In Azure Virtual Network Manager, the container for one or more collections of security admin rules. Each region accepts just one deployed configuration, so extra rules belong in new rule collections, not further configurations.
Read more: Microsoft Learn
In the Ultra Transcenders books
Each book explains Security admin configuration in context, with comparison tables and the common traps.
Terms in this definition
- Azure Virtual Network Manager
Service for centrally managing connectivity, as hub-and-spoke or mesh, and security admin rules across VNets in many subscriptions. VNets in other tenants must be added as static members, because dynamic membership driven by Azure Policy works only within one tenant.
- Container
Something that groups data. Blob Storage containers sit inside a storage account and hold blobs much as folders hold files; Cosmos DB containers hold items and set the scope for partitioning and throughput.
- Security Admin
Built-in Azure role whose holders manage security policy, alerts and recommendations in Microsoft Defender for Cloud. Role assignment and the creation of general policy definitions fall outside what it allows.
- region
A provider-defined grouping in VCF Automation of Supervisors that all share one NSX Local Manager; tenants consume its compute, storage and memory via quotas set per region.
Related terms
- Rule collection
A set of security admin rules, aimed at one or more network groups, held inside a security admin configuration of Azure Virtual Network Manager.