A new SKU for clients managing extremely sensitive virtual machine workloads is Azure Bastion Premium
Customers can secure their virtual machines by using the public IP address of Azure Bastion as the point of entry to their target virtual machines when using the current Azure Bastion SKUs
Using Azure Bastion, clients can now connect to a private endpoint instead of depending on the public IP address
Azure Bastion can record all virtual machine sessions that connect over an activated Azure Bastion graphically
Microsoft Azure is allowing clients to connect inbound to their Azure Bastion using a private IP address with Private Only Azure Bastion
Others with on-premises equipment trying to connect to Azure can use Private Only Azure Bastion with ExpressRoute private peering to connect directly to their Azure virtual machines
Microsoft Azure goes above network security standards by working with internal teams to combine their solution with other security products