(General Feedback)

Do you have an idea or suggestion based on your experience with Azure? We would love to hear it! Please take a few minutes to submit your idea in the one of the forums available on the right or vote up an idea submitted by another Azure customer. All of the feedback you share in these forums will be monitored and reviewed by the Microsoft engineering teams responsible for building Azure.

This forum (General Feedback) is used for any broad feedback related to Azure. If you have feedback on a specific service such as Azure Virtual Machines, Web Apps, or SQL Database, please submit your feedback in one of the forums available on the right.

Remember that this site is only for feature suggestions and ideas!

If you have technical questions or need help with Azure, please try StackOverflow or visit our MSDN forums

  • Hot ideas
  • Top ideas
  • New ideas
  • My feedback
  1. Make DNS CAA records visible and manageable through the Azure web portal

    Currently these records can only be managed with Powershell, CLI or API.

    44 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Microsoft
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    2 comments  ·  Other  ·  Flag idea as inappropriate…  ·  Admin →
  2. users want to set up the MFA Setup Wizard later

    In the MFA release plan of a large company, thousands users are impossible to actually "force" from the day.

    So, the user needs a period which setting for the MFA can be skipped, before force setting period.

    In the period, it provide a selection such as "set up later" in the MFA setting wizard at the initial sign-in.

    if someone did not have a mobile device on that day,
    if someone wants to ask questions about MFA, etc...
    they can not access any Office 365.
    becouse, even if you set a policy to skip MFA on the LAN, the MFA…

    43 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Microsoft
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    2 comments  ·  Offers  ·  Flag idea as inappropriate…  ·  Admin →
  3. Enable CSP Partners to offer Visual Studio Cloud Subscriptions through the scheme

    Enable CSP to be used to fund the Visual Studio Cloud Subscriptions.

    42 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Microsoft
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    3 comments  ·  Offers  ·  Flag idea as inappropriate…  ·  Admin →
  4. Within Azure AD Devices-All Devices, Make "Download" an option

    When creating Conditional Access policies it is impossible to get a report from Azure or PowerShell that list all devices that are in a "Pending" state in the Registered column.
    There should be an option to download everything in Azure AD Devices-All Devices to a csv file and include the device ID and the Registered state. This would help to find all devices that would fail Conditional Access policies requiring a registered device be used.

    42 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Microsoft
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    1 comment  ·  azure.microsoft.com  ·  Flag idea as inappropriate…  ·  Admin →
  5. Add support for Remote Desktop to the Azure Application Gateway

    Add Azure Application Gateway (With WAF) support for RD Gateway traffic.

    Currently I can only route traffic for RD Web through the application gateway. It would be useful if I could route all RD traffic through the application gateway and not have to have multiple public IPs and Traffic Manager profiles and split RD Broker/Web and RD Gateway traffic.

    At the moment I can't even route RD Gateway traffic through Application Gateway even with WAF disabled.

    42 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Microsoft
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    1 comment  ·  Other  ·  Flag idea as inappropriate…  ·  Admin →
  6. RateCard metadata with their spec information

    I want to get RateCard meter metadata with their spec information (e.g. size, memory, cores...). Because I have to provide that data to our finance department.
    I can get the spec information of VMs by Get-AzureRmVMSize API, but they do not have MeterId, so can not associate with RateCard meter metadata.
    And I also want to get them about SQL Database, Redis Cache, and App Service. But they do not have API which can get their spec information in the first place.
    I think it is very useful if can get meter metadata with their spec information by RateCard API.

    41 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Microsoft
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    2 comments  ·  Availability  ·  Flag idea as inappropriate…  ·  Admin →
  7. Azure SQL PiTR - Option to disable or set to 1 day retention

    We currently have an SQL managed database, which we use for development purposes.

    We are developing how our data ingest will work, currently we drop the tables every day, and re-load all the data. As of the 31-AUG we started getting charged for PiTR which we didn't know about, until PiTR started costing us upwards of $120 per day.

    What I found out is after the initial backup (free) any changes were replicated to 6 regions (GRS storage) and set to 35 days retention period. These are backups we don't want or need, as data is ingested from the Datalake.…

    39 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Microsoft
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    1 comment  ·  azure.microsoft.com  ·  Flag idea as inappropriate…  ·  Admin →
  8. Allow firewall rules on Azure SQL DB to be removed via ARM templates

    Currently it seems that because the firewall rules for an Azure SQL DB are just proxy resources in an ARM template that you can not remove them via this mechanism. If you remove them from the ARM template, they are not removed from the Azure SQL DB resource. This means that it is not possible to properly source control the configuration as the source controlled configuration can differ from reality. I think it is vital to allow people to properly manage the Azure SQL DB as code that you work allow the rules to be removed via the ARM template.

    39 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Microsoft
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  Other  ·  Flag idea as inappropriate…  ·  Admin →
  9. Allow VIP Swap when Staging slot is up and Running

    Recently we had a problem where we had ~1h of downtime which could have been avoided if VIP swap wasn’t failing.
    The problem was that 1 single VM was in a busy state in Production slot. All VMs in the staging slot were up and Running.

    Can you please allow a VIP swap if:
    1. All VMs in Staging slot are in Running state
    2. There’s the same or higher number of VMs in Staging slot compared to Production

    I know that it’s by design that VIP swap is possible only if all VMs in both Staging and Production slot…

    38 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Microsoft
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    1 comment  ·  Availability  ·  Flag idea as inappropriate…  ·  Admin →
  10. MFA Block/unblock

    Create another Admin Role that allows the view of MFA users that are blocked/unblocked so in the case of the issue users getting themselves blocked for various issues, and only Global Admins can unblock (or wait out the 90 day period), other Admins (aside from Global Admins) can do so.

    38 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Microsoft
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    2 comments  ·  azure.microsoft.com  ·  Flag idea as inappropriate…  ·  Admin →
  11. Myanmar (Burma) is not listed in Azure available countries... Is there any alternative way to use from Myanmar, please? Many Thanks

    If the payment are not continence, please let us pay by Singapore/India/Thailand or China payment and let us use Azure in Myanmar (Burma). Many thanks.

    37 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Microsoft
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  Availability  ·  Flag idea as inappropriate…  ·  Admin →
  12. Key Vault like as RA-GRS

    Currently, Key Vault have redundancy and availability, but I can not access to secondary region manually.
    https://docs.microsoft.com/en-us/azure/key-vault/key-vault-disaster-recovery-guidance

    Region fail over is automacically, however I would like to access to secondary like as RA-GRS of Azure Storage before than failover because I want to more enhance BCP of our services.


    • I guess, Azure doesn't occurred region failover so far, but services failur occurred sometimes in regions.

    37 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Microsoft
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    2 comments  ·  Availability  ·  Flag idea as inappropriate…  ·  Admin →
  13. Set TLS 1.2 or 1.3 as default for Azure Automation Account

    Currently Azure Automation runbooks start a powershell session that has Its security protocol set to SSL3 and TLS 1.0 by default.

    Since there are alot of security risks involved with using TLS 1.0 we would like to have this version set to 1.2 or even 1.3 by default.

    Since Okta has disabled TLS 1.0 and 1.1 per 1st of August 2018 this is also causing errors in Azure Automation runbooks, where we specifically need to specify a later version in each runbook.

    PCI DSS 3.2 also prohibits the use of TLS 1.0 after June 30, 2018.
    Source: https://www.owasp.org/index.php/TransportLayerProtection

    37 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Microsoft
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  azure.microsoft.com  ·  Flag idea as inappropriate…  ·  Admin →
  14. Moving countries shouldn't mean creating a new account

    I recently moved from Belgium to the Netherlands. I changed banks and therefore credit cards at the same time.
    To be able to use my NL credit card I have to close my existing Azure account and create a new one with a different email address just so I can use my NL card. Short sighted. Inefficient. Unfriendly to non-US based customers who never leave the US.

    36 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Microsoft
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  Flag idea as inappropriate…  ·  Admin →
  15. Azure Policy - Indexed mode policies pick up resources that don't support tags

    For example, I created a custom policy definition that audits if a tag exists. It is set mode=indexed, so only taggable and location based resources should be evaluated.

    Here are some things that are coming back as non-compliant:
    /microsoft.insights/alertrules
    /microsoft.insights/actiongroups
    /Microsoft.Compute/virtualMachines/extensions
    /microsoft.insights/activitylogalerts
    /microsoft.operationsmanagement/solutions
    /microsoft.portal/dashboards

    36 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Microsoft
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    planned  ·  8 comments  ·  azure.microsoft.com  ·  Flag idea as inappropriate…  ·  Admin →
  16. Easy invoice management (especially for many subscriptions)

    It would be nice to have one list of all invoices. It is important especially in case where there are many subscriptions within one account.
    And this list should have invoice title on it, now there are only dates.
    Now it is very hard to find invoice using invoice title (using bank statement)

    34 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Microsoft
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  Flag idea as inappropriate…  ·  Admin →

    Hi there,

    This is one of the many improvements our development team is hoping to include in future iterations of our product. I can’t guarantee that we have the resources to get this done any time soon, but it definitely should be in the pipeline.

    -Adam (Azure Billing Team)

  17. - ELK Cluster stack configure on within own VNET

    Would like to see the feature for implementing Elasticsearch (ELK) cluster stack on our own Virtual network as PaaS component like HDinsight service

    34 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Microsoft
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    1 comment  ·  Availability  ·  Flag idea as inappropriate…  ·  Admin →
  18. Additional "/read" permission to allow call to Network Watcher queryFlowLogStatus api

    Today default Build-In Reader role not allow to execute Query Flow Log Status, because Reader role allows all operations of "*/read".
    But query flow log status operation have "/action" in the end:
    Microsoft.Network/networkWatchers/queryFlowLogStatus/action

    This makes complicated to use different applications and services which want to query flow log status. To be able to do it they ask customers to create custom role in each and each subscription with that permission and then assign that role to the application (In addition to Reader role which they ask to assign for other features).

    If will be additional permission with "/read" operation to…

    34 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Microsoft
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  azure.microsoft.com  ·  Flag idea as inappropriate…  ·  Admin →
  19. Azure KeyVault Random Number Generator

    Provide access to the RNG under KeyVault

    34 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Microsoft
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    1 comment  ·  Flag idea as inappropriate…  ·  Admin →
  20. Backend heath status of Application Gateway

    We deployed the Application Gateway on the subnet where NSG's In-Bound rules is set. In the result, we got the status of backend health is 'unknown'. We got the 'Healthy' status when the NSG doesn't associate to subnet. Even if NSG's In-Bound rules is set, We'd like to confirm the backend health.

    33 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Microsoft
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    4 comments  ·  Availability  ·  Flag idea as inappropriate…  ·  Admin →
  • Don't see your idea?

(General Feedback)

Categories

Feedback and Knowledge Base