

Azure Point-to-Site VPN: Entra Authentication and Private Resource Access
Connect a Windows workstation to private Azure resources using Microsoft Entra authentication, Azure VPN Client, private DNS, and a verified missing-route troubleshooting exercise.

Christos Panagiotidis
10 min read


Azure Private Subnets: Replacing Default Outbound Access with NAT Gateway
Build a private Azure subnet with no implicit internet access, prove outbound failure, add StandardV2 NAT Gateway, validate deterministic egress and SNAT behavior, and analyze native flow logs.

Christos Panagiotidis
9 min read


Azure Network Security Perimeter: Learning Mode to Zero-Trust Enforcement
Build and validate an Azure Network Security Perimeter with Terraform, managed identities, Storage, Key Vault, transition-mode access logs, enforced denials, and explicit Zero Trust recovery.

Christos Panagiotidis
6 min read


Azure Virtual Network Manager Deep Dive: Network Groups, Connectivity, Security Admin Rules, and IPAM
Allocate four VNets from IPAM, deliberately exclude one from a tag-driven mesh, repair membership, and prove centralized Security Admin rules override local NSGs.

Christos Panagiotidis
8 min read


Azure Chaos Studio Deep Dive: Test Whether an Azure Workload Actually Survives Failure
Build a redundant Azure workload, inject VM, CPU, memory, latency, DNS, and Entra ID failures, and measure real recovery with Azure CLI and PowerShell.

Christos Panagiotidis
12 min read


Hands-On Azure PowerShell Workshop: Troubleshoot a Broken Network with Azure Network Watcher
Troubleshoot a deliberately broken Azure network in 60–75 minutes with Azure PowerShell and Network Watcher. You will deploy two private Ubuntu VMs, activate an overriding NSG deny and a blackhole route at the same time, diagnose each layer independently, restore connectivity, verify HTTP 200, and delete the complete lab. WORKSHOP AT A GLANCE Level: Beginner to intermediate Time: 60–75 minutes Region: West Europe Estimated lab cost: about €0.03 of B1s compute for 75 minutes,

Christos Panagiotidis
9 min read


Hands-On Azure Workshop: Build a Hub-and-Spoke Network with Azure Firewall
Build and test a secure Azure hub-and-spoke network with VNet peering, Azure Firewall Basic, user-defined routes, and private Ubuntu VMs—then clean up every lab resource.

Christos Panagiotidis
8 min read








