Updated: July 16, 2020 (July 3, 2017)

  Analyst Report

Azure Network Security Groups Protect Systems

My Atlas / Analyst Reports

559 wordsTime to read: 3 min
Wes Miller by
Wes Miller

Wes Miller analyzes and writes about Microsoft’s security, identity management, and systems management technologies. Before joining Directions on Microsoft, Wes... more

Azure Network Security Groups (NSGs), which are built into Azure’s software-defined networking layer, allow organizations to control the traffic to and from Azure virtual machines (VMs) within segments of a network and between the network and other Azure services. Optimal configuration and use of NSGs could help with compliance and risk management processes. Although the technology is free to implement and use, if implemented incorrectly it could lead to issues or system incompatibilities that are hard to diagnose.

Understanding Network Security Groups

NSGs are a packet inspection technology that exists within an Azure virtual network (VNet), the software-defined networking infrastructure of Azure. Like a firewall in a conventional TCP/IP network, it can be used to control the flow of traffic into or out of a virtual network, or resources in that network, including subnets, servers, or network controllers. Rules can allow and deny traffic based on source or destination IP address and protocol (TCP or UDP). Priorities allow one rule to override another.

Atlas Members have full access

Get access to this and thousands of other unbiased analyses, roadmaps, decision kits, infographics, reference guides, and more, all included with membership. Comprehensive access to the most in-depth and unbiased expertise for Microsoft enterprise decision-making is waiting.

Membership Options

Already have an account? Login Now