JUMP SERVER Fundamentals
Suppose you have VM2 that is hosting IIS web app that is internal app for your company. If you want to change the IIS configuration. How would you do from your home machine??Would you assign public IP to VM2 server and directly access from home computer??
Answer is No, You must create a Jump Server within the same VNet and only allow JumpServer to connect to VM2 server. You could always assign public IP to VM2 and restrict outside connection by IP using NSG ( ACL ) however, this is more secure way.?
How to setup Jump Server in Azure Virtual Network (VNet)?