Design and implement core networking infrastructure25–30%Diseñar e implementar direccionamiento IP (segmentación de red, VNets, subnets, delegación de subnet, prefijos de IP públicas), resolución de nombres (configuración de DNS, zonas DNS públicas/privadas, Azure DNS Private Resolver), conectividad y enrutamiento de VNet (service chaining, VNet peering, UDRs, forced tunneling, Route Server, NAT Gateway), y monitorear redes (Network Watcher, Azure Monitor, protección DDoS, Defender for Cloud)
≈ 14 h Design, implement, and manage connectivity services20–25%Diseñar y administrar conexiones VPN site-to-site (alta disponibilidad, SKUs de gateway, políticas IPsec/IKE, local network gateways), VPN point-to-site (tipos de túnel, autenticación incluyendo RADIUS y Entra ID, Always On VPN), Azure ExpressRoute (modelos de conectividad, SKUs, Global Reach, FastPath, Direct, peering), y arquitectura de Azure Virtual WAN (enrutamiento de hub, integración de NVA)
≈ 12 h Design and implement application delivery services15–20%Diseñar e implementar Azure Load Balancer y Traffic Manager (selección de SKU, regional/cross-region, Gateway Load Balancer, reglas NAT, reglas de salida), Azure Application Gateway (autoscale, backend pools, health probes, listeners, reglas de enrutamiento, TLS, reglas de rewrite), y Azure Front Door (enrutamiento, orígenes, endpoints, TLS, caching, aceleración de tráfico, URL rewrite/redirect, Private Link)
≈ 9 h Design and implement private access to Azure services10–15%Diseñar e implementar el servicio Azure Private Link y private endpoints (planificación, configuración, integración de DNS, integración con clientes on-premises) y diseñar e implementar service endpoints (políticas de endpoint, configuración de acceso)
≈ 6 h Design and implement Azure network security services15–20%Implementar y administrar NSGs (ASGs, reglas de seguridad, VNet flow logs, verificación de IP flow, Azure Bastion, Virtual Network Manager), diseñar e implementar Azure Firewall y Firewall Manager (selección de SKU, despliegue, reglas, políticas, secured hubs), y diseñar e implementar WAF (modo de detección/prevención, conjuntos de reglas para Front Door y Application Gateway)
≈ 10 h