Azure Weekly
Issue #528 - 17th August 2025
First up, there's a big announcement from The OneLake Team - Costs simplified: lowering capacity utilization when accessing OneLake - essentially all the value of OneLake for the same price as Azure Storage. No matter how data is read or written, transaction costs match Azure Storage; if you use a Fabric capacity reservation, storage transactions are even cheaper—40% less than Azure Storage.
In AI, Agent Factory: The new era of agentic AI - common use cases and design patterns - Microsoft's Agent Factory introduces five foundational patterns for building production-ready agentic AI—tool use, reflection, planning, multi-agent collaboration, and ReAct reasoning—marking a critical shift from RAG-based information retrieval to agents that autonomously execute complex enterprise workflows. Navigating AI Adoption: Legal Considerations Every Organization Should Know - Microsoft's comprehensive whitepaper on legal considerations for AI adoption provides organisations with a strategic roadmap covering data privacy, cybersecurity, operational governance, intellectual property risks, and practical implementation guidance—positioning legal and privacy teams as essential architects of responsible AI deployment rather than mere compliance gatekeepers. Finally, a great talk from Code Europe 2025 about Getting Started with Azure AI Foundry Agent Service.
In Cloud Native, first up there's an announcement about Azure Linux with OS Guard: Immutable Container Host with Code Integrity and Open Source Transparency - that enforces code integrity through kernel-level verification, dm-verity protected volumes, and mandatory access control—essentially creating a tamper-proof foundation for cloud-native workloads whilst maintaining full open-source transparency and upstream contribution commitments. Two other posts of note: Connecting to a Private AKS Cluster with Azure Bastion - No Jump Box Needed and Private Pod Subnets in AKS Without Overlay Networking.
Finally a couple of interesing blog posts about more advanced use cases of Entra ID: Lifecycle Workflows with Entra ID and Entra API-Driven Inbound Provisioning.
⚙️ AI + Machine Learning
- Yina Arenas talks about Agent Factory: The new era of agentic AI—common use cases and design patterns
- Naomi Moneypenny talks about Deepening our Partnership with Mistral AI on Azure AI Foundry
- Guy Gregory presents Getting Started with Azure AI Foundry Agent Service from Code Europe 2025
- Jordan Selig discusses Supercharge Your App Service Apps with AI Foundry Agents Connected to MCP servers
- Thomas Maurer (@thomasmaurer) talks about Implementing a Center of Excellence for Generative AI
- Ravuri Venkata Srujan writes about Agentic AI using Azure AI Foundry and Power Platform
- JP Park blogs about Unveiling the Next Generation of Table Structure Recognition
- Rena Liu announces the Text PII August preview model release in Azure AI language
- Pamela Fox discusses GPT-5: Will it RAG and discusses Red-teaming a RAG app with the Azure AI Evaluation SDK
- Junjie Li covers GPT-5 Family of Models & GPT OSS Are Now Available in AI Toolkit for VS Code
- Shreyan Fernandes talks about Building AI Agents with Ease: Function Calling in VS Code AI Toolkit
- Abdulhamid Onawole describes How Microsoft Semantic Kernel Transforms Proven Workflows into Intelligent Agents
- GISV-PSA- discusses Supercharge Data Intelligence: Build Teams App with Azure Databricks Genie & Azure AI Agent Service
- GalimahB discusses Exciting News: Azure AI Blogs Have Come Together in the New Azure AI Foundry Blog
- Bryan Lopez discusses Navigating AI Adoption: Legal Considerations Every Organization Should Know
🔎 Analytics
- The Azure Updates Team announces Launched Generally Available: Upsert and Script Activity in Azure Data Factory and Azure Synapse Analytics for Azure Database for PostgreSQL
- Sumiran Tandon announces Customer-managed keys for Fabric workspaces is now in Public Preview
- Elizabeth Oldag covers OneLake costs simplified: lowering capacity utilization when accessing OneLake
- Anand Sivaram explains How Microsoft OneLake seamlessly provides Apache Iceberg support for all Fabric Data
- Abhishek Narain blogs about Introducing support for Workspace Identity Authentication in Fabric Connectors
- Ye Xu talks about Simplifying Data Ingestion with Copy job – Reset Incremental Copy, Auto Table Creation, and JSON Format Support
- Matt Basile covers Load data from network-protected Azure Storage accounts to Microsoft OneLake with AzCopy
- Anavi Nahar walks through Closing the loop: Interactive write-back from Power BI to Azure Databricks
- Lackshu Balasubramaniam covers Integrating Snowflake into Microsoft Fabric: 3 Proven Methods
🖥️ Compute
- Anishek Kamal provides A Deep Dive into Spark UI for Job Optimization
🚢 Containers
- On the Azure blog, Sean McKenna announces that Microsoft is a Leader in the 2025 Gartner Magic Quadrant for Container Management
- Sudhanva Huruli blogs about Azure Linux with OS Guard: Immutable Container Host with Code Integrity and Open Source Transparency
- Mohamad Al Jazaery blogs about Deploying OpenAIs First Open-Source Model on Azure AKS with KAITO
- Pixel Robots. describes Connecting to a Private AKS Cluster with Azure Bastion – No Jump Box Needed
- Sam Cogan (@samcogan) writes about Private Pod Subnets in AKS Without Overlay Networking
- Chaminda Chandrasekara describes how to Setup Redis Cluster with JSON and Search Modules on AKS with Binami Redis Using Custom Image
- On Diagrid Blog, Fernando Rocha provides A Guide to Dapr and Argo CD
🗄️ Databases
- The Azure Updates Team announces Launched Generally Available: Azure Database for PostgreSQL flexible server in Malaysia West and announces In preview Public Preview: Azure Cosmos DB for MongoDB vCore encryption with customer-managed key
- Andrea Tapia covers Azure PostgreSQL Extended Support: Stay Secure at Every Stage of Your Upgrade
- Attinder Pal Singh discusses SQL Server on Linux Now Supports cgroup v2
- Elendil Zheng announces Extended Support for Azure Database for MySQL
- Bhaskar Bandam highlights Expanding Global Reach and Enhancing Observability with Oracle Database@Azure
- Harvey Mora highlights the Security Update for SQL Server 2016 SP3 Azure Connect Feature Pack
🛠️ Developer Tools
- Rhea Patel writes that GPT-5 Now Available in Visual Studio
- Saket Singh walks through Mastering GitHub Copilot in VS Code
- Lo Kinfey (@Ljh8304) walks through Building Application with gpt-oss-20b with AI Toolkit
- Jeffrey Palermo (@jeffreypalermo) chats with Burke Holland: GitHub Copilot Agent - Episode 362
- Pablo Gonzalez walks through Improving Codebase Awareness in Visual Studio Chat
- On ZDNet, David Gewirtz describes How to use GPT-5 in VS Code with GitHub Copilot
- Jim Harrer writes about From Redmond to San Diego: VS Live Highlights, Session Examples, and What's Next
- On Visual Studio Magazine - Blogs, David Ramel (@dramel) writes about Visual Studio Gets GPT-5 and writes about Visual Studio's Next Act: Faster, Smarter, More AI-Driven
- Jorge Balderas talks about Modernizing legacy Java project using GitHub Copilot App Modernization upgrade for Java
- Muhammad Samiullah talks about Fix Broken Migrations with AI Powered Debugging in VS Code Using GitHub Copilot
- Steven Ma announces MSGraph Provider Public Preview and the Microsoft Terraform VSCode Extension
- Tim Meyers covers Creating an AI Policy Analysis Copilot
- Tim Deschryver writes about VS Code as a modern FullStack workspace, Powered by Copilot
🔩 DevOps
- Kristen Womack blogs about Azure Developer CLI: From Dev to Prod with Azure DevOps Pipelines
- Angel Wong writes about Real-Time Security with Continuous Access Evaluation CAE comes to Azure DevOps and blogs about Azure DevOps OAuth Client Secrets Now Shown Only Once
- Michael Omokoh delves into Hunting Living Secrets: Secret Validity Checks Arrive in GitHub Advanced Security for Azure DevOps
- Josephine (Branch) Bush explains how to Terraform Commands
- AJ Bajada describes DevOps and AI Series: Azure Private MCP Registry
⚙️ Hybrid + Multicloud
- Aurnov Chattopadhyay announces Public Preview: Auto agent upgrade for Azure Arc-enabled servers
- Abdullah Mamun covers SQL Server enabled by Azure Arc is now generally available in the US Government Virginia region
- Uros Milanovic writes about Higher log rate for business critical service tier in Azure SQL MI
- Luxmi Nagaraj blogs about Apptividad and CoreView offer transactable partner solutions in Azure Marketplace
- Christiaan Brinkhoff (@Brinkhoff_C) describes Microsoft Discovery Hour: Endpoints future is now with Windows in the Cloud
- Logan Silliman blogs about Enhancing business continuity: Windows 365 Reserve is now in limited public preview
🎭 Identity
- Warwick Leahy covers Lifecycle Workflows with Entra ID and describes Entra API-Driven Inbound Provisioning
- Farooque Mohammad blogs about Issuing Custom Claims Using Directory Extension Attributes in Microsoft Entra ID
- Jeff Pigott covers Using Entra ID Authentication with Arc-Enabled SQL Server in a .NET Windows Forms Application
- Tal Guetta describes Leaving the key under the doormat: How Microsoft Defender uses AI to spot exposed credentials
- Veena Soman writes about Now Generally Available: Platform SSO for macOS with Microsoft Entra ID
🔌 Integration
- The Azure Updates Team announces Launched Generally Available: App Service Inbound IPv6 Support, announces Launched Generally Available: Deployment resumption - Azure Automation revised Service and Subscription limits, announces Launched Generally Available: Azure Databricks connector for Microsoft Power Platform and announces In preview Public Preview: Azure Managed Instance for Apache Cassandra v5.0
- Parth Shah announces the General Availability: Enhanced Data Mapper Experience in Logic Apps Standard
- Vinod Soni describes Azure Logic App AI-Powered Monitoring Solution: Automate, Analyze, and Act on Your Azure Data
📚 Learning
- Nishant Lakhanpal highlights that Pull print is now available in Universal Print
- Dieter Gobeyn describes How I Became a Microsoft MVP in Azure: My Journey
- On Microsoft Cloud IT Pro Podcast, Scott Hoag and Ben Stegink (@ciphertxt, @benstegink) describes Episode 408 – Model Context Protocol MCP Part 2: Getting the Most Out of MCP Servers
- Lyndsay Ansell talks about Empowering.Cloud Community Update – September 2025
- Sharda Kaur describes Model Mondays S2E9: Models for AI Agents
⚖️ Management and Governance
- The Azure Updates Team announces In preview Public Preview: Announcing Tenant-Level Service Health Alerts in Azure Monitor
- Tao Yang (@MrTaoYang) writes that AzPolicyTest Module Updated to 2.8.0
- Akihiro Nishikawa (@Logico_jp) explains how to Send signals from Micronaut native image applications to Azure Monitor and how to Send logs from Micronaut native image applications to Azure Monitor
- Chad Stout discusses Microsoft deployment blueprint - Address oversharing concerns for your M365 Copilot deployment
- Aaron Thorp talks about What's New in Microsoft Purview eDiscovery
- Jeremy Carlson writes about New AI capabilities available for Government environments
🎬 Media
- Sean Keegan talks about Building an AI Receptionist: A Hands-On Demo with Azure Communication Services and OpenAI
🚌 Migration
- Manish Kumar Pandey talks about SAP Sybase ASE to Azure SQL Migration using SSMA and BCP Overview
🌐 Networking
- Yuval Pery explains how to Protect against SharePoint CVE-2025-53770 with Azure Web Application Firewall WAF
🔐 Security
- Charbel Nemnom (@charbelnemnom) discusses Master Log Tiering With Microsoft Sentinel Data Lake
- Yuri Diogenes blogs about Microsoft Security Exposure Management Ninja Training
- On the Ctrl+Alt+Azure podcast Tobias Zimmergren & Jussi Roine (@CtrlAltAzure) take A look at Microsoft Sentinel in 2025
- Mary Asaolu talks about Cloud forensics: Prepare for the worst -implement security baselines for forensic readiness in Azure
- Alex Steele describes Malware scanning add-on is now generally available in Azure Gov Secret and Top-Secret clouds
- Alon Leviev talks about BitUnlocker: Leveraging Windows Recovery to Extract BitLocker Secrets
- Jacques Guibert De Bruet discusses Microsoft Purview: The Ultimate AI Data Security Solution
- Loren Goduti blogs about Microsoft Defender for Cloud expands U.S. Gov Cloud support for CSPM and server security
- Lizzie Heinze discusses What's new in Microsoft Security Copilot
- Lou Adesida writes about From Traditional Security to AI-Driven Cyber Resilience: Microsoft's Approach to Securing AI
- Safeena Begum Lepakshi covers Investigating M365 Copilot Activity with Sentinel & Defender XDR
- Moti Bani talks about MDVM Guidance for CVE-2025-53786: Exchange Hybrid Privilege Escalation
- Will Dixon discusses Encryption in Microsoft Teams: June 2025
📦 Storage
- The Azure Updates Team announces Launched Generally Available: Azure Files provisioned v2 billing model for SSD premium
- Pierre Roman (@pierreroman) describes How Azure Storage Powers AI Workloads: Behind the Scenes with OpenAI, Blobfuse & More and talks about Unlocking Flexibility with Azure Files Provisioned V2
- Samit Sarkar describes Finding the Right Page number in PDFs with AI Search
- Will Gries writes about Lower costs and boost flexibility with Azure Files provisioned v2
🔗 Web
- The Azure Updates Team announces In preview Public Preview: Introducing Azure App Testing: Scalable End-to-end App Validation and announces Launched Generally Available: App Service Inbound IPv6 Support
- Joji Varghese describes Azure App Testing: Playwright Workspaces for Local-to-Cloud Test Runs
- Mike Budzynski (@mbudzynski) highlights an Update To API Management Workspaces Breaking Changes: Built-in Gateway & Tiers Support
- Tulika Chaudharie explains how to Build lightweight AI Apps on Azure App Service with gpt-oss-20b
- Panu Oksala writes about Remote Debugging Azure App Service
- Luke Murray (@lukemurraynz) explains how to Expose Akahu APIs via Azure API Management MCP Server
⚙️ Azure Virtual Desktop
- Christiaan Brinkhoff (@Brinkhoff_C) writes about Under the Surface podcast Windows in the Cloud: Is it the future of End User Computing
- Travis Roberts (@Ciraltos) talks about RDP Multipath Explained: Boost Azure Virtual Desktop Stability & Performance