Improved audit when NSG is removed/added to a subnet
When an NSG is associated or removed from a subnet I only see "Microsoft.Network/virtualNetworks/subnets/write" in the audit log. It is not clear whether this is a NSG which has been removed or some other activity like additon or removal of a route table on the subnet. It would be useful to see what actually happened for auditing purposes.

Thanks for the feedback
We can expose the entire configuration change with previous and new version including all properties, we’ll review it for future improvement.