Service Endpoints
- Provides secure and direct connectivity to Azure services
- use optimized route over the Azure backbone network.
- You can Azure service to only your virtual networks.
- Service Endpoints enables private IP addresses in the VNet to reach tho endpoint of an Azure service without
- needing a public IP address on the VNet.
Demo: Service Endpoints
Prerequisite: Storage account & Azure storage explorer concepts
Service Endpoint vs Private endpoint
- Access
- Service — It to be a ptb0cly routable
- Private — It is a private IP the space of the virtual Netcare where the private endpoint is corduroy.
- Both are made to let you control who comets to service. Without eTrac the internet. traffic between yournetwork and the service is routed through the Microsoft backbone network.
- Data protection
- Service Emmott — For exfiltration traffic must through MVA/Firewall.
- Private — It has built-in data protection system
- Complexity
- Service Endpoint — It’s a lot easier to implement, and it reduces the complexity architecture designed significantly.
- Private link — Anotherresource must managed.
- Cost
- Service endpoint — using VNet service comet at no extra cost,
- Private Link — Depending on total ingress and egress traffic as well as the link’s runtime, costs can quickly escalate.
- Availability
- Both services are not available for all resolves/services.