dns Zone

Private Dns Zone

Vnet Links

Vnet Links

Validation

Lab 1 Diagram

Lab 1 Diagram

Frontend Ip

Frontend Ip

Backednpool

Backednpool

Quantified Outcomes

Failure Scenarios Tested

Operational Considerations

Lessons Learned

Business Impact

Established systematic network testing methodology applicable to any Azure environment. Demonstrated ability to troubleshoot complex multi-layer connectivity issues.

All Case Studies