Tuesday 18 August 2020

Network Security Group (NSG)

Network Security Group's allow you to filter network traffic to and from Azure resources in an Azure virtual network. An NSG can contain multiple inbound and outbound security rules that enable you to filter traffic to and from resources by source and destination IP address, port, and protocol.

Network Security rule properties

A network security group can contain as many rules as you need, within Azure subscription limits. Each rule specifies the following properties:

Name - Unique name of the NSG.

Priority - A number between 100 and 4096. Rules are processed in priority order, with lower numbers processed before higher numbers.

Source or Destination - Individual IP address or IP address range, service tag, or application security group.

Protocol - TCP, UDP, or Any.

Direction - Whether the rule applies to inbound or outbound traffic.

Port Range - An individual port or range of ports.

Action - Allow or Deny.


