Tag Archives: microsoft
Azure VMware Solution using a public IP down to the NSX-T Edge; configure SNAT, No-SNAT & DNAT
Azure VMware Solution
How To Series: Configuring NSX-T SNAT, No-SNAT & DNAT rules
Overview
Requirements
Lab Environment
NAT Rules
Kusto for NSX-T NAT Rule Logs
Overview
Many Azure VMware Solution customers are new to NSX-T and for a use requiring connecting directly to the internet through and Azure Public IP, then understanding how and when to use NAT functionality is a must have skillset. This This blog uses an example to walk through the configuration of NSX-T NAT rules to enable access from AVS guest VMs to VMs and services on-premises, in Azure and the Internet.
For this lab, ExpressRoute connections to Azure (vWAN) and to on-premises have been provisioned.
Requirements
Internet Connectivity has been set to “Connect using Public IP down to the NSX-T Edge” via the Azure Portal.
Cloudadmin (or equivalent role) to the Azure VMware Solution NSX-T console.
Azure VMware Solution diagnostics enabled and log analytics workspace to store the logs configured.
Figure 1: Log Analytics diagnostics for Azure VMware Solution
Check that you have set the ‘Configure the AVS SDDC to connect using Public IP down to the NSX-T Edge’ in the Internet connectivity under the menu item ‘Workload networking/Internet connectivity’ option.
Create (using the +Add button) 4 Public IPs
Figure 2: Setting up the NSX-T public IP and four Internet IPs.
Lab Environment
There are four routes that will be explored in this lab. Each route requires specific configuration of the NSX-T NAT rules. Logs generated by the NAT rules are stored in a log analytics workspace.
From AVS guest VM’s to the public Internet
From AVS guest VM’s to Azure native
From AVS guest VM’s to the on-premises environment
From the public Internet to a specific VM guest server.
This lab does not incorporate NSX-T Firewall settings; the NAT rules are used for routing, not for traffic restrictions or filtering. Note that AVS workloads are a range of IP addresses in the 192.168.0.0/24 network range, Azure native IP addresses are 10.5.4.0/22, and the on-premise environment is 172.21.86.0/24 and 192.168.87.0/24
Figure 3: NSX-T Public IP NAT rules lab.
NAT Rules
SNAT rules are used to allow access to the Internet from virtual machines and NVAs running in the Azure VMware Solution.
No-SNAT rules are used to allow access to on-premises and Azure native services from VMs running in the Azure VMware Solution.
DNAT rules are used to allow access from the Internet to VM’s running in the Azure VMware Solution.
Create a SNAT rule:
Source Network Address Translation (source-nat or SNAT) allows traffic from a private network to go out to the Internet. First let’s make sure that the DNS service can reach the default DNS server 1.1.1.1. When first logging into the NSX-T interface, first log into NSX-T, alarms will be present because the DNS service is unable to reach the upstream DNS servers at 1.1.1.1.
Figure 4: Alarms showing DNS service 1.1.1.1 is unreachable.
In this scenario, we want the application servers AppServer-01 and AppServer-02 to be able to access the Internet.
From the NSX-T console select Networking / NAT / Tier-1 Gateway and click on “ADD NAT RULE”
Figure 4: Create a SNAT rule
Add Name ‘AppServers via HTTP’, select SNAT as the action (default) and enter the two IP addresses of the AppServers (192.168.103.10, 192.168.103.11). This means the rule only applies to these two IP addresses. Next leave the Destination IP|Port as blank (ie any IP is allowed). In the translated IP|Port, use the first available public IP (20.95.39.0), or you can fill it in with any of the public IPs created when you configured the portal for NSX-T public IP. Use a specific IP if you need to enable a partner or customer to add the site/service to a Whitelist. If you have multiple rules, select a priority to ensure this rule is hit in the correct order. Note, the lower the number, the higher the priority. So a rule with priority 10 will be checked before a rule with priority 20. Enter a description, then click save.
Figure 5: Filling the the SNAT rule parameters
At this point you will be able to access the Internet from the two AppServers.
Create a No-SNAT rule:
A No-SNAT rule prevents the translation of the internal IP address of packets sent from an AVS SDDC to other networks internal to the organization or otherwise outside of the SDDC environment. This is important when using the “Connect using Public IP down to the NSX-T Edge” option in the Azure portal because without No-SNAT rules, you will not be able to access Azure or on-premises resources from workloads running in AVS.
In this simple lab environment, the Azure environment contains RFC 1918 addresses 10.X.X.X/8 and the on-premises environment contains 172.21.x.x/16 addresses. Due to the nature of NAT/SNAT, connectivity from Azure and on-premises network into the 192.168.0.0/22 address exists, however outbound initiated connectivity from AVS workloads does not.
From the NSX-T console select Networking / NAT / Tier-1 Gateway and click on “ADD NAT RULE”
Figure 6: Creating a No-SNAT rule
This demo configuration is very open, in production you would likely identify specific vNets where you require access, not the entire 10.0.0.0/8 supernet.
Click on “ADD NAT RULE” and enter the NAT rule Name “Access Azure from AVS”, change the Action to “No-SNAT”. Set the Source IP to 192.168.96.0/20 (this will cover all of the 192.168.x.x addresses in our lab environment), set the Destination IP|Port to 10.0.0.0/8 and leave the Translated IP|Port empty. Enter a Description “Enable access from AVS without SNAT. (No-SNAT)”
Figure 7: No-SNAT rules parameters
Create a DNAT rule:
Destination network address translation (DNAT), it is a technique for transparently changing the destination IP address of a routed packet and performing the inverse function for any replies. In this use case, we will create a DNAT rule that enables access to a virtual machine running in the Azure VMware Solution through a public IP address created when you enable the “Connect using Public IP down to the NSX-T Edge” option in the Azure Portal; here you can see we have configured 4 IP public addresses (20.95.39.0 to 20.95.39.3).
Create a DNAT rule that allows access on port 80 to the web server running in VLAN-2 with IP address 192.168.101.10.
We are going to assign it a public facing IP address of 20.95.39.1 from the pool of IP’s defined in the screenshot above.
From the NSX-T console select Networking / NAT / Tier-1 Gateway and click on “ADD NAT RULE”
Figure 8: Creating a NAT rule to support DNAT.
Add in the parameters as described, and enable logging.
Figure 9: Adding the DNAP rule parameters
At this point, go to a web browser and enter http://publicIPselected and you will see the web site running on your webserver.
Tips & Tricks
If access is blocked, check that any NSX-T Distributed firewall rules in place are configured to allow traffic from the Internet to the webserver/service.
Microsoft Tech Community – Latest Blogs –Read More
Join the Teams Insider Community
Using Teams with a personal account and interested in the latest updates and features? The Teams Insider program is an excellent option. You can join the Teams Insider program via the app settings or by using a direct link.
Additionally, if you wish to play a more active role in the development of the Teams app, consider joining the Teams Insider Community. Instructions on how to join can be found in a recent blog post.
As a member of the Teams Insider Community, you’ll receive an invitation to the upcoming monthly call with the Teams product team, where you’ll learn about the latest developments and future updates. For more details, refer to this blog post.
There are numerous opportunities to get involved and contribute to the development of the Teams app. Looking forward to connecting with everyone in the Teams Insider Community and during our next monthly call!
Miikka (Teams PM)
Microsoft Tech Community – Latest Blogs –Read More
Remove ‘High Contrast Only’ toggle when selecting text/cell colours
Hi,
I’ve noticed a recent accessibility addition in the colour drop down (attached photo).
Is there a way to remove this, as I don’t need to see this every time I choose a colour outside of high contrast mode.
Excel Version 2405 (Build 17628.20144)
Hi,I’ve noticed a recent accessibility addition in the colour drop down (attached photo).Is there a way to remove this, as I don’t need to see this every time I choose a colour outside of high contrast mode. Excel Version 2405 (Build 17628.20144) Read More
How do I resolve this exception thrown while trying to do CRUD operations on CSOM?
How do I resolve this exception thrown while trying to do CRUD operations on CSOM?
Let me break this down for you. CRUD, of course, means “Create Read Update and Delete”. CSOM is the tech for connection C# to a Sharepoint List (or, I assume, also a Microsoft List) in order to programmatically make additions or mortifications to said list from C# code.
I think that, due to the fact that the Microsoft List resides on a highly secure remote source dripping with security systems, I get an exception thrown when I set up a query and perform an “ExecuteQuery” from the ClientContext class. I can provide some source code if necessary but I do not think it is necessary. The question I have is simply this. What would cause a 403 Forbidden error and how can I
find a way to resolve it?
How do I resolve this exception thrown while trying to do CRUD operations on CSOM? Let me break this down for you. CRUD, of course, means “Create Read Update and Delete”. CSOM is the tech for connection C# to a Sharepoint List (or, I assume, also a Microsoft List) in order to programmatically make additions or mortifications to said list from C# code. I think that, due to the fact that the Microsoft List resides on a highly secure remote source dripping with security systems, I get an exception thrown when I set up a query and perform an “ExecuteQuery” from the ClientContext class. I can provide some source code if necessary but I do not think it is necessary. The question I have is simply this. What would cause a 403 Forbidden error and how can I find a way to resolve it? Read More
Pasting links in Outlooks looks different
Dear Community,
I would need your help. It’s been 2 days since whenever I would like to add a link from SharePoint to outlook appears under the format visible below as text, instead of like in the first screenshot. Even my outlook signature is showing as text. Does anyone know how I could revert back? Been searching for 2 days for a solution but couldn’t find it. Many thanks
Dear Community, I would need your help. It’s been 2 days since whenever I would like to add a link from SharePoint to outlook appears under the format visible below as text, instead of like in the first screenshot. Even my outlook signature is showing as text. Does anyone know how I could revert back? Been searching for 2 days for a solution but couldn’t find it. Many thanks Read More
Installing Modern Script Editor by SPFx: How to for Dummies
Hello,
I have a need to use the “Modern Script Editor” by SPFx (need to embed some Javascript code at the bottom of a page) but apparently I’m not smart enough to actually get the web part loaded into our SharePoint online site. Is there a step-by-step anywhere for dummies?
Hello, I have a need to use the “Modern Script Editor” by SPFx (need to embed some Javascript code at the bottom of a page) but apparently I’m not smart enough to actually get the web part loaded into our SharePoint online site. Is there a step-by-step anywhere for dummies? Read More
Hide blank cells
I am exporting information from excel into another program. I don’t want all the info. I used to be able to select the filter in at the top of a column and choose to hide blank cells. Then the info on the rows next to the blank cells would hide. When I copied the info out, I did not have all the extra info. This no longer works for me. How do I do this?
Person’s name time spent $
2 $10
1 $5
I want:
Person’s name time spent $
I am exporting information from excel into another program. I don’t want all the info. I used to be able to select the filter in at the top of a column and choose to hide blank cells. Then the info on the rows next to the blank cells would hide. When I copied the info out, I did not have all the extra info. This no longer works for me. How do I do this? Person’s name time spent $ 2 $10 1 $5 I want:Person’s name time spent $ Read More
Matching data
Hello – I am trying to check data across just 2 Tabs to see if the dates match but the problem I am running into is the report is the same but the entries are not lining up so I am getting all True results where they might not be as I’ve tested a few entries with different dates and the result does not change. There are 2 entries that are required to match, name and floor #, and I’ve been using: If(OR(CountIF(Criteria1), (Criteria2)),IF(CountIF(Matching Criteria, True, False), Error). Any help would be appreciated, thank you
Hello – I am trying to check data across just 2 Tabs to see if the dates match but the problem I am running into is the report is the same but the entries are not lining up so I am getting all True results where they might not be as I’ve tested a few entries with different dates and the result does not change. There are 2 entries that are required to match, name and floor #, and I’ve been using: If(OR(CountIF(Criteria1), (Criteria2)),IF(CountIF(Matching Criteria, True, False), Error). Any help would be appreciated, thank you Read More
List of figures
All,
I know that a list of figures can be created by using captions. However, I do not like the caption format. Can I mark my own text to serve as a caption and thus create a list of figures?
All, I know that a list of figures can be created by using captions. However, I do not like the caption format. Can I mark my own text to serve as a caption and thus create a list of figures? Read More
Protect an Excel worksheet using VBA but allow everyone to select slicers and sort columns
How can you in VBA protect an Excel worksheet while allowing users to select slicers and sort columns but keep the headers locked?
I have to set the Contents to False in the worksheet Protect method, so the users can select the slicers. However, this does not protect my headers. If I set Contents to True in the Protect method, the headers are locked, but you cannot select any slicers.
Any help will be greatly appreciated. Thank you!
How can you in VBA protect an Excel worksheet while allowing users to select slicers and sort columns but keep the headers locked? I have to set the Contents to False in the worksheet Protect method, so the users can select the slicers. However, this does not protect my headers. If I set Contents to True in the Protect method, the headers are locked, but you cannot select any slicers.Any help will be greatly appreciated. Thank you! Read More
Communications Site – sharing content externally
We are a small charity with a small team of volunteers and members.
I would like to setup a dedicated MS 365 Communication site to share content such as newsletters with our members. Members are external to our 365 environment, but are added as contacts – a distribution list has been created using the contacts.
I’ve looked at many sites, YouTube videos etc. but struggling to make this work in a safe way. I’m assuming a dedicated SharePoint comms site would be best for security reasons, perhaps allowing specific privileges, but any help appreciated?
We are a small charity with a small team of volunteers and members. I would like to setup a dedicated MS 365 Communication site to share content such as newsletters with our members. Members are external to our 365 environment, but are added as contacts – a distribution list has been created using the contacts. I’ve looked at many sites, YouTube videos etc. but struggling to make this work in a safe way. I’m assuming a dedicated SharePoint comms site would be best for security reasons, perhaps allowing specific privileges, but any help appreciated? Read More
Sincronización outlook
He instalado la app de outllook, en un galaxy S24, android. Tengo 3 cuentas configuardas, dos son IMAP y la otra no. En las dos cuentas IMAP tengo problemas con los emails porque llegan horas después de que han sido enviados, no llegan inmediatamente. El envio de emails funciona perfectamente. La cuenta que no es IMAP funciona perfectamente en el envío y la repeción de emails, estos llegan inmediatamente. El personal de Microsoft me ha derivado a este chat porque no saben como resolver el problema. Gracias
He instalado la app de outllook, en un galaxy S24, android. Tengo 3 cuentas configuardas, dos son IMAP y la otra no. En las dos cuentas IMAP tengo problemas con los emails porque llegan horas después de que han sido enviados, no llegan inmediatamente. El envio de emails funciona perfectamente. La cuenta que no es IMAP funciona perfectamente en el envío y la repeción de emails, estos llegan inmediatamente. El personal de Microsoft me ha derivado a este chat porque no saben como resolver el problema. Gracias Read More
How can I add the department to the evaluation of a Forms survey in Excel?
Hello,
I conducted a survey using Forms and generated a corresponding dataset.
For the evaluation, I also need the respective department of the participants as additional information for sorting in Excel.
How can this criterion be integrated into the evaluation?
Thank you and best regards.
Hello,I conducted a survey using Forms and generated a corresponding dataset.For the evaluation, I also need the respective department of the participants as additional information for sorting in Excel.How can this criterion be integrated into the evaluation?Thank you and best regards. Read More
Security review for Microsoft Edge version 126
We are pleased to announce the security review for Microsoft Edge, version 126!
We have reviewed the new settings in Microsoft Edge version 126 and determined that there are no additional security settings that require enforcement. The Microsoft Edge version 117 security baseline continues to be our recommended configuration which can be downloaded from the Microsoft Security Compliance Toolkit.
Microsoft Edge version 126 introduced 2 new computer settings and 2 new user settings. We have included a spreadsheet listing the new settings in the release to make it easier for you to find them.
One thing to note with this release we have added configurable settings for Copilot. Something to consider based on your organizations policy
As a friendly reminder, all available settings for Microsoft Edge are documented here, and all available settings for Microsoft Edge Update are documented here.
Please continue to give us feedback through the Security Baselines Discussion site or this post.
Microsoft Tech Community – Latest Blogs –Read More
Azure GenAI Application Deployment Strategy
Synopsis
The latest advancements in Artificial Intelligence (AI), particularly the emergence of Generative AI (GenAI) and its Large Language Models (LLM), have sparked a new wave of business opportunities across various industries. Business leaders are eager to harness this new AI wave to enhance, automate, and accelerate their operations for the benefit of their businesses. Applications driven by GenAI are helping businesses to not only monetise existing revenue streams but also to create new ones.
However, adopting new technologies always comes with challenges. A methodical and streamlined approach is essential for the successful adoption of these technologies; otherwise, there could be significant negative impacts on the technology onboarding process, the time required for adoption, learning to implement, selecting the appropriate LLM models, and integrating these technologies into the business. It also involves identifying suitable use cases, references, best practices, and frameworks, as well as considering trials of the technologies, such as running proof of concepts, building MVP (Minimum Viable Product), and productionising GenAI applications.
We have had numerous discussions with our customers about these ongoing challenges and offering guidance throughout constantly shifting AI landscape.
In this series, we will provide approach to adopt “GenAI Application Deployment Strategy” drawing from our accumulated knowledge and field expertise.
Series:
Topic 1: How to identify the most impactful GenAI use case
Topic 2: Potential Use cases for GenAI Application
Topic 3: The Evolution of GenAI Application Deployment Strategy: Building Custom Co-Pilot (PoC)
Topic 4: The Evolution of GenAI Application Deployment Strategy: From PoC to MVP
Topic 5: The Evolution of GenAI Application Deployment Strategy: From MVP to Production
Topic 6: Value Base Delivery (VBD) to accelerate GenAI use case implementation
@Paolo Colecchia @Taonga_Banda @StephenRhodes @renbafa Morgan Gladwell
Microsoft Tech Community – Latest Blogs –Read More
MVP’s Favorite Content: Visual Studio, “Recall,” AI, AKS
In this blog series dedicated to Microsoft’s technical articles, we’ll highlight our MVPs’ favorite article along with their personal insights.
Tomomitsu Kusaba, Developer Technologies MVP, Japan
“GitHub Copilot and GitHub Copilot Chat are now integrated as features in Visual Studio 2022. Previously, they were available as extensions through the Visual Studio Marketplace. This integration into the IDE is expected to further enhance quality, expand functionality, and improve the overall user experience.”
(In Japanese, Visual Studio 2022 で GitHub Copilot と GitHub Copilot Chat が Visual Studio の機能として統合されました。今までは、Visual Studio Marketplace 拡張機能として提供されていましたが IDE の機能として統合されたことでますます品質向上と機能拡充により体験向上が期待されます。)
Tomokazu Kizawa, Windows and Devices MVP, Japan
Retrace your steps with Recall – Microsoft Support
“The “Recall” feature utilizes the capabilities of Copilot+ PC to record PC operations as screen snapshots. These recorded snapshots can be searched using natural language for both text and images, thanks to multimodal AI capabilities. The text in the search results can be extracted through optical character recognition (OCR), allowing users to copy the text. Additionally, you can open the original application where the snapshot was taken. The Recall feature significantly enhances productivity by extracting necessary information from past operation records. This article clearly explains the overview and required resources for the Recall feature.”
(In Japanese, 「Recall 機能」はCopilot+ PC の機能を活用して、PC の操作を画面のスナップショットとして記録します。記録されたスナップショットは、マルチモーダルな AI の機能により、自然言語を使って文字や画像を検索できます。検索結果のスナップショットは、文字認識により文字を抽出でき、テキストをコピーすることもできます。また、スナップショットを作成した元のアプリケーションで開くこともできます。Recall 機能は過去の操作記録から必要な情報を抽出できるため、生産性を劇的に向上させる機能と言えるでしょう。この記事はRecall 機能の概要や必要なリソースについてわかりやすく記載されています。)
*Relevant Video: 第731回 パソコンが変わる。Surfaceが変える。Copilot+ PC・新型Surface Pro 11とSurface Laptop (2024/5/26) – YouTube
Komes Chandavimol, AI MVP, Thailand
Operationalize AI responsibly with Azure AI Studio (microsoft.com)
“This session focuses not only on using AI but also on building it responsibly. Microsoft emphasizes responsible AI from the start, incorporating responsible-by-design principles, built-in tools, and configurable controls for AI governance to help organizations mitigate potential risks. Several demos on risk mitigation are featured in this session, which you should not miss. Join us to learn from young students utilizing Microsoft’s multimodal technologies and explore how to build AI responsibly.”
(In Thai, หลายๆท่านคงกำลังสร้าง AI solutions และการเริ่มต้นออกแบบ ด้วย Responsible AI เป็นสิ่งสำคัญมาก ใน session Operationalize AI responsibly with Azure AI Studio จะช่วยอธิบายถีงการออกแบบ ai อย่างมีความรับผิดชอบ ตัวอย่าง และ demo เพื่อลดความเสี่ยงที่เกิดจากการนำ LLMs มาใช้สร้าง AI Solutions.)
Shunsuke Yoshikawa, Microsoft Azure MVP, Japan
AKS Automatic – AKS Engineering Blog (azure.github.io)
“This article introduces a new option for AKS announced at Microsoft Build 2024. AKS Automatic allows for easy provisioning of AKS with configurations aligned to best practices and numerous automated operations. It’s a highly attractive new feature.”
(In Japanese, Microsoft Build 2024 で発表された、AKS の新しいオプションの紹介記事です。AKS Automatic は、簡単に AKS をプロビジョニングできる機能です。ベストプラクティスに沿った設定がされており、多くの操作が自動化されています。非常に魅力的な新機能です。)
Microsoft Tech Community – Latest Blogs –Read More
Planner without Teams Access
I have been using Planner via Teams for a while. Teams is going to be inaccessible for a week in order for IT to conduct some security work. Will Planner still be access via web without Teams?
I have been using Planner via Teams for a while. Teams is going to be inaccessible for a week in order for IT to conduct some security work. Will Planner still be access via web without Teams? Read More
Guest access to Team sites created without MS 365 group
Hey All,
Could someone help me understand or explain to me where I’m in the wrong?
I recently created a new site collection (Team site template) without a MS 365 group.
Since our policy says that the Sharepoint owners group permissions needs to be changed to design, this was required. I can’t (as far as I know) change these permissions on a Team site that is connected to a MS 365 group.
The issue I then had was adding access to guest accounts. I created an entra ID security group and added all the guests to it. I then gave that group contribute permissions on the Sharepoint site itself.
This however, did not work as I expected. I read that, in order for the guest accounts to have access, I need to create a Team site that IS connected to a MS 365 group.
I created the site (with ms365 group), did not add any members to any groups, but took the previously created security group and added it to the site. This did worked as intended.
I’m a bit confused on what the best practise for this situation is. We don’t want the owner group to have full control permissions. But if we want to change this, we can’t create a site that allows guests?
By default, we use the owners group to assign a Sharepoint owner to each site. This person is then used to give approvals for changes.
I don’t want to create another security group “owners” for this, because we configure access reviews on all security groups and this would just add to the amount of access reviews that the owners need to perform.
I would love to get in touch with someone who is more knowledgeable on this subject to spar a bit. I’m here to try and learn more and improve my way of working or processes/policies where possible, so all input is welcome.
I try to respond within 24 hours!
KR,
MVN
Hey All, Could someone help me understand or explain to me where I’m in the wrong? I recently created a new site collection (Team site template) without a MS 365 group. Since our policy says that the Sharepoint owners group permissions needs to be changed to design, this was required. I can’t (as far as I know) change these permissions on a Team site that is connected to a MS 365 group. The issue I then had was adding access to guest accounts. I created an entra ID security group and added all the guests to it. I then gave that group contribute permissions on the Sharepoint site itself.This however, did not work as I expected. I read that, in order for the guest accounts to have access, I need to create a Team site that IS connected to a MS 365 group. I created the site (with ms365 group), did not add any members to any groups, but took the previously created security group and added it to the site. This did worked as intended. I’m a bit confused on what the best practise for this situation is. We don’t want the owner group to have full control permissions. But if we want to change this, we can’t create a site that allows guests?By default, we use the owners group to assign a Sharepoint owner to each site. This person is then used to give approvals for changes.I don’t want to create another security group “owners” for this, because we configure access reviews on all security groups and this would just add to the amount of access reviews that the owners need to perform. I would love to get in touch with someone who is more knowledgeable on this subject to spar a bit. I’m here to try and learn more and improve my way of working or processes/policies where possible, so all input is welcome. I try to respond within 24 hours! KR,MVN Read More
Modify the dropdown content in “Link type” for Work Items.
I open a Work Item, try to add a link of another Work Item to it. When we click on Add link, and then select Existing item, in the pop-up we see a drop-down called Link type.
In the drop-down, there is a section called Remote Work.
Is it possible to edit the dropdown contents? Can I remove the whole Remote Work section and the options under it? Or is it AzDO default and cannot be modified?
If it is possible, what special role do I need in AzDO to do this?
I open a Work Item, try to add a link of another Work Item to it. When we click on Add link, and then select Existing item, in the pop-up we see a drop-down called Link type. In the drop-down, there is a section called Remote Work. Is it possible to edit the dropdown contents? Can I remove the whole Remote Work section and the options under it? Or is it AzDO default and cannot be modified? If it is possible, what special role do I need in AzDO to do this? Read More
Defender cannot scan Manifest.list images
There are more and more images that utilize the “manifest list” image format.
This format is very handsome as it allows to put multiple images (or platforms) in a single manifest file, thus reducing the complexity of having so many image tags to maintain.
Unfortunately, Azure Defender Vulnerability Management cannot scan those images.
Wouldnt it be right about time to implement this ?
There are more and more images that utilize the “manifest list” image format.This format is very handsome as it allows to put multiple images (or platforms) in a single manifest file, thus reducing the complexity of having so many image tags to maintain.Unfortunately, Azure Defender Vulnerability Management cannot scan those images. Wouldnt it be right about time to implement this ? Read More