A third-party SECaaS offering, such as Zscaler, that Azure Firewall Manager deploys into a Virtual WAN hub to filter traffic bound for the internet. It connects via the hub's VPN gateway and turns the hub into a secured hub.
Also called SECaaS.
Read more: Microsoft Learn
In the Ultra Transcenders books
Each book explains Security partner provider in context, with comparison tables and the common traps.
Terms in this definition
- Zscaler
Through Azure Firewall Manager, this security partner provider can be deployed in a secured virtual hub.
- Azure Firewall Manager
Service for administering Azure Firewall policies centrally, letting child policies inherit from a parent across subscriptions and regions.
- Virtual WAN
A networking service built around hubs that Microsoft manages. The Basic type handles only site-to-site VPN; Standard brings in ExpressRoute, point-to-site and full transit.
- Virtual hub
Inside a Virtual WAN, a VNet managed by Microsoft that contains the hub router plus the VPN, ExpressRoute and User VPN gateways. Typically there is one per region, but several hubs can share a region.
- FILTER
Returns just those rows of a table that meet a condition. In CALCULATE it handles conditions too complex for a Boolean filter argument, though a Boolean filter is faster whenever one will work.
- VPN gateway
Terminates IPsec tunnels for site-to-site, point-to-site and VNet-to-VNet connections, as a VPN-type virtual network gateway in GatewaySubnet. It gets a Standard static public IP when created, and that IP can't be swapped.
Related terms
- Secured virtual hub
What you get once Azure Firewall Manager places Azure Firewall, or a SECaaS partner, inside a Virtual WAN hub. Putting a NAT gateway, WAF or Front Door in front is not enough to count.