Setting on resources such as storage accounts or Azure Machine Learning workspaces that controls just the public endpoint: open to all networks, limited to selected ones, or off. Turning it off leaves private endpoints working.
Read more: Microsoft Learn
In the Ultra Transcenders books
Each book explains Public network access in context, with comparison tables and the common traps.
Terms in this definition
- General-purpose v1
The older storage account kind (
Storage), which lacks access tiers, Archive and premium file shares and retires on 13 October 2026. Converting to ZRS requires first upgrading to GPv2, a one-way change. - AGDLP
Nesting pattern: users go into global groups, which go into domain local groups, which receive the permissions. AGUDLP adds universal groups for forests with several domains.
- Azure Machine Learning
Azure platform where you train, deploy, monitor and retrain models of your own, practising MLOps through tools such as pipelines, online endpoints, model monitoring and prompt flow.
- Public endpoint
When a service has a public IP, anyone online can attempt a connection, with authentication and firewall rules deciding who gets in. Private endpoints and service endpoints offer private alternatives.
- ALL
A DAX function that ignores any filters and gives back every row of a table or every value of the named columns. Used within CALCULATE, it works as a modifier that clears filters, although REMOVEFILTERS states that intent more clearly where it is available.
Related terms
- Azure Storage firewall
Network rules on a storage account, applied when public network access is limited to selected networks. Only the listed IP ranges, VNet subnets, resource instances and trusted services can reach the public endpoint; all other traffic is refused.