MicrosoftDocs / azure-docs

Open source documentation of Microsoft Azure
https://docs.microsoft.com/azure
Creative Commons Attribution 4.0 International
10.12k stars 21.19k forks source link

No guidance for how to deal with Azure PaaS management traffic #21364

Open Phydeauxman opened 5 years ago

Phydeauxman commented 5 years ago

When an App Service Environment (ASE) is provisioned, regardless if it is an external or internal variety it gets a Public IP. This Public IP is used by the ASE to communicate with the Azure management plane in order to function properly. Without connectivity to the management plane, you can't even deploy an ASE. There needs to be guidance in this document about this traffic and how to incorporate it into an architecture that maintains TIC compliance. Treating this traffic as any other Internet bound traffic will force the traffic to come from the cloud, to on-prem (via VPN or ER), out the TIC and back out to the cloud.


Document Details

Do not edit this section. It is required for docs.microsoft.com ➟ GitHub issue linking.

MarileeTurscak-MSFT commented 5 years ago

@Phydeauxman Thanks for your feedback! We will investigate and update as appropriate.

SaurabhSharma-MSFT commented 5 years ago

@Phydeauxman Thanks for the feedback ! I have assigned this issue to content author to investigate and update the document as appropriate.