resiliency test on SQL Cosmos DB
I'm planning for the resiliency test on SQL Cosmos DB: I intended to halt operations on our SQL Cosmos DB. This action is necessary to monitor the application’s behavior in the absence of database connectivity. Is there any way to take one of DB offline…
SSL Certification Error on App deployed on App service while connecting to Azure OpenAI
I am writing to report an API connection error that I am currently experiencing. I have deployed an application to an app service in Azure, and it is connected to a virtual network (VNET) where Azure Open AI is configured as a private endpoint. However,…
unable to access storage account with a private endpoint from standard logic apps using managed identity
unable to access storage account with a private endpoint from standard logic apps using managed identity
Private Endpoint replying with a public IP
To whom it may concern, I have an issue when doing an NSlookup from an VM to a SQL as a service. Practically i have created an endpoint in order to make them communicate with each other however when i try to ping the local server sql name the public ip…
Azure Synapse studio 403 issue when public network disabled
We have created azure synapse studio with public access disabled and we have created private end points for synapse workspace with private link hub to access web synapse. but still we are getting 403 forbidden error while opening synapse web UI.
Why do I keep getting 404 Errors Azure Front Door APIM and APP Service
Hi I keep receiving a 404 Error to my web app via Front Door url. I am not using custom domains. The Web App is hosted on APIM. I can call the Web App successfully through APIM url (200 Ok message through Postman) APIM is configured as an origin in my…
Front Door with Azure Container Apps and Private Link - enabling authentication
I want to set up private App Containers with authentication which can be accessed via Frontdoor. I have a private Azure Container App, i.e. an App running in Azure Container Apps Environment internally. That is exposed via Azure Front Door by using a…
How to connect public web app to private internal resources
We have a Public web app which is acting as the front end and it should be accessible for users publicly, and we have some resources like storage accounts, Search indexers which used by web app to query data and give output to the users. Our goal is to…
storage account firewall and virtual network setting
I have storage account used by vm for boot diagnostics. recently I changed the network setting of the storage account from public access allowed for all to Enabled from selected virtual networks and IP addresses. After this boot diagnostic is not able to…
Connecting Azure web app service (.net8) to SSRS on Azure VM by using private DNS
My azure web app service(.net8) connect to SSRS on VM by using the private DNS name provided by Azure to the VM, but my credentials did not work when I run the report on my azure web app server. The private DNS name works fine with my credentials via url…
Azure Private Link with ARM or Bicep - Private Dns Zone Group does not create A records
Hi, I seem to run into an issue when deploying a private endpoint for Azure Event Hubs or Azure Redis Cache (on the same tenant and subscription). I'm automating the deployment with bicep templates (see below), and I deploy a "Private Dns…
Unable to connect to private linked SQL server from azure web apps
I have a group of linux web apps with VNet Integration enabled on a subnet called web-tier and an azure server with private link configured on another subnet called data-tier. I have also added nsg rules to the data-tier subnet nsg to allow inbound…
Private DNS Zone with custom Domain name auto-registration for private Endpoints
Hi folks, I have a VNet, a private DNS zone e.g. private.brezel.com, and a link with auto registration between them. If I add a new VM e.g. capp l to the VNet, an A record capp pointing at the VM will be automatically created in the private DNS zone, so…
Azure DNS Private Resolver is not returning private IP Address on Azure Resources
Private DNS Resolver is integrated with Inbound - Front End IP -- Pointing to On-Premise DNS server Outbound - Added Rules set with On-Premise DNS servers IP VNET based virtual link is added Custom DNS entry is added on all Spoke VNETs on…
Resolving DNS names for Azure private endpoint of another company, when using private endpoint ourselves
Hello, It was hard to find an explicit title for that issue... We got a DNS server hosted in Azure which serves as a relay/conditional forwarder for the private DNS zones we have in our Azure tenant. Following the Microsoft documentation for…
Azure Data Factory managed private endpoint to Azure PostgresSQL flexible server
In my infra I have a Vnet with two subnets: application-subnet delegated-subnet The Azure Data Factory instance is on application-subnet. The Azure PostgreSQL flexible server is in delegated-subnet and is configured with Private Access (VNET…
Private access to Web App in app service plan S1
Hi, I have an old App service plan S1 tier that contains 3 web apps. The frontend webapp should be accessed only through the Application gateway exposed to the internet, so I created a private endpoint and a private dns zone associated to the vnet. The…
Private endpoint not consistently resolving on-prem via Cisco Umbrella?
I have set up private endpoint for various Azure resources (SQL Server, Web Apps etc.) and set up conditional forwarding to the Azure wire server within our DNS configuration. A ping resolves to the private IP of the server (i.e. that of the private…
Azure Private DNS Zone A record sets are getting overridden
Hey folks, I have Private DNS Zones for Blob and DFS resources in Azure and have an Azure policy which automates the integration of PEs with DNS zone. But what happening is that whenever I am creating a new PE of the same resource type (let's say blob)…
Traffic through Microsoft Backbone Network
Hello Experts, I have following query. Would like to know how to get a evidence or is there any logs generated & that we need to capture; when traffic initiated by VM (with private IP) tries to access Storage account 'service endpoint' then traffic…