About This Architecture
Enterprise hub-spoke network architecture on Azure with centralized firewall, VPN gateway, and Bastion in the hub VNet. Spoke VNets host application workloads with NSGs, connected via VNet peering. Includes Azure Monitor and Log Analytics for network observability. Fork this diagram on Diagrams.so to customize the number of spokes or add ExpressRoute connectivity for your hybrid network. Source: https://learn.microsoft.com/en-us/azure/architecture/