Skip to main content

Microsoft Ignite 2022 - Azure Infrastructure Microsoft Documentation Updates

· 36 min read

Microsoft Ignite is an annual conference held by Microsoft for IT Professionals and Cloud builders - each year is a flurry of new announcements and updates! Keeping track of the changes can be a full-time job during the week (and beyond!)!

Make sure you check out the Microsoft Ignite 2022 Book of News! For a consolidated list of features and releases!

Also, check out AzureFeeds - for a consolidated feed across all Microsoft changes!

Along with the product pages, current and new Microsoft documentation have been updated to align with these new products, features and changes!

The pages that have been updated focussed on:

  • Azure Infrastructure
  • M365
  • Security

It can be found here:

PortfolioProduct/ServiceRelease TypeContent TypeURLTitleContext
Security, Compliance & Identity ManagementMicrosoft Entra IDUpdatedDocshttps://learn.microsoft.com/azure/active-directory/app-proxy/what-is-application-proxy
Security, Compliance & Identity ManagementMicrosoft Entra IDUpdatedDocshttps://learn.microsoft.com/azure/active-directory/authentication/how-to-mfa-registration-campaign
Security, Compliance & Identity ManagementMicrosoft Entra IDUpdatedDocshttps://learn.microsoft.com/azure/active-directory/azuread-dev/videos
Security, Compliance & Identity ManagementMicrosoft Entra IDUpdatedDocshttps://learn.microsoft.com/azure/active-directory/cloud-sync/concept-how-it-works
Security, Compliance & Identity ManagementMicrosoft Entra IDUpdatedDocshttps://learn.microsoft.com/azure/active-directory/develop/active-directory-claims-mapping
Security, Compliance & Identity ManagementMicrosoft Entra IDUpdatedDocshttps://learn.microsoft.com/azure/active-directory/develop/custom-rbac-for-developers
Security, Compliance & Identity ManagementMicrosoft Entra IDUpdatedDocshttps://learn.microsoft.com/azure/active-directory/fundamentals/secure-with-azure-ad-single-tenant
Security, Compliance & Identity ManagementMicrosoft Entra IDUpdatedDocshttps://learn.microsoft.com/azure/active-directory/fundamentals/service-accounts-managed-identities
Security, Compliance & Identity ManagementMicrosoft Entra IDUpdatedDocshttps://learn.microsoft.com/azure/active-directory/managed-identities-azure-resources/tutorial-linux-vm-access-cosmos-db
Security, Compliance & Identity ManagementMicrosoft Entra IDUpdatedDocshttps://learn.microsoft.com/azure/active-directory/managed-identities-azure-resources/tutorial-vm-managed-identities-cosmos
Security, Compliance & Identity ManagementMicrosoft Entra IDUpdatedDocshttps://learn.microsoft.com/azure/active-directory/managed-identities-azure-resources/tutorial-windows-vm-access-cosmos-db
InfrastructureAzure DDOS ProtectionNewDocshttps://learn.microsoft.com/azure/ddos-protection/manage-ddos-protection-powershell-ipDDoS IP Protection PowerShell quickstart article
InfrastructureAzure DDOS ProtectionNewDocshttps://learn.microsoft.com/azure/ddos-protection/manage-ddos-protection-cli-ipDDoS Protection: DDoS IP Protection quickstart CLI article
InfrastructureAzure DDOS ProtectionUpdatedDocshttps://learn.microsoft.com/azure/ddos-protection/types-of-attacksDDoS Protection: Types of DDoS attacks overview
InfrastructureAzure DDOS ProtectionUpdatedDocshttps://learn.microsoft.com/azure/ddos-protection/telemetryDDoS Protection: Tutorial: View and configure DDoS protection telemetry
InfrastructureAzure DDOS ProtectionUpdatedDocshttps://learn.microsoft.com/azure/ddos-protection/alertsDDoS Protection: View and configure DDoS protection alerts
InfrastructureAzure DDOS ProtectionUpdatedDocshttps://learn.microsoft.com/azure/ddos-protection/fundamental-best-practicesDDoS Protection: Fundamental best practices
InfrastructureAzure DDOS ProtectionNewDocshttps://learn.microsoft.com/azure/ddos-protection/ddos-protection-sku-comparisonDDoS Protection: SKU comparisonCreating new document to identify differences between the SKUs.
Security, Compliance & Identity ManagementAzure DDOS ProtectionUpdatedDocshttps://learn.microsoft.com/azure/ddos-protection/alerts
Security, Compliance & Identity ManagementAzure DDOS ProtectionUpdatedDocshttps://learn.microsoft.com/azure/ddos-protection/ddos-disaster-recovery-guidance
Security, Compliance & Identity ManagementAzure DDOS ProtectionUpdatedDocshttps://learn.microsoft.com/azure/ddos-protection/ddos-faq
Security, Compliance & Identity ManagementAzure DDOS ProtectionUpdatedDocshttps://learn.microsoft.com/azure/ddos-protection/ddos-protection-overview
Security, Compliance & Identity ManagementAzure DDOS ProtectionUpdatedDocshttps://learn.microsoft.com/azure/ddos-protection/ddos-protection-partner-onboarding
Security, Compliance & Identity ManagementAzure DDOS ProtectionUpdatedDocshttps://learn.microsoft.com/azure/ddos-protection/ddos-protection-reference-architectures
Security, Compliance & Identity ManagementAzure DDOS ProtectionNewDocshttps://learn.microsoft.com/azure/ddos-protection/ddos-protection-sku-comparison
Security, Compliance & Identity ManagementAzure DDOS ProtectionUpdatedDocshttps://learn.microsoft.com/azure/ddos-protection/ddos-rapid-response
Security, Compliance & Identity ManagementAzure DDOS ProtectionUpdatedDocshttps://learn.microsoft.com/azure/ddos-protection/ddos-response-strategy
Security, Compliance & Identity ManagementAzure DDOS ProtectionUpdatedDocshttps://learn.microsoft.com/azure/ddos-protection/diagnostic-logging
Security, Compliance & Identity ManagementAzure DDOS ProtectionUpdatedDocshttps://learn.microsoft.com/azure/ddos-protection/fundamental-best-practices
Security, Compliance & Identity ManagementAzure DDOS ProtectionUpdatedDocshttps://learn.microsoft.com/azure/ddos-protection/index
Security, Compliance & Identity ManagementAzure DDOS ProtectionUpdatedDocshttps://learn.microsoft.com/azure/ddos-protection/inline-protection-glb
Security, Compliance & Identity ManagementAzure DDOS ProtectionUpdatedDocshttps://learn.microsoft.com/azure/ddos-protection/manage-ddos-protection-bicep
Security, Compliance & Identity ManagementAzure DDOS ProtectionUpdatedDocshttps://learn.microsoft.com/azure/ddos-protection/manage-ddos-protection-cli
Security, Compliance & Identity ManagementAzure DDOS ProtectionNewDocshttps://learn.microsoft.com/azure/ddos-protection/manage-ddos-protection-powershell-ip
Security, Compliance & Identity ManagementAzure DDOS ProtectionUpdatedDocshttps://learn.microsoft.com/azure/ddos-protection/manage-ddos-protection-powershell
Security, Compliance & Identity ManagementAzure DDOS ProtectionUpdatedDocshttps://learn.microsoft.com/azure/ddos-protection/manage-ddos-protection-template
Security, Compliance & Identity ManagementAzure DDOS ProtectionUpdatedDocshttps://learn.microsoft.com/azure/ddos-protection/manage-ddos-protection
Security, Compliance & Identity ManagementAzure DDOS ProtectionUpdatedDocshttps://learn.microsoft.com/azure/ddos-protection/manage-permissions
Security, Compliance & Identity ManagementAzure DDOS ProtectionUpdatedDocshttps://learn.microsoft.com/azure/ddos-protection/policy-reference
Security, Compliance & Identity ManagementAzure DDOS ProtectionUpdatedDocshttps://learn.microsoft.com/azure/ddos-protection/telemetry
Security, Compliance & Identity ManagementAzure DDOS ProtectionUpdatedDocshttps://learn.microsoft.com/azure/ddos-protection/test-through-simulations
Security, Compliance & Identity ManagementAzure DDOS ProtectionUpdatedDocshttps://learn.microsoft.com/azure/ddos-protection/types-of-attacks
InfrastructureAzure DNSUpdatedDocshttps://review.docs.microsoft.com/azure/dns/dns-private-resolver-overviewAzure DNS Private Resolver updates for GARemoving public preview mentions and warnings, updating screenshots, etc.
InfrastructureAzure DNSUpdatedDocshttps://learn.microsoft.comazure/dns/private-dns-privatednszone#restrictionsAzure DNS: Update private DNS zone restrictionsTable of zone names that are not allowed. These will be blocked the end of August '22.
InfrastructureAzure DNSNewDocshttps://learn.microsoft.com/azure/dns/private-resolver-reliabilityResiliency in Azure DNS Private ResolverThis article describes reliability support in Azure DNS Private Resolver, and covers both regional resiliency with availability zones and cross-region resiliency with disaster recovery.
InfrastructureAzure DNSUpdatedDocshttps://learn.microsoft.com/azure/dns/dns-private-resolver-get-started-portal
InfrastructureAzure DNSUpdatedDocshttps://learn.microsoft.com/azure/dns/dns-private-resolver-get-started-powershell
InfrastructureAzure DNSUpdatedDocshttps://learn.microsoft.com/azure/dns/dns-private-resolver-overview
InfrastructureAzure DNSUpdatedDocshttps://learn.microsoft.com/azure/dns/private-resolver-endpoints-rulesets
InfrastructureAzure DNSUpdatedDocshttps://learn.microsoft.com/azure/dns/private-resolver-hybrid-dns
InfrastructureAzure DNSUpdatedDocshttps://learn.microsoft.com/azure/dns/tutorial-dns-private-resolver-failover
InfrastructureAzure ExpressRouteUpdatedDocshttps://learn.microsoft.com/azure/expressroute/expressroute-locations-providersAzure ExpressRoute: Hybrid ExpressRoute (ExpressRoute Metro)Documenting availability of locations that will soon have ExpressRoute Metro support.
InfrastructureAzure Kubernetes ServiceNewDocshttps://learn.microsoft.com/azure/aks/vertical-pod-autoscalerVertical Pod Scaler add-on for Azure Kubernetes ServiceNew documentation supporting this addon's support by our service
InfrastructureAzure Kubernetes ServiceUpdatedDocshttps://learn.microsoft.com/azure/aks/cluster-configuration
InfrastructureAzure Kubernetes ServiceUpdatedDocshttps://learn.microsoft.com/azure/aks/index
InfrastructureAzure Kubernetes ServiceUpdatedDocshttps://learn.microsoft.com/azure/aks/intro-kubernetes
InfrastructureAzure Kubernetes ServiceUpdatedDocshttps://learn.microsoft.com/azure/aks/monitor-aks-reference
InfrastructureAzure Kubernetes ServiceUpdatedDocshttps://learn.microsoft.com/azure/aks/monitor-aks
InfrastructureAzure Kubernetes ServiceUpdatedDocshttps://learn.microsoft.com/azure/aks/openfaas
InfrastructureAzure Kubernetes ServiceUpdatedDocshttps://learn.microsoft.com/azure/aks/operator-best-practices-identity
InfrastructureAzure Kubernetes ServiceUpdatedDocshttps://learn.microsoft.com/azure/aks/quickstart-dapr
InfrastructureAzure Kubernetes ServiceUpdatedDocshttps://learn.microsoft.com/azure/aks/use-cvm
InfrastructureAzure Kubernetes ServiceNewDocshttps://learn.microsoft.com/azure/aks/use-mariner
InfrastructureAzure Kubernetes ServiceUpdatedDocshttps://learn.microsoft.com/azure/aks/use-multiple-node-pools
InfrastructureAzure MonitorNewDocshttps://learn.microsoft.com/azure/azure-monitor/app/java-standalone-profilerJava Illuminate - Profiling via Java Flight Recorder (JFR)The Application Insights Java profiler uses the JFR profiler provided by the JVM to record profiling data. So that users may download the JFR recordings at a later time and analyze them to identify the cause of performance issues.
InfrastructureAzure MonitorUpdatedDocshttps://learn.microsoft.com/azure/azure-monitor/alerts/alerts-create-new-alert-rule
InfrastructureAzure MonitorUpdatedDocshttps://learn.microsoft.com/azure/azure-monitor/alerts/alerts-types
InfrastructureAzure MonitorUpdatedDocshttps://learn.microsoft.com/azure/azure-monitor/alerts/alerts-understand-migration
InfrastructureAzure MonitorNewDocshttps://learn.microsoft.com/azure/azure-monitor/alerts/prometheus-alerts
InfrastructureAzure MonitorUpdatedDocshttps://learn.microsoft.com/azure/azure-monitor/app/java-in-process-agent
InfrastructureAzure MonitorUpdatedDocshttps://learn.microsoft.com/azure/azure-monitor/autoscale/autoscale-understanding-settings
InfrastructureAzure MonitorUpdatedDocshttps://learn.microsoft.com/azure/azure-monitor/best-practices-cost
InfrastructureAzure MonitorUpdatedDocshttps://learn.microsoft.com/azure/azure-monitor/change/change-analysis
InfrastructureAzure MonitorUpdatedDocshttps://learn.microsoft.com/azure/azure-monitor/containers/container-insights-cost
InfrastructureAzure MonitorNewDocshttps://learn.microsoft.com/azure/azure-monitor/containers/container-insights-custom-metrics
InfrastructureAzure MonitorUpdatedDocshttps://learn.microsoft.com/azure/azure-monitor/containers/container-insights-enable-arc-enabled-clusters
InfrastructureAzure MonitorUpdatedDocshttps://learn.microsoft.com/azure/azure-monitor/containers/container-insights-gpu-monitoring
InfrastructureAzure MonitorUpdatedDocshttps://learn.microsoft.com/azure/azure-monitor/containers/container-insights-log-query
InfrastructureAzure MonitorUpdatedDocshttps://learn.microsoft.com/azure/azure-monitor/containers/container-insights-metric-alerts
InfrastructureAzure MonitorUpdatedDocshttps://learn.microsoft.com/azure/azure-monitor/containers/container-insights-onboard
InfrastructureAzure MonitorUpdatedDocshttps://learn.microsoft.com/azure/azure-monitor/containers/container-insights-overview
InfrastructureAzure MonitorNewDocshttps://learn.microsoft.com/azure/azure-monitor/containers/container-insights-prometheus-metrics-addon
InfrastructureAzure MonitorNewDocshttps://learn.microsoft.com/azure/azure-monitor/containers/container-insights-prometheus-monitoring-addon
InfrastructureAzure MonitorNewDocshttps://learn.microsoft.com/azure/azure-monitor/containers/container-insights-prometheus
InfrastructureAzure MonitorUpdatedDocshttps://learn.microsoft.com/azure/azure-monitor/data-platform
InfrastructureAzure MonitorUpdatedDocshttps://learn.microsoft.com/azure/azure-monitor/essentials/activity-log
InfrastructureAzure MonitorNewDocshttps://learn.microsoft.com/azure/azure-monitor/essentials/azure-monitor-workspace-overview
InfrastructureAzure MonitorUpdatedDocshttps://learn.microsoft.com/azure/azure-monitor/essentials/data-collection-rule-edit
InfrastructureAzure MonitorUpdatedDocshttps://learn.microsoft.com/azure/azure-monitor/essentials/data-platform-metrics
InfrastructureAzure MonitorUpdatedDocshttps://learn.microsoft.com/azure/azure-monitor/essentials/metrics-supported
InfrastructureAzure MonitorNewDocshttps://learn.microsoft.com/azure/azure-monitor/essentials/prometheus-metrics-multiple-workspaces
InfrastructureAzure MonitorNewDocshttps://learn.microsoft.com/azure/azure-monitor/essentials/prometheus-metrics-overview
InfrastructureAzure MonitorNewDocshttps://learn.microsoft.com/azure/azure-monitor/essentials/prometheus-metrics-scrape-configuration-minimal
InfrastructureAzure MonitorNewDocshttps://learn.microsoft.com/azure/azure-monitor/essentials/prometheus-metrics-scrape-configuration
InfrastructureAzure MonitorNewDocshttps://learn.microsoft.com/azure/azure-monitor/essentials/prometheus-metrics-scrape-default
InfrastructureAzure MonitorNewDocshttps://learn.microsoft.com/azure/azure-monitor/essentials/prometheus-metrics-scrape-scale
InfrastructureAzure MonitorNewDocshttps://learn.microsoft.com/azure/azure-monitor/essentials/prometheus-metrics-scrape-validate
InfrastructureAzure MonitorNewDocshttps://learn.microsoft.com/azure/azure-monitor/essentials/prometheus-metrics-troubleshoot
InfrastructureAzure MonitorNewDocshttps://learn.microsoft.com/azure/azure-monitor/essentials/prometheus-rule-groups
InfrastructureAzure MonitorUpdatedDocshttps://learn.microsoft.com/azure/azure-monitor/essentials/resource-logs
InfrastructureAzure MonitorUpdatedDocshttps://learn.microsoft.com/azure/azure-monitor/faq
InfrastructureAzure MonitorUpdatedDocshttps://learn.microsoft.com/azure/azure-monitor/index
InfrastructureAzure MonitorUpdatedDocshttps://learn.microsoft.com/azure/azure-monitor/logs/create-pipeline-datacollector-api
InfrastructureAzure MonitorUpdatedDocshttps://learn.microsoft.com/azure/azure-monitor/monitor-reference
InfrastructureAzure MonitorUpdatedDocshttps://learn.microsoft.com/azure/azure-monitor/observability-data
InfrastructureAzure MonitorUpdatedDocshttps://learn.microsoft.com/azure/azure-monitor/overview
InfrastructureAzure MonitorUpdatedDocshttps://learn.microsoft.com/azure/azure-monitor/resource-manager-samples
InfrastructureAzure MonitorUpdatedDocshttps://learn.microsoft.com/azure/azure-monitor/service-limits
InfrastructureAzure MonitorUpdatedDocshttps://learn.microsoft.com/azure/azure-monitor/whats-new
Security, Compliance & Identity ManagementAzure PurviewUpdatedDocshttps://learn.microsoft.com/azure/purview/create-sensitivity-label
Security, Compliance & Identity ManagementAzure PurviewUpdatedDocshttps://learn.microsoft.com/azure/purview/how-to-automatically-label-your-content
Security, Compliance & Identity ManagementAzure PurviewUpdatedDocshttps://learn.microsoft.com/azure/purview/microsoft-purview-connector-overview
Security, Compliance & Identity ManagementAzure PurviewUpdatedDocshttps://learn.microsoft.com/azure/purview/register-scan-azure-cosmos-database
Security, Compliance & Identity ManagementAzure SecurityUpdatedDocshttps://learn.microsoft.com/azure/security/develop/threat-modeling-tool-authorization
Security, Compliance & Identity ManagementAzure SecurityUpdatedDocshttps://learn.microsoft.com/azure/security/develop/threat-modeling-tool-input-validation
Security, Compliance & Identity ManagementAzure SecurityUpdatedDocshttps://learn.microsoft.com/azure/security/develop/threat-modeling-tool-sensitive-data
Security, Compliance & Identity ManagementAzure SecurityUpdatedDocshttps://learn.microsoft.com/azure/security/fundamentals/encryption-overview
Security, Compliance & Identity ManagementAzure SecurityUpdatedDocshttps://learn.microsoft.com/azure/security/fundamentals/feature-availability
Security, Compliance & Identity ManagementAzure SecurityUpdatedDocshttps://learn.microsoft.com/azure/security/fundamentals/ransomware-prepare
Security, Compliance & Identity ManagementAzure SentinelUpdatedDocshttps://learn.microsoft.com/azure/sentinel/create-codeless-connector
Security, Compliance & Identity ManagementAzure SentinelUpdatedDocshttps://learn.microsoft.com/azure/sentinel/customer-managed-keys
InfrastructureAzure StorageUpdatedTraininghttps://learn.microsoft.com/training/modules/choose-the-right-disk-storage-for-vm-workloadRefresh: Choose the right disk storage for your virtual machine workloadNeed to include updates for the Premium SSD v2 to the list of disk options.
One of those offerings (premium v2) has will GA in the coming few months (date TBD)
Perhaps add a question to the Knowledge Check for the new disk type.
InfrastructureAzure Virtual Network ManagerNewDocshttps://learn.microsoft.com/azure/virtual-network-manager/concept-cross-tenantCross-Tenant Support Concept
InfrastructureAzure Virtual Network ManagerNewDocshttps://learn.microsoft.com/azure/virtual-network-manager/how-to-configure-cross-tenant-portalCross Tenant HowTo - Portal
Security, Compliance & Identity ManagementMicrosoft Defender for CloudUpdatedDocshttps://learn.microsoft.com/azure/defender-for-cloud/apply-security-baseline
Security, Compliance & Identity ManagementMicrosoft Defender for CloudNewDocshttps://learn.microsoft.com/azure/defender-for-cloud/attack-path-reference
Security, Compliance & Identity ManagementMicrosoft Defender for CloudUpdatedDocshttps://learn.microsoft.com/azure/defender-for-cloud/auto-deploy-azure-monitoring-agent
Security, Compliance & Identity ManagementMicrosoft Defender for CloudUpdatedDocshttps://learn.microsoft.com/azure/defender-for-cloud/auto-deploy-vulnerability-assessment
Security, Compliance & Identity ManagementMicrosoft Defender for CloudNewDocshttps://learn.microsoft.com/azure/defender-for-cloud/azure-devops-extension
Security, Compliance & Identity ManagementMicrosoft Defender for CloudNewDocshttps://learn.microsoft.com/azure/defender-for-cloud/concept-agentless-data-collection
Security, Compliance & Identity ManagementMicrosoft Defender for CloudNewDocshttps://learn.microsoft.com/azure/defender-for-cloud/concept-attack-path
Security, Compliance & Identity ManagementMicrosoft Defender for CloudNewDocshttps://learn.microsoft.com/azure/defender-for-cloud/concept-cloud-security-posture-management
Security, Compliance & Identity ManagementMicrosoft Defender for CloudUpdatedDocshttps://learn.microsoft.com/azure/defender-for-cloud/concept-defender-for-cosmos
Security, Compliance & Identity ManagementMicrosoft Defender for CloudNewDocshttps://learn.microsoft.com/azure/defender-for-cloud/concept-easm
Security, Compliance & Identity ManagementMicrosoft Defender for CloudNewDocshttps://learn.microsoft.com/azure/defender-for-cloud/concept-regulatory-compliance
Security, Compliance & Identity ManagementMicrosoft Defender for CloudUpdatedDocshttps://learn.microsoft.com/azure/defender-for-cloud/custom-dashboards-azure-workbooks
Security, Compliance & Identity ManagementMicrosoft Defender for CloudUpdatedDocshttps://learn.microsoft.com/azure/defender-for-cloud/custom-security-policies
Security, Compliance & Identity ManagementMicrosoft Defender for CloudUpdatedDocshttps://learn.microsoft.com/azure/defender-for-cloud/defender-for-cloud-introduction
Security, Compliance & Identity ManagementMicrosoft Defender for CloudUpdatedDocshttps://learn.microsoft.com/azure/defender-for-cloud/defender-for-container-registries-introduction
Security, Compliance & Identity ManagementMicrosoft Defender for CloudUpdatedDocshttps://learn.microsoft.com/azure/defender-for-cloud/defender-for-containers-architecture
Security, Compliance & Identity ManagementMicrosoft Defender for CloudUpdatedDocshttps://learn.microsoft.com/azure/defender-for-cloud/defender-for-containers-enable
Security, Compliance & Identity ManagementMicrosoft Defender for CloudUpdatedDocshttps://learn.microsoft.com/azure/defender-for-cloud/defender-for-containers-introduction
Security, Compliance & Identity ManagementMicrosoft Defender for CloudNewDocshttps://learn.microsoft.com/azure/defender-for-cloud/defender-for-containers-va-ecr
Security, Compliance & Identity ManagementMicrosoft Defender for CloudUpdatedDocshttps://learn.microsoft.com/azure/defender-for-cloud/defender-for-databases-enable-cosmos-protections
Security, Compliance & Identity ManagementMicrosoft Defender for CloudNewDocshttps://learn.microsoft.com/azure/defender-for-cloud/defender-for-devops-introduction
Security, Compliance & Identity ManagementMicrosoft Defender for CloudUpdatedDocshttps://learn.microsoft.com/azure/defender-for-cloud/defender-for-servers-introduction
Security, Compliance & Identity ManagementMicrosoft Defender for CloudUpdatedDocshttps://learn.microsoft.com/azure/defender-for-cloud/defender-for-sql-usage
Security, Compliance & Identity ManagementMicrosoft Defender for CloudUpdatedDocshttps://learn.microsoft.com/azure/defender-for-cloud/deploy-vulnerability-assessment-byol-vm
Security, Compliance & Identity ManagementMicrosoft Defender for CloudUpdatedDocshttps://learn.microsoft.com/azure/defender-for-cloud/deploy-vulnerability-assessment-tvm
Security, Compliance & Identity ManagementMicrosoft Defender for CloudUpdatedDocshttps://learn.microsoft.com/azure/defender-for-cloud/deploy-vulnerability-assessment-vm
Security, Compliance & Identity ManagementMicrosoft Defender for CloudNewDocshttps://learn.microsoft.com/azure/defender-for-cloud/detect-credential-leaks
Security, Compliance & Identity ManagementMicrosoft Defender for CloudUpdatedDocshttps://learn.microsoft.com/azure/defender-for-cloud/enable-enhanced-security
Security, Compliance & Identity ManagementMicrosoft Defender for CloudNewDocshttps://learn.microsoft.com/azure/defender-for-cloud/enable-vulnerability-assessment-agentless
Security, Compliance & Identity ManagementMicrosoft Defender for CloudUpdatedDocshttps://learn.microsoft.com/azure/defender-for-cloud/enhanced-security-features-overview
Security, Compliance & Identity ManagementMicrosoft Defender for CloudUpdatedDocshttps://learn.microsoft.com/azure/defender-for-cloud/exempt-resource
Security, Compliance & Identity ManagementMicrosoft Defender for CloudUpdatedDocshttps://learn.microsoft.com/azure/defender-for-cloud/faq-data-collection-agents
Security, Compliance & Identity ManagementMicrosoft Defender for CloudUpdatedDocshttps://learn.microsoft.com/azure/defender-for-cloud/faq-general
Security, Compliance & Identity ManagementMicrosoft Defender for CloudUpdatedDocshttps://learn.microsoft.com/azure/defender-for-cloud/faq-vms
Security, Compliance & Identity ManagementMicrosoft Defender for CloudNewDocshttps://learn.microsoft.com/azure/defender-for-cloud/github-action
Security, Compliance & Identity ManagementMicrosoft Defender for CloudNewDocshttps://learn.microsoft.com/azure/defender-for-cloud/how-to-manage-attack-path
Security, Compliance & Identity ManagementMicrosoft Defender for CloudNewDocshttps://learn.microsoft.com/azure/defender-for-cloud/how-to-manage-cloud-security-explorer
Security, Compliance & Identity ManagementMicrosoft Defender for CloudNewDocshttps://learn.microsoft.com/azure/defender-for-cloud/iac-vulnerabilities
Security, Compliance & Identity ManagementMicrosoft Defender for CloudUpdatedDocshttps://learn.microsoft.com/azure/defender-for-cloud/index
Security, Compliance & Identity ManagementMicrosoft Defender for CloudUpdatedDocshttps://learn.microsoft.com/azure/defender-for-cloud/information-protection
Security, Compliance & Identity ManagementMicrosoft Defender for CloudUpdatedDocshttps://learn.microsoft.com/azure/defender-for-cloud/kubernetes-workload-protections
Security, Compliance & Identity ManagementMicrosoft Defender for CloudNewDocshttps://learn.microsoft.com/azure/defender-for-cloud/monitoring-components
Security, Compliance & Identity ManagementMicrosoft Defender for CloudUpdatedDocshttps://learn.microsoft.com/azure/defender-for-cloud/os-coverage
Security, Compliance & Identity ManagementMicrosoft Defender for CloudUpdatedDocshttps://learn.microsoft.com/azure/defender-for-cloud/overview-page
Security, Compliance & Identity ManagementMicrosoft Defender for CloudUpdatedDocshttps://learn.microsoft.com/azure/defender-for-cloud/partner-integration
Security, Compliance & Identity ManagementMicrosoft Defender for CloudUpdatedDocshttps://learn.microsoft.com/azure/defender-for-cloud/permissions
Security, Compliance & Identity ManagementMicrosoft Defender for CloudNewDocshttps://learn.microsoft.com/azure/defender-for-cloud/plan-multicloud-security-automate-connector-deployment
Security, Compliance & Identity ManagementMicrosoft Defender for CloudNewDocshttps://learn.microsoft.com/azure/defender-for-cloud/plan-multicloud-security-define-adoption-strategy
Security, Compliance & Identity ManagementMicrosoft Defender for CloudNewDocshttps://learn.microsoft.com/azure/defender-for-cloud/plan-multicloud-security-determine-access-control-requirements
Security, Compliance & Identity ManagementMicrosoft Defender for CloudNewDocshttps://learn.microsoft.com/azure/defender-for-cloud/plan-multicloud-security-determine-business-needs
Security, Compliance & Identity ManagementMicrosoft Defender for CloudNewDocshttps://learn.microsoft.com/azure/defender-for-cloud/plan-multicloud-security-determine-compliance-requirements
Security, Compliance & Identity ManagementMicrosoft Defender for CloudNewDocshttps://learn.microsoft.com/azure/defender-for-cloud/plan-multicloud-security-determine-data-residency-requirements
Security, Compliance & Identity ManagementMicrosoft Defender for CloudNewDocshttps://learn.microsoft.com/azure/defender-for-cloud/plan-multicloud-security-determine-multicloud-dependencies
Security, Compliance & Identity ManagementMicrosoft Defender for CloudNewDocshttps://learn.microsoft.com/azure/defender-for-cloud/plan-multicloud-security-determine-ownership-requirements
Security, Compliance & Identity ManagementMicrosoft Defender for CloudNewDocshttps://learn.microsoft.com/azure/defender-for-cloud/plan-multicloud-security-get-started
Security, Compliance & Identity ManagementMicrosoft Defender for CloudNewDocshttps://learn.microsoft.com/azure/defender-for-cloud/plan-multicloud-security-other-resources
Security, Compliance & Identity ManagementMicrosoft Defender for CloudUpdatedDocshttps://learn.microsoft.com/azure/defender-for-cloud/policy-reference
Security, Compliance & Identity ManagementMicrosoft Defender for CloudUpdatedDocshttps://learn.microsoft.com/azure/defender-for-cloud/powershell-onboarding
Security, Compliance & Identity ManagementMicrosoft Defender for CloudUpdatedDocshttps://learn.microsoft.com/azure/defender-for-cloud/quickstart-onboard-aws
Security, Compliance & Identity ManagementMicrosoft Defender for CloudNewDocshttps://learn.microsoft.com/azure/defender-for-cloud/quickstart-onboard-devops
Security, Compliance & Identity ManagementMicrosoft Defender for CloudUpdatedDocshttps://learn.microsoft.com/azure/defender-for-cloud/quickstart-onboard-gcp
Security, Compliance & Identity ManagementMicrosoft Defender for CloudNewDocshttps://learn.microsoft.com/azure/defender-for-cloud/quickstart-onboard-github
Security, Compliance & Identity ManagementMicrosoft Defender for CloudUpdatedDocshttps://learn.microsoft.com/azure/defender-for-cloud/recommendations-reference
Security, Compliance & Identity ManagementMicrosoft Defender for CloudUpdatedDocshttps://learn.microsoft.com/azure/defender-for-cloud/regulatory-compliance-dashboard
Security, Compliance & Identity ManagementMicrosoft Defender for CloudUpdatedDocshttps://learn.microsoft.com/azure/defender-for-cloud/release-notes-archive
Security, Compliance & Identity ManagementMicrosoft Defender for CloudUpdatedDocshttps://learn.microsoft.com/azure/defender-for-cloud/release-notes
Security, Compliance & Identity ManagementMicrosoft Defender for CloudUpdatedDocshttps://learn.microsoft.com/azure/defender-for-cloud/security-center-planning-and-operations-guide
Security, Compliance & Identity ManagementMicrosoft Defender for CloudUpdatedDocshttps://learn.microsoft.com/azure/defender-for-cloud/security-policy-concept
Security, Compliance & Identity ManagementMicrosoft Defender for CloudUpdatedDocshttps://learn.microsoft.com/azure/defender-for-cloud/supported-machines-endpoint-solutions-clouds-containers
Security, Compliance & Identity ManagementMicrosoft Defender for CloudUpdatedDocshttps://learn.microsoft.com/azure/defender-for-cloud/supported-machines-endpoint-solutions-clouds-servers
Security, Compliance & Identity ManagementMicrosoft Defender for CloudUpdatedDocshttps://learn.microsoft.com/azure/defender-for-cloud/troubleshooting-guide
Security, Compliance & Identity ManagementMicrosoft Defender for CloudNewDocshttps://learn.microsoft.com/azure/defender-for-cloud/tutorial-enable-pull-request-annotations
Security, Compliance & Identity ManagementMicrosoft Defender for CloudUpdatedDocshttps://learn.microsoft.com/azure/defender-for-cloud/tutorial-security-incident
Security, Compliance & Identity ManagementMicrosoft Defender for CloudUpdatedDocshttps://learn.microsoft.com/azure/defender-for-cloud/tutorial-security-policy
Security, Compliance & Identity ManagementMicrosoft Defender for CloudUpdatedDocshttps://learn.microsoft.com/azure/defender-for-cloud/update-regulatory-compliance-packages
Security, Compliance & Identity ManagementMicrosoft Defender for CloudUpdatedDocshttps://learn.microsoft.com/azure/defender-for-cloud/workflow-automation
Security, Compliance & Identity ManagementMicrosoft Defender for CloudNewDocshttps://learn.microsoft.com/azure/defender-for-cloud/working-with-log-analytics-agent
M365Microsoft TeamsNewDigital Brochurehttps://aka.ms/TeamsIgnite2022GuideYour Guide to Microsoft Teams @Microsoft Ignite 2022Learn about resources, main messaging, and access our digital brochure with a list of all Microsoft Teams sessions
M365Microsoft TeamsUpdatedBloghttps://aka.ms/teamsignite2022MTCblogWhat's New In Teams Blog:  Microsoft Ignite Edition
Discover the innovations coming to Microsoft Teams at Microsoft Ignite
M365Microsoft TeamsUpdatedDocshttps://learn.microsoft.com/en-us/microsoftteams/operator-connect-mobile-planPlan for Teams Phone MobileUpdating existing text to show Operator Connect Mobile which will rebrand to Teams Phone Mobile after 10/12
M365Microsoft TeamsUpdatedDocshttps://learn.microsoft.com/en-us/microsoftteams/operator-connect-mobile-configureConfigure Teams Phone MobileUpdating existing text to show Operator Connect Mobile which will rebrand to Teams Phone Mobile after 10/12
M365Microsoft TeamsNewBloghttps://aka.ms/TeamsPremiumBlogTeams Premium AnnouncementNew licensing for Teams announcment happening at Ignite 2022. Details in the blog and how to get updates, including public preview in December 2022 and GA in February 2023
InfrastructureNetwork WatcherNewDocshttps://learn.microsoft.com/azure/network-watcher/azure-monitor-agent-with-connection-monitor
InfrastructureNetwork WatcherNewDocshttps://learn.microsoft.com/azure/network-watcher/connection-monitor-connected-machine-agent
InfrastructureNetwork WatcherUpdatedDocshttps://learn.microsoft.com/azure/network-watcher/connection-monitor-create-using-portal
InfrastructureNetwork WatcherNewDocshttps://learn.microsoft.com/azure/network-watcher/connection-monitor-install-azure-monitor-agent
InfrastructureNetwork WatcherUpdatedDocshttps://learn.microsoft.com/azure/network-watcher/frequently-asked-questions
InfrastructureNetwork WatcherUpdatedDocshttps://learn.microsoft.com/azure/network-watcher/index
InfrastructureNetwork WatcherUpdatedDocshttps://learn.microsoft.com/azure/network-watcher/network-insights-overview
InfrastructureNetwork WatcherNewDocshttps://learn.microsoft.com/azure/network-watcher/network-insights-topology
InfrastructureNetwork WatcherNewDocshttps://learn.microsoft.com/azure/network-watcher/network-insights-troubleshooting
InfrastructureNetwork WatcherUpdatedDocshttps://learn.microsoft.com/azure/network-watcher/network-watcher-connectivity-overview
InfrastructureNetwork WatcherUpdatedDocshttps://learn.microsoft.com/azure/network-watcher/network-watcher-connectivity-portal
InfrastructureNetwork WatcherUpdatedDocshttps://learn.microsoft.com/azure/network-watcher/network-watcher-monitoring-overview
InfrastructureNetwork WatcherUpdatedDocshttps://learn.microsoft.com/azure/network-watcher/view-network-topology
InfrastructureVirtual MachinesUpdatedDocshttps://learn.microsoft.com/azure/virtual-machines/disks-metricsDisks metrics - new VM burst metrics

Application cost analysis in Microsoft Azure with cm-resource-parent tag

· 5 min read

Cost Analysis in Microsoft Azure allows you to analyse the cost of your services; these services can be scoped into Resource Groups, Resources and Services; you can also group your services by Tags.

Azure tags are name-value pairs used to organize resources. You can apply tags for individual resources, display show back or ownership and can be used for automation - but what assigning parent/child relationships to your resources?

Tags work well for most used cases, but there may be times when you want to get a more in-depth view of the service and dependencies - this is where the "cm-resource-parent" tag comes in.

Introduced in Cost Analysis preview, Q3 of 2022, the 'cm-resource-parent tag' allows you to Group related resources together - to help give you a quick view of the solution's total cost in a parent/child relationship. The 'cm' in the tag stands for: Cost Management.

cm-resource-parent Child Relationship

To use the cm-resource-parent tag, you must choose a parent resource (an example may be an App Service or an Azure Virtual Desktop host pool). No changes will be made to this resource, but you need the ResourceID of the resource to apply to Child resources.

To find the ResourceID of the parent resource, you can use the Azure Portal, by

  1. Open the resource that you want to be the parent of.
  2. Select Properties in the resource menu.
  3. Find the Resource ID property and copy its value.

You can easily use PowerShell to find the ResourceID as well:

$ResourceName = 'Parent Resource'
Get-AzResource -Name $ResourceName | Select-Object ResourceId

A resource ID looks like this (you will need to copy the full thing, this will be used on your child's resources):

/subscriptions/4501c644-74a3-4bfc-a456-16425eccd2a4/resourceGroups/vm-preprod-rg/providers/Microsoft.Network/publicIPAddresses/VM-T01-ip

Once you have the Resource ID of your resource, it is time to tag your Child's resources.

As an Azure Tag is a Key/Value pair - the tags will be similar to:

NameValue
cm-resource-parent/subscriptions/4501c644-74a3-4bfc-a456-16425eccd2a4/resourceGroups/vm-preprod-rg/providers/Microsoft.Network/publicIPAddresses/VM-T01-ip

To apply the ResourceID of the parent resource, you can use the Azure Portal, by

  1. Open the resource you want to be the child of the parent you selected above.
  2. Click Tags
  3. Add in: cm-resource-parent in the value and the resource ID of your parent as a value.

Note: You cannot have a multi-hierarchy, i.e. a Parent, then Child and Child off that - it is purely a Parent and Child relationship at this stage. Also, the Resource ID will change if the Parent resources are moved to another Resource group or subscription.

These Tags can work easily with other cost management tags you may be using (but you cannot have more than one cm-resource-parent tag), so it doesn't replace but supplements your visibility. They are supported on any resource that is Tag-capable.

You may have to wait up to a day (24 hours) before the changes are visible in Azure Cost Analysis.

I have the Azure Naming Tool deployed in my example and would like to see the overall cost; these resources are deployed across multiple resources in the same subscription.

Choosing my WebApp as my parent resource, I tagged all child resources (App Service Plan, Container Registry, Storage Account) with the relevant tag and resource ID as seen below:

Azure Portal - Child resource

After 24 hours, I then went to the Cost Analysis (Preview) and selected Resources and could view the current cost of my service after a few days of use.

Azure Cost Analysis

And another example can be seen below - where I have added a Public IP as a child resource of the Azure storage account, which, although the parent in this relationship, is a child in the Azure Naming Tool.

Azure Cost Analysis

As you can see, the 'cm-resource-parent' is another way to group related resources of different types from a cost analysis angle; still, in preview, this tag opens up the door for various other initiatives across observability, security stacks etc.

Although not tested, you also should be able to output the resource ID of your Bicep code and add that as a variable for any resources deployed via Infrastructure as Code.

It's worth noting that this feature is still in Preview at the time of this article, so if you incur any bugs or have feature requests, you can use the 'Rate the Cost Analysis Preview' feature in the Azure Portal to supply feedback to the product teams.

How to download or print a Microsoft exam certificate

· One min read

This was asked in the Microsoft forums; with the change of platform from being able to see and download certificates for the competition of your Microsoft exam with Pearsonvue to the new Microsoft Learn experience, you might find yourself lost when attempting to view (and print) your hard-earned Microsoft certificate!

The certificate format has also been refreshed.

Old

Microsoft certificate

New

Microsoft certificate

To view and print your certificate:

  1. Navigate to: https://learn.microsoft.com/en-us/users/me/activity/
  2. Click on: Certifications
  3. Find your certificate and click on View certification details.
  4. Click a Print certification, then click Print and you can print and save it as a PDF or print (remember to uncheck print Headers and footers, to remove any footers from the print).
  5. Microsoft Learn - Certificate details

If you want to download it, you can print it to a PDF, to save the certificate to your computer.

InternalServerError when deploying Azure Firewall

· 2 min read

When attempting to deploy an Azure Firewall, you may get an error: Conflict, DeploymentFailed error. This error can occur when you have an expressroute connection, and the Firewall is not deployed in Force Tunneled mode, as the routes from the BGP link will be replacing the default Azure internet route, required for the Azure Firewall.

"code": "InternalServerError",
"message": "An error occurred."

Deployment Failed - Azure Firewall

If you click Input in the deployment, you may notice your vnetName, vnetAddressSpace and subnetAddressSpace are blank.

Azure Firewall deployment

Even though the Azure Firewall will appear as deployed. You will notice that it won't have a Private IP assigned.

To resolve this error:

  1. Delete the Azure Firewall that has been partially deployed
  2. Create a User Defined route for the internet:
NameAddress PrefixNext hop type
Internet0.0.0.0/0Internet
  1. Link it to the AzureFirewallSubnet
  2. Redeploy

This error may occur as your internet route may flow via BGP routes from on-premises; the user-defined route will override this route.

Azure Private DNS Resolver and Azure Point to Site VPN

· 9 min read

You might access resources such as Azure SQL databases or Azure Storage accounts if you're connecting to a Microsoft Azure network externally (from a non-Azure VM or VPN); mainly if you operate Cloud-only services and don't have an external DNS provider, such as Active Directory - connecting to private link resources, you may have to edit your local host's file and override local DNS to point to the IP of the private endpoint for each service.

This is not sustainable, not scalable, and you might end up throwing your hands in the air and switching back to public-facing services and just whitelisting other users' Public IPs to gain access to Azure resources - which can lead to its own set of issues, such as unmanaged IPs left with access to resources after contractors or users leave or have finished their work, IP address changes if not managed correctly can allow any user or company to have a direct line of sight to your company resources.

Overview

Today we will concentrate on DNS resolution of Private Endpoints, using Azure DNS Private Resolver as a DNS proxy when connecting to Azure using a Point to Site VPN.

For this article, I assume you have an Azure Point to Site already set up; if you don't, you can refer to a previous article I wrote for Creating an Azure Point to Site VPN using Microsoft Entra ID authentication.

Disclaimer: Azure Private DNS Resolver is still in Public Preview at the time of this article (02/09/2022). If you aim to use this in a Production scenario, functionality and services may change. This also means there are current regional restrictions, and Azure Private DNS Resolver is not currently available in all regions. Also bear in mind the cost of this service.

So what is Azure DNS Resolver?

Azure DNS private resolver is a cloud-native, highly available, and DevOps-friendly service. It provides a simple, zero-maintenance, reliable, and secure Domain Name System (DNS) service to resolve and conditionally forward DNS queries from a virtual network, on-premises, and to other target DNS servers without the need to create and manage a custom DNS solution. Resolve DNS names hosted in Azure Private DNS Zones from on-premises networks as well as DNS queries for your own domain names. This will make your DNS infrastructure work privately and seamlessly across on-premises networks and enable key hybrid networking scenarios.

Azure Private DNS Resolver

Customers will no longer need to provision IaaS-based solutions on their virtual networks to resolve names registered on Azure Private DNS Zones and can do conditional forwarding of domains back to on-premises, across multi-cloud providers, and public DNS servers.

This solution can work with your Azure ExpressRoute, Azure VPN, or Azure Bastion setup.

Azure Private DNS Resolver

Inbound or Outbound?

Name resolution queries for Azure workloads from the on-premises network are conditionally forwarded to the Azure DNS private resolver inbound endpoint, which enables you to perform name resolution of workloads registered on Azure Private DNS Zones from on-premises.

EndpointBlurb
Inbound EndpointAzure DNS private resolver inbound endpoint that receives the name resolution request from Azure & on-premises network and resolve names.
Outbound EndpointAzure DNS private resolver outbound endpoint conditionally forwards the request to on-premises or other target DNS servers.

The Azure DNS private resolver inbound endpoint has a private IP that is part of a subnet where the endpoint has been created. The IP address of the DNS private resolver inbound endpoint is then set as a DNS server on the on-premises network.

Azure DNS private resolver outbound endpoint conditionally forwards the request to on-premises or other target DNS servers.

Today, we will connect to private endpoints to concentrate on the Inbound functionality of Azure Private DNS Resolver.

Deployment

To deploy Azure Private DNS Resolver, we will need a few things.

  • A Virtual Network
  • A subnet dedicated to resolving DNS queries (/28)
  • A private endpoint (i.e. Storage Account, SQL Database) is linked to the virtual network.

Deploy DNS Private Resolver

I assume you already have a Virtual Network tied to your Virtual Network gateway as part of the 'Point to Site VPN' setup.

  1. Open the Azure Portal
  2. Click on + Create a resource
  3. Type in: DNS Private Resolver
  4. Azure DNS Private Resolver
  5. Click Create
  6. Select your Subscription
  7. Select your Resource Group (I recommend placing the DNS Private Resolver in the same resource group as your Virtual Network - but place this service in a Resource Group that makes sense for your environment, i.e. shared services or a specific network team resource group)
  8. Type in a name for your DNS Private Resolver (this is a regional service, but the name does not need a globally unique )
  9. Select your region (this needs to be the same region as the Virtual Network)
  10. Select your Virtual Network (the same Virtual Network that has your Virtual Network Gateway for the Point to Site VPN and your Private endpoints)
  11. Create Azure Private DNS Resolver
  12. Click Next: Inbound Endpoints >
  13. Now its time to add our Inbound Endpoint and create the Private DNS Resolver Subnet, click + Add an endpoint
  14. Type in your endpoint name (for example, InboundEndpoint)
  15. If you have already created a subnet, select it - else, click Create New
  16. Enter in your subnet name and address range
  17. Click Save
  18. Private DNS Resolver create subnet
  19. Click Review + Create
  20. Click Create

Adjust Point to Site DNS

Now that the DNS Resolver has been created, with an inbound endpoint, allowing the lookup of private endpoints, we need to add the Private Resolver DNS relay to our point-to-site VPN configuration; first, we need the newly created private IP of the inbound endpoint.

  1. Navigate to the DNS Private Resolver in the Azure Portal

  2. Open your DNS Private Resolver service

  3. Click on Inbound Endpoints

  4. Make a note of the private IP of your inbound endpoint.

  5. Private DNS Resolver

  6. Now that the Private Inbound resolver has been configured, we need to add the DNS relay into our Azure VPN configuration so that our DNS queries will respond with a private endpoint; you will need to modify the 'azurevpnconfig.xml' file and reimport the VPN.

  7. Right-click 'azurevpnconfig.xml' and edit in Notepad or Visual Studio Code

  8. Under:

  9. Add (replace the IP listed below with the IP of your Inbound endpoint copied earlier):

    <clientconfig>
    <dnsservers>
    <dnsserver>10.0.18.4</dnsserver>
    </dnsservers>
    </clientconfig>
  10. Save and reimport to the Azure VPN Client

  11. Once connected, ping a resource behind a private endpoint, and you should get the private IP of that resource back and should be able to connect to that resource privately.

  12. Azure Private DNS Resolver ping

Any future or current private endpoints linked to the same Virtual Network will instantly be accessible without additional changes on the Azure VPN client. If you have a Hub & Spoke topology, then you may place the DNS Private Resolver in the HUB, then use forwarding rules to link to other peered VNETs.

Additional resources

The third-party resources below include reading and learning about the Azure Private DNS Resolver.

  • Quickstart: Create an Azure private DNS Resolver using the Azure portal

  • Intro to Azure DNS Private Resolver

  • Azure DNS Private Resolver - MicroHack

  • My Azure Private DNS Resolver Bicep export for reference:

      param dnsResolvers_PrivateDNSResolver_name string = 'PrivateDNSResolver'
    param virtualNetworks_vnettest_externalid string = '/subscriptions/57627713-eff2-44fa-a546-a2c8fde3c6e3/resourceGroups/pointtositetest/providers/Microsoft.Network/virtualNetworks/vnettest'

    resource dnsResolvers_PrivateDNSResolver_name_resource 'Microsoft.Network/dnsResolvers@2020-04-01-preview' = {
    name: dnsResolvers_PrivateDNSResolver_name
    location: 'australiaeast'
    properties: {
    virtualNetwork: {
    id: virtualNetworks_vnettest_externalid
    }
    }
    }
    resource dnsResolvers_PrivateDNSResolver_name_InboundEndpoint 'Microsoft.Network/dnsResolvers/inboundEndpoints@2020-04-01-preview' = {
    parent: dnsResolvers_PrivateDNSResolver_name_resource
    name: 'InboundEndpoint'
    location: 'australiaeast'
    }
    ]
    }
    }