Category: Tutorial

0

Infrastructure as a Code (IaC) Series #2 – The tools

On the previous and first post about the IaC Series, I wrote about the beginning on the IaC and did describe the tools. On this post I will detail all the tools that I have been using on my IaC projects. So, before you get started, there are a few tools that you want to make sure that you have to install prior to started working with IaC project. At...

0

How to migrate Azure Managed Disk to different subscription and region – Part II

On the previous post I describe what need to do to move Azure Managed Disks between subscriptions and after that between regions (see link HERE). Although I didn’t explore the steps mention to move between regions. Here are the step-by-steps of each stage, mention on the previous post, of how to move the Azure Managed Disk between Azure Regions: 1. Stop the virtual machine from migrating 1. Navigate to the...

0

How to migrate Azure Managed Disk to different subscription and region – Part I

On a recent project, I was asked to help move some virtual machines from a MSDN Subscription to a CSP subscription. With this move, we use the opportunity to consolidate on a different region as well. This last aspect makes the move a little more complex that was described on the Move resources to new resource group or subscription documentation. The migration of resources between different or within the same...

0

How to overwrite Tags on an Azure Resource

With the limitation of 15 Tags per resource, you will reach a point that you need to intervene and either remove some of the tags or reuse them. On my previous post (How to update specified tag from a resource) I showed a way to update a specific tag in a Azure Resource. Some time that will be enough, other time you need to overwrite what is implemented by a...

1

How to update specified tag from a resource

The usage of Tags on Azure resources is a very common and very useful for several reasons that I will not cover on this post. Although in some occasions, if you need to update a Tag from a resource, because either it’s not suitable anymore or you are reaching the limit of the number of Tags allowed by Azure. In this case the idea is reuse the Tag Shutdown, although...

0

How to get Tags for all the resources on the same Resource Group

When you heavily use Tags on your Azure Resources, is very easy to reach the limits of the Tags that Azure allow to use on each resource. On the other hand, to be consistent on the Tags applied on those resources is key to a good Tag implementation. The way that I like to do is to create an Azure Automation runbook, so when it runs you will have the...

0

How to access Azure Blob Storage container via a SAS token

Today I received an email, from a colleague ask me if it’s there is a way that you can download the entire blob container having a SAS token via PowerShell. After research, I found that it’s possible and I found 2 ways. One is through PowerShell and the other one is through AzCopy. Please find bellow the example of the code required to download the whole content of a blob...

0

Unable to RDP into Azure VMs

After patching all the Windows Server in Azure, a colleague calls me in panic, because their users, could not access their VMs through RDP. They were getting a CredSSP error (picture bellow).  So, after reading the link bellow, it seems it could be related with the March update. https://support.microsoft.com/en-us/help/4093492/credssp-updates-for-cve-2018-0886-march-13-2018 Rebooting the VM didn’t sort the issue, there’s a few mitigations listed in this post https://blogs.technet.microsoft.com/mckittrick/unable-to-rdp-to-virtual-machine-credssp-encryption-oracle-remediation/ Then I realize that was...

0

How to enable RDS license on an Azure VM

In some organization, it’s common practice to have a jump server in Azure to be used, specially when you have several tools that need to run “locally” on the server. Usually this machine is on a segregated network and not domain join. Although, if you enable RDS licenses to have more than the 2 normal RDP sessions that a Windows Server 2016 give to us, you probably will see some...

0

How to remotely disable Network Level Authentication (NLA) on Azure Virtual Machine

Today, I received an email from a colleague, saying that he could RDP into his Azure VM after he rebooted the machine through the OS (applying patches).   When he tried to access his Azure VM through an RDP session, he got the following message: “The remote computer that you are trying to connect to requires Network Level Authentication (NLA), but your Windows domain controller cannot be contacted to perform NLA....