On This Page
Microsoft Azure
Azure Resource Manager
- Dashboard Widgets
-
General (General overview of the system)
-
Audit (The number of rules withe expired access or will have access expire within the next month)
- Browsers
-
Rule Viewer (see Rule Viewer)
-
Object Lookup (See Object Lookup)
-
Changes (see Change Browser)
-
Device Viewer (see Device Viewer)
- Change Management
-
Change Management (Policy and Side-by-Side policy change comparison in the Compare tab, Comparison report, and New Revision report)
-
Graphical Policy (Policies are displayed in SecureTrack as they are shown in the vendor's management software)
- Topology
-
Dynamic Topology
-
Calculate impact of NSGs
-
Connectivity between VNets
-
ExpressRoute
-
VNet peering
-
Connectivity via VPN
-
Internal load balancer
Supported Devices
The following devices are supported on Microsoft Azure:
- Fortinet
- FortiManager
- FortiGate
- Check Point
- Management Devices (MDS) CloudGuard Network Security - Firewall & Threat Prevention
- Checkpoint Gateway with dynamic routes
- Palo Alto
- Panorama
Notes for Azure Resource Manager
-
Azure Resource Manager is the supported device type.
-
PCI DSS compliance is not currently supported.
-
Azure Classic (Azure Service Management API): Support for this device has reached its "end of life" (EOL).
-
Regarding Application Security Groups (ASGs), to see the members of an ASG in the Rule Viewer, the Virtual Machines (VMs) that are associated with the ASGs must be connected to the same Virtual Network (VNET) as the Network Security Group (NSG) that contains the ASG.
-
Importing Virtual Networks requires that the vnet has at least one VNIC.
Azure Firewall Policy
- Dashboard Widgets
-
General (General overview of the system)
- Change Management
-
Change Management (Policy and Side-by-Side policy change comparison in the Compare tab, Comparison report, and New Revision report)
- Topology
-
Path Analysis
-
Calculate impact of Azure Firewall policies
- Browsers
-
Rule Viewer (see Rule Viewer)
Notes for Azure
- Classic rules - rules that have been configured on the firewall directly and not included in Azure firewall policies - are not supported.