Azure Proactive Resiliency Library v2
Tools Glossary GitHub GitHub Issues Toggle Dark/Light/Auto mode Toggle Dark/Light/Auto mode Toggle Dark/Light/Auto mode Back to homepage

bastionHosts

Summary

RecommendationImpactCategoryAutomation AvailableIn Azure Advisor
Deploy Azure Bastion across Availability ZonesMediumHigh AvailabilityYesNo
Deploy Azure Bastion into the virtual network in secondary Azure regionMediumDisaster RecoveryNoNo

Details


Deploy Azure Bastion across Availability Zones

Impact:  Medium Category:  High Availability

APRL GUID:  c9b0c6f6-1f64-4b4b-8165-00770b295dd7

Description:

Azure Bastion provides secure operational access to workload components. By distributing your Bastion resource across multiple availability zones, you can enhance the resiliency and reliability of your production workloads.

Potential Benefits:

Provide high availability and resilience to failures
Learn More:
Reliability in Azure Bastion

ARG Query:

Click the Azure Resource Graph tab to view the query

// under-development


Deploy Azure Bastion into the virtual network in secondary Azure region

Impact:  Medium Category:  Disaster Recovery

APRL GUID:  0e57956d-71d9-4a35-bdcf-d7cfd7cd71f4

Description:

Azure Bastion is a single-region service, if the primary region becomes unavailable, the Bastion resource will also be unavailable. To ensure disaster recovery, it is recommended to deploy Azure Bastion into separate virtual networks across different regions.

Potential Benefits:

Provides disaster recovery from regional outages
Learn More:
Multi-region support in Azure bastion

ARG Query:

Click the Azure Resource Graph tab to view the query

// cannot-be-validated-with-arg