Zone transfer is on our roadmap however not planned for CY 2019.
Thank you for the update, but I don't understand why the top 3 DNS requested improvements on this site are not planned for CY 2019. Zone Transfers and DNSSEC are pretty much requirements for DNS services today.
If you have plans to not improve these services, or stop providing DNS services in the future, you should let your customers know. Seems like there is no development at all with Azure DNS.
We need more feedback around what are the key scenarios you want to accomplish with this integration. Please share with us more feedback on this as we continue investigating options for this,
Hello Azure AD Team,
The key scenario is pretty simple. We are publishing internal applications with the Azure AD Application Proxy, and we would like to protect them with Web Application Firewall functionality. It looks like these are two separate services, with no way to integrate them. Please feel free to reach out to me directly if you have additional questions. I submitted the original request in 2017.
Has there been any documentation posted yet on how to layer these two services? Thank you.
Is there someone I could work with at Microsoft to help us understand the steps while you are working on the smoother integration and documentation?
Is this planned, or possible?
129 votesplanned · 33 comments · Azure Active Directory » End user experiences · Flag idea as inappropriate… · Admin →
It is NOT A) or B) listed above.
C) End users have no idea what the error message means and it looks like something is broken instead of them understanding that they do not have access to an application.
It would be nice to have a customizable message that we could display to end users to let them know that they do not have access, and to contact our helpdesk or IT department to request access to the application if they believe they should have it.
Just a quick update. This is still on the roadmap, but not work that has started. The comments here are useful as we start the design. Thanks
Thank you for voting on this suggestion. It is now completed and can be done via custom Azure Policy. Here is a sample custom policy to apply a specific tag at the RG and have them inherited by the Resources in that RG: https://github.com/Azure/azure-policy/tree/master/samples/ResourceGroup/copy-resourcegroup-tag
Tag inheritance for existing resources is something that we plan to add support for in 2019.
Thank you for the feedback. We now have a report that is generated weekly on Mondays: Azure Service Tags JSON (https://www.microsoft.com/en-us/download/details.aspx?id=56519). This file includes all of the Service Tags and data by regions. This is an improvement over previous files as it includes tagging by Service Tag. We recommend you move to using this file and check weekly for updates. The file is broken out by Cloud (I.e. Public) and region (i.e., West US 2). We will take the RSS Feed request under advisement.
Looking for the same. Need an easy way to automate so we can update things automatically when the IP address ranges change.
264 votesplanned · AdminAzure IaaS Engineering Team (Azure IaaS Engineering Team, Microsoft, Microsoft Azure) responded
This is still coming. The work is being completed now and we will be able to expose it in a few months.
Thanks for your suggestion. This is under review and in our backlog but initially you will see this capability show up in AD FS in Windows Server 2016.
/ Brjann Brekkan
Thank you for your suggestion. We are reviewing it at this time.
We’re continuing to investigate options for adding this support. There are technical challenges to overcome in order to make this happen. We thank you for all your valuable comments so far, and welcome any additional feedback you have on what are the most important use cases involved with these scenarios.
DNSSEC remains on our long term roadmap, however it is unlikely to be available in CY 2019. If DNSSEC is a critical and immediate requirement for your business we’d suggest that you consider evaluating 3rd party DNS hosting solutions that provide this feature.