(General Feedback)

Do you have an idea or suggestion based on your experience with Azure? We would love to hear it! Please take a few minutes to submit your idea in the one of the forums available on the right or vote up an idea submitted by another Azure customer. All of the feedback you share in these forums will be monitored and reviewed by the Microsoft engineering teams responsible for building Azure.

This forum (General Feedback) is used for any broad feedback related to Azure. If you have feedback on a specific service such as Azure Virtual Machines, Web Apps, or SQL Database, please submit your feedback in one of the forums available on the right.

Remember that this site is only for feature suggestions and ideas!

If you have technical questions or need help with Azure, please try StackOverflow or visit our MSDN forums

  • Hot ideas
  • Top ideas
  • New ideas
  • My feedback
  1. Add support for Remote Desktop to the Azure Application Gateway

    Add Azure Application Gateway (With WAF) support for RD Gateway traffic.

    Currently I can only route traffic for RD Web through the application gateway. It would be useful if I could route all RD traffic through the application gateway and not have to have multiple public IPs and Traffic Manager profiles and split RD Broker/Web and RD Gateway traffic.

    At the moment I can't even route RD Gateway traffic through Application Gateway even with WAF disabled.

    40 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Microsoft
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    1 comment  ·  Other  ·  Flag idea as inappropriate…  ·  Admin →
  2. Allow VIP Swap when Staging slot is up and Running

    Recently we had a problem where we had ~1h of downtime which could have been avoided if VIP swap wasn’t failing.
    The problem was that 1 single VM was in a busy state in Production slot. All VMs in the staging slot were up and Running.

    Can you please allow a VIP swap if:
    1. All VMs in Staging slot are in Running state
    2. There’s the same or higher number of VMs in Staging slot compared to Production

    I know that it’s by design that VIP swap is possible only if all VMs in both Staging and Production slot…

    38 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Microsoft
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    1 comment  ·  Availability  ·  Flag idea as inappropriate…  ·  Admin →
  3. Allow firewall rules on Azure SQL DB to be removed via ARM templates

    Currently it seems that because the firewall rules for an Azure SQL DB are just proxy resources in an ARM template that you can not remove them via this mechanism. If you remove them from the ARM template, they are not removed from the Azure SQL DB resource. This means that it is not possible to properly source control the configuration as the source controlled configuration can differ from reality. I think it is vital to allow people to properly manage the Azure SQL DB as code that you work allow the rules to be removed via the ARM template.

    37 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Microsoft
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  Other  ·  Flag idea as inappropriate…  ·  Admin →
  4. users want to set up the MFA Setup Wizard later

    In the MFA release plan of a large company, thousands users are impossible to actually "force" from the day.

    So, the user needs a period which setting for the MFA can be skipped, before force setting period.

    In the period, it provide a selection such as "set up later" in the MFA setting wizard at the initial sign-in.

    if someone did not have a mobile device on that day,
    if someone wants to ask questions about MFA, etc...
    they can not access any Office 365.
    becouse, even if you set a policy to skip MFA on the LAN, the MFA…

    37 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Microsoft
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    2 comments  ·  Offers  ·  Flag idea as inappropriate…  ·  Admin →
  5. MFA Block/unblock

    Create another Admin Role that allows the view of MFA users that are blocked/unblocked so in the case of the issue users getting themselves blocked for various issues, and only Global Admins can unblock (or wait out the 90 day period), other Admins (aside from Global Admins) can do so.

    35 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Microsoft
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    2 comments  ·  azure.microsoft.com  ·  Flag idea as inappropriate…  ·  Admin →
  6. - ELK Cluster stack configure on within own VNET

    Would like to see the feature for implementing Elasticsearch (ELK) cluster stack on our own Virtual network as PaaS component like HDinsight service

    34 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Microsoft
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    1 comment  ·  Availability  ·  Flag idea as inappropriate…  ·  Admin →
  7. Azure KeyVault Random Number Generator

    Provide access to the RNG under KeyVault

    34 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Microsoft
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    1 comment  ·  Flag idea as inappropriate…  ·  Admin →
  8. Myanmar (Burma) is not listed in Azure available countries... Is there any alternative way to use from Myanmar, please? Many Thanks

    If the payment are not continence, please let us pay by Singapore/India/Thailand or China payment and let us use Azure in Myanmar (Burma). Many thanks.

    34 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Microsoft
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  Availability  ·  Flag idea as inappropriate…  ·  Admin →
  9. Key Vault like as RA-GRS

    Currently, Key Vault have redundancy and availability, but I can not access to secondary region manually.
    https://docs.microsoft.com/en-us/azure/key-vault/key-vault-disaster-recovery-guidance

    Region fail over is automacically, however I would like to access to secondary like as RA-GRS of Azure Storage before than failover because I want to more enhance BCP of our services.


    • I guess, Azure doesn't occurred region failover so far, but services failur occurred sometimes in regions.

    34 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Microsoft
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    2 comments  ·  Availability  ·  Flag idea as inappropriate…  ·  Admin →
  10. Backend heath status of Application Gateway

    We deployed the Application Gateway on the subnet where NSG's In-Bound rules is set. In the result, we got the status of backend health is 'unknown'. We got the 'Healthy' status when the NSG doesn't associate to subnet. Even if NSG's In-Bound rules is set, We'd like to confirm the backend health.

    33 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Microsoft
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    4 comments  ·  Availability  ·  Flag idea as inappropriate…  ·  Admin →
  11. Allow adding new subsciption to an Azure account using PowerShell

    Add new Cmdlets Add-Subscription, Delete-Subscription, etc. so that we can automate the creation of subscriptions in an existing Azure account.

    33 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Microsoft
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  Flag idea as inappropriate…  ·  Admin →
  12. Set TLS 1.2 or 1.3 as default for Azure Automation Account

    Currently Azure Automation runbooks start a powershell session that has Its security protocol set to SSL3 and TLS 1.0 by default.

    Since there are alot of security risks involved with using TLS 1.0 we would like to have this version set to 1.2 or even 1.3 by default.

    Since Okta has disabled TLS 1.0 and 1.1 per 1st of August 2018 this is also causing errors in Azure Automation runbooks, where we specifically need to specify a later version in each runbook.

    PCI DSS 3.2 also prohibits the use of TLS 1.0 after June 30, 2018.
    Source: https://www.owasp.org/index.php/TransportLayerProtection

    33 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Microsoft
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  azure.microsoft.com  ·  Flag idea as inappropriate…  ·  Admin →
  13. Ability to view Support plans in the Azure Portal

    The support plans to be able to be viewed in Azure Portal. When monthly statements get sent out support plans are unable to have the statement attached in PDF form automatically. This needs to be added.

    33 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Microsoft
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    1 comment  ·  Other  ·  Flag idea as inappropriate…  ·  Admin →
  14. When moving a resource

    When moving a resource (or resource group) to a new subscription.
    ask for real movement after the validation, this would enable a dry test upfront for planning

    33 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Microsoft
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    1 comment  ·  Other  ·  Flag idea as inappropriate…  ·  Admin →
  15. mfa nps extension for rds bypass wan ip

    It would be great to bypass MFA for RDS to given WAN IP adresses. So the users can login directly only from the office.

    33 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Microsoft
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  Availability  ·  Flag idea as inappropriate…  ·  Admin →
  16. Moving countries shouldn't mean creating a new account

    I recently moved from Belgium to the Netherlands. I changed banks and therefore credit cards at the same time.
    To be able to use my NL credit card I have to close my existing Azure account and create a new one with a different email address just so I can use my NL card. Short sighted. Inefficient. Unfriendly to non-US based customers who never leave the US.

    32 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Microsoft
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  Flag idea as inappropriate…  ·  Admin →
  17. Fully private App Gateway v2

    From: https://docs.microsoft.com/en-us/azure/application-gateway/migrate-v1-v2

    " v2 gateways currently don't support only private IP addresses."

    We need to be able to create fully private App Gateway V2, without public IP.

    At the moment V2 Gateways will be public facing so we need to stick with V1. We cannot rely on NSG/Firewall to restrict traffic: we need to be able to provision a private load balancer.

    32 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Microsoft
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  azure.microsoft.com  ·  Flag idea as inappropriate…  ·  Admin →
  18. SQLCMD Unexplained behaviour returning output starting with square brackets

    complete explanation at https://social.msdn.microsoft.com/Forums/sqlserver/en-US/b0c08c5d-a6aa-4ec7-9b54-87807cf81548/sql-server-2012-sqlcmd-unexplained-behaviour-returning-output-containing-square-brackets-?forum=sqltools

    Basically, SQLCMD does not behave the same way since SQL 2012 when a message starts with an opening bracket.
    The following command returns an empty string when previous version returned the entire text:
    sqlcmd -b -E -S -Q "RAISERROR('[A][B][C]',10,1)"
    this one removes the firs value between brackets:
    sqlcmd -b -E -S -Q "RAISERROR('[A] [B][C]',10,1)"

    32 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Microsoft
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  Other  ·  Flag idea as inappropriate…  ·  Admin →
  19. In azure storage explorer change timezone from GMT to local time (data lake store)

    In azure storage explorer, it'd be nice to be able to change timezone from GMT to local time (data lake store), this feature would be very useful as we check if our processes went through sometimes by looking at the last modified date of a specific file, while we have this automated sometimes data scientists and other users can quickly tell if something is not up to date.

    Is this feature available? This only works only for Shared Access Signature but not ADLS

    32 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Microsoft
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    1 comment  ·  Availability  ·  Flag idea as inappropriate…  ·  Admin →
  20. support multiple values for the same key when tagging. If i want to allocate multiple departments while tagging i should be able to do that.

    Currently AzureRM tagging only supports one value for one key. This means if i want to tag multiple departments to one resource it is incapable of handling it.

    32 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Microsoft
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  azure.microsoft.com  ·  Flag idea as inappropriate…  ·  Admin →
  • Don't see your idea?

(General Feedback)

Categories

Feedback and Knowledge Base