Ramblings on IT and Security

Tag: Azure

Monitoring Windows Firewall logs with Azure Monitor

In a previous blog, On-prem Conditional Access You Never Knew You Had I explored how the built-in Windows Firewall can be used as a powerful control mechanism to restrict access to systems, effectively bringing conditional access concepts to on-premises environments. The response to that post was overwhelming, with over 23,000 views on Reddit alone. Clearly, many organizations are interested in rethinking how they use the Windows Firewall beyond its default, often permissive configuration, and so should you/ But before you can confidently start restricting access, there is a fundamental question you need to answer:

What is actually being used in your environment?

In many cases, firewall rules have grown organically over time. Ports are opened “temporarily,” (read: we forget, so they will be open forever) exceptions are made for specific systems, and over the years, the rule set becomes difficult to understand, let alone control or optimize. Tightening those rules without proper insight is risky and can easily break critical services.

Continue reading

Fun with DNS records, DNSSEC and Apex domains

I’ve been in this industry for 30 somewhat years and luckily every now and than I still learn something new. As I stepped into this world of blogging, I decided to try out static websites instead of simply using WordPress. Must admit I had a little too much fun discovering how all this stuff actually works, diving into Git CI/CD pipelines, learning the markdown language, setting up an Azure static website and combining it all. No worries, over time I will share all I can, but for today I’m going to concentrate on name resolution, a.k.a. DNS.

Continue reading

© 2026 Michael Waterman

Theme by Anders NorenUp ↑