ycliper

Популярное

Музыка Кино и Анимация Автомобили Животные Спорт Путешествия Игры Юмор

Интересные видео

2025 Сериалы Трейлеры Новости Как сделать Видеоуроки Diy своими руками

Топ запросов

смотреть а4 schoolboy runaway турецкий сериал смотреть мультфильмы эдисон
Скачать

Secure your cloud with all-new AZ Policy & Machine Config features - Mutemwa Masheke - PSConfEU 2025

Автор: PowerShell Conference EU

Загружено: 2025-07-18

Просмотров: 469

Описание: PowerShell Conference EU
June 23-26, 2025
Clarion Malmö Live
https://github.com/psconfeu/2025 (slides, code)

Full title:
Secure your cloud environment with all-new Azure Policy and Machine Configuration features!

Abstract:
Come learn about the latest Microsoft Azure releases that enable you to securely govern your cloud environment using Infrastructure-as-Code! From Azure Policy selectors and overrides for safe deployment, to private storage of Machine Configuration packages, we will showcase how you can leverage Powershell to amplify speed and control in your Azure environment. Whether you manage Windows or Linux servers, on-prem, multi-cloud or Azure native, this session will help you amplify cloud innovation by enabling speed and control in your Azure environment. Opportunities for QnA, feature enhancements and requests will be provided at the end of this session. We’d love to hear from you!

Summary (autogen):
Mutemwa Masheke presents an extensive overview of security features in Azure Machine Configuration, delving into both current capabilities and future developments in the realm of machine config and Azure Policy. The session provides insights into how these features can enhance server management and compliance within Azure environments, making them particularly relevant for developers and IT professionals engaged in cloud infrastructure management.

Mutemwa begins by introducing Azure Machine Configuration, explaining that it allows for the configuration of operating systems, applications, and workloads as code, facilitating uniform deployments across both Azure and on-premises environments. By leveraging PowerShell Desired State Configuration (DSC), users can author policies tailored to their unique requirements or utilize built-in policies designed to simplify implementation and reduce overhead. He emphasizes the importance of a cloud-native management approach, allowing for efficient deployment at scale.

The discussion then transitions to Azure Policy, which works in conjunction with Machine Configuration. This service provides guardrails for developers to enforce compliance at scale, grouping policies, and enabling exemptions for specific scenarios to safeguard deployment practices. Mutemwa explains the added value for those familiar with Active Directory Group Policy, highlighting how Azure Policy guarantees idempotent deployments—ensuring that remediation policies can be enforced consistently across a fleet of virtual machines.

Mutemwa also highlights recent investments in enhancing SSH capabilities and audit policies, specifying that the configurations align with industry compliance standards. He talks about the challenges faced when managing Linux machines and introduces custom tooling available for users needing to run specific scripts, such as for package management or credentials handling. The lecture covers the lifecycle of configuration as code, detailing how to generate a Management Object Format (MOF) file for testing before deployment, underlining the recent addition of user-assigned managed identities for secure package access.

A key part of the lecture focuses on upcoming features in Azure Machine Configuration, showcasing their commitment to integrating user-assigned and system-assigned managed identities. Mutemwa elaborates on how an upcoming public preview will enable simpler secure access to configuration packages without the requirement for SAS tokens, improving security standards in deployments. He discusses a robust roadmap that includes enhanced experiences for managing operating system settings directly in Azure Resource Manager, and the migration of security baselines from traditional systems like Active Directory to Azure.

Mutemwa pays particular attention to user customizations and compliance reporting, detailing how the planned wizard will assist users in generating templates for security baselines and provide customizable settings within regulatory frameworks. The emphasis on fostering a user-friendly experience illustrates Microsoft’s intent to streamline compliance management efforts within organizations.

Chapters:
00:00:00 Secure your cloud environment with all-new Azure Policy and Machine Configuration features! - Mutemwa Masheke
00:00:13 Introduction and Overview
00:01:58 Azure Machine Configuration Explained
00:03:10 Understanding Azure Policy
00:05:26 Investments in SSH and Security Policies
00:06:53 Configuration as Code Challenges
00:08:52 User-Assigned Managed Identities
00:13:46 System-Assigned Managed Identities
00:20:02 Upcoming Features and Improvements
00:22:01 Roadmap for Future Developments
00:26:02 Customizing Security Baselines
00:28:14 Version Management and Compliance
00:31:26 Migrating from GPOs to Policies
00:33:52 Inventory of Server Settings
00:35:33 Q&A Session
00:40:05 Addressing Audience Questions
00:43:57 Conclusion and Closing Remarks

Не удается загрузить Youtube-плеер. Проверьте блокировку Youtube в вашей сети.
Повторяем попытку...
Secure your cloud with all-new AZ Policy & Machine Config features - Mutemwa Masheke - PSConfEU 2025

Поделиться в:

Доступные форматы для скачивания:

Скачать видео

  • Информация по загрузке:

Скачать аудио

Похожие видео

Configuring Azure Entra ID and M365 with DSC - Gael Colas & Raimund Andree - PSConfEU 2025

Configuring Azure Entra ID and M365 with DSC - Gael Colas & Raimund Andree - PSConfEU 2025

Simplify dev setup with WinGet & Microsoft Desired State Configuration | BRK228

Simplify dev setup with WinGet & Microsoft Desired State Configuration | BRK228

An easy path from AA DSC to Azure Automanage Machine Configuration - Raimund Andrée - PSConfEU 2023

An easy path from AA DSC to Azure Automanage Machine Configuration - Raimund Andrée - PSConfEU 2023

PowerShell Community Call - January 15th, 2026

PowerShell Community Call - January 15th, 2026

What's new with Azure machine configuration: spotlight on now open-source features - Mutemwa Ma…

What's new with Azure machine configuration: spotlight on now open-source features - Mutemwa Ma…

Сетевые возможности Kubernetes: NodePort, LoadBalancer, Ingress или Gateway API?

Сетевые возможности Kubernetes: NodePort, LoadBalancer, Ingress или Gateway API?

Понимание Active Directory и групповой политики

Понимание Active Directory и групповой политики

Manage resources from cloud to edge using Azure Automanage machine con | OD103

Manage resources from cloud to edge using Azure Automanage machine con | OD103

PSFramework - Friedrich Weinmann - PSConfEU 2025

PSFramework - Friedrich Weinmann - PSConfEU 2025

The Human Side of PowerShell Scripting - Jeff Hicks

The Human Side of PowerShell Scripting - Jeff Hicks

Музыка для работы - Deep Focus Mix для программирования, кодирования

Музыка для работы - Deep Focus Mix для программирования, кодирования

Building DSC v3 Resources by Josh Corrick

Building DSC v3 Resources by Josh Corrick

VSCode Extension Deployment with Intune - Björn Sundling, David Sass - PSConfEU 2025

VSCode Extension Deployment with Intune - Björn Sundling, David Sass - PSConfEU 2025

⚡️ Капитуляция на условиях России || Зеленский пошёл в отказ

⚡️ Капитуляция на условиях России || Зеленский пошёл в отказ

Deep House Mix 2024 | Deep House, Vocal House, Nu Disco, Chillout Mix by Diamond #3

Deep House Mix 2024 | Deep House, Vocal House, Nu Disco, Chillout Mix by Diamond #3

VM Applications with Azure Compute Gallery

VM Applications with Azure Compute Gallery

Divine Music - The Year Mix Vol.10 [Chill & Ethnic Deep 2025]

Divine Music - The Year Mix Vol.10 [Chill & Ethnic Deep 2025]

Вайбкодинг в 1С: бесплатный NVIDIA API, K2.5 и DeepSeek 3.2 с MCP

Вайбкодинг в 1С: бесплатный NVIDIA API, K2.5 и DeepSeek 3.2 с MCP

Secure your Azure Deployments using Bicep, Deployment Stacks, and WhatIf - Dante Dalla Gasperina

Secure your Azure Deployments using Bicep, Deployment Stacks, and WhatIf - Dante Dalla Gasperina

Алексей Арестович.Генеральной целью России было навязать Западу новое соглашение. Анкоридж был зенит

Алексей Арестович.Генеральной целью России было навязать Западу новое соглашение. Анкоридж был зенит

© 2025 ycliper. Все права защищены.



  • Контакты
  • О нас
  • Политика конфиденциальности



Контакты для правообладателей: [email protected]