Copyright © 2020 John Wiley & Sons, Inc., Indianapolis, Indiana
Published simultaneously in Canada
ISBN: 978-1-11959657-8
ISBN: 978-1-119-59653-0 (ebk.)
ISBN: 978-1-119-59660-8 (ebk.)
Manufactured in the United States of America
No part of this publication may be reproduced, stored in a retrieval system or transmitted in any form or by any means, electronic, mechanical, photocopying, recording, scanning or otherwise, except as permitted under Sections 107 or 108 of the 1976 United States Copyright Act, without either the prior written permission of the Publisher, or authorization through payment of the appropriate per-copy fee to the Copyright Clearance Center, 222 Rosewood Drive, Danvers, MA 01923, (978) 750-8400, fax (978) 646-8600. Requests to the Publisher for permission should be addressed to the Permissions Department, John Wiley & Sons, Inc., 111 River Street, Hoboken, NJ 07030, (201) 748-6011, fax (201) 748-6008, or online at http://www.wiley.com/go/permissions.
Limit of Liability/Disclaimer of Warranty: The publisher and the author make no representations or warranties with respect to the accuracy or completeness of the contents of this work and specifically disclaim all warranties, including without limitation warranties of fitness for a particular purpose. No warranty may be created or extended by sales or promotional materials. The advice and strategies contained herein may not be suitable for every situation. This work is sold with the understanding that the publisher is not engaged in rendering legal, accounting, or other professional services. If professional assistance is required, the services of a competent professional person should be sought. Neither the publisher nor the author shall be liable for damages arising herefrom. The fact that an organization or Web site is referred to in this work as a citation and/or a potential source of further information does not mean that the author or the publisher endorses the information the organization or Web site may provide or recommendations it may make. Further, readers should be aware that Internet Web sites listed in this work may have changed or disappeared between when this work was written and when it is read.
For general information on our other products and services or to obtain technical support, please contact our Customer Care Department within the U.S. at (877) 762-2974, outside the U.S. at (317) 572-3993 or fax (317) 572-4002.
Wiley publishes in a variety of print and electronic formats and by print-on-demand. Some material included with standard print versions of this book may not be included in e-books or in print-on-demand. If this book refers to media such as a CD or DVD that is not included in the version you purchased, you may download this material at http://booksupport.wiley.com. For more information about Wiley products, visit www.wiley.com.
Library of Congress Control Number: 2019947400
TRADEMARKS: Wiley, the Wiley logo, and the Sybex logo are trademarks or registered trademarks of John Wiley & Sons, Inc. and/or its affiliates, in the United States and other countries, and may not be used without written permission. Microsoft and Azure are registered trademarks of Microsoft Corporation. All other trademarks are the property of their respective owners. John Wiley & Sons, Inc. is not associated with any product or vendor mentioned in this book.
For my wife, Julie, and my children, Abby, Ben, and Kevin
I could not have written this book without the help and support of many people. First, I need to thank my wife, Julie, for putting up with me for the last 6 months being busier than usual and for picking up the slack and for always supporting the crazy things I want to do! My children, Abby, Ben, and Kevin always make all the work worthwhile and can always make me see what is truly important with a smile.
Of course, the book wouldn't be possible at all without the Wiley team: Kenyon Brown, the acquisitions editor; Janet Wehner, the project editor; Christine O'Connor, the production editor; John Sleeva, the copyeditor; and Nancy Carrasco, the proofreader.
Many people have helped me over the years with encouragement and technical knowledge, and this book is the sum of that. The following people helped with specific aspects of this book, and I want to call them out for helping make this book as good as possible: Alex Shteynberg, Alexander Frankel, Ali Mazaheri, Anavi Nahar, Andrew Mason, Anuj Chaudhary, Ashish Jain, Bala Natarajan, Brian Tirch, Charles Joy, Christina Compy, Cosmos Darwin, Daniel Savage, David Berg, David Browne, David Powell, Derek Martin, Doug Lora, Elisabeth Olson, Gunjan Jain, Jason Hendrickson, Jeff Cohen, Jeff Peterson, Jim Benton, Jose Rojas, Kiran Madnani, Klaas Langhout, Larry Claman, Marc Kean, Maria Lai, Markus Hain, Mark Russinovich, Mike Stephens, Mutlu Kurtoglu, Rajat Luthra, Ramiro Calderon, Randy Haagens, Raphael Chacko, Reed Rector, Rena Shah, Rich Thorn, Rimma Nehme, Rochak Mittal, Sadie Henry, Satya Vel, Simon Gurevich, Sibonay Koo, Steve Espinosa, Steve Linehan, Sujay Talasila, Thomas Weiss, Trinadh Kotturu, Tyler Fox, Varun Shandilya, Yugang Wang, Yunus Emre Alpozen, Yves Pitsch, and Zif Rafalovich. If I've missed anyone, I'm truly sorry.
John Savill is a technical specialist who focuses on Microsoft core infrastructure technologies, including Microsoft Azure, Windows, Hyper-V, and anything that does something cool. He has been working with Microsoft technologies for over 20 years and was the creator of the highly popular NT FAQ website. He has written eight previous books, covering Azure, Hyper-V, Windows, and advanced Active Directory architecture. When he is not writing books, he regularly writes magazine articles and whitepapers, creates a large number of technology videos, which are available on his YouTube channel, https://www.youtube.com/ntfaqguy, and regularly presents online and at industry-leading events. John has a large library of technical learning materials available via Pluralsight (https://www.pluralsight.com/authors/john-savill), including entire tracks focused on identity, infrastructure, data, and more in the Microsoft cloud.
Outside of technology, John enjoys fitness training, including weightlifting and cardio to help prepare for his full IRONMAN triathlon events. John has completed 12 full IRONMAN events and while writing this book is busy training for IRONMAN Texas, Canada, and Maryland, for which he has signed up to complete in 2019 (hopefully).
John tries to update his blog at https://savilltech.com/ with the latest news of what he is working on and tweets at https://twitter.com/NTFAQGuy.
The book you are holding is the result of my 25 years of experience in the IT world, including 20 years of virtualization experience, which started with VMware, Virtual PC, and now Hyper-V, and many years focusing on public cloud solutions, especially Microsoft Azure. My goal for this book is simple: to make you knowledgeable and effective architecting an Azure-based infrastructure. If you look at the scope of Microsoft Azure functionality, a single book would be the size of the Encyclopedia Britannia to cover it, so my focus for this book is the infrastructure-related services, including VMs in Azure, storage, networking, and some complementary technologies. Additionally, the focus is on architecting a solution. I will also show how to automate processes using technologies such as templates and PowerShell/CLI, how to integrate Azure with your on-premises infrastructure to create a hybrid solution, and even how to use Azure as a disaster recovery solution.
There is a huge amount of documentation for each feature of Azure. The documentation walks through each feature's basic functionality and provides step-by-step instructions for the basic deployment. When performed through the GUI, these steps often change, as interfaces continue to evolve. Additionally, as this book will show, while the portal is great for learning about the options, you won't be using it for production deployments, preferring instead to use prescriptive technologies like templates. Therefore, the goal of this book is to help you understand the options, to understand how to use them as part of a solution to meet requirements, to enable architectures to be created using the right components, with best practices developed over years of working with many Fortune 500 organizations. Yes, this book will expose you to all the important Azure infrastructure services, but it will focus on providing real value to enable the most complete and optimal utilization of Azure. It will focus on walkthroughs only for more involved or complex scenarios where they really provide value. But don't worry—the basic step-by-steps will still be referenced so that you can easily find them.
Microsoft is one of only three vendors with a solution in the public cloud IaaS Gartner Magic Quadrant as a leader in addition to being used by many of the largest companies in the world and I will cover this in more detail in Chapter 12.
I am a strong believer that doing an action is the best way to learn something, so I encourage you to try out all the technologies and principles I cover in this book. Because Azure is a public cloud solution, you don't need any local resources except for a machine to connect to Azure. You can even run command-line interfaces (CLIs) directly within the Azure portal environment. Ideally, you will also have an on-premises lab environment to test the networking to Azure and hybrid scenarios. However, you don't need a huge lab environment; for most of the items, you could use a single machine with Windows Server installed on it and with 8 GB of memory to enable a few virtual machines to run concurrently. As previously mentioned, sometimes I provide step-by-step instructions to guide you through a process; sometimes I link to an external source that already has a good step-by-step guide; and sometimes I link to videos I have posted to ensure maximum understanding.
This book was one of the most challenging I've written. Because Azure is updated so frequently, it was necessary to update the book while writing, as capabilities would change. The Microsoft product group teams helped greatly, giving me early access to information and even environments to enable the book to be as current as possible. To keep the content relevant, I will be releasing a digital supplement and updating it as required. This will be available, along with any sample code, video links, and other assets, on the books GitHub page at:
https://github.com/johnthebrit/MasterIaaS2019
As you read each chapter, look at the GitHub repository for videos and other information that will help your understanding, as I do not specifically call these references out in the text of the book. The main page shows how to get a local copy of the repository, which has the benefit of making it easy to get updates as they occur.
I am making certain assumptions regarding the reader:
This book is intended for anyone who wants to learn Azure Infrastructure services, but it is really focused on exposing the options and offering guidance on architecting solutions. If you have basic knowledge of Azure, that will help, but it is not a requirement. I start off with a foundational understanding of each technology and then build on that to cover more advanced topics and configurations. If you are an architect, a consultant, an administrator, or really anyone who just wants a better knowledge of Azure Infrastructure, this book is for you.
There are many times I go into advanced topics that may seem over your head, in which case don't worry. Focus on the preceding elements you understand, implement and test them, and solidify your understanding. Then, when you feel comfortable, come back to the more advanced topics, which will seem far simpler.
There are various Azure exams. The most relevant to this book are AZ-100 and AZ-101 (replacing the old 70-533 exam), which, when passed, give the participant the Azure Administrator Associate certification:
https://www.microsoft.com/en-us/learning/azure-administrator.aspx
Additionally, exams AZ-300 and AZ-301 (replacing the old 70-534 exam), when passed, give the Azure Solutions Architect Expert certification:
https://www.microsoft.com/en-us/learning/azure-solutions-architect.aspx
Will this book help you pass the exams? Yes, it will help. I took the exams for both certifications cold, without knowing what was in the exams and without any study, and I passed. Since most of my Azure brain is in this book, it will help. However, I advise you to look at the areas covered in the exams and use this book as one resource to help, but also use other resources that Microsoft references on the exam site. This is especially true of the architect certification, which includes a significant amount of content of application and database concepts, which I cover in this book only at a very high level.
Here is a glance at what's in each chapter.
I welcome your feedback about this book or about books you'd like to see from me in the future. You can reach me by writing to john@savilltech.com. For more information about my work, visit my website at https://savilltech.com.
Sybex strives to keep you supplied with the latest tools and information you need for your work. Please check their website at www.wiley.com/go/sybextestprep, where we'll post additional content and updates that supplement this book, should the need arise.