创建ISE失败,寻求Logic App启用网络连接SQL Server的替代方案
问题概述
尝试使用Azure快速启动模板创建Integration Service Environment(ISE)以实现Logic App的网络功能,但部署失败。错误信息显示ISE已被弃用,禁止新创建,官方建议改用Logic Apps Standard。核心需求是让Logic App可靠连接VPC内的SQL Server,此前通过防火墙允许Azure管理IP的方式因IP变动不可靠,需寻找替代方案。
可行方案
1. 采用Logic Apps Standard(官方推荐)
- Logic Apps Standard原生支持VNet集成,可直接部署到目标VNet的子网中,或通过VNet访问规则连接VNet内资源。
- 配置要点:
- 创建Logic Apps Standard时,在网络配置环节选择加入目标VNet的子网(需确保子网满足最小大小要求)。
- 若SQL Server部署在VNet内,同VNet或对等VNet下的Logic Apps Standard可直接通过私有IP访问;也可结合服务端点或私有链接进一步提升网络隔离性。
2. 使用Azure私有链接
- 为SQL Server创建私有终结点,将其访问限制在VNet内部。
- 无论是消耗型还是标准型Logic App,都可在SQL Server连接配置中选择使用私有终结点,通过私有IP访问目标数据库,彻底摆脱对变动IP的依赖。
3. 为消耗型Logic App启用VNet集成(出站)
- 消耗型Logic App支持出站VNet集成,可将其出站流量引导至目标VNet,从而访问VNet内的SQL Server。
- 配置要点:
- 为消耗型Logic App启用VNet集成,指定目标VNet的子网。
- 配置SQL Server防火墙规则,允许该子网的IP范围访问;或结合私有链接实现无公网访问路径。
4. Azure Functions中间层(备选)
- 创建部署在目标VNet内的Azure Functions,由Functions负责访问VNet内的SQL Server,再由Logic App调用该Functions完成数据交互。
- 适合现有消耗型Logic App无法直接配置VNet集成的场景,通过Functions作为网络桥梁实现访问。
部署失败错误详情
{ "code": "DeploymentFailed", "target": "/subscriptions/****/resourceGroups/***/providers/Microsoft.Resources/deployments/Microsoft.Template-20240320165821", "message": "At least one resource deployment operation failed. Please list deployment operations for details. Please see https://aka.ms/arm-deployment-operations for usage details.", "details": [ { "code": "IntegrationServiceEnvironmentCreationNotAllowed", "message": "New integration service environments creations are not allowed for subscription '*****'. Integration service environments are getting deprecated. Please use Logic Apps Standard instead. Please see https://aka.ms/isedeprecation for more details." } ] }
内容的提问来源于stack exchange,提问作者Keshav Singh
相关产品推荐
相关产品推荐

