Network security
CoreAzure Firewall
Managed stateful network security service for centralized filtering.
Key points
- Azure Firewall applies centralized stateful network and application filtering to routed traffic.
- Route design, rule collections, DNS, threat intelligence, logging, scale, and high availability shape effective inspection.
Best-known use cases
- Govern and log outbound traffic from multiple spokes through a central control point.
What candidates often confuse it with
- Azure Firewall centralizes inspected policy; NSGs filter subnet or interface traffic and Private Link provides private service access.
Key takeaway
Choose Azure Firewall when traffic from multiple network segments needs centralized filtering and logging.
Relevant exam tasks
- D4.4.S4 — Recommend a solution to optimize network security