Sign In Start Free Trial
Account

Add to playlist

Create a Playlist

Modal Close icon
You need to login to use this feature.
  • Book Overview & Buying Securing Cloud PCs and Azure Virtual Desktop
  • Table Of Contents Toc
  • Feedback & Rating feedback
Securing Cloud PCs and Azure Virtual Desktop

Securing Cloud PCs and Azure Virtual Desktop

By : Dominiek Verham, Johan Vanneuville
5 (3)
close
close
Securing Cloud PCs and Azure Virtual Desktop

Securing Cloud PCs and Azure Virtual Desktop

5 (3)
By: Dominiek Verham, Johan Vanneuville

Overview of this book

Do you want to effectively implement and maintain secure virtualized systems? This book will give you a comprehensive understanding of Microsoft virtual endpoints, from the fundamentals of Windows 365 and Azure Virtual Desktop to advanced security measures, enabling you to secure, manage, and optimize virtualized environments in line with contemporary cybersecurity challenges. You’ll start with an introduction to Microsoft technologies, gaining a foundational understanding of their capabilities. Next, you’ll delve into the importance of endpoint security, addressing the challenges faced by companies in safeguarding their digital perimeters. This book serves as a practical guide to securing virtual endpoints, covering topics such as network access, data leakage prevention, update management, threat detection, and access control configuration. As you progress, the book offers insights into the nuanced security measures required for Windows 365, Azure Virtual Desktop, and the broader Microsoft Azure infrastructure. The book concludes with real-world use cases, providing practical scenarios for deploying Windows 365 and Azure Virtual Desktop. By the end of this book, you’ll be equipped with practical skills for implementing and evaluating robust endpoint security strategies.
Table of Contents (21 chapters)
close
close
Free Chapter
1
Part 1: An Introduction to Microsoft Virtual Desktops
3
Part 2: Why Is Endpoint Security Important?
6
Part 3: Security Controls for W365 and AVD
12
Part 4: Additional Security Controls per Solution
16
Part 5: Use Cases

Active Directory structure and security

When the IT admin creates a new session host, they have the option to connect to Active Directory (AD). It is recommended that not everyone has access to these objects, so it’s a good idea to have a good structure in place. This structure includes the following:

  • Separated Organizational Unit (OU)
  • Separated GPO for each environment
  • Dedicated service account to domain join

Let’s discuss these next.

Separated OU

It’s important to limit the access to the session hosts AD objects to apply zero trust on these objects. Because of this, the IT admin can create separate OUs for each environment. This way, somebody with access to the development (dev) hosts doesn’t have access to the production (prd) hosts.

In the following example, the IT admin has created a structure to organize prd and dev:

Figure 10.70 – AD structure

Separated GPO for each environment

...

Unlock full access

Continue reading for free

A Packt free trial gives you instant online access to our library of over 7000 practical eBooks and videos, constantly updated with the latest in tech

Create a Note

Modal Close icon
You need to login to use this feature.
notes
bookmark search playlist font-size

Change the font size

margin-width

Change margin width

day-mode

Change background colour

Close icon Search
Country selected

Close icon Your notes and bookmarks

Delete Bookmark

Modal Close icon
Are you sure you want to delete it?
Cancel
Yes, Delete

Delete Note

Modal Close icon
Are you sure you want to delete it?
Cancel
Yes, Delete

Edit Note

Modal Close icon
Write a note (max 255 characters)
Cancel
Update Note

Confirmation

Modal Close icon
claim successful

Buy this book with your credits?

Modal Close icon
Are you sure you want to buy this book with one of your credits?
Close
YES, BUY