Start here! Get your feet wet with the Microsoft cloud and begin your journey to earning your Microsoft Certified: Azure Fundamentals certification!
Azure Arc is a service that extends Azure management and governance to resources that run outside of Azure datacenters. It provides a single control plane for on-premises servers, Kubernetes clusters, and databases, no matter where they are hosted. By connecting these resources to Azure, organizations gain a consistent management experience using familiar Azure tools. This approach helps IT teams apply templates, policies, and role-based access control through Azure Resource Manager, ensuring compliance and security rules are enforced uniformly across hybrid, multi-cloud, and edge environments.
Key features of Azure Arc include Azure Arc-enabled servers for managing Windows and Linux machines, Azure Arc-enabled Kubernetes for connecting Kubernetes clusters, and Azure Arc-enabled data services for deploying SQL Managed Instances and PostgreSQL Hyperscale on any infrastructure. By using Azure Arc, organizations can unify operations, improve security posture, and maintain compliance across diverse IT landscapes. It makes it easier to adopt a hybrid strategy without sacrificing the benefits of Azure’s management and governance capabilities.
Azure Arc-enabled servers allow organizations to manage Windows and Linux servers that run outside of Azure as if they were native Azure resources. This capability is crucial for businesses that operate in hybrid or multi-cloud environments, providing a unified management experience. With Azure Arc-enabled servers, you can apply Azure policies to enforce compliance, monitor performance using Azure Monitor, and ensure security through integration with Azure Security Center (now part of Microsoft Defender for Cloud). The service also integrates with Azure Automation to automate routine tasks and with Azure Resource Manager to deploy and manage resources consistently across different environments. This unified approach simplifies operations and governance across all connected servers, whether they are on-premises or in other clouds.
Azure Arc-Enabled Kubernetes extends Azure management to Kubernetes clusters running anywhere—on-premises, at the edge, or in other clouds. By connecting a cluster, you register it as an Arc connected cluster, making it visible and manageable in the Azure portal alongside native Azure resources. To connect a cluster, you use Azure CLI or PowerShell commands that deploy the Arc agent onto the cluster and create a managed resource group. Once connected, the cluster connect feature lets you securely access the cluster from anywhere by retrieving a kubeconfig file, even if the cluster is behind a firewall. This enables consistent deployment, centralized policy enforcement, integrated monitoring via Azure Monitor, and GitOps-based configuration for declarative application management. Key benefits include unified management of all clusters, centralized role-based access control (RBAC) through Azure Policy, and seamless scaling with configuration drift prevention across environments.
Azure Arc integrates with several Azure services to provide unified management, security, and compliance across all connected resources. Azure Policy works with Azure Arc to ensure hybrid and multi-cloud resources comply with organizational standards. You can assign policies at subscription or resource group levels, monitor compliance states, and trigger automated remediation when misconfigurations occur. Azure Monitor collects telemetry from all connected servers and Kubernetes clusters, sending logs and metrics to a central location for analysis and alerting. This integration offers real-time insights into performance and health across hybrid environments. Azure Security Center (Microsoft Defender for Cloud) continuously scans connected resources for vulnerabilities, misconfigurations, and threats, providing a secure score and remediation guidance. Together, these integrations create a single pane of glass for overseeing policies, monitoring performance, and detecting threats across all assets, whether in Azure or elsewhere.
Azure Arc is used in real-world scenarios to manage physical servers, Kubernetes clusters, and SQL servers located outside of Azure. Common use cases include deploying policies and tracking compliance across on-premises and cloud resources, monitoring and securing servers with integrated tools, and organizing resources into logical groups for simplified oversight. The key benefits of Azure Arc include enhanced security through integration with Azure Security Center, improved compliance by enforcing Azure Policy rules globally, and increased operational efficiency by automating updates and configurations through Azure Automation and GitOps. For example, large enterprises use Azure Arc to maintain a consistent patching schedule for on-premises servers and enforce data privacy rules across multiple regions. Developers can also deploy Azure data services on any infrastructure, fostering innovation without changing existing environments. Overall, Azure Arc offers a flexible, secure, and centralized way to manage and govern resources no matter where they reside.
Gauge your current knowledge

Gauge your current knowledge
