

Azure Landing Zone Deep Dive: Management Groups, Guardrails, and Subscription Vending
Build and validate an Azure platform landing zone with Terraform, Azure CLI, management groups, inherited policy, RBAC, centralized logging, and safe subscription onboarding.

Christos Panagiotidis
7 min read


Azure Machine Configuration Deep Dive: PowerShell DSC, Configuration Drift, Azure Policy, and Auto-Remediation
Define a Windows Server baseline with PowerShell DSC, deliberately introduce configuration drift, detect it through Azure Policy, and automatically restore compliance.

Christos Panagiotidis
18 min read


Azure Virtual Network Manager Deep Dive: Network Groups, Connectivity, Security Admin Rules, and IPAM
Allocate four VNets from IPAM, deliberately exclude one from a tag-driven mesh, repair membership, and prove centralized Security Admin rules override local NSGs.

Christos Panagiotidis
8 min read


Azure Policy-as-Code Deep Dive: Terraform, AzAPI, Governance, and Remediation
Build an Azure Policy-as-Code governance lab with Terraform and AzAPI. Stage a North Europe canary, audit before Deny, remediate tags and Blob diagnostics, add a scoped exemption, detect drift, and finish with a clean plan.

Christos Panagiotidis
12 min read








