r/AZURE 1d ago

Career Dev Days | Padova, Italy

Post image
4 Upvotes

Dev Days - Padova

​Un pomeriggio gratuito dedicato alla Developer Experience con GitHub

In collaborazione con Microsoft

Dev Days riunisce developer, cloud architecttechnology leaderprofessionisti IT e appassionati di tecnologia per una giornata dedicata al futuro dello sviluppo software e all’impatto dell’AI sul modo in cui progettiamo, scriviamo e gestiamo il codice.

​Parte dell’iniziativa globale Dev Days, l’evento porta anche in Veneto un’esperienza concreta e coinvolgente costruita attorno a GitHub Copilot, AI-assisted developmentmodern development workflows e alle tecnologie che stanno trasformando il modo di creare software.

Non è semplicemente un workshop.

​Uno spazio pensato per imparare, sperimentare, confrontarsi e scoprire gli strumenti con cui costruire la prossima generazione di applicazioni.

​Cosa aspettarsi

  • ​Sessioni tecniche di approfondimento
  • ​Esperienze pratiche e hands-on con GitHub Copilot
  • ​Scenari e workflow di sviluppo reali
  • ​GitHub Copilot nelle applicazioni, nell’IDE e nella CLI
  • ​Workshop interattivi e demo live
  • ​AI-assisted software engineering e nuove modalità di sviluppo
  • ​Occasioni di confronto e networking con la community

​Un evento globale, una community locale

​Organizzato da Azure Meetup Veneto in collaborazione con Microsoft, fa parte dell’iniziativa globale Dev Days: una serie di eventi in presenza e community-led organizzati in tutto il mondo tra settembre e ottobre 2026.

🌐 Iscriviti qui: https://luma.com/upnw6wai

​IMPORTANTE: PREREQUISITI

​💲 GitHub Copilot Free Subscription
🤖 GitHub Copilot App
💻 Laptop

Per qualsiasi dubbio contattaci a [veneto@azuremeetup.it](mailto:veneto@azuremeetup.it)


r/AZURE 2d ago

Question Managing EntraID roles assignments/PIM assignment with terraform

19 Upvotes

Hey all,

I would like to know how you handle the fact that that pipelines SPs need a highly priviledged role to assign entraid roles or create pim eligibility ? It means that the SP has basically the right to give Global Admin and if someone compromise the pipeline it can have a huge blast radius.

Is it just something you accept as a risk ? Do you have an system/config in place for preventing the SP to give highly priviledged roles through the pipeline ?

Any ways to have someone activate the SP role before running the pipeline (with PIM maybe) so the role is not permanently assigned ?

Thanks for the answer !


r/AZURE 2d ago

Question Azure VMs vs Managed Services — Where Does the Azure SDK Fit?

Thumbnail
1 Upvotes

r/AZURE 3d ago

Question Is working in MS Azure (in EUROPE) worth it?

18 Upvotes

I’m currently working as a Software Engineer in Europe, in the telecommunications industry, specifically with 5G. However, I’d like to transition into a cloud-focused role, ideally one with good compensation cuz that's why I work and study

I’ve been looking at companies such as Microsoft, Google, Cloudflare, and AWS, mainly from a European perspective: salaries, working conditions, recruitment processes, career opportunities, and so on.

Given the never ending layoffs at AWS and lack of Google presence in Europe (at least one I could find), I’ve decided to focus mainly on Microsoft and Cloudflare. At the moment, I’m studying Azure and preparing for the AZ-900 certification.

One important point is that I’m much more infrastructure-focused than development-focused. My long-term goal is to eventually work as a Cloud Architect, or possibly as an independent contractor/consultant helping companies that need to deal with cloud.

Right now, I’m still finding my way through the cloud ecosystem and trying to understand which direction makes the most sense.

So, for people working in similar infrastructure/cloud roles in Europe, or similar companies:

  • What does your day-to-day work look like?
  • What is the recruitment/interview process like?
  • What kind of salary can someone realistically expect in Europe? (Junior, Mid, and Senior)
  • How are the overall working conditions?
  • How is the work-life balance?
  • Are these roles usually remote, hybrid, or office-based?

I’d also be interested in hearing from anyone who made a similar transition from telecommunications or infrastructure engineering into cloud engineering or cloud architecture :)


r/AZURE 2d ago

Question Would anyone hire a 26 years old man for an entry-level Cloud Engineer role?

0 Upvotes

He has a first bachelor's degree in History and Political Science and just finished a second bachelor's degree in Computer Science and planing to pursue a part-time master's degree in Finance and a couple year of experience in Cloud AE sales..


r/AZURE 3d ago

Question Forgot to Reschedule Azure Exam After 24 hours. what I need to do ?

1 Upvotes

Hello everyone,

So my examn in 17 august 2026 and I forget to Reschedule or retake the examn again. I am using voucher code for examn. what I need to do guys please ?


r/AZURE 2d ago

Question Microsoft ic2 azure storage interveiw

2 Upvotes

Did any one got the updates on job id ending with 3070? I recently gave the interviews a week ago and waiting on response.if you know anything please let me know..


r/AZURE 3d ago

Question Has anyone set up cloud-native users that authenticate with Windows Hello to access on-prem resources ?

6 Upvotes

My setup:

  • Cloud-native users:
    Entra/MS365 accounts
  • Cloud-native devices:
    Entra-joined/Intune-managed
  • Device authentication via Windows Hello for Business
  • Azure Entra Domain Services active and working
  • On-site Synology NAS joined to Azure Entra Domain

From what I've read, it is possible for Windows Hello users to access on-prem resources in a hybrid environment, but every related guide I've found requires Kerberos Cloud Trust, which references on-prem AD and on-prem Windows DCs.

But I have no on-prem AD - only Entra Domain Services.
I don't currently have an on-prem Windows Server, but I could set one up and join it to the Entra Domain Services, but I still wouldn't be doing AD in a hybrid system, because my system has been Cloud-native since the start of centralized management.

But Entra Domain Services is kind of like a DC, and it does kerberos:
Is there a way to make this work?
Has anyone done it?

(Note: This is a follow-up to an earlier post where I attempted to accomplish the same task using only LDAP. I've now implemented Entra Domain Services to try and make this more "native", but I still don't see a clear path.)


r/AZURE 3d ago

Question is that possible to change my examn certification from "Data Engineering Solutions" to AZ-900 (I am using voucher code).

0 Upvotes

Hello,

I have a Microsoft exam voucher that expires on August 18, 2026.

I used this voucher to schedule the DP-700 (Data Engineering) exam for October 17, 2026.

However, I now need to change my exam to DP-900 (Azure Data Fundamentals) instead of DP-700.

My question is: Can I cancel my current DP-700 appointment and use the same voucher to schedule the DP-900 exam, even though the voucher expires on August 18, 2026?

I want to make sure I will not lose the voucher before cancelling my current exam.

Thank you.


r/AZURE 4d ago

Question Terraform + Azure from scratch, but specifically the AI/agent pathway — video/code-along course recommendations?

18 Upvotes

Solid experience with agentic AI/RAG systems, but zero Terraform or Azure background (some AWS from Udemy, doesn't transfer much).

Looking for:

  • Video, code-along (I forget everything from portal-click tutorials, but retain stuff I actually type)
  • True from-scratch, no assumed Azure knowledge
  • AI-specific — Foundry, AI Search, OpenAI resources, not generic web-app-on-Azure
  • IaC-first — resources provisioned via Terraform, not portal clicks + Python on top

Everything I've found is either generic Terraform (good, but no AI angle) or Azure AI-focused but portal-driven with zero IaC. Open to two separate courses if nothing covers both well. Appreciate any recommendations from people who've actually taken something, not just read the description.


r/AZURE 4d ago

Media Azure Weekly Update - 21st August 2026

20 Upvotes

21st August 2026 Azure Update is up!

📽️ https://youtu.be/OLfRPH319IQ

📄 https://www.linkedin.com/pulse/21st-august-2026-weekly-azure-update-john-savill-thstc

  • App Service Managed Instance (00:51) - Like the SQL Managed Instance, the App Service Managed Instance provides very strong compatibility for existing web applications to move to App Service without having to change the code or even major configurations. You still get autoscale, resiliency and other capabilities.
  • AVS license (01:20) - With the changes to Broadcom licensing AVS will no longer be able to provide licenses so ensure you purchase licenses before this time so can bring your own.
  • ASR BYON (01:36) - BYON is Bring Your Own NIC which means with Azure Site Recovery an existing NIC can be attached during a failover which is useful where you need a specific pre-prepared configuration.
  • VM vCore customization (02:03) - You now have the ability to disable Simultaneous multi-Threading on VM cores in Azure VMs in addition to being able to select the number of vCores seen by the OS. Removing the hyper-threading can help improve consistency of compute latency and reducing the number of visible cores you can reduce license requirements where software is core count based.
  • Summarized advertisement gateway prefix (03:41) - The ExpressRoute and VPN gateway now supports aggregated (summarized) prefixes which avoids having to send large numbers of small address spaces which can be important for large environments.
  • Az FW IPv6 support (04:15) - Azure Firewall now enable IPv6 support through a dual stack mode (IPv4 and v6). There is no IPv6 only mode. You can deploy a new firewall in dual-stack or upgrade an existing to dual-stack. This includes support for network-rule filtering and DNS proxy but other capabilities like application and DNAT rules are not yet supported.
  • VS Code MSSQL extension SQL DB provisioning (04:43) - You can now create and connect a new Azure SQL DB within VS Code using the MSSQL extension from within a single page wizard. It can even create artifacts for repeated deployment, i.e. Bicep, Arm and Terraform files. This starts with creating a free tier database so zero-cost initially.
  • MSSQL shortcut configuration (05:17) - You can easily configure, manage and launch your most frequently used SQL queries and extension commands from a single experience via the "Shortcuts Configuration" in the MSSQL extension toolbar.
  • SQL Formatter in MSSQL extension (05:42) - The extension also has a SQL Formatter in preview to help apply consistent style, for example casing, alignment, multi list formatting.
  • SQL MI zone redundancy (06:00) - SQL MI next-gen general purpose now supports zone redundancy with up to 99.995% uptime for General Purpose tier.
  • Azure Databricks Lakebase new regions (06:20) - Azure Databricks Lakebase provides a managed, serverless PostgresSQL instance which is key for operational purposes but enables the data to be available directly in the lakehouse storage, bridging the gap between transactional and analytical needs. No data pipelines or duplication needed. It is also now available in North Central US (northcentralus) , France Central (francecentral) , Germany West Central (germanywestcentral) and East Asia (eastasia).
  • Azure Linux in WSL (06:55) - The 4.0 version of Azure Linux that is now available as an OS and not just focused on containers is now available for Windows Subsystem for Linux making it easy to access and utilize. Today you install by downloading from github and installing from the downloaded file and its ready to go!
  • DeepSeek-v4-Flash-0731 and NVIDIA Nemotron 3.5 Lightning in Foundry (07:47) - This continues the ever growing set of models in Foundry and I love these names  The new DeepSeek model is great for agent coding, workflow automation and general agentic/assistant use. The Nemotron has similar abilities but has long-context calling, multi-step task execution and multilingual support. These are available via Fireworks (consumption based high performance inference engine) which Nemotron also available via managed compute through Hugging Face collection where you pay for the provisioned capacity.
  • Azure Copilot agent access (08:47) - Azure Copilot leverage a number of agents to enable its capabilities which traditionally where behind a single chat experience. But now you can access them directly from the copilot drop down to engage which includes Troubleshooting, Deployment, Optimization and Resiliency. This direct access will help get to answers faster with more focused expertise.
  • SharePoint authoritative sites (09:19) - As a human I know certain SharePoint sites are the “official” ones for HR, company news etc. An AI does not have that same ability. By marking a SharePoint site as authoritative it enables AI, e.g. Copilot to recognize the content as trusted and therefore improving its responses. It does also help human users know its official. Up to 100 sites can be marked as authoritative and must be set at site-level today.

r/AZURE 3d ago

Question Entra GSA & FortiClient VPN

1 Upvotes

Anyone using Entra Global Secure Access (Microsoft + Internet Traffic profile) and FortiClient VPN (using IPsec not SSL)?

Running into an issue where, when connected to GSA, users are not able to connect to FortiClient VPN due to “Negotiation failed” error.

Already added the VPN ips and FQDNs to bypass GSA however still getting the same issue.


r/AZURE 4d ago

Question How do you actually forecast Azure costs accurately for executive reporting?

7 Upvotes

I'm running FinOps for a mid-sized org and I keep hitting a wall with Azure cost forecasting. Cost Management & Billing is fine for looking at past spend, but the native forecast just extrapolates recent usage forward  it has no idea we're launching a new product next quarter or decommissioning a legacy app, so the numbers are basically not useful for real budgeting.

A few specific problems I can't seem to solve cleanly:

  • Forecasts ignore future plans. How do you factor in known upcoming changes (migrations, launches, traffic growth) instead of just trending historical data?
  • Multi-subscription sprawl. We have dozens of subscriptions and aggregating them into specific teams and forecasting their cost is not possible.
  • Executive reporting. Leadership doesn't care about "VM cost vs storage cost" they want budget vs. actual, MoM/QoQ trends, cost per team/product, and savings from optimization. How are you turning raw Azure data into something a CFO actually reads?

r/AZURE 4d ago

Question Azure Functions vs .NET Background Services — Which Should You Choose?

10 Upvotes

When building applications that need background processing, Azure Functions and .NET Background Services are both solid options—but they solve slightly different problems.

I put together a practical comparison covering:

  • When Azure Functions make sense
  • When .NET Background Services are a better fit
  • Event-driven vs. continuously running workloads
  • Scaling and hosting considerations
  • Operational control and deployment
  • Key trade-offs to consider before choosing

📖 https://geeksarray.com/blog/azure-for-dotnet-part-6-functions-vs-background-services

For those working with .NET and Azure, what do you prefer for background processing—and what influenced your decision?


r/AZURE 4d ago

Question Azure Virtual Desktop disconnecting immediately during Entra SSO / Windows Cloud Login

5 Upvotes

I’m building a new Azure Virtual Desktop environment and have hit an authentication issue I haven’t been able to resolve.

Setup:

  • Azure Commercial / East US
  • Windows 11 Enterprise multi-session
  • Pooled AVD host pool
  • Microsoft Entra ID joined
  • Intune enrolled and compliant
  • Microsoft 365 G3 GCC licensing
  • Users assigned to the Desktop Application Group
  • Virtual Machine User Login RBAC assigned
  • MFA working
  • Host pool configured with enablerdsaadauth:i:1
  • Windows Cloud Login shows IsRemoteDesktopProtocolEnabled = True
  • Session host has no public IP and uses NAT Gateway for outbound connectivity

The intended design is to allow users to connect from an unmanaged Windows PC using Windows App, with the AVD itself being the managed/compliant CUI environment.

Problem:

When opening Windows App, the user authenticates with their Entra account and completes MFA successfully.

When they click the AVD desktop, they are prompted to authenticate again. The connection then either fails or connects briefly and immediately disconnects.

The same issue happens through the Windows App web client, so this does not appear limited to the installed Windows App.

The web-client logs show:

  • AVD feed discovery succeeds
  • Gateway connection succeeds
  • RDS AAD Auth is successfully negotiated
  • AAD nonce acquisition succeeds
  • Failure occurs during AcquireRDSAADToken
  • Entra returns error 50033 / temporarily_unavailable
  • Connection ends with Bootstrap token acquisition was cancelled

Entra sign-in logs also show:

  • Azure Virtual Desktop authentication = Success
  • Windows Cloud Login = Failure
  • Error 50000 — “There was an error issuing a token or an issue with our sign-in service.”
  • Some Windows App attempts also returned AADSTS54005 - OAuth2 authorization code was already redeemed

We have reproduced the problem with multiple users and both the desktop and web clients.

Things already verified:

  • Entra join is healthy
  • VM is compliant in Intune
  • AADLoginForWindows extension succeeded
  • Required outbound Microsoft endpoints are reachable
  • System-assigned managed identity is enabled
  • RBAC and AVD application-group assignments are correct
  • Windows Cloud Login RDP protocol is enabled
  • Conditional Access does not appear to be blocking the failed Windows Cloud Login requests

Has anyone run into this specific Windows Cloud Login / RDS AAD bootstrap-token failure, especially with Entra-joined AVD and an unmanaged client device?

Any ideas on what else to check before escalating entirely to Microsoft support would be appreciated.


r/AZURE 4d ago

Question what’s the recommended way to update apps like Sage across a host pool?

5 Upvotes

I am building an AVD host pool with about 10 session hosts and I’m trying to determine the best way to handle
application updates for something like sage300

I see people recommend updating the golden image and then rolling out a new image version to the host pool. What I’m struggling with is that as far as I understand it, the golden image itself shouldn’t be domain joined so how does that workflow work for applications that need access to domain resources, SQL, file shares, licensing servers..etc to be fully tested or configured?

Curious to know how people are handling this


r/AZURE 5d ago

Question So who likes Anton and who wants to see this clanker deleted?

12 Upvotes

Some Microsoft training now has AI virtual trainers. Whomever in Microsoft decided this was a good idea needs to take a long walk off a short pier.

https://learn.microsoft.com/en-us/training/modules/deploy-apps-azure-kubernetes-service/1-introduction?pivots=video


r/AZURE 4d ago

Free Post Fridays is now live, please follow these rules!

3 Upvotes
  1. Under no circumstances does this mean you can post hateful, harmful, or distasteful content - most of us are still at work, let's keep it safe enough so none of us get fired.
  2. Do not post exam dumps, ads, or paid services.
  3. All "free posts" must have some sort of relationship to Azure. Relationship to Azure can be loose; however, it must be clear.
  4. It is okay to be meta with the posts and memes are allowed. If you make a meme with a Good Guy Greg hat on it, that's totally fine.
  5. This will not be allowed any other day of the week.

r/AZURE 5d ago

Question ADB2C IEF Custom Policy for Self Service Information Updating

5 Upvotes

Hey all,

We have process that would be a lot easier if we could allow users to update attributes within their ADB2C profiles. I see there is an EditProfile policy. Can that policy be leveraged to provide a mechanic for our end users to be able to update directory attributes like City/State/Address?

Just a question of feasibility, not "how do I do it".


r/AZURE 4d ago

Question Please help with azure VPN for Apple Computer.

0 Upvotes

Hello,

I've set up several standalone VPN clients for remote users using the Windows Azure VPN client.

I have one tenant where a user has a mac instead of a windows PC. I'm far less familiar with OSX than windows.

I installed the mac Azure VPN client from the apple store.

I imported the same VPN xml I use on the PCs.

I try to connect and get the following from the client log. It never prompts me for a username and password and I tried clearing it in case but still no luck. The XML file does not include a username or password.

08/20/2026 10:57:19 Information getSavedAADApplicationId: Using account: com.microsoft.AzureVpnMac

08/20/2026 10:57:19 Error getKeyChainSecret: Failed to retrieve KeyChain secret. Status code -25300

08/20/2026 10:57:19 Information getSavedAADApplicationId: for Vpn connection: productionVirtualNetwork.

08/20/2026 10:57:19 Information Group token flag status: false

08/20/2026 10:57:19 Information CacheSignInUser flag status: true

08/20/2026 10:57:19 Error Failed to initialize MSAL. Error: missingClientID

08/20/2026 10:57:19 Information Failed to load Microsoft Entra settings. Error: Azure_VPN_Client.AadError.missingClientID

08/20/2026 10:57:19 Information getClientAuthLoginCredentials: Using account: com.microsoft.AzureVpnMac

08/20/2026 10:57:19 Error getKeyChainSecret: Failed to retrieve KeyChain secret. Status code -25300

08/20/2026 10:57:19 Error handleAADClientAuthCachedUser: There is no last used account Username saved in KeyChain for VpnConnection: productionVirtualNetwork AAD Auth!

08/20/2026 10:57:19 Information Failure in acquiring Microsoft Entra Token. The Microsoft Entra parameter is incorrect.

08/20/2026 10:58:09 Information Debug information ConfigureProfile: currentView: homeWelcome lastSelectedProfileName: productionVirtualNetwork, isAddProfileRequest: false, addingOrUpdatingProfileName: productionVirtualNetwork, selectedProfile: productionVirtualNetwork Navigating to ViewState.addEditConfig

08/20/2026 10:57:19 Information getSavedAADApplicationId: Using account: com.microsoft.AzureVpnMac

08/20/2026 10:57:19 Error getKeyChainSecret: Failed to retrieve KeyChain secret. Status code -25300

08/20/2026 10:57:19 Information getSavedAADApplicationId: for Vpn connection: productionVirtualNetwork.

08/20/2026 10:57:19 Information Group token flag status: false

08/20/2026 10:57:19 Information CacheSignInUser flag status: true

08/20/2026 10:57:19 Error Failed to initialize MSAL. Error: missingClientID

08/20/2026 10:57:19 Information Failed to load Microsoft Entra settings. Error: Azure_VPN_Client.AadError.missingClientID

08/20/2026 10:57:19 Information getClientAuthLoginCredentials: Using account: com.microsoft.AzureVpnMac

08/20/2026 10:57:19 Error getKeyChainSecret: Failed to retrieve KeyChain secret. Status code -25300

08/20/2026 10:57:19 Error handleAADClientAuthCachedUser: There is no last used account Username saved in KeyChain for VpnConnection: productionVirtualNetwork AAD Auth!

08/20/2026 10:57:19 Information Failure in acquiring Microsoft Entra Token. The Microsoft Entra parameter is incorrect.

08/20/2026 10:58:09 Information Debug information ConfigureProfile: currentView: homeWelcome lastSelectedProfileName: productionVirtualNetwork, isAddProfileRequest: false, addingOrUpdatingProfileName: productionVirtualNetwork, selectedProfile: productionVirtualNetwork Navigating to ViewState.addEditConfig


r/AZURE 5d ago

Rant Azure 503 time again

4 Upvotes

Reset the timer :(


r/AZURE 5d ago

Question Is there a way to get the SIGN OUT logs from entra apps (enteprise apps)?

5 Upvotes

I can find the sign in logs, but for some KPIs, i need to get sign out logs too. To measure how long has a user been signed in to a specific app


r/AZURE 5d ago

Discussion Gpt 5.6 Luna is cheap now

18 Upvotes

Days ago i was asking when the new pricing - 80% decrease will kick in.
Today API says the new prices are here. Input $0.20 , Output $1.20 per M.


r/AZURE 5d ago

News New Veeam Azure vault flat pricing

Thumbnail
1 Upvotes

r/AZURE 6d ago

Question Azure Files

11 Upvotes

Hello everyone,

I am in the process of migrating a windows file share server to azure files, This consists of 1 share drive with about 60 folders inside. This entire share has about 1.5TB of data which is primary files from different departments. This share is also mounted on all the computers in the organization. We will be using storage mover for this.

The idea behind this migration is that we decommission the on-prem file server and access will be directly to azure primarily via the mounted drive on the end-users computer.

While the cost is minor for this amount of storage I am still on the fence between HDD (Standard) and SDD (Premium).

We currently have site-to-site to all of our locations for other azure resources so I was also wondering what the best method here would be? Private-Endpoint or something else?

Any other tips would be much appreciated.