Microsoft Docs - 최신 문서
Microsoft 기술 문서가 이전된 docs.microsoft.com에서는 콘텐츠용 웹 환경뿐 아니라 솔루션을 학습, 관리 및 배포하는 데 사용하는 콘텐츠를 만들고 지원하는 방법을 현대화했습니다. 이는 Microsoft 기술과 관련된 모든 것을 위한 원스톱 상점입니다. docs.microsoft.com에서 새롭고 흥미로운 내용을 최신 상태로 유지할 수 있도록 귀하를 위한 전용 피드를 만들었습니다.
Selected Feed: Azure
Unable to fine-tune OpenAI model - Microsoft Q&A
https://learn.microsoft.com/en-us/answers/questions/1186925/unable-to-fine-tune-openai-model Hello, I am no longer able to fine tune OpenAI models. When I go to Create customized model dialog, the Base model type shows this message: No models are available. Please check your access or try again later. When I first got access, I was able to fine-tune a Curie based model from a dataset I uploaded, and was able to deploy it, but I found some issues with its results so I deleted it and was hoping to use my new fine-tuning dataset to make a new one, but I'm running into the problem above. Please advice, Thank youPublished Date : 2023년 3월 23일 목요일
Difference- HSM protected keys in Vaults (VS) HSM-protected keys in Managed HSM - Microsoft Q&A
https://learn.microsoft.com/en-us/answers/questions/1184628/difference-hsm-protected-keys-in-vaults-(vs)-hsm-p While creating Azure VMs, we can keep the SSE encryption keys using Customer Managed Keys. We have 2 options when storing these CMK keys in HSM namely ( i know azure keyvault software based also supports CMK, but that is not my question . Mine is related to only HSM) i thought both option 1 and option 2 are same and related to Azure Key vault Premium SKU. what is difference ? What is the difference between options (1), (2) and (3)Published Date : 2023년 3월 23일 목요일
when migrating azure mysql to flex - lost the stored procedures code - Microsoft Q&A
https://learn.microsoft.com/en-us/answers/questions/1192462/when-migrating-azure-mysql-to-flex-lost-the-stored after migrating azure mysql database to flex, I am getting an error on mismatched collation when executing stored procedures. when executing the queries stand alone & the update commands stand alone it works. but from the stored procedures it does not. when trying to see the ddl of the stored procedure, it is empty. the only user that can see the code of the stored procedure is admin. only after dropping the stored procedure & re-creating it from the user that connected to the db, it was possible to execute the stored procedure successfully. can anybody explain what is the root cause?Published Date : 2023년 3월 23일 목요일
Azure charges for disk expansion - Microsoft Q&A
https://learn.microsoft.com/en-us/answers/questions/1192316/azure-charges-for-disk-expansion I am trying to expand the data volume in an azure VM. The current setup disk type/size is Premium SSD LRS/512MiB and nearly filling and time to extend the volume. I am thinking to expand by 128GiB. What I understand about the cost, since I have already setup 512GB (Disk tier P20), expanding by 128GiB, or 256GiB, or 512GiB will cost the same. I.e. it's set to the next 'Disk tier,' which is P30, and charges will be based on P30 (1024 GiB). image attached. I want to confirm, I can extend by 512 GiB rather than 128GB, they are the same cost. Am I correct?Published Date : 2023년 3월 23일 목요일
Timeline for gpt35-turbo in west-europe region - Microsoft Q&A
https://learn.microsoft.com/en-us/answers/questions/1192459/timeline-for-gpt35-turbo-in-west-europe-region Is there a timeline for when the 'gpt-35-turbo' model will also be available in the 'West Europe' region, or is this planned at all? https://learn.microsoft.com/en-us/azure/cognitive-services/openai/concepts/modelsPublished Date : 2023년 3월 23일 목요일
Outlook uses Autodiscover URL left from decommissioned Exchange server - Microsoft Q&A
https://learn.microsoft.com/en-us/answers/questions/1192343/outlook-uses-autodiscover-url-left-from-decommissi Hi All, In the production environment there was an Exchange Server 2013 server. Users used to work and still work on terminal servers. Few years ago emails were migrated to Microsoft 365 (users database as synced with Azure AD Sync) and the Exchange Server 2013 server was decommissioned. While the company stayed on Microsoft Office 2013 there were no issues. However recently Microsoft Office 2013 was replaced with Microsoft 365 and the fun has began. Now randomly users unable to launch Outlook and get this error. Also, when I recreate Outlook profile I can see this. In other words Outlook tries to use old Autodiscover URL. Is my theory right and Outlook stop working because of old Autodiscover URL? If yes could you please help me to clean out Active Directory Directory Services information left from old Exchange Server.Published Date : 2023년 3월 23일 목요일
front door: Our services aren't available right now - Microsoft Q&A
https://learn.microsoft.com/en-us/answers/questions/1192281/front-door-our-services-arent-available-right-now I created a Front Door dynamic acceleration service with a custom domain configured, but when I tried to access it, I got a 503 error. I checked the tutorials and troubleshooting guides on the official website, but I couldn't solve the problem. I added a custom domain and applied for a certificate, and the console showed everything was normal. The source server address is an IPv4 address, using the HTTP port, and the origin server does not use HTTPS. After everything was set up, I received an error message saying "Our services aren't available right now." What should I do?Published Date : 2023년 3월 23일 목요일
After SUccessful deployment of Azure Static Web App, when I go to the web site, it shows server error. The console says its a 502 error - Microsoft Q&A
https://learn.microsoft.com/en-us/answers/questions/1190143/after-successful-deployment-of-azure-static-web-ap I am deploying an hybrid Next.js app (using .next/standalone as output_directory) in azure static web app platform. The CI/CD pipeline in github says the Deployment was successful, but when I go the designated URL, the page says following There is no issue in github ci/cd deployment My github actions file is as followsPublished Date : 2023년 3월 23일 목요일
Can't query partitioned tables - Azure Synapse Link for Dataverse - Microsoft Q&A
https://learn.microsoft.com/en-us/answers/questions/1191447/cant-query-partitioned-tables-azure-synapse-link-f Hi, we have a problem with accessing partitioned tables in Azure Synapse Workspace that were previously created by ingesting tables from Power Platform via Azure Synapse Link for Dataverse. Snapshot folder and .csv files are normally created but can't be accessed via partitoned tables. For some reason we get message : Invalid object name 'dataverse_********.dbo.opportunity_partitioned'. Also there are no views created in Dataverse for Snapshot tables, we thought this should be automatically created when Creating Azure Synapse Link for Dataverse. Thanks for the help!Published Date : 2023년 3월 23일 목요일
Grant only one user access to storage account from a shared Databricks workspace - Microsoft Q&A
https://learn.microsoft.com/en-us/answers/questions/1192451/grant-only-one-user-access-to-storage-account-from I have a user on a Databricks workspace that I want to allow to read data from a storage account: sto-limited-access. I do not want any of the other users on that workspace to be able to read the data. From all I have read I have not found any good solutions to this. The Databricks workspace seems to be one identity and you cannot identify as a user when trying to access a storage account for example. I have tried to get access to a personal token in a notebook, using for example azure.identity and InteractiveBrowserCredential but that does not work. I do not want to paste a token that I have retrieved locally in to the notebook. Do you have some solution that would allow one user in a shared Databricks workspace access data from a storage account without other users of that workspace getting access to it. Best regards, MattiasPublished Date : 2023년 3월 23일 목요일
azure mddprov to intune question - Microsoft Q&A
https://learn.microsoft.com/en-us/answers/questions/1191087/azure-mddprov-to-intune-question Hi, I prepared a second corporate computer for a user. Joined it to on prem AD which eventually will gets synced to Azure. Then I log on as the user and configured and register their Outlook/Office. When I go to the Accounts settings in Windows 11, it shows it is MDDPROV. I see the computer on Azure but not in intune. My question is how to move it over to Intune?Published Date : 2023년 3월 23일 목요일
How to apply multiple cors rules at once in azure front door - Microsoft Q&A
https://learn.microsoft.com/en-us/answers/questions/1192449/how-to-apply-multiple-cors-rules-at-once-in-azure In the image shown above, a lot of App service CORS are registered. Also, I applied multiple CORS to the server endpoint ruleset in azure frontdoor premium. The problem is that many domains The point is that you have to create a new rule every time you register CORS. Is there no way ?Published Date : 2023년 3월 23일 목요일
Fail to create a new database at Japan East region in Azure - Microsoft Q&A
https://learn.microsoft.com/en-us/answers/questions/1191680/fail-to-create-a-new-database-at-japan-east-region I can?t choose the field of compute+storage when I tried to create Azure SQL Single Database. The error message says ?Unable to retrieve the pricing configuration data for this region at this moment. Please retry.?. Can someone help me fix this issue? Thanks.Published Date : 2023년 3월 23일 목요일
Free Azure Account - Microsoft Q&A
https://learn.microsoft.com/en-us/answers/questions/810624/free-azure-account I am a tutor that is teaching high school kids AZ-900 Azure Fundamentals. I am wanting to create free azure accounts for my students so they can learn to use azure. If I am using my own credit card to create accounts for my students. What is the best way to limit the spending of the free credit/ or to stop my students from clocking up a large bill?Published Date : 2023년 3월 23일 목요일
GCP Linux VM Migrate to Azure - Microsoft Q&A
https://learn.microsoft.com/en-us/answers/questions/857718/gcp-linux-vm-migrate-to-azure Hi , I have followed the document for Azure migration for GCP to AZURE. i am trying to migrate a centOS 7 GCP VM to Azure Stuck at the below step . instllation if push client on VM, which i like to migrate pushinstallclient cousl you please help me with the steps or let me know, where i am doing wrong. Thanks, Srinivasa.Published Date : 2023년 3월 23일 목요일
Application Monitoring for Ionic Application - Microsoft Q&A
https://learn.microsoft.com/en-us/answers/questions/1192443/application-monitoring-for-ionic-application Hi, Need to know how to monitor ionic application running on Azure Kubernetes Cluster. Is there any plug-in or sdk available to capture iconic application metrics, logs, alerts, availability on Azure Application Insight or .third party observatory platform. Underlying code is java.Published Date : 2023년 3월 23일 목요일
Azure VPN Client hangs on startup - Microsoft Q&A
https://learn.microsoft.com/en-us/answers/questions/1192428/azure-vpn-client-hangs-on-startup Good morning, I've downloaded and installed the Azure VPN Client from the Microsoft Store. Unfortunately I am not able to start the application. It hangs on startup and closes after an amount of time automatically without any direct error message given. In the Windows Eventlog there are two messages given: Windows Error Reporting and Application Hang. I already reinstalled the app and restarted the device multiple times but it doesn't change anything.Published Date : 2023년 3월 23일 목요일
B2C Deployment Automation vs MS Graph beta endpoints - Microsoft Q&A
https://learn.microsoft.com/en-us/answers/questions/1192438/b2c-deployment-automation-vs-ms-graph-beta-endpoin I'm looking to automate the deployment/configuration of Azure AD B2C tenants in a CI/CD pipeline. I see there is little support for doing that with ARM templates but there are only MS Graph beta endpoints available for updating trust framework policy keys and custom policies here. While I'm aware beta endpoints are not officially supported in production, my choice is between a risk of a sudden beta API change when automating versus a risk of human error when not automating the deployment process. To mitigate the former risk, can you pls give me some guidance aboutPublished Date : 2023년 3월 23일 목요일
Azure function error: Could not find a suitable TLS CA certificate bundle - Microsoft Q&A
https://learn.microsoft.com/en-us/answers/questions/1192437/azure-function-error-could-not-find-a-suitable-tls I have a service bus queue triggered Azure function (python), every now and then the function fails with the following error: "OSError: Could not find a suitable TLS CA certificate bundle, invalid path: /home/site/wwwroot/.python_packages/lib/site-packages/certifi/cacert.pem" Among the 10k messages processed per night, this situation happens like 10-20 times per night. Any idea why?Published Date : 2023년 3월 23일 목요일
is there any certification on Microsoft portal for hands on learning of SQL ? - Microsoft Q&A
https://learn.microsoft.com/en-us/answers/questions/1185325/is-there-any-certification-on-microsoft-portal-for I want to do a certification from Microsoft on SQL. Can anyone let me know the learning path do the same.Published Date : 2023년 3월 23일 목요일
Microsoft.WindowsAzure.Storage.StorageException: 'Server failed to authenticate the request. Make sure the value of Authorization header is formed correctly including the signature.' - Microsoft Q&A
https://learn.microsoft.com/en-us/answers/questions/1188474/microsoft-windowsazure-storage-storageexception-se Hi, I'm trying to upload a file to a blob storage using Access keys Here is my code: The problem is when i'm calling the CreateIfNotExistsAsync method.... i already check the keys and are correct, and i tried with several time zones.... (i'm in Argentina, not sure if the ip may be a problem) Microsoft.WindowsAzure.Storage.StorageException: 'Server failed to authenticate the request. Make sure the value of Authorization header is formed correctly including the signature.' There is any way to set the Authorization header using the Microsoft.WindowsAzure.Storage tools? Because i was thinking into make the request via httpclient.... Any idea? Workaround? ThanksPublished Date : 2023년 3월 23일 목요일
Azure service buss triggered Functions always miss a few execution - Microsoft Q&A
https://learn.microsoft.com/en-us/answers/questions/1192434/azure-service-buss-triggered-functions-always-miss I have a service bus queue triggered azure function (python), which processes around 5000 messages per night. Every night there are always around 5-10 messages enter the dead-letter queue. I checked in the function application insight panel and I could not find the executions for these 5-10 messages. It seems like these messages do not trigger a function, although the queue has a max-delivery count of 5, and then go directly into dead-letter. Any idea why? The host.json of my function.Published Date : 2023년 3월 23일 목요일
Connection Failed Error with Speech SDK - Microsoft Q&A
https://learn.microsoft.com/en-us/answers/questions/1192205/connection-failed-error-with-speech-sdk Some problems happend after I updated my ssl lib to openssl1.1.1f Below is the error returned from azure cogntive service CANCELED: ErrorDetails=Connection failed (no connection to the remote host). Internal error: 1. Error details: Code: 2550. When I reverted the upgradation the issue didn't occur again. I also refered the doc below but not affacted https://learn.microsoft.com/en-us/azure/cognitive-services/speech-service/how-to-configure-openssl-linux?pivots=programming-language-javaPublished Date : 2023년 3월 23일 목요일
How to make webapp access private - Microsoft Q&A
https://learn.microsoft.com/en-us/answers/questions/1192394/how-to-make-webapp-access-private Hi All, My Scenario is to make a single webapp as frontend and rest as a backend Example: My website has 8 webapps all are publicly accessible, but I want to make the frontend app public and rest 7 to connect in a private way and no external user or link needs to access it except the public webapp. what are all the networking rules needed to be placed for my scenario?Published Date : 2023년 3월 23일 목요일
How to retrieve customer mails with oauth instead of basic auth imap in Microsoft Exchange - Microsoft Q&A
https://learn.microsoft.com/en-us/answers/questions/1183508/how-to-retrieve-customer-mails-with-oauth-instead I have made a .Net WPF Desktop-App which allows customers outside of our domain(outside of our azure tenant etc.) to automatically export mails from IMAP Office365 Accounts. Since Microsoft disabled this legacy authentication method, it seems we need to switch to OAuth. Would the correct approach be to setup an Azure Account, generate Tenant and Client id and put both into the desktop app and implement something like this: https://github.com/jstedfast/MailKit/blob/master/ExchangeOAuth2.md to get the imap-client ? I can't figure out by any documentation from Microsoft if this is supposed to be an method for the companies own users or external Microsoft accounts from customers which adresses we dont know. Also is it safe to put the Client- and Tenant ID into the desktop app for customers? It also seems we need to invite any third party Office365 User to out tenant as guest for this. Is this correct? Can we setup self sign up flow for this purpose? Thanks for reading.Published Date : 2023년 3월 23일 목요일
Intel's login policy has been changed - Microsoft Q&A
https://learn.microsoft.com/en-us/answers/questions/1192377/intels-login-policy-has-been-changed Hello Intel's login policy has been changed to ms azure, so you need to have ms mail, but you can't log in, so I tried to log in with my personal mail, but it's connected together and I can't log in https://login.microsoftonline.com/common/federation/oauth2msa I received below message. "AADSTS90072: User account 'soulhuga80@hotmail.com' from identity provider 'live.com' does not exist in tenant 'Intel Corporation' and cannot access the application '80ebef2a-2f2f-4fd6-93c8-b80a651479a2'(IntelCorpB2C_IAP_14066) in that tenant. The account needs to be added as an external user in the tenant first. Sign out and sign in again with a different Azure Active Directory user account" "Request Id: fb246964-c3b6-4e1f-b8a3-0fca8aec0900 Correlation Id: df6d5bb3-f700-43a7-8ecc-8076324113a5 Timestamp: 2023-03-23T04:31:59Z Message: AADSTS90072: User account 'soulhuga80@hotmail.com' from identity provider 'live.com' does not exist in tenant 'Intel Corporation' and cannot access the application '80ebef2a-2f2f-4fd6-93c8-b80a651479a2'(IntelCorpB2C_IAP_14066) in that tenant. The account needs to be added as an external user in the tenant first. Sign out and sign in again with a different Azure Active Directory user account" Please check it out Thank you.Published Date : 2023년 3월 23일 목요일
Restore access to the Azure portal - Microsoft Q&A
https://learn.microsoft.com/en-us/answers/questions/1191243/restore-access-to-the-azure-portal How do I restore access to my Azure subscription if I lost access to all configured authentication methods? What data will I have to provide for ms support to restore access? How long will it take?Published Date : 2023년 3월 23일 목요일
Azure Data Factory Copy From SQL On premise to Azure Postgres? - Microsoft Q&A
https://learn.microsoft.com/en-us/answers/questions/1192427/azure-data-factory-copy-from-sql-on-premise-to-azu Hi I am trying to do a simple copy actitivity in Azure Data Factory Data Pipelines. The source is a SQL On premise database. I can preview data fine. The Sink is a Azure Postgresql Cluster. The test connection returns with success. When I try to execute the pipeline it returns an error: 'Type=System.Net.Sockets.SocketException,Message=No connection could be made because the target machine actively refused it,Source=Npgsql,' If I change the Source to a CSV file everything works fine. I would prefer not to stage the data as files in Storage Lake if possible. Why do I get this error? Thanks in advancePublished Date : 2023년 3월 23일 목요일
Azure Data Factory json manipulation - Microsoft Q&A
https://learn.microsoft.com/en-us/answers/questions/1192395/azure-data-factory-json-manipulation Hi, Good day. We have an input JSON that is of the following schema: This needs to be transformed to a array of objects as below: As you can see, we removed the "result" element from the input. Any way I could achieve this transformation in ADF please?Published Date : 2023년 3월 23일 목요일
azure sql database PAAS instance - system tables inaccessible - Microsoft Q&A
https://learn.microsoft.com/en-us/answers/questions/1192388/azure-sql-database-paas-instance-system-tables-ina I spined up Azure SQL Database which is PAAS instance only. I tried accessing System tables, but to my surprise they were not available. Please suggest-Published Date : 2023년 3월 23일 목요일
Use explicitly Unity catalog instead of hive metastore - Microsoft Q&A
https://learn.microsoft.com/en-us/answers/questions/1192067/use-explicitly-unity-catalog-instead-of-hive-metas I have a customer who is using Databricks with Unity Catalog metastore. All outbound internet traffic is blocked through firewall. When trying to run a job, databricks is trying to make a connection to consolidated-westeuropec2-prod-metastore-3.mysql.database.azure.com and it fails due to firewall. After whitelisting it temporarily for troubleshooting purposes, job runs successfully. However, the customer ideally would like to block all connections to the internet, and he is wondering if this connection to Hive metastore is mandatory, given that he is using Unity Catalog. Is there a way to prevent this connection and explicitly use Unity Catalog metastore? Thank you in advance for your helpPublished Date : 2023년 3월 23일 목요일
Subscription migration to different Tenant - Microsoft Q&A
https://learn.microsoft.com/en-us/answers/questions/1192136/subscription-migration-to-different-tenant Is it possible to migrate below resources in a subscription from one tenant to another tenant. We are planning subscription migration from one tenant to different tenant I have gone through below documentation https://learn.microsoft.com/en-us/azure/role-based-access-control/transfer-subscription but it doesnt talk about below resource and what additional things i need to take care before and after subscription migration to new tenant. 1- App service, app gateway 2- Private end point 3- SQL server and database 4- bastion 5- application insight 6- restore point collection 7- event hub name space 8- loganalytics workspace 9- function app 10 - recovery service vault Could you please let me know is it possible to migrate these resources and things that need to take care prior to migration.Published Date : 2023년 3월 23일 목요일
while moving all resources from Resource group from once subscription to another subscription, getting error message as below. - Microsoft Q&A
https://learn.microsoft.com/en-us/answers/questions/1192321/while-moving-all-resources-from-resource-group-fro while moving all resources from Resource group from once subscription to another subscription, getting error message as below. {"code":"ResourceMoveProviderValidationFailed","target":"Microsoft.Web/serverFarms","message":"{"Code":"BadRequest","Message":"Please select all the Microsoft.Web resources from 'rg_cdp_plc_dev' resource group for cross-subscription migration. Also, please ensure destination resource group 'Test-dev-rg' doesn't have any Microsoft.Web resources before move operation. Here is the list of resources you have to move together: cdpapp (Microsoft.Web/sites)\r\n cdpapp-demo (Microsoft.Web/sites)\r\n cdpapp-api (Microsoft.Web/sites)\r\n cdpapp-stg (Microsoft.Web/sites). This resource is located in resource group 'rg_cdp_plc_dev', but hosted in the resource group 'rg_cdp_plc_stg'. This may be a result of prior move operations but all resources are in single RG.Published Date : 2023년 3월 23일 목요일
Azure VPN Client execution error (stuck) - Microsoft Q&A
https://learn.microsoft.com/en-us/answers/questions/737133/azure-vpn-client-execution-error-(stuck) Hello, I downloaded the Azure Vpn Client from the Microsoft app, but the client does not run. AzVpnAppx.exe is not responding in task manager. Please refer to the attached photoPublished Date : 2023년 3월 23일 목요일
The account needs to be added as an external user in the tenant first - AADSTS50020 - Microsoft Q&A
https://learn.microsoft.com/en-us/answers/questions/638748/the-account-needs-to-be-added-as-an-external-user Experiencing authentication issues The portal is having issues getting an authentication token. The experience rendered may be degraded. Additional information from the call to get a token: Extension: fx Resource: jarvis Details: AADSTS50020: User account '{EmailHidden}' from identity provider 'live.com' does not exist in tenant 'Microsoft Services' and cannot access the application 'c44b4083-3bb0-49c1-b47d-974e53cbdf3c'(Azure Portal) in that tenant. The account needs to be added as an external user in the tenant first. Sign out and sign in again with a different Azure Active Directory user account. Trace ID: e198db53-ed9d-4647-9349-cb05413b7f00 Correlation ID: 949c25ac-bbd1-47c8-8587-7362ffffb59f Timestamp: 2021-11-24 01:33:12Z How to fix this issue due to this azure active directory i'm unable to get the primary domain field with the default domain "onmicrosoft.com"Published Date : 2023년 3월 23일 목요일
Parsing a field within a CSV - Microsoft Q&A
https://learn.microsoft.com/en-us/answers/questions/1192404/parsing-a-field-within-a-csv Hey team, I am using ADF to process a CSV file. the CSV file has the following format ProductID,ProductCat,Details 1,"Category1","""Cat1"",9,""Y"",""test1@yahoo.com""," 2,"Category2","""Cat2"",5,""N"",""test2@gmail.com""," IF you save this as a csv and open in Excel , you would see that the third field Details is really a concatenation of a number of sub-fields. The Detail field itself contains a CSV text with " as the text qualifier. if you notice the 4th attribute within Details is the email field. We have now been asked if we could mask the emails with in the Details field. Is there any way to achieve this in ADF please? Please guide.Published Date : 2023년 3월 23일 목요일
Read replica creation for Azure Database for Postgres flexible server via Azure CLI - Microsoft Q&A
https://learn.microsoft.com/en-us/answers/questions/1192420/read-replica-creation-for-azure-database-for-postg When trying to replicate a server in the region West Europa the CLI responds with the following error: Replica can only be created for multi-availability zone regions. The location of the source server is in a single availability zone region. The command used: The replica creation itself works via the Azure Portal UI for the same server.Published Date : 2023년 3월 23일 목요일
AADSTS76020: Azure Entreprise Application cannot signing in graph client while having validation certificate configured for SSO - Microsoft Q&A
https://learn.microsoft.com/en-us/answers/questions/1184601/aadsts76020-azure-entreprise-application-cannot-si Hello, I believe I have an issue with the Verification certificates preview feature in Azure Enterprise app SSO. For the context, I have an Azure enterprise application configured so Azure can act as an IDP for an authentication server of mine (acting like a Service Provider). But that authentication server must gather the group names of the users it signs-in, so I must use a Graph API to recover the names from the ids I received from Azure in the claims. In order to do this, I configured SAML single sign-on my Azure enterprise application and I gave it User.Read.All and Groups.Read.All Graph API access. In my authentication app, I authenticate my app to Graph using a certificate or a client secret. To that point, everything works well. The issue arise when I configure the V?rification certificates in the SSO configuration on my Azure Enterprise application so that my SAML requests can be signed and verified. Then, I can authenticate my user and SAML exchanges run fine but when my app tries to authenticate to Graph, I receive the following error: AADSTS76020: Application configured to use only protocols with signed requests I can't find any informations about this error, not even here https://learn.microsoft.com/en-us/azure/active-directory/develop/reference-aadsts-error-codes. What I don't uderstand here is why my SSO configuration impacts the graph authentication process. I am missing some information? Should I configure two different Apps (one for SSO, the other for Graph access)? ThanksPublished Date : 2023년 3월 23일 목요일
Fine-tuning for models in Azure OpenAI - Microsoft Q&A
https://learn.microsoft.com/en-us/answers/questions/1192415/fine-tuning-for-models-in-azure-openai Hi I'm Shimura. I work for a Japanese IT company. I would like to fine-tuning the data into a model in GPT provided by Azure OpenAI. Is it possible to train data to the model in a closed environment?Published Date : 2023년 3월 23일 목요일
Azure Load Testing ??? ??????? - Microsoft Q&A
https://learn.microsoft.com/en-us/answers/questions/1192413/azure-load-testing ????? ?? ??? ??? 1000?? ??? ????? ?? ??? ? ? ???? Azure Load Testing ???? 1000?? ??? ???? ????? ????? ??? ??? ??? ??? ???? ????? ???? ?? ???? . AZURE ??? ??? ?????? ????? ?????????? .Published Date : 2023년 3월 23일 목요일
What RBACs needed to read the EA Enrolment Details and Billing Profile - Microsoft Q&A
https://learn.microsoft.com/en-us/answers/questions/1192412/what-rbacs-needed-to-read-the-ea-enrolment-details Hi, My company is an Azure MSP and I am trying to use Azure Cost Management Connector for PowerBI to analyze the cost inside PowerBI. Unfortunately, I don't have access to the Billing Profile or to get EA Enrolment details. Could you please let me know What RBAC roles needs to be assigned to a User or Service Principal in order to access these data through connector?Published Date : 2023년 3월 23일 목요일
I have enabled Entra permissions management on my tenant, but it is not showing all the users which are exist on Azure AD. Please help me out for the solution - Microsoft Q&A
https://learn.microsoft.com/en-us/answers/questions/1192411/i-have-enabled-entra-permissions-management-on-my Hi All, I have enabled Entra permissions management on my tenant, but it is not showing all the users which are exist on Azure AD. Please help me out for the solution. I have 200+ users on Azure tenant but only my name showing on Entra Permissions management dashboard. I linked my Azure AD to subscription, provided required permissions to management groups and subscription but still no luck, please help me out.Published Date : 2023년 3월 23일 목요일
Azure Automation - Source Control - PAT - Powershell - Microsoft Q&A
https://learn.microsoft.com/en-us/answers/questions/1191294/azure-automation-source-control-pat-powershell I have created an azure automation account and wish to setup a source control connection with github using a PAT. The PAT has been created with the correct permissions but when I try to run the powershell command I get the following error However when I try to add the sourcecontrol using the UI it works (but no option to authenticate by using the PAT). The automation account has been created in the correct location and there is no location parameter for the sourcecontrol connection so I am confused why I am getting this error. The cmdlet I am running:Published Date : 2023년 3월 23일 목요일
Azure AD B2C, phone sign-up/sign-in and SMS fees - Microsoft Q&A
https://learn.microsoft.com/en-us/answers/questions/1189778/azure-ad-b2c-phone-sign-up-sign-in-and-sms-fees The pricing documentation for Azure AD B2C only refers to the additional "per authentication attempt" fees for SMS in the context of MFA. However, one can also enable phone sign-up/sign-in whereas the authentication is, or can be, essentially single factor. I assume the SMS fees also apply in this case? If so, I think the documentation should reflect that (i.e. not only applicable when relying on multiple factors).Published Date : 2023년 3월 23일 목요일
Microsoft 365 Message Encryption (Azure Information Protection Premium P1) - Microsoft Q&A
https://learn.microsoft.com/en-us/answers/questions/1192403/microsoft-365-message-encryption-(azure-informatio We have message encryption through Azure P1. There are several options in which situation the message is encrypted, for example, if it is sent to a certain address or if the message title contains a certain word. Is it possible to turn on message encryption in Outlook in some other way?Published Date : 2023년 3월 23일 목요일
why is it not allowed to ip whitelist a devops agent(in the same region) on a storage account? - Microsoft Q&A
https://learn.microsoft.com/en-us/answers/questions/1191367/why-is-it-not-allowed-to-ip-whitelist-a-devops-age Terraform uses a storage account to store it's state. when using an azure pipelines agent you wanna JIT(just in time) allow that devops agent to read the terraform state. however the storage account firewall cannot give ip access to devops agents from the same region as the storage account. for other azure solutions like keyvault this approach works perfectly, yet storage accounts treat this differently. Why is this and is this intended behavior? will this change in the future? I know a solution is to provision private agents but this seems like alot of overhead just to access a storage account behind a firewall. thank you in advancePublished Date : 2023년 3월 23일 목요일
maximum number of on-premise database as sync member - Microsoft Q&A
https://learn.microsoft.com/en-us/answers/questions/1192402/maximum-number-of-on-premise-database-as-sync-memb Failed to perform data sync operation: Cannot create sync member 'EVAN-VMWARE' because the maximum number of on-premise database as sync member can be created under a sync group is 5 for Basic sync group I only 1 member now , cannot add second.Published Date : 2023년 3월 23일 목요일
MS Office 365 question - Microsoft Q&A
https://learn.microsoft.com/en-us/answers/questions/1192269/ms-office-365-question I'm interested in knowing if there is any way that I can setup or purchase a license for MS Office 365 that can be used by anyone who logs into that machine without being prompted to have to enter usernames and password to be able to use it. Presently we purchase Office 365 licenses from our vendor to be added into our Office portal. However we have a Conference Room computer that is used by many random Employees for presentations which poses a challenge when they each individually login to Windows and need to use Office 365 for their audience. Presently they would each have to enter their Microsoft Office account credentials as well as download the MS Authenticator app on their cellphones for two step verification in order to use it and this poses a problem because we have so many random employees onsite and afar that access this computer that it would just be chaos. Any feedback would be appreciated.Published Date : 2023년 3월 23일 목요일
No response from Cognitive Services gating support for accessing Azure OpenAI services - Microsoft Q&A
https://learn.microsoft.com/en-us/answers/questions/1190740/no-response-from-cognitive-services-gating-support Hi All. I have requested access to Azure OpenAI services and I have been waiting for a response for a month now. Moreover, I sent additional information to verify my eligibility twice and there is no reaction.Published Date : 2023년 3월 23일 목요일
Actions and Triggers wont load from Custom Connector - Microsoft Q&A
https://learn.microsoft.com/en-us/answers/questions/1191676/actions-and-triggers-wont-load-from-custom-connect Hello, we are working with different custom connectors in logic app and since this monday we arent able to insert actions from the custom connectors into the designer, because the gui dont find any actions or triggers. The console of the browser throws some errors: I can see, that under the network the code loads the api definition with the call: apiOperations?api-version=2018-07-01-preview&%24filter=properties%2Ftrigger%20eq%20null%20and%20properties%2FintegrationServiceEnvironmentResourceId%20eq%20null&%24search=%22Wrike%22 I think the JS Code has a problem with :e.connector.toLowerCase() and the object for e is the following for example: { brandColor: undefined } So on the object the connector property is missing. I saw, that the other connectors have this property and it seems like the id hase the same structure. As a work around I could insert the action via code view and the logic app runs through etc. But this is not a way to design the logic apps for us atm. So my question is now, is something wrong on the Custom Connector or is the api/client side code from Microsoft/azure broken? Maybe someone can confirm this problem in their tenant as well. Thanks in advance for you help!Published Date : 2023년 3월 23일 목요일
C# MS Graph add group member error "Insufficient privileges to complete the operation." - Microsoft Q&A
https://learn.microsoft.com/en-us/answers/questions/1192338/c-ms-graph-add-group-member-error-insufficient-pri Following the documentation here: https://learn.microsoft.com/en-us/graph/api/group-post-members?view=graph-rest-1.0&tabs=csharp I have been trying to add users to a Security Group The users are all members of the tenant wot O365 e3 liscences There should be a problem with IDs as this works in Graph explorer The app calls the graph api on behalf of the signed in user (Delegated) All the other api calls in the app are working correctly including retrieving calenders, user profiles, group member lists and schedule information using the code I get the error Insufficient privileges to complete the operation. Permissions in the https://portal.azure.com/#view/Microsoft_AAD_RegisteredApps have also tried with the group.ReadWrite.all permission Permission in the resulting token -Calendars.ReadWrite -Group.Read.All -GroupMember.ReadWrite.All -MailboxSettings.Read -openid -profile -User.Read -User.ReadWrite.All -email Does anyone have an idea as to what is wrong? I don't want to grant the app more than the minimum permission necessary. Thanks Update: The Permission error doesnt occur if the user being added is an owner of the group. This isn't much use to me I need the app to add the signed in user to the group. Is there other permission I can grant or something I can do so that the api request can add the user to the group without them being an owner?Published Date : 2023년 3월 23일 목요일
DataLakeFileSystemClient listPath, NumberFormatException when using String - Microsoft Q&A
https://learn.microsoft.com/en-us/answers/questions/1187305/datalakefilesystemclient-listpath-numberformatexce Hello, I am new to this and trying to list all files in a container recursively. Doing so result in this error : java.lang.NumberFormatException: For input string: "Thu, 14 Oct 2021 17:22:10 GMT" I have tried to manually go through each directory and found the possible cause : This code will generate the same error. It seems like '2021/10/14/17' is interpreted as a date causing the method to fail. The 'yyyy/mm/dd/hh' representation is by design so I cannot change the names easily for now, it may be possible in the future or if the error cannot be resolved with other methods. Edit / Update : Got access to the container and did some test, the issue happen even if the 'blob object' is at the root. The input string math the creation date of the blob object. I tried to use https://learn.microsoft.com/en-us/azure/storage/blobs/data-lake-storage-directory-file-acl-java code (List directory contents) -> Same error Thank you in advance for your help.Published Date : 2023년 3월 23일 목요일
Can I use Azure Text-to-Speech for Commercial Usage? - Microsoft Q&A
https://learn.microsoft.com/en-us/answers/questions/1192398/can-i-use-azure-text-to-speech-for-commercial-usag Hi @YutongTie-MSFT Can I use the Azure Text-to-Speech for Freelancing (Voice-over)? on Upwork and Fiverr. for such kinds of videos; Company introduction video, Factory introduction video, Online Marketplace (Amazon, Alibaba), and more about "Business Video". Thank you.Published Date : 2023년 3월 23일 목요일
Is there a way to start a Teams or PTSN call from Azure Monitor alerts? If so, what is the preferred method? - Microsoft Q&A
https://learn.microsoft.com/en-us/answers/questions/1192198/is-there-a-way-to-start-a-teams-or-ptsn-call-from I've been looking for ways to implement a solution that would automatically initiate a MS Teams or PTSN call (1:1 or group call) when an Azure Monitor alert is triggered. First I checked if it would be possible to use the built-in Az Monitor PTSN functionality or Azure communications service SDK for this, but quickly realized that this is only supported in select countries and therefore would not work for my use-case. Next I started exploring for ways of starting a Teams call using the Az Monitor alert webhook as the trigger which would request an Az Function app/app service API that would then handle the webhook requests and start the Teams call via the Graph API. I then learned that the only way to initiate the call without including a teams user identity (as a service for example) in the process would be to use Teams Bot/Teams custom applications functionalities, but this is starting to seem like a lot of complexity for the functionality. Attached below is a screencap of the diagram I made to map out the process I explained and how I currently understand it. My questions are:Published Date : 2023년 3월 23일 목요일
How do I delete rows with certain characters in the data flow? - Microsoft Q&A
https://learn.microsoft.com/en-us/answers/questions/1192076/how-do-i-delete-rows-with-certain-characters-in-th I want to delete this '?' row in the image in the data flow. Is there a better way to do this?Published Date : 2023년 3월 23일 목요일
How to Create a functionapp from docker image in azure registry - Microsoft Q&A
https://learn.microsoft.com/en-us/answers/questions/1192379/how-to-create-a-functionapp-from-docker-image-in-a I had my local docker image and pushed it to my azure Container registry, I see no way to launch my function app from the image that I have pushed to the container registryPublished Date : 2023년 3월 23일 목요일
How to get all firewall rules with all the properties via Azures Resource Graph? - Microsoft Q&A
https://learn.microsoft.com/en-us/answers/questions/1192152/how-to-get-all-firewall-rules-with-all-the-propert Hi, I need help with proper formulation of a query that would give me all firewall rules with all properties so it can be saved as a CSV file. All rules from a particular directory.Published Date : 2023년 3월 23일 목요일
Databricks with private link - Microsoft Q&A
https://learn.microsoft.com/en-us/answers/questions/1047706/databricks-with-private-link hi, i 'm following this guide to set up secured a databricks cluster: https://learn.microsoft.com/en-us/azure/databricks/administration-guide/cloud-configurations/azure/private-link#dns So i only have 1 vnet and 3 subnet inside: public-subnet, private-subnet, privatelink-subnet. I also have 2 private endpoints for databricks : note that i dont create an extra private auth workspace. When i go to usgovvirginia.pl-auth.databricks.azure.us, the browser return error: AADSTS50011: The redirect URI 'https://usgovvirginia.pl-auth.databricks.azure.us/login.html' specified in the request does not match the redirect URIs configured for the application '2ff814a6-3304-4ab8-85cb-cd0e6f879c1d'. Make sure the redirect URI sent in the request matches one added to your application in the Azure portal. Navigate to https://aka.ms/redirectUriMismatchError to learn more about how to fix this. Do you know what i 'm missing or wrong ? thanksPublished Date : 2023년 3월 23일 목요일
How to fix MSSQL_101 "INSERTABLE columns list or UPDATABLE column list or key column list is not properly passed to the stored procedure." in Data Flow Sink? - Microsoft Q&A
https://learn.microsoft.com/en-us/answers/questions/1189803/how-to-fix-mssql-101-insertable-columns-list-or-up I am trying to load CSV rows from Data Lake into an Azure SQL Database. I use the upsert functionality of the data flow and parameterize it to be able to load the same data into different tables. this is how i designed my data flow: In the alter row activity i set UpsertIf to true() and allowed only upserts in the sink and added the corresponding key columns. When I run this i get the following error: Error code: DFExecutorUserError Failure type: User configuration issue Details: Job failed due to reason: at Sink 'sink1': ERRORCODE:MSSQL_101, STAGE:INPUT-VALIDATION, MESSAGE:INSERTABLE columns list or UPDATABLE column list or key column list is not properly passed to the stored procedure. The thing is that in some tables the data is upserted without any problems and in a few tables this issue comes up. Any suggestions on how to fix it? Thanks for your input! :)Published Date : 2023년 3월 23일 목요일
how setup dfs insted blob endpoint for BlobContainerClient - Microsoft Q&A
https://learn.microsoft.com/en-us/answers/questions/602293/how-setup-dfs-insted-blob-endpoint-for-blobcontain Hi, In general I need to create app with java which will perform some operations on azure storage like upload file, append to file, rename, check if exist and so on. And IMPORTANT It has to communicate with DFS endpoint https://xxxx.dfs.core.windows.. But I encounter some problems: 1: during using BlobContainerClient and uploading a file to azure storage an error appear: com.azure.storage.blob.models.BlobStorageException: Status code 400, "{"error":{"code":"MissingRequiredHeader","message":"An HTTP header that's mandatory for this request is not specified.\nRequestId:b225d695-201f-00ed-212e-c7c9e8000000\nTime:2021-10-22T10:23:12.4983407Z"}}" How can I avoid this situation, what header is required and how to set up it? 2.afterward I have implemented something similar but using DataLakeFileSystemClient and this time uploading of file was totally fine.Unfortunately not all operations can be performed. e.g. exists() method internally uses BlobContainerClient and perform call via blob endpoint https://xxxx.blob.core.windows.. what if forbidden in my case. IMO It is caused because BlobContainerClientBuilder.endpoint(String endpoint) set up endpoint blobContainerClient endpoint to blob, and dfs endpoint for DataLakeFileSystemClient. source code: So questionis: is it a bug in BlobContainerClientBuilder.endpoint(String endpoint) ? or how to fix this problem to use same endpoint for both clients. Currently I have implemented wcomunicatend I'm using both clients: DataLakeFileSystemClient to perform actions like upload, append etc. and BlobContainerClient to check if file exist. I would like to use only one of clients Could you help me somehow, please ?Published Date : 2023년 3월 23일 목요일
Azure marketplace application offer using trusted launch VM image offer - Microsoft Q&A
https://learn.microsoft.com/en-us/answers/questions/955234/azure-marketplace-application-offer-using-trusted Hello, I have a VM image offer currently in private preview which supports trusted launch, i.e. when I deploy a VM using that image I can use the vTPM. Note, that offer required me to use a SAS URI when specifying the image to use instead of a compute gallery link (I've been testing trusted launch using our VM image uses compute galleries up to this point). In my Azure application offer I enable the trusted launch feature as follows (trimmed the ARM template a bit): However when I come to deploy my Azure application offer I get this error: "message": "Use of TrustedLaunch setting is not supported for the provided image." This is not the case, the VM image definition was created with the following feature settings: Further to that when I manually deploy the VM image using an azure template specification then the deployment works and I get a VM using our custom image with a vTPM. Can anyone help me understand why I cannot deploy my offer in the way I want to? I suspect the issue is due to use of SAS URL rather than Azure compute gallery based image, however I was advised by support to use a SAS URL as using a compute gallery based image caused our submission to hang. Thanks, Peter.Published Date : 2023년 3월 23일 목요일
adf_client.activity_runs.query_by_pipeline_run while debugging pipeline - Microsoft Q&A
https://learn.microsoft.com/en-us/answers/questions/452342/adf-client-activity-runs-query-by-pipeline-run-whi I am using adf_client.activity_runs.query_by_pipeline_run inside my azure notebook to get pipeline details (such as output/pipeline status/child pipeline execution time). I am passing the pipeline run id as the base parameter to this notebook. However, I am able to get the details when i publish and trigger it but not when i debug the pipeline.Published Date : 2023년 3월 23일 목요일
SparkLoggingEvent_CL is not being gained in log analytics - Microsoft Q&A
https://learn.microsoft.com/en-us/answers/questions/1189942/sparkloggingevent-cl-is-not-being-gained-in-log-an I have configured log analytics and spark according to https://learn.microsoft.com/en-us/azure/synapse-analytics/spark/apache-spark-azure-log-analytics The metrics and listener have arrived to log analytics but logging event has not ,I have setup the pyspark logging as per the article and can view the logs through synapse monitor spark pool logs Any help would be greatly appreciated Thank you in advance Update: The problem seemed to be in the key vault secret setup as directly providing the log analytics key to conf works. The key Vault has been linked though linked service and synapse has been given access policy access in key Vault. Is there anything else I have overlooked @AnnuKumari-MSFT @C Any pointers would be greatly appreciatedPublished Date : 2023년 3월 23일 목요일
How to read / write to a B2C users profile using an Azure Function using Node JS ? - Microsoft Q&A
https://learn.microsoft.com/en-us/answers/questions/1192359/how-to-read-write-to-a-b2c-users-profile-using-an Please help, I have a working APIM instance successfully connected to an Azure Function app but cannot fetch a list of users from the B2C tenant. I have registered an app and given User.ReadWrite.All permission to the app. Also granted consent and copied the Secret Value. Following all the tutorials / examples here's the code i'm using: But end up wth a 500 Error. The function is connected properly as I get a return value when I return a string sent in the request body. Am I missing something obvious ? Any help would be much appreciated.Published Date : 2023년 3월 23일 목요일
how config azure adls gen2 to migrate from hdfs - Microsoft Q&A
https://learn.microsoft.com/en-us/answers/questions/1191963/how-config-azure-adls-gen2-to-migrate-from-hdfs Could you please helpme to migrate data from on-premise hadoop to adls gen2, how can i config mi azure tenant, security netowork...Published Date : 2023년 3월 23일 목요일
Error code =Microsoft.DataTransfer.Common.Shared.HybridDeliveryException,Message=Only '.xls' and '.xlsx' format is supported in reading excel file while error is - Microsoft Q&A
https://learn.microsoft.com/en-us/answers/questions/1191841/error-code-microsoft-datatransfer-common-shared-hy Using a Copy Activity in ADF to copy a xlxs file to azure sql: Request URL: https://xxxxxxxxx.sharepoint.com/sites/Dataetc/_api/Web/GetFileByServerRelativePath(decodedurl='/sites/Dataetc/Billing/2023-02/Book1.xlsx')/$value Error: ErrorCode=ExcelUnsupportedFormat,'Type=Microsoft.DataTransfer.Common.Shared.HybridDeliveryException,Message=Only '.xls' and '.xlsx' format is supported in reading excel file while error is ' at System.Threading.Tasks.Task.ThrowIfExceptional(Boolean includeTaskCanceledExceptions) at System.Threading.Tasks.Task.Wait(Int32 millisecondsTimeout, CancellationToken cancellationToken)Published Date : 2023년 3월 23일 목요일
External table 'dbo.V1' is not accessible because content of directory cannot be listed. - Microsoft Q&A
https://learn.microsoft.com/en-us/answers/questions/1192393/external-table-dbo-v1-is-not-accessible-because-co Hi, I get the error "External table 'dbo.V1' is not accessible because content of directory cannot be listed". My managed identity has "storage data contributor" role on the specified storage account. Only Azure AD accounts with "storage data contributor" are able to run the query. Not able to run the same query with "Managed Identity"Published Date : 2023년 3월 23일 목요일
admin consent - Microsoft Q&A
https://learn.microsoft.com/en-us/answers/questions/1192352/admin-consent Hi All One of my application is using Azure Enterprise Application to connect to it. Under permissions of the Azure Enterprise Application -User consent it has the required permissions and users were able to access the application without any issue. Suddenly new users are unable to access the application. when they try to access they get the below prompt. experts guide me as no changes has been made and new users are unable to access the application. need admin approval need permissions to access resources in your organization that only an admin can grant. Please ask an admin to grant permission to this app before you can use it.Published Date : 2023년 3월 23일 목요일
Azure Durable Function does not finish when I configured Azurite with multiple Storage Accounts. - Microsoft Q&A
https://learn.microsoft.com/en-us/answers/questions/1189770/azure-durable-function-does-not-finish-when-i-conf I'm developing Azure Function (Python). And I configuire Azurite with multiple Storage Accounts & Keys. I use Azurite from container, so I configure docker-compose.yml as follows: And I configure local.settings.json in Azure Function code as follows (other value is omitted): When I launch Azure Function App from Visual Studio Code with F5 and execute Durable Funcion, the funcion does not finish. Not only that, the function is executed multiple times. I confirmed from the log output on Visual Studio Code terminal pane. The same code works fine when I use Azurite default configuration. How do I fix this problem?Published Date : 2023년 3월 23일 목요일
Azure Data Factory - On premise integration runtime for Multiple on-premise db servers. - Microsoft Q&A
https://learn.microsoft.com/en-us/answers/questions/1192095/azure-data-factory-on-premise-integration-runtime Hi. I have the following scenarios: I have a pipeline that consumes data from an on-premises SQL server through an Integration runtime installed on that server. So far, so good. The thing is that the company has n system with the same database schema in different on-premise servers, and I want to re-use the same pipelines, datasets, and dataflows. I know I can parametrize the linked service but those servers are in different networks => I can't reuse the same integration runtime. My initial Idea was to create an integration run-time by the on-premise server (this is done), but now I face the problem that I can't dynamically tell the pipeline which integration runtime to use. I can't use the approach of replacing it in the pipelines, because those are **not different environments. (**In fact, I have it in place for my UAT, and PROD environment.) I could achieve this if I make the on-premise servers visible within the on-premise infrastructure and then yes, make parametrize the linked server, but I don't like the idea of forcing on-premise architecture (related to all the servers) because of that issue. Is there any idea? Thank you in advance!Published Date : 2023년 3월 23일 목요일
Configure Azure alert based on age of message - Microsoft Q&A
https://learn.microsoft.com/en-us/answers/questions/1192285/configure-azure-alert-based-on-age-of-message How do i setup Metric alerts for Azure service bus queue depending on age. eg :Send an alert when oldest msg in queue exceeds 5hrs (I couldn't find a metric for this alert to be based on Message created date in Service bus) Any idea how to achieve this using Azure alerts?Published Date : 2023년 3월 23일 목요일
AADSTS50049 error using Microsoft.identity.Client, api is public so... - Microsoft Q&A
https://learn.microsoft.com/en-us/answers/questions/1192201/aadsts50049-error-using-microsoft-identity-client Tried a lot of different things, but I probably have somehthing wrong on my mind... Some help would be great. Error: AADSTS50049: Unknown or invalid instance. Trace ID: e438b040-a6a5-498f-adf8-791940c71600 Correlation ID: a5bb4fa8-4d4b-477f-8a6c-aef8f577bc2a Timestamp: 2023-03-22 14:48:54Z Code:Published Date : 2023년 3월 23일 목요일
What should be the format for input-data while Testing the endpoints of deployed Prophet Time-series model in Azure-ML? - Microsoft Q&A
https://learn.microsoft.com/en-us/answers/questions/1192372/what-should-be-the-format-for-input-data-while-tes I have trained and deployed a FbProphet Time-series model using Mlflow in the Azure-ML . The model was properly registered and logged with all the required entities. I was able to deploy the model in Azure-ML and generate the endpoints. My training Dataframe (which i used for training the Prophet mode) looks like : Now I want to test those endpoints. Under the testing-section, I see error while trying to give input. The interface for taking input looks like : I am unable to figure out, exactly what data (please provide example) and in which format should be entered here to test my time-series prophet model.? P.S. - I know that for prediction prophet takes Dataframe (which contains dates in the column named as 'ds') as an input to predict the future values. But in the Azure-testing interface there is no provision to enter a Dataframe (or if there, i do not know how to do it). Also even for utilizing the end-points in the code I need to know the type and format of input_data required for consumption of end-points. I have tried many combinations and every time I am getting error. for e.g. json.dumps({'data': df.to_dict(orient='records')}) and feeding the its output here as : Error - Failed to test real-time endpoint {"message":"only integers, slices (:), ellipsis (...), numpy.newaxis (None) and integer or boolean arrays are valid indices"} 2- trying other combinations Error: Failed to test real-time endpoint {"message":"POST body could not be decoded as JSON: Expecting ',' delimiter: line 3 column 2 (char 81)"} 3- feeding only dates then { "input_data" :[[1,2], ["2023-04-01 22:00:00","2023-04-01 23:00:00"]] } Error : Failed to test real-time endpoint {"message":"only integers, slices (:), ellipsis (...), numpy.newaxis (None) and integer or boolean arrays are valid indices"} And likewise, i tried many more ways. But not able to figure out my mistake. Please help me, what i am missing-out ? I am new to deploying a Time-Series model.Published Date : 2023년 3월 23일 목요일
AADSTS50020 Error when signing in with multiple work accounts - Microsoft Q&A
https://learn.microsoft.com/en-us/answers/questions/1191699/aadsts50020-error-when-signing-in-with-multiple-wo I have a windows 11 computer that is signed in with an Azure AD account. I have also logged into Microsoft Edge with the same account. I am attempting to setup a second profile within Microsoft Edge. This second account is also an Azure AD (work) account. When I attempt to sign in with the second account, I receive the following error. AADSTS50020: UserAccount 'second account' from identity provider 'https://sts.windows.net/guid' does not exist in tenant 'first account tenant' and cannot access the application 'guid'(Microsoft Edge) in that tenant. The account needs to be added as an external user in the tenant first. Sign out and sign in again with a different Azure Active Directory user account. I don't understand why I need to add an external user or grant any permissions to the second account. As I understand, the second account that is logged into Microsoft Edge would be completely separate, and the 2 tenants shouldn't need to know about the existence of the other. So is this just an unsupported scenario with Microsoft Edge? The ability to setup two profiles with Azure AD (work) that are separate tenants/organisations? ThanksPublished Date : 2023년 3월 23일 목요일
Local git Authentication fail - Microsoft Q&A
https://learn.microsoft.com/en-us/answers/questions/870466/local-git-authentication-fail I tried to clone Local git from Azure portal to my machine, then it asks for username and password. I fill-in the information that Azure provides: "Application scope credentials are auto-generated and provide access only to this specific app or deployment slot. These credentials can be used with FTPS, Local Git and WebDeploy." but it returns error: Is there any missing in the setting that I don't know? How can I solve this problem? Thank you! TrucPublished Date : 2023년 3월 23일 목요일
How to pass a dynamic parameter as SQL query in for SQL dataset in Azure Data Flow? - Microsoft Q&A
https://learn.microsoft.com/en-us/answers/questions/794352/how-to-pass-a-dynamic-parameter-as-sql-query-in-fo I am trying to run dynamic queries with a parameter in Azure Data Flow but I continue to get the "Column operands are not allowed in literal expressions" error. The parameter value is "SELECT * FROM Table WHERE Column in ('D1234','D1234','D1234','D8585','D6565','D7777','D4949','D2066','D2259','D5432')". I have tried all the ways to enter this parameter value, "{$parameter1}", {$parameter1}, $parameter1, ($parameter1) and I still continue to get the frustrating error. I have looked at all the documentation and forums relating to this issue but all of them continue to suggest the same ways I have tried to enter the value and none of it works. Any assistance would be greatly appreciated.Published Date : 2023년 3월 23일 목요일
Availiability Zone size of zone-enabled regions - Microsoft Q&A
https://learn.microsoft.com/en-us/answers/questions/1192233/availiability-zone-size-of-zone-enabled-regions The Doc said a minimum of three separate availability zones are present in all available zone-enabled regions. But the Azure portal only can select "Zone1, Zone2, Zone3" of all available zone-enabled regions.Published Date : 2023년 3월 23일 목요일
Adding custom claims to JWT token for App Registration using ClaimsMappingPolicy (OIDC Auth Code Flow) - Microsoft Q&A
https://learn.microsoft.com/en-us/answers/questions/1192180/adding-custom-claims-to-jwt-token-for-app-registra This article shows the process I am familiar with when adding a custom claim such as EmployeeID to the JWT token that is passed in the OIDC auth code flow: https://learn.microsoft.com/en-us/answers/questions/260800/custom-static-claim-in-jwt-token However Claims mapping policies link referred to on this post above no longer contains information on how to add the claim via the claims mapping policy in Azure AD Powershell. In fact it redirects to information on SAML now. This change to the documentation occurred right around the end of January. It doesn't appear that Microsoft has deprecated this functionality, so is there a reason this information has been removed from the learn.microsoft.com portal? ThanksPublished Date : 2023년 3월 23일 목요일
Ingress Controller in AKS (Application Gateway) / Define custom names for http settings and rules - Microsoft Q&A
https://learn.microsoft.com/en-us/answers/questions/802150/ingress-controller-in-aks-(application-gateway)-de Hello, I have deployed an application gateway with ingress controller for my AKS Cluster. Once I deploy the ingress resource the underlaying resources are then visible in the Azure portal like listner, http settings,rule, etc. My "problem" is that I would like to have more controll over the respective names of the rules and http settings. The names that Azure is using for the respective http settings and rule names, are a bit unclear when there are multiple such http settings, rules and listners. The names that azure used are for example like this: Listener: fl-e1903c8aga3446b783607aec6d6ecba8a Rule: rr-u1903c8aa8446b8b32078ec6d6ecba8a Having it like this, makes it extreemly difficult to keep track which is which. I have looked in the doku [1] and [2] but I wasnt able to find an option where I could set this up in the ingress resource. Do you have any idea where can I set this up, if at all? Thank you, [1] https://azure.github.io/application-gateway-kubernetes-ingress/ [2] https://learn.microsoft.com/en-us/azure/application-gateway/ingress-controller-expose-service-over-http-httpsPublished Date : 2023년 3월 23일 목요일
Inquiry about Migrating From Load Balancer SNAT to Nat Gateway - Microsoft Q&A
https://learn.microsoft.com/en-us/answers/questions/1192202/inquiry-about-migrating-from-load-balancer-snat-to Hey, i hope you have a good day. I'm Ahmed from OneService Team for Microsoft News Backend and Infrastructure we currently handling our Outbound traffic using the SNAT of public load balancers, but we are planning to migrate our outbound traffic to NAT Gateway we are wondering if after migrating to Nat Gateways Can we decrease the number of public IPs for the load balancers (splitting the load balancer public IPs between Load Balancer and The Nat Gateway) and (if possible) how we can find the correct ratio of splitting. Regards AhmedPublished Date : 2023년 3월 23일 목요일
I have created account in Active directory not updated in Azure Active deirectory - Microsoft Q&A
https://learn.microsoft.com/en-us/answers/questions/1191852/i-have-created-account-in-active-directory-not-upd I have created 3 users accounts and 1 for update phone number in Active Directory , but its not taking effect in Azure.Published Date : 2023년 3월 23일 목요일
getting 404 not found from nginx , Fake cerificate is loading after installing SSL certs - Microsoft Q&A
https://learn.microsoft.com/en-us/answers/questions/781679/getting-404-not-found-from-nginx-fake-cerificate-i we are using aks k8s for our application we have installed ssl certs as secrets .we have ngnix-ingress in separate name space . once I applied certificates , I am getting 404 Not Found from nginx, from nginx side I verified everything , controller reloaded with new configarations . but I am not getting home page , any Idea on this issue Ref link posted .with curl I am able to get proper certificate installed https://learn.microsoft.com/en-us/azure/aks/ingress-own-tls?tabs=azure-cli curl -v -k --resolve azx-devops-monitoring.aaa.com:443:10.11.6.100 https://azx-devops-monitoring.aaa.com but with browser once I tried I am getting 404 not found and the certificate also nginx fake certificate . url i tried https://azx-devops-monitoring.aaa.com https://10.11.6.100Published Date : 2023년 3월 23일 목요일
how do I auto-provision Microsoft Defender for Endpoint new unified solution to new and existing Windows servers 2012R2 and 2016 with Azure Policy - Microsoft Q&A
https://learn.microsoft.com/en-us/answers/questions/1190076/how-do-i-auto-provision-microsoft-defender-for-end I would like to auto-provision Microsoft Defender for Endpoint new unified solution to new and existing Windows servers 2012R2 and 2016 with Azure Policy. so instead of saying "partial" i want it to be "on", but I would like to enable it with a policyPublished Date : 2023년 3월 23일 목요일
Automation Account - Microsoft Q&A
https://learn.microsoft.com/en-us/answers/questions/1189802/automation-account Hi Team, I have an automation account in one subscription, and auto-start powershell is setup in the runbook on the same subscription virtual machine. My question is that I have another virtual machine that is in a different subscription, so do I need to create another automation account to set up the start process for this virtual machine? I have tried with existing automation, but unfortunately, it does not work for different subscriptions. So,what is solution for that?Published Date : 2023년 3월 23일 목요일
Apple school manager provisioning quarantined - Microsoft Q&A
https://learn.microsoft.com/en-us/answers/questions/1191569/apple-school-manager-provisioning-quarantined Got apple school manager provisioning quarantined and also did the test connection under admin credentials and got an error: you appear to have entered invalid credentials, administrative account.Published Date : 2023년 3월 23일 목요일
Integrating Front Door and Azure Container Apps with Private Link - Microsoft Q&A
https://learn.microsoft.com/en-us/answers/questions/1192308/integrating-front-door-and-azure-container-apps-wi Hi, I'd like to ensure that the only network traffic that reaches my Azure Container Apps environment are those that have gone through Azure Front Door. This is to ensure that Front Door's Web Application Firewall protects my ACA environment (e.g. an attacker cannot go around Front Door and send requests directly to ACA). I've seen several ideas posted online, but the most secure idea I have seen is to use Private Link to connect Front Door to an internal ACA's load balancer. This article by a Microsoft employee Chris Bell?e on Feb 1, 2023 details a way to connect Front Door to ACA via a Private Link Service resource and the Internal Load balancer that ACA automatically creates. I gave it a try and it does work. Is connecting Front Door to an internal ACA environment's internal Load Balancer using Private Link an official guidance from Microsoft? Is this approach officially supported by Microsoft? Specifically, is the Internal Load Balancer on which this architecture depends a stable resource that will not be randomly destroyed/recreated (e.g. security patch, Infra-as-Code/ARM/Terraform update, etc...)? I don't totally like the approach suggested on other threads where you use an NSG on the VNet of an internal ACA environment to restrict inbound traffic to the Azure Front Door service tag since that theoretically still allows an attacker to bypass my Front Door with their Front Door. Even if we add code to our apps to inspect the header to ensure traffic comes from our Front Door instance, attacker traffic can still theoretically reach our ACA instance and leave us open to denial-of-service attacks. Thanks in advance! PS this is a cross post of a comment I made a week ago on a GitHub thread as I have not seen an official response from Microsoft.Published Date : 2023년 3월 23일 목요일
Understanding Private byte in App Service - Microsoft Q&A
https://learn.microsoft.com/en-us/answers/questions/1083943/understanding-private-byte-in-app-service Hi I have read that 1.75 GB of private byte is allocated to a Small instance https://azure.github.io/AppService/2017/08/17/Introducing-Proactive-Auto-Heal.html I want understand how 8GB memory is divided within a P1v3 app service plan with 12 Apps . And what kind of data is saved to Private bytes?Published Date : 2023년 3월 23일 목요일
How to configure MS 365 and Azure AD SSO? - Microsoft Q&A
https://learn.microsoft.com/en-us/answers/questions/1192150/how-to-configure-ms-365-and-azure-ad-sso Hello, I have started to configure SSO for MS 365 (Teams, OneDrive, etc..) by gpo. In some tutorials I see on the internet it is mentioned to modify the GPO for IE and add the trust zones for IE User Configuration > Policies > Administrative Templates > Windows Components > Internet Explorer > Internet Explorer Control Panel > Security Tab User Configuration > Policies > Administrative Templates > Windows Components > Internet Explorer > Internet Explorer Control Panel > Security Tab > Intranet Zone 3.then add a registry key https to make the gpo Action : Update Hive : HKEY_CURRENT_USER Key path : Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\microsoftazuread-sso.com\autologon Value Name: https Value type: REG_DWORD Value data : 00000001 But the problem is that I use Chrome and Firefox and I don't know where to look or how to do it. Do you know how to do it, please? Translated with www.DeepL.com/Translator (free version)Published Date : 2023년 3월 23일 목요일
How to intergrade S/4 Hana system to Azure data factory , when S/4 Hana in Linux environment - Microsoft Q&A
https://learn.microsoft.com/en-us/answers/questions/1192345/how-to-intergrade-s-4-hana-system-to-azure-data-fa Hi Experts , Please give valuable suggestion on below request. How to intergrade Azure data factory to S/4 Hana system , when S/4 Hana in Linux environment. Microsoft integration runtime we can only install in windows machine , if we install Microsoft integration runtime in any one Windows VM how can we communicate to SAP system from Windows VM which installed integration runtime. Regards, PhaniPublished Date : 2023년 3월 23일 목요일
Request cancellation is not forwarded to a backend through Azure Front Door - Microsoft Q&A
https://learn.microsoft.com/en-us/answers/questions/1192153/request-cancellation-is-not-forwarded-to-a-backend We have a problem with a request canceling for Azure App Service behind a Front Door instance. We have long-running AJAX requests from a frontend to a backend part. After initiating request cancellation with AbortController in JS, our backend part, ASP.NET Web API 2, handles the exception and stops further request processing. It works fine with an app on a local machine or Azure App Service. However, while using a proxy (such as Postman or Fiddler), request cancellation is not forwarded to the backend. Our Azure Front Door Standard instance has similar behavior. After a deeper investigation, we have found that sometimes request cancellation is handled correctly. It seems to depend on which Front Door POP takes requests. According to Front Door access logs, the following POPs do not handle our request cancellation: MNZ, MAA, FRA, and BUD. At the same time, with the same configuration, DUS POP take them as expected. Please suggest if we can do anything to forward the request cancellation on all Front Door POPs. Or is the issue connected to the Front Door's internal mechanisms?Published Date : 2023년 3월 23일 목요일
Free Web app - Microsoft Q&A
https://learn.microsoft.com/en-us/answers/questions/1191793/free-web-app Hi Team, My Billing is increasing every month, when I choose F1 free web App It as been Charged. Kindly asset me Why you guys are changing below f1 free webapps?Published Date : 2023년 3월 23일 목요일
Possible Handle Leak on Azure App Service App - Microsoft Q&A
https://learn.microsoft.com/en-us/answers/questions/1163199/possible-handle-leak-on-azure-app-service-app We have an ASP.NET 4.8 application hosted in Azure App Service. At times we see a spike in latency in usually a single instance which also shows spikes in CPU time, TCP connections, Thread Count and Handle count. The average thread count and and average handle count spikes from about 100 to 450 and 4000 to 8000+ respectively. We did an investigation by analysing memory dumps through windbg and could see the number of Event and Thread handles were unusually high at this time. The thread and handle count does not come down for quite a few time, but the latency is only felt right at the beginning of this spike. So we believe the CPU time and latency spikes are due to the cost of thread and handle spawning. How can we further debug the potential handle or thread leak issue ? I am not able to find out what requests are causing the spikes in thread and handle from windbg. I read some docs but still not getting clarity on what is thread and event handles.Published Date : 2023년 3월 23일 목요일
Unable to get the secure score in azure portal using kql query - Microsoft Q&A
https://learn.microsoft.com/en-us/answers/questions/1072528/unable-to-get-the-secure-score-in-azure-portal-usi Hi Team, I'm unable to get the security score in azure using KQL query. If I select the time range to be set in query I will get the results. PFA of screenshot If I select the time range is to last 24 hours, I'm not getting any results. PFA of screenshot.Published Date : 2023년 3월 23일 목요일
How to enable IP,ID and File inegrity monitor in Azure microsoft defender - Microsoft Q&A
https://learn.microsoft.com/en-us/answers/questions/1029979/how-to-enable-ip-id-and-file-inegrity-monitor-in-a How to enable Intrusion Prevention ,Intrusion Detection and File integrity monitor in Azure Microsoft defender ?Published Date : 2023년 3월 23일 목요일
Need to create windows nodejs policy - Microsoft Q&A
https://learn.microsoft.com/en-us/answers/questions/1188830/need-to-create-windows-nodejs-policy I am working on nodejs windows policy to use latest node js version. policy worrking for linux using web.linuxfxversion but i see null for windowsFxversion. I dont see nodeversion and webnodedefault_version Anybody has sample for nodejs windows.Published Date : 2023년 3월 23일 목요일
MSAL get_accounts() method correctly returns the account id, but only 'username' has an empty value. - Microsoft Q&A
https://learn.microsoft.com/en-us/answers/questions/1191990/msal-get-accounts()-method-correctly-returns-the-a hello, I am using MSAL for python. I have created an AADB2C tenant, added user:taro, and registered the application. I defined app1. and get url. The URL obtained in the above code is used to transition to the login screen and have user/taro log in. The code is obtained from the query of the returned URL, and the code is used. The cache was serialized as follows Here is the question. Can someone please help me? thank you. Translated with www.DeepL.com/Translator (free version)Published Date : 2023년 3월 23일 목요일
Exposing web servers to internet in Azure - Microsoft Q&A
https://learn.microsoft.com/en-us/answers/questions/1192260/exposing-web-servers-to-internet-in-azure Hello Team, I'm working on an architecture for one of our customers, The customer need to host his web server on Azure (CMS web server), the web server need to be exposed to internet I have some questions about the frontal connection of the web Server, Since the web server will scale, i though of adding an Azaure load balancer to the infrastructure to load balance the traffic between the web servers, but i have the following question : In this scenario, the load balancer need to be infront or behind the Firewall? If the load balancer is in front of the firewall, it means that all the traffic will reach the load balancer first, then the load balancer will route the traffic to the firewall, and then the firewall will route the traffic to the backend servers, but with this scenario, the role of the load balancer is played by the FW not the load balancer right? In the second scenario, the traffic will reach the FW first, then the FW will route the traffic to the load balancer, then the load balancer will route the traffic to the backend servers, this scenario seems more correct to me. I want to know your opinions about this, thank youPublished Date : 2023년 3월 23일 목요일
Monitoring expiring keys - Outlook REST-API - no sufficient rights - Microsoft Q&A
https://learn.microsoft.com/en-us/answers/questions/1191757/monitoring-expiring-keys-outlook-rest-api-no-suffi Hello, a few days ago I had the issue, that our pipeline between Azure DevOps and Azure Portal was not able to deploy something because the secret keys of the registered service connection expired. After fixing it I wanted to make sure that this does not happen again and found out that there is no native function built into Azure that sends out an alert in case a secret will expire soon. So I googled and found a Logic App that I can utilize to make this happen. Unfortunately I get this error message when utilizing the Outlook feature: Check your account information and/or permissions and try again. Details: REST API is not supported for this mailbox. This error can occur for sandbox accounts (test) or for accounts that are on a dedicated (local) email server. So now I am asking myself what exactly is missing here? Do my user in Active Directory needs permissions to utilize the Outlook REST API? Where do I set this up? Thanks!Published Date : 2023년 3월 23일 목요일
// #azure-fundamentals // Microsoft Azure Fundamentals - Journey to Certification URL link doesn't link & land correctly at the required page with the details - Microsoft Q&A
https://learn.microsoft.com/en-us/answers/questions/1190782/azure-fundamentals-microsoft-azure-fundamentals-jo ===== // #azure-fundamentals // Microsoft Azure Fundamentals - Journey to Certification URL link doesn't link & land correctly at the required page with the details ===== I am taking the Microsoft Learn learning course of Microsoft Azure Fundamentals. While browsing through its details, one of the URL links for the option, " Journey to Certification " with its URL link details as - " https://query.prod.cms.rt.microsoft.com/cms/api/am/binary/RE4AElB " doesn't work correctly as it is opening the details after clicking on it, with the URL link details as - https://query.prod.cms.rt.microsoft.com/cms/api/am/binary/RE4AElB which relates to Microsoft Certified Azure Data Fundamentals and not Microsoft Certified Azure Fundamentals !! Could this be corrected so that the correct details could be linked to ? Meanwhile, is there a document / URL link where the correct details could be reviewed ?Published Date : 2023년 3월 23일 목요일
Where to check the type of Azure Subscription whether its EA or MCA? - Microsoft Q&A
https://learn.microsoft.com/en-us/answers/questions/1192363/where-to-check-the-type-of-azure-subscription-whet I need to use PowerBI for Cot management which requires subscription to be of MCA or EA type of agreement. Where to check this on Azure Portal ?Published Date : 2023년 3월 23일 목요일