Network Access Restrictions should support Network Service Tags
When configuring network access restrictions (see https://docs.microsoft.com/en-us/azure/app-service/app-service-ip-restrictions), Function Apps currently only support IP Ranges. This results in static configurations to dynamic addresses such as Azure Data Center IP ranges.
To align with the rest of the Azure platform's network access restrictions it should support the use of Network Service Tags. This will allow changes to Azure Data Center IP ranges to be processed automatically and not create a service and maintenance issue.
Network Service Tags - https://docs.microsoft.com/en-us/azure/virtual-network/service-tags-overview
We don’t currently have plans to integrate with service tags – in generally we have been focusing more on service endpoints and private link as a way to restrict calls from a specific service / subnet.