<?xml version="1.0" encoding="utf-8" standalone="yes"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom"><channel><title>Entra on NASAN</title><link>https://nasan.ch/tags/entra/</link><description>Recent content in Entra on NASAN</description><generator>Hugo</generator><language>en</language><lastBuildDate>Thu, 31 Aug 2023 06:10:21 +0100</lastBuildDate><atom:link href="https://nasan.ch/tags/entra/index.xml" rel="self" type="application/rss+xml"/><item><title>Securing Resources in Azure VMs with Microsoft Entra Private Access in a Hub-and-Spoke Architecture</title><link>https://nasan.ch/posts/2023-08-31-entraprivateaccess/</link><pubDate>Thu, 31 Aug 2023 06:10:21 +0100</pubDate><guid>https://nasan.ch/posts/2023-08-31-entraprivateaccess/</guid><description>&lt;p&gt;I did a little &lt;strong&gt;Microsoft Entra Private Access&lt;/strong&gt; Test setup.&lt;br&gt;
My goal was to test access to some &lt;strong&gt;private Resources&lt;/strong&gt; hosted on &lt;strong&gt;Azure Virtual Machines&lt;/strong&gt; with &lt;strong&gt;Microsoft Entra Private Access&lt;/strong&gt; instead of VPN.&lt;/p&gt;
&lt;h2 id="overview"&gt;Overview&lt;/h2&gt;
&lt;p&gt;The test setup is illustrated below:
&lt;figure&gt;&lt;a class="lightgallery" href="https://nasan.ch/images/MicrosoftEntraPrivateAccess-AzurVM.drawio.png" title="Overview Test Setup:" data-thumbnail="/images/MicrosoftEntraPrivateAccess-AzurVM.drawio.png" data-sub-html="&lt;h2&gt;Preview&lt;/h2&gt;&lt;p&gt;Overview Test Setup:&lt;/p&gt;"&gt;
 &lt;img
 class="lazyload"
 src="https://nasan.ch/svg/loading.min.svg"
 data-src="https://nasan.ch/images/MicrosoftEntraPrivateAccess-AzurVM.drawio.png"
 data-srcset="https://nasan.ch/images/MicrosoftEntraPrivateAccess-AzurVM.drawio.png, https://nasan.ch/images/MicrosoftEntraPrivateAccess-AzurVM.drawio.png 1.5x, https://nasan.ch/images/MicrosoftEntraPrivateAccess-AzurVM.drawio.png 2x"
 data-sizes="auto"
 alt="/images/MicrosoftEntraPrivateAccess-AzurVM.drawio.png" /&gt;
 &lt;/a&gt;&lt;figcaption class="image-caption"&gt;Preview&lt;/figcaption&gt;
 &lt;/figure&gt;&lt;/p&gt;
&lt;p&gt;I have one Virtual Machine (VM) with a &lt;strong&gt;Windows File Share&lt;/strong&gt; that I wish to access from my endpoint and I also want to be able to access this VM via &lt;strong&gt;RDP.&lt;/strong&gt;&lt;br&gt;
Additionaly in another Spoke VNET I have a simple &lt;strong&gt;Web Server&lt;/strong&gt; which I also would like to access via &lt;strong&gt;Private Access&lt;/strong&gt;.&lt;/p&gt;</description></item></channel></rss>