This MOC (Microsoft Official Course) is completely new (as of October 2018), and will lead to the new Azure certifications to be released by Microsoft. [+]
This course together with course AZ-100: Microsoft Azure Infrastructure and Deployment will from November 2018 replace course MS 20533: Implementing Microsoft Azure Infrastructure Solutions
This 4-day training will cover the following topics:
Migrate Servers to Azure
Implement and Manage Application Services
Implement Advanced Virtual Networking
Module 1: Managing Azure Active DirectoryIn this module, you will be introduced to Azure migration projects and specifically Azure Migrate. Azure Migrate will be your tool of choice for automated server discovery and workload sizing. You will step through the process of using Azure Migrate to create a project, create a collector, assess machine readiness, and estimate cost. After completing this module, students will be able to Use Azure Migrate to discover and assess on-premises virtual machine migration to Azure.
Overview of Cloud Migration
Azure Migrate: The Process
Module 2: Azure Site RecoveryIn this module, you will be introduced to Azure Site Recovery (ASR). ASR will be your primary tool for migrating workloads to Azure. You will learn which scenarios are most appropriate for ASR and the features that the product provides. You will also learn how to use the ASR deployment planner to ensure your infrastructure is ready for migration. Lastly, you will walk through the process of implementing ASR on a Hyper-V infrastructure. After completing this module, students will be able to use Azure Site Recovery to migrate Hyper-V infrastructures to Azure.Lessons:
Overview of ASR
Preparing the Infrastructure
Completing the Migration Process
Module 3: Additional Migration ScenariosIn this module, you will complete your study of Azure migration by looking at two different migration scenarios. In the first scenario you will see how to migrate VMware vSphere Hypervisor virtual machines to Azure using ASR. In the second video series we will migrate System Center VMM Hyper-V machines. After completing this module, students will be able to review migration strategies for VMWare and System Center VMM virtual machines.
System Center VMM Migration: Video Walkthrough
Module 1: Introducing the Azure App Service PlatformIn this module, you will be introduced to the Azure App Services Platform. You will learn about app service plans, web app hosting options, app service scenarios and how to monitor apps. You will also learn about how to isolate apps with App Service Environments. After completing this module, students will be able to implement use cases and configuration options for Azure App Services and App Service Environments.
Introducing Azure App Service
App Service Environments
Module 2: Managing and Securing Web AppsIn this module, you will learn how to deploy your app with minimal downtime. You will also learn how to backup, restore, snapshot, and clone your app. Lastly, you will implement security features like authentication options and authentication providers. After completing this module, students will be able to manage and secure web apps with backup, restore, snapshot, and cloning.
Deploying Web Apps
Managing Web Apps
App Service Security
Module 3: Scaling and PerformanceIn this module, you will learn how to ensure your app performs under various workloads. You will learn how to scale up and scale out your app. You will learn how to automatically scale your app and to grow out the app through geo-distribution. Lastly you will learn how CDN provides a way to optimize bandwidth and web traffic. After completing this module, students will be able to optimize your web app performance with Scale Up, Scale Out, Autoscale, and Grow out strategies.
Scale Up and Scale Out
Autoscale and Grow out
Optimizing Bandwidth and Web Traffic
Module 4: Deploying Serverless Computing SolutionsIn the module, you will learn what serverless computing is and what it provides. You will implement three serverless computing solutions: Azure Functions, Event Grid, and Service Bus. Azure Functions provide small pieces of code, or "functions," that run in the cloud. Event Grid is a service for managing routing of all events from any source to any destination. Service Bus multi-tenant cloud messaging service that sends information between applications and services. After completing this module, students will be able to deploy serverless computing features like Azure Functions, Event Grid, and Service Bus.
Serverless Computing Concepts
Managing Azure Functions
Managing Event Grid
Managing Service Bus
Managing Logic App
Module 1: Distributing Network TrafficIn this module, you will learn about three ways to distribute network traffic: Azure Load Balancer, Azure Traffic Manager, and Azure Application Gateway. The Azure Load Balancer delivers high availability and network performance to your applications. The Azure Traffic Manager allows you to control the distribution of user traffic to your service endpoints. The Azure Application Gateway is a web traffic load balancer that enables you to manage traffic to your web applications. After completing this module, students will be able to implement and configure Azure Load Balancer, Azure Traffic Manager, and Azure Application Gateway.
Overview of Network Traffic Distribution Options
Azure Load Balancer
Azure Traffic Manager
Azure Application Gateway
Module 2: Site ConnectivityIn this module, you will learn and implement two ways to connect your virtual networks: Site-to-Site VPN Connections and ExpressRoute. Site-to-Site VPN connections provide secure tunneling for cross-premises and hybrid configurations. ExpressRoute extends your on-premises networks into the Microsoft cloud over a dedicated private connection facilitated by a connectivity provider. After completing this module, students will be able to implement and configure Site-to-Site VPN connections and ExpressRoute.
Site-to-Site VPN Connections
Module 3: Monitoring and Troubleshooting Network ConnectivityIn this module, you will learn important skills around troubleshooting virtual network connectivity. The primary tool discussed is Azure Network Watcher. Azure Network Watcher provides IP flow verification, VPN diagnostics, NSG views and flows, and next hop analysis. After completing this module, students will be able to implement and configure Network Watcher and troubleshooting common network issues.
Introducing Network Watcher
Implementing Network Watcher
Network Troubleshooting Examples
Module 1: Introduction to Identity Protection in AzureIn this module, you’ll learn about Role-Based Access Control as the foundation to organizing and managing an organization’s administrative access based on the principle of least privilege. You will also review Azure Active Directory concepts, as well as gaining insight into the threat landscape and security risks that are exposed to IT organizations through breach of privileged access. After completing this module, students will be able to use Azure RBAC to grant a granular level of access based on an administrator’s assigned tasks.
Role-Based Access Control
Azure Active Directory (Refresher)
Protecting Privileged Access in the Environment
Module 2: Using Multi-Factor Authentication for Secure AccessIn this module, you’ll learn about securing the sign-in process through Multi-Factor Authentication (MFA). You’ll learn how MFA works and the differences in implementation between on-premises and cloud scenarios. You’ll also learn about using conditional access policies to provide more fine-grained control over apps and resources in your environment. After completing this module, students will be able to use Azure Multi-Factor Authentication to configure a strong authentication for users at sign-in.
Introducing Multi-Factor Authentication
Module 3: Azure AD Privileged Identity ManagementIn this module, you’ll learn how to use Azure Privileged Identity Management (PIM) to enable just-in-time administration and control the number of users who can perform privileged operations. You’ll also learn about the different directory roles available as well as newer functionality that includes PIM being expanded to role assignments at the resource level. After completing this module, students will be able to user Azure AD Privileged Identity Management to configure access rights based on just-in-time administration.
Getting Started with PIM
PIM Security Wizard
PIM for Directory Roles
PIM for Role Resources