Sign In Start Free Trial
Account

Add to playlist

Create a Playlist

Modal Close icon
You need to login to use this feature.
  • Book Overview & Buying Securing Cloud PCs and Azure Virtual Desktop
  • Table Of Contents Toc
  • Feedback & Rating feedback
Securing Cloud PCs and Azure Virtual Desktop

Securing Cloud PCs and Azure Virtual Desktop

By : Dominiek Verham, Johan Vanneuville
5 (3)
close
close
Securing Cloud PCs and Azure Virtual Desktop

Securing Cloud PCs and Azure Virtual Desktop

5 (3)
By: Dominiek Verham, Johan Vanneuville

Overview of this book

Do you want to effectively implement and maintain secure virtualized systems? This book will give you a comprehensive understanding of Microsoft virtual endpoints, from the fundamentals of Windows 365 and Azure Virtual Desktop to advanced security measures, enabling you to secure, manage, and optimize virtualized environments in line with contemporary cybersecurity challenges. You’ll start with an introduction to Microsoft technologies, gaining a foundational understanding of their capabilities. Next, you’ll delve into the importance of endpoint security, addressing the challenges faced by companies in safeguarding their digital perimeters. This book serves as a practical guide to securing virtual endpoints, covering topics such as network access, data leakage prevention, update management, threat detection, and access control configuration. As you progress, the book offers insights into the nuanced security measures required for Windows 365, Azure Virtual Desktop, and the broader Microsoft Azure infrastructure. The book concludes with real-world use cases, providing practical scenarios for deploying Windows 365 and Azure Virtual Desktop. By the end of this book, you’ll be equipped with practical skills for implementing and evaluating robust endpoint security strategies.
Table of Contents (21 chapters)
close
close
Free Chapter
1
Part 1: An Introduction to Microsoft Virtual Desktops
3
Part 2: Why Is Endpoint Security Important?
6
Part 3: Security Controls for W365 and AVD
12
Part 4: Additional Security Controls per Solution
16
Part 5: Use Cases

Trusted launch and confidential computing

As well as securing the software, network, and OS layer, the IT admin also needs to think about the hardware layer. Luckily, Microsoft provides several options to achieve this.

Trusted launch

Trusted launch is offered on Gen 2 Azure virtual machines. It offers several security enhancements that can be enabled separately. When starting the process of creating a new Azure virtual machine in the portal, the trusted launch is automatically selected. However, the IT admin can select which options to activate. By default, Enable secure boot and Enable vTPM are selected, as shown in the following figure.

Figure 10.50 – Configuring trusted launch

Figure 10.50 – Configuring trusted launch

Let’s discuss what each option does:

  • Enable secure boot: This feature will protect the virtual machine from rootkits that overwrite the firmware, boot kits that replace the OS bootloader, kernel rootkits that replace a piece of the OS kernel, and driver...

Unlock full access

Continue reading for free

A Packt free trial gives you instant online access to our library of over 7000 practical eBooks and videos, constantly updated with the latest in tech
bookmark search playlist font-size

Change the font size

margin-width

Change margin width

day-mode

Change background colour

Close icon Search
Country selected

Close icon Your notes and bookmarks

Delete Bookmark

Modal Close icon
Are you sure you want to delete it?
Cancel
Yes, Delete

Confirmation

Modal Close icon
claim successful

Buy this book with your credits?

Modal Close icon
Are you sure you want to buy this book with one of your credits?
Close
YES, BUY