Stabilize, automate, secure
A senior cloud infrastructure consultant from adesso therefore quickly analyzed the existing Azure architecture and addressed the biggest risks. The VPN architecture was redesigned, client connections were clearly segmented, VPN profiles were automatically distributed via Microsoft Intune, and the DNS structure was optimized to ensure reliable service availability. At the same time, the entire process surrounding SSL certificates was automated—from creation and secure storage to distribution to virtual machines—with a focus on security, scalability, and operations.
To future-proof remote access for administrators, a security concept for RDP connections was also developed, evaluating a cloud-based option using Microsoft Entra ID and Conditional Access, as well as an on-premises solution with a smart card or YubiKey. Thanks to close collaboration and targeted knowledge transfer, the internal IT team can now securely operate and further develop the new environment.