<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>Azure Arc topics</title>
    <link>https://techcommunity.microsoft.com/t5/azure-arc/bd-p/AzureArc</link>
    <description>Azure Arc topics</description>
    <pubDate>Wed, 29 Apr 2026 23:49:55 GMT</pubDate>
    <dc:creator>AzureArc</dc:creator>
    <dc:date>2026-04-29T23:49:55Z</dc:date>
    <item>
      <title>Alert on Pending Updates</title>
      <link>https://techcommunity.microsoft.com/t5/azure-arc/alert-on-pending-updates/m-p/4433785#M1517</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;We've set up several onpremise servers with the Azure Arc agent, to allow us to manage updates via Azure Update Manager.&lt;/P&gt;&lt;P&gt;I'd like to get a mail notification with pending updates before the maintenance is scheduled.&amp;nbsp; Azure Update Manager provides a New alert rule (preview) feature that allows me to setup a new alert for pending updates easily.&amp;nbsp;&amp;nbsp;&lt;/P&gt;&lt;img /&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;The issue is that it runs every 5 minutes, fires the alert, and sends the email every 5 minutes.&amp;nbsp; Ideally this is sent before the maintenance schedule runs (every 2 weeks), so I know which updates will be applied before they get applied.&amp;nbsp; Changing the frequency of evaluation can be changed to 1 day max, but that will trigger the message to be sent every day.&lt;/P&gt;&lt;P&gt;I figured that I could edit the alert rule and change the Query type to Single event (preview), but not sure if that's the solution.&amp;nbsp; When I try this, I cannot edit or save a query.&amp;nbsp;&amp;nbsp;&lt;/P&gt;&lt;img /&gt;&lt;P&gt;No way to add something to the query and there's no save button:&lt;/P&gt;&lt;img /&gt;&lt;P&gt;Any idea how I could trigger a Pending Update alert rule to run on a scheduled basis, eg every 2 weeks ?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;&lt;P&gt;Best regards,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Joeri Michiels&lt;/P&gt;</description>
      <pubDate>Wed, 16 Jul 2025 12:23:55 GMT</pubDate>
      <guid>https://techcommunity.microsoft.com/t5/azure-arc/alert-on-pending-updates/m-p/4433785#M1517</guid>
      <dc:creator>Joeri_Michiels</dc:creator>
      <dc:date>2025-07-16T12:23:55Z</dc:date>
    </item>
    <item>
      <title>Azure Local - Design the infrastructure - some bad design choices I have stumbled on</title>
      <link>https://techcommunity.microsoft.com/t5/azure-arc/azure-local-design-the-infrastructure-some-bad-design-choices-i/m-p/4433749#M1516</link>
      <description>&lt;P&gt;Hi.&amp;nbsp;&lt;BR /&gt;I wanted to share my lasted blog article where I touch on some of the bad design choices I have stumbled on when working with customers existing Azure Local deployments that broke down or in other ways behaved with poor performance or disruptions.&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;A class="lia-external-url" href="https://www.chkja.dk/2025/07/16/azure-local-design-the-infrastructure/" target="_blank"&gt;https://www.chkja.dk/2025/07/16/azure-local-design-the-infrastructure/&lt;/A&gt;&lt;/P&gt;&lt;P&gt;I hope to inspire and feel free to share your knowledge here in the thread :)&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 16 Jul 2025 11:08:43 GMT</pubDate>
      <guid>https://techcommunity.microsoft.com/t5/azure-arc/azure-local-design-the-infrastructure-some-bad-design-choices-i/m-p/4433749#M1516</guid>
      <dc:creator>Chris_toffer0707</dc:creator>
      <dc:date>2025-07-16T11:08:43Z</dc:date>
    </item>
    <item>
      <title>My Mistake: installing azure local OS On laptop</title>
      <link>https://techcommunity.microsoft.com/t5/azure-arc/my-mistake-installing-azure-local-os-on-laptop/m-p/4424133#M1500</link>
      <description>&lt;P&gt;&lt;EM&gt;&amp;nbsp;Let me begin by apologizing to all experienced tech community professionals who have posted numerous discussions resulting in numerous solutions. I should have known that to start a discussion you really need to be as succinct as you can be, not unlike creating a perfect prompt while submitting something to an AI model. &lt;/EM&gt;&lt;/P&gt;&lt;P&gt;&lt;EM&gt;I was unaware that my discussion needed to be approved before being available to all -how come AI doesn't do that approval? 7 hours later... A big thank you to the moderator of this Category. They really saved me by giving extra time to read and re-read my initial post. Ugh...&lt;/EM&gt;&lt;/P&gt;&lt;P&gt;&lt;EM&gt;My self-imposed punishment for being a knucklehead is to dig a little deeper. I'm doing that and I'm onto something. When I think I have a more complete set of instructions to do what I'm doing, I'll provide details and hopefully I will be self-aware of written and unwritten rules of the Tech Community Road In future posts&lt;/EM&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 16 Jun 2025 05:04:15 GMT</pubDate>
      <guid>https://techcommunity.microsoft.com/t5/azure-arc/my-mistake-installing-azure-local-os-on-laptop/m-p/4424133#M1500</guid>
      <dc:creator>gregorywoodruffstl</dc:creator>
      <dc:date>2025-06-16T05:04:15Z</dc:date>
    </item>
    <item>
      <title>Installing azure local os on a laptop</title>
      <link>https://techcommunity.microsoft.com/t5/azure-arc/installing-azure-local-os-on-a-laptop/m-p/4424077#M1499</link>
      <description>&lt;P&gt;I don't know if it is possible but I would like to try installing azure local on a laptop that has a two terabyte SSD drive. it is an LG Gram laptop. the reason I would install it on the laptop is the laptop was damaged while being transported by an ambulance to hospital the laptop did they lowered the the gurney and the laptop was underneath and so the laptop was crushed into the shape of a 8th moon. if it is possible what I'd like to do is install the azure local os and then from the azure portal provision a Windows 11 operating system initially for testing purposes. if I can be successful at that then I would try installing Azure Local On one of several servers I have in my home that have multiple network cards I also have a bank of 56 public IP addresses So I think I have everything necessary but I'd like to start with the laptop any tips would be appreciated i've searched high and low maybe I'm just not good at searching but hoping somebody out there take a minute to tell me I'm parking up the wrong tree or maybe you can provide me with a link to a good article or just tell me what I need to do. In the end maybe I can use the laptop and it's drive for restoring data for insights or some or maybe have one BM running on it Anything I can do to use the on premise Hardware that I have would help from a cost standpoint. I am limited in what I can do as far as neurologically because of a spinal cord injury but that's not a crutch it's just an FYI. I'm pretty sure one of you is way smarter than me and way more experienced than I So thanks In advance we're taking the time to point me in whatever direction I need have a good afternoon&lt;/P&gt;</description>
      <pubDate>Sun, 15 Jun 2025 21:57:30 GMT</pubDate>
      <guid>https://techcommunity.microsoft.com/t5/azure-arc/installing-azure-local-os-on-a-laptop/m-p/4424077#M1499</guid>
      <dc:creator>gregorywoodruffstl</dc:creator>
      <dc:date>2025-06-15T21:57:30Z</dc:date>
    </item>
    <item>
      <title>Update servers with Arc, but leave SCCM installed</title>
      <link>https://techcommunity.microsoft.com/t5/azure-arc/update-servers-with-arc-but-leave-sccm-installed/m-p/4422973#M1497</link>
      <description>&lt;P&gt;We have multiple servers that we want to update with Arc instead of SCCM.&amp;nbsp; Want to leave SCCM installed for reporting purposes.&amp;nbsp; We found a few registry keys that point to the on-prem SCCM server.&amp;nbsp; I've tried removing them, but they are reinstalled by the client after a reboot.&amp;nbsp; Is there a clean way to disable this feature so that Arc handles all the monthly updates?&lt;/P&gt;</description>
      <pubDate>Wed, 11 Jun 2025 19:04:33 GMT</pubDate>
      <guid>https://techcommunity.microsoft.com/t5/azure-arc/update-servers-with-arc-but-leave-sccm-installed/m-p/4422973#M1497</guid>
      <dc:creator>jmaraviglia</dc:creator>
      <dc:date>2025-06-11T19:04:33Z</dc:date>
    </item>
    <item>
      <title>Learning Azure with Ofek – Azure Arc</title>
      <link>https://techcommunity.microsoft.com/t5/azure-arc/learning-azure-with-ofek-azure-arc/m-p/4408718#M1495</link>
      <description>&lt;P&gt;&amp;nbsp;is a solution that simplifies hybrid environment management and it’s free. Azure Arc allows you to manage and govern on-premises resources and resources from other clouds like AWS and GCP directly within your Azure environment. You can connect physical servers, virtual machines, Kubernetes clusters, and SQL Servers, and manage them as if they were native Azure resources. Azure Arc extends Azure capabilities to your on-premises and multi-cloud environments. It enables you to deploy services like Azure Policy, Defender for Cloud, and Azure Monitor easily across environments. You can also centrally manage SQL Server with performance assessments, cloud backups, Azure authentication, and pay-as-you-go licensing. The big advantage is unified management of policies, security, updates, and monitoring from the same Azure interface. From my experience, Azure Arc is ideal for organizations operating in hybrid environments or those still in transition to the cloud. Feel free to reach out for any questions.&lt;/P&gt;&lt;img /&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 28 Apr 2025 13:53:20 GMT</pubDate>
      <guid>https://techcommunity.microsoft.com/t5/azure-arc/learning-azure-with-ofek-azure-arc/m-p/4408718#M1495</guid>
      <dc:creator>OfekBenEliezer</dc:creator>
      <dc:date>2025-04-28T13:53:20Z</dc:date>
    </item>
    <item>
      <title>Azure Arc Gateway and Azure Arc Proxy</title>
      <link>https://techcommunity.microsoft.com/t5/azure-arc/azure-arc-gateway-and-azure-arc-proxy/m-p/4399772#M1489</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;I had an internal discussion regarding the purpose of the Azure Proxy.&lt;/P&gt;&lt;P&gt;Can the Azure Arc Proxy&amp;nbsp;&lt;BR /&gt;A) take over the communication of other VMs, servers or Arc Agents that cannot access the internet. In other words, the Arc Proxy is a proxy for other Arc Agents on other servers.&lt;/P&gt;&lt;P&gt;B) or does the Azure Arc Proxy only serve as a proxy on the VM itself for the extensions installed on the same machine, thus simplifying communication of the individual servers over an enterprise proxy server and reducing the URLs that need to be whitlisted.&lt;/P&gt;&lt;P&gt;I think the graphic can be misinterpreted&lt;/P&gt;&lt;P&gt;https://learn.microsoft.com/en-us/azure/azure-arc/servers/arc-gateway?tabs=portal&lt;/P&gt;&lt;P&gt;I would be grateful for a brief confirmation and clarification.&lt;/P&gt;&lt;P&gt;Many thanks in advance&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 01 Apr 2025 19:24:59 GMT</pubDate>
      <guid>https://techcommunity.microsoft.com/t5/azure-arc/azure-arc-gateway-and-azure-arc-proxy/m-p/4399772#M1489</guid>
      <dc:creator>jbi</dc:creator>
      <dc:date>2025-04-01T19:24:59Z</dc:date>
    </item>
    <item>
      <title>Can't install Azure ARC on multiple Server 2025 devices</title>
      <link>https://techcommunity.microsoft.com/t5/azure-arc/can-t-install-azure-arc-on-multiple-server-2025-devices/m-p/4395062#M1486</link>
      <description>&lt;P&gt;I have multiple Server 2025 devices that when I click "Launch Azure Arc Setup" button on taskbar icon or "Azure Arc Setup" on start menu nothing happens. I then tried to download arcsetup.exe and it never advanced beyond the initializing Windows Installer screen. I got it to work on one server and 4-5 all have the same problem. Both physical and VM. Below are errors in the event log.&lt;/P&gt;&lt;img /&gt;&lt;img /&gt;&lt;img /&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 19 Mar 2025 21:00:00 GMT</pubDate>
      <guid>https://techcommunity.microsoft.com/t5/azure-arc/can-t-install-azure-arc-on-multiple-server-2025-devices/m-p/4395062#M1486</guid>
      <dc:creator>hoyty76</dc:creator>
      <dc:date>2025-03-19T21:00:00Z</dc:date>
    </item>
    <item>
      <title>Exclude KB from the Update manager reports</title>
      <link>https://techcommunity.microsoft.com/t5/azure-arc/exclude-kb-from-the-update-manager-reports/m-p/4393501#M1484</link>
      <description>&lt;P&gt;Hi, is there a way to filter out a KB that we have excluded from our maintenance configs, so that it doesn't show up as a missing updates for servers on which we have assigned that maintenance config in the overview page?&lt;BR /&gt;&lt;BR /&gt;Or is the only way is to create our own custom workbook that will show this exclusion?&lt;BR /&gt;&lt;BR /&gt;Thank you in advance and don't hesitate if you have any questions&lt;/P&gt;</description>
      <pubDate>Fri, 14 Mar 2025 19:08:48 GMT</pubDate>
      <guid>https://techcommunity.microsoft.com/t5/azure-arc/exclude-kb-from-the-update-manager-reports/m-p/4393501#M1484</guid>
      <dc:creator>lalanc01</dc:creator>
      <dc:date>2025-03-14T19:08:48Z</dc:date>
    </item>
    <item>
      <title>Forcibly removing Azure Arc on-prem server from Defender for Cloud</title>
      <link>https://techcommunity.microsoft.com/t5/azure-arc/forcibly-removing-azure-arc-on-prem-server-from-defender-for/m-p/4392545#M1482</link>
      <description>&lt;P&gt;I have a few servers that were Arc enabled and decommissioned without removing Arc. How can I forcibly remove them from Defender for Cloud?&lt;/P&gt;</description>
      <pubDate>Wed, 12 Mar 2025 19:33:31 GMT</pubDate>
      <guid>https://techcommunity.microsoft.com/t5/azure-arc/forcibly-removing-azure-arc-on-prem-server-from-defender-for/m-p/4392545#M1482</guid>
      <dc:creator>Eric_Logsdon</dc:creator>
      <dc:date>2025-03-12T19:33:31Z</dc:date>
    </item>
    <item>
      <title>Azure Arc, on-prem servers, and MDE</title>
      <link>https://techcommunity.microsoft.com/t5/azure-arc/azure-arc-on-prem-servers-and-mde/m-p/4391418#M1480</link>
      <description>&lt;P&gt;I've onboarded a handful of on-prem server into Azure Arc and I would like to rollout the MDE extension.&amp;nbsp; Do I have to enable MDE on the resource group or subscription before I can install it?&amp;nbsp; I don't see it listed as an available extension when I go here:&amp;nbsp;&lt;BR /&gt;Azure Arc | Machines &amp;gt; server01 | Extensions &amp;gt; Install extension&lt;/P&gt;</description>
      <pubDate>Mon, 10 Mar 2025 12:37:06 GMT</pubDate>
      <guid>https://techcommunity.microsoft.com/t5/azure-arc/azure-arc-on-prem-servers-and-mde/m-p/4391418#M1480</guid>
      <dc:creator>Chaffy</dc:creator>
      <dc:date>2025-03-10T12:37:06Z</dc:date>
    </item>
    <item>
      <title>Lots of spam, is there a way to report and filter them?</title>
      <link>https://techcommunity.microsoft.com/t5/azure-arc/lots-of-spam-is-there-a-way-to-report-and-filter-them/m-p/4380452#M1139</link>
      <description>&lt;P&gt;Is there any way to flag or report these spam posts? As some of you may be aware, I've seen them multiple times, and sometimes they disappear for a while, only to come back later. This makes it difficult for important topics to stay visible in the forums. Is there a way we can help by reporting them? Makes any difference?&lt;/P&gt;&lt;img /&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Sat, 15 Feb 2025 16:26:13 GMT</pubDate>
      <guid>https://techcommunity.microsoft.com/t5/azure-arc/lots-of-spam-is-there-a-way-to-report-and-filter-them/m-p/4380452#M1139</guid>
      <dc:creator>luchete</dc:creator>
      <dc:date>2025-02-15T16:26:13Z</dc:date>
    </item>
    <item>
      <title>Register now for the Migrate to Innovate Summit</title>
      <link>https://techcommunity.microsoft.com/t5/azure-arc/register-now-for-the-migrate-to-innovate-summit/m-p/4378530#M257</link>
      <description>&lt;P&gt;&lt;STRONG&gt;&lt;SPAN data-contrast="none"&gt;Join the summit on March 11, presented in partnership with Intel.&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/STRONG&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN data-contrast="none"&gt;Stay agile, innovate for the future, and maintain a competitive edge by accelerating your cloud migration and modernization journey. Microsoft thought leaders will discuss the latest news and trends, showcase real-world case studies, and share how Azure can help you fully embrace AI.&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN data-contrast="none"&gt;Join us to:&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;UL&gt;
&lt;LI data-leveltext="" data-font="Symbol" data-listid="33" data-list-defn-props="{&amp;quot;335552541&amp;quot;:1,&amp;quot;335559685&amp;quot;:720,&amp;quot;335559991&amp;quot;:360,&amp;quot;469769226&amp;quot;:&amp;quot;Symbol&amp;quot;,&amp;quot;469769242&amp;quot;:[8226],&amp;quot;469777803&amp;quot;:&amp;quot;left&amp;quot;,&amp;quot;469777804&amp;quot;:&amp;quot;&amp;quot;,&amp;quot;469777815&amp;quot;:&amp;quot;hybridMultilevel&amp;quot;}" aria-setsize="-1" data-aria-posinset="1" data-aria-level="1"&gt;&lt;SPAN data-contrast="none"&gt;Maximize business value and build the foundation for successful innovation by leveraging the latest Azure and Intel capabilities for your workloads.&amp;nbsp;&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{&amp;quot;201341983&amp;quot;:0,&amp;quot;335559739&amp;quot;:0,&amp;quot;335559740&amp;quot;:279}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/LI&gt;
&lt;/UL&gt;
&lt;UL&gt;
&lt;LI data-leveltext="" data-font="Symbol" data-listid="33" data-list-defn-props="{&amp;quot;335552541&amp;quot;:1,&amp;quot;335559685&amp;quot;:720,&amp;quot;335559991&amp;quot;:360,&amp;quot;469769226&amp;quot;:&amp;quot;Symbol&amp;quot;,&amp;quot;469769242&amp;quot;:[8226],&amp;quot;469777803&amp;quot;:&amp;quot;left&amp;quot;,&amp;quot;469777804&amp;quot;:&amp;quot;&amp;quot;,&amp;quot;469777815&amp;quot;:&amp;quot;hybridMultilevel&amp;quot;}" aria-setsize="-1" data-aria-posinset="2" data-aria-level="1"&gt;&lt;SPAN data-contrast="none"&gt;Dive into case studies and real-world examples showcasing how organizations have successfully transformed their business and how you can be next by migrating and modernizing on Azure.&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{&amp;quot;201341983&amp;quot;:0,&amp;quot;335559739&amp;quot;:0,&amp;quot;335559740&amp;quot;:279}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/LI&gt;
&lt;/UL&gt;
&lt;UL&gt;
&lt;LI data-leveltext="" data-font="Symbol" data-listid="33" data-list-defn-props="{&amp;quot;335552541&amp;quot;:1,&amp;quot;335559685&amp;quot;:720,&amp;quot;335559991&amp;quot;:360,&amp;quot;469769226&amp;quot;:&amp;quot;Symbol&amp;quot;,&amp;quot;469769242&amp;quot;:[8226],&amp;quot;469777803&amp;quot;:&amp;quot;left&amp;quot;,&amp;quot;469777804&amp;quot;:&amp;quot;&amp;quot;,&amp;quot;469777815&amp;quot;:&amp;quot;hybridMultilevel&amp;quot;}" aria-setsize="-1" data-aria-posinset="3" data-aria-level="1"&gt;&lt;SPAN data-contrast="none"&gt;Make sure your cloud migration and modernization journey is using the best practices and strategies featured in product demonstrations.&lt;/SPAN&gt;&lt;/LI&gt;
&lt;/UL&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;A href="https://register.azuremigration.microsoft.com/?ocid=cmmc7hv4eeg" target="_blank"&gt;&lt;STRONG&gt;&lt;SPAN data-ccp-props="{}"&gt;Register now &amp;gt;&lt;/SPAN&gt;&lt;/STRONG&gt;&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;STRONG&gt;&lt;SPAN data-contrast="auto"&gt;Migrate to Innovate Summit&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/STRONG&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN data-contrast="auto"&gt;Tuesday, March 11, 2025&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN data-contrast="auto"&gt;9:00 AM–11:30 AM Pacific Time (UTC-7)&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN data-ccp-props="{}"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Thu, 13 Feb 2025 21:47:01 GMT</pubDate>
      <guid>https://techcommunity.microsoft.com/t5/azure-arc/register-now-for-the-migrate-to-innovate-summit/m-p/4378530#M257</guid>
      <dc:creator>MSdellis</dc:creator>
      <dc:date>2025-02-13T21:47:01Z</dc:date>
    </item>
    <item>
      <title>LAB: Azure Arc Enabled Kubernetes</title>
      <link>https://techcommunity.microsoft.com/t5/azure-arc/lab-azure-arc-enabled-kubernetes/m-p/4377494#M256</link>
      <description>&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Below are the steps and commands you can use to deploy Kubernetes and connect it to azure arc.&lt;/P&gt;
&lt;P&gt;&lt;STRONG&gt;My test machine: Ubuntu 24.04.1 LTS (GNU/Linux 6.8.0-1021-azure x86_64)&lt;/STRONG&gt;&lt;/P&gt;
&lt;P&gt;&lt;STRONG&gt;Kubernetes Distribution: Minikube&lt;/STRONG&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;BLOCKQUOTE&gt;
&lt;P&gt;Note: You need to follow different installation procedure according to the OS and processor architecture of your test system. The installation link provided in each step.&lt;/P&gt;
&lt;/BLOCKQUOTE&gt;
&lt;H1&gt;Install Docker&lt;/H1&gt;
&lt;P&gt;sudo apt update&lt;BR /&gt;sudo apt upgrade&lt;/P&gt;
&lt;P&gt;#Install Docker&lt;/P&gt;
&lt;P&gt;#&lt;A class="lia-external-url" href="https://kubernetes.io/docs/tasks/tools/install-kubectl-linux/" target="_blank" rel="noopener"&gt;Link for Docker installation&lt;/A&gt;&lt;BR /&gt;sudo apt-get install ca-certificates curl&lt;BR /&gt;sudo install -m 0755 -d /etc/apt/keyrings&lt;BR /&gt;sudo curl -fsSL https://download.docker.com/linux/ubuntu/gpg -o /etc/apt/keyrings/docker.asc&lt;BR /&gt;sudo chmod a+r /etc/apt/keyrings/docker.asc&lt;BR /&gt;echo \&lt;BR /&gt;&amp;nbsp; "deb [arch=$(dpkg --print-architecture) signed-by=/etc/apt/keyrings/docker.asc] https://download.docker.com/linux/ubuntu \&lt;BR /&gt;&amp;nbsp; $(. /etc/os-release &amp;amp;&amp;amp; echo "${UBUNTU_CODENAME:-$VERSION_CODENAME}") stable" | \&lt;BR /&gt;&amp;nbsp; sudo tee /etc/apt/sources.list.d/docker.list &amp;gt; /dev/null&lt;BR /&gt;sudo apt-get update&lt;BR /&gt;sudo apt-get install docker-ce docker-ce-cli containerd.io docker-buildx-plugin docker-compose-plugin&lt;BR /&gt;docker -v&lt;/P&gt;
&lt;H1&gt;Install Kubectl&lt;/H1&gt;
&lt;P&gt;#Install Kubectl&lt;/P&gt;
&lt;P&gt;#&lt;A class="lia-external-url" href="https://kubernetes.io/docs/tasks/tools/install-kubectl-linux/" target="_blank" rel="noopener"&gt;link for kubectl&lt;/A&gt;&lt;BR /&gt;curl -LO "https://dl.k8s.io/release/$(curl -L -s https://dl.k8s.io/release/stable.txt)/bin/linux/amd64/kubectl"&lt;BR /&gt;kubectl version --client&lt;/P&gt;
&lt;H1&gt;Install Minikube&lt;/H1&gt;
&lt;P&gt;#Install Minikube&lt;/P&gt;
&lt;P&gt;# &lt;A class="lia-external-url" href="https://minikube.sigs.k8s.io/docs/start/?arch=%2Flinux%2Fx86-64%2Fstable%2Fbinary+download" target="_blank" rel="noopener"&gt;Link for Minikube installation&lt;/A&gt;&lt;BR /&gt;curl -LO https://github.com/kubernetes/minikube/releases/latest/download/minikube-linux-amd64&lt;BR /&gt;sudo install minikube-linux-amd64 /usr/local/bin/minikube &amp;amp;&amp;amp; rm minikube-linux-amd64&lt;BR /&gt;sudo usermod -aG docker $USER&lt;/P&gt;
&lt;P&gt;minikube start --driver=docker&lt;/P&gt;
&lt;H1&gt;Connect to azure arc&lt;/H1&gt;
&lt;P&gt;#Connect to azure arc&lt;BR /&gt;az connectedk8s connect --name k8clust3 --resource-group myrd --location swedencentral&lt;BR /&gt;kubectl get deployments,pods -n azure-arc&lt;/P&gt;</description>
      <pubDate>Wed, 12 Feb 2025 14:18:53 GMT</pubDate>
      <guid>https://techcommunity.microsoft.com/t5/azure-arc/lab-azure-arc-enabled-kubernetes/m-p/4377494#M256</guid>
      <dc:creator>Aaida_Aboobakkar</dc:creator>
      <dc:date>2025-02-12T14:18:53Z</dc:date>
    </item>
    <item>
      <title>Azure Arc Decision Tree</title>
      <link>https://techcommunity.microsoft.com/t5/azure-arc/azure-arc-decision-tree/m-p/4375671#M254</link>
      <description>&lt;img /&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 10 Feb 2025 07:56:54 GMT</pubDate>
      <guid>https://techcommunity.microsoft.com/t5/azure-arc/azure-arc-decision-tree/m-p/4375671#M254</guid>
      <dc:creator>Aaida_Aboobakkar</dc:creator>
      <dc:date>2025-02-10T07:56:54Z</dc:date>
    </item>
    <item>
      <title>LAB: Azure Arc with Private Endpoint</title>
      <link>https://techcommunity.microsoft.com/t5/azure-arc/lab-azure-arc-with-private-endpoint/m-p/4375071#M253</link>
      <description>&lt;H1&gt;What is Azure Arc?&lt;/H1&gt;
&lt;P&gt;Azure Arc is a set of technologies that extends Azure management and enables Azure services to run across on-premises, multi-cloud, and edge environments. It allows you to manage resources such as servers, Kubernetes clusters, databases, and applications running outside Azure using familiar Azure tools and services like Azure Policy, Azure Monitor, and Defender for cloud.&lt;/P&gt;
&lt;P&gt;With Azure Arc, you can bring these resources into Azure's control plane, standardize operations, and apply consistent security and governance across your entire IT landscape.&lt;/P&gt;
&lt;P&gt;This simplifies hybrid and multi-cloud management while leveraging Azure's features, making it easier to innovate and maintain control over your infrastructure.&lt;/P&gt;
&lt;H1&gt;What is Azure Private Endpoint?&lt;/H1&gt;
&lt;P&gt;Azure Private Endpoint is a network interface that connects you privately and securely to a service powered by Azure Private Link. By using a private IP address from your virtual network, the private endpoint brings the service into your virtual network, ensuring that traffic between your virtual network and the service remains private. This setup eliminates exposure from the public internet, enhancing security. Private endpoints can be used with various Azure services, such as Azure Storage, Azure SQL Database, and Azure Cosmos DB. They provide secure connectivity between clients on your virtual network and the service, using the same connection strings and authorization mechanisms as public endpoint.&lt;/P&gt;
&lt;H1&gt;What are the benefits of configuring private link for your arc machines?&lt;/H1&gt;
&lt;P&gt;Enabling Azure Arc for your machines involves several network and system requirements. Organizations are sometimes concerned about allowing certain public endpoints through their firewall and proxy. In this context, Private Endpoints can be used to ensure that some connections to Azure remain within the Microsoft backbone network. While this service does not eliminate the need for internet connectivity entirely, you will still need to allow public access for Microsoft Entra ID and Azure Resource Manager servers. However, this method significantly reduces the challenge of IP/FQDN whitelisting for internet access.&lt;/P&gt;
&lt;P&gt;When you create private endpoints in a virtual network for Azure Arc, it will create a resource with Azure Hybrid Compute as the target. Additionally, it will create several private DNS zones and assign them to the private endpoint. The private endpoint will have IPs assigned from the specified virtual network address range. See the screenshot below. These IPs are now directly linked to Azure Arc services, enabling private connectivity through Azure&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;H1&gt;LAB Architectural Diagram&lt;/H1&gt;
&lt;img /&gt;
&lt;H4&gt;LAB Pre-requisites&lt;/H4&gt;
&lt;UL&gt;
&lt;LI&gt;An On-premises machine. (Internet traffic can be directed firewall or proxy for security)&lt;/LI&gt;
&lt;LI&gt;On-premises DNS&lt;/LI&gt;
&lt;LI&gt;An Azure Subscription&lt;/LI&gt;
&lt;LI&gt;VPN/Express-route Connection between On-premises and Azure Infrastructure&lt;/LI&gt;
&lt;LI&gt;Understand the Limitations and features&lt;/LI&gt;
&lt;/UL&gt;
&lt;H4&gt;The components that will be created as part of LAB&lt;/H4&gt;
&lt;UL&gt;
&lt;LI&gt;A private endpoint which has Hybrid compute as source point&lt;/LI&gt;
&lt;LI&gt;Private DNS zones for Azure Arc services&lt;/LI&gt;
&lt;LI&gt;A private DNS resolver in Azure. Azure DNS doesnt accesspt dns queries coming from non-azure sources. Hence you need to configure azure private dns zone .&amp;nbsp; You will get a private IP while creating inbound enpoint for resolver.&lt;/LI&gt;
&lt;LI&gt;DNS Forwarder need to be created in on-premise DNS to private IP of Azure private DNS resolver's inbound IP&lt;/LI&gt;
&lt;LI&gt;Powershell script to onboard machine&lt;/LI&gt;
&lt;LI&gt;Azure arc machine : Will be created once on premise machine gets connected to azure arc.&lt;/LI&gt;
&lt;/UL&gt;
&lt;H4&gt;Traffic flow&lt;/H4&gt;
&lt;P&gt;There are three kind of traffic flow is involved here.&amp;nbsp;&lt;/P&gt;
&lt;OL&gt;
&lt;LI&gt;DNS flow: To resolve the domain names of private endpoints&lt;/LI&gt;
&lt;LI&gt;Private endpoint flow: Actual traffic to Azure arc services&lt;/LI&gt;
&lt;LI&gt;Internet flow: Traffic to Microsoft Entra ID and Azure Resource manager control plane&lt;/LI&gt;
&lt;/OL&gt;
&lt;P&gt;&lt;STRONG&gt;Private endpoint and private DNS Flow&lt;/STRONG&gt;&lt;/P&gt;
&lt;UL&gt;
&lt;LI&gt;Let's suppose the Azure Arc agent initiates traffic to one of the Azure Arc services FQDNs, such as gbl.his.arc.azure.com.&lt;/LI&gt;
&lt;LI&gt;On-premises machines need to resolve the FQDN to an IP address, so they send a DNS request to the on-premises DNS server.&lt;/LI&gt;
&lt;LI&gt;The DNS forwarder is configured to send *.gbl.his.arc.azure.com DNS queries to the Private DNS resolver configured in Azure.&lt;/LI&gt;
&lt;LI&gt;The Private DNS resolver receives the DNS query and resolves it, as these domains are already linked to the virtual network where the resolver resides.&lt;/LI&gt;
&lt;LI&gt;Once the on-premises DNS server receives the IP resolution from the Azure DNS resolver, it sends it back to the on-premises machine.&lt;/LI&gt;
&lt;LI&gt;Now that the on-premises machine has the IP (private IP), it sends the actual traffic to the IP of the private endpoint.&lt;/LI&gt;
&lt;LI&gt;The private endpoint receives the traffic, and since this interface is directly linked to the Azure Arc services (the intended destination), the connectivity is successfully established.&lt;/LI&gt;
&lt;/UL&gt;
&lt;P&gt;Steps:&lt;/P&gt;
&lt;UL&gt;
&lt;LI&gt;Generate Onboarding script.&lt;/LI&gt;
&lt;LI&gt;Private endpoint can be created while generating the script itself.&lt;/LI&gt;
&lt;LI&gt;Go to &lt;STRONG&gt;Azure Arc--&amp;gt;Machines--&amp;gt;Create&lt;/STRONG&gt;&lt;/LI&gt;
&lt;/UL&gt;
&lt;img /&gt;
&lt;UL&gt;
&lt;LI&gt;You can select option which best suited for you. I am selecting &lt;STRONG&gt;Add multiple servers.&lt;/STRONG&gt;&lt;/LI&gt;
&lt;/UL&gt;
&lt;img /&gt;
&lt;UL&gt;
&lt;LI&gt;Provide Resource Group,Region,OS details.&lt;/LI&gt;
&lt;LI&gt;Create Private endpoint using option provided&lt;/LI&gt;
&lt;LI&gt;Provide Virtual Network and subnet for private endpoint&lt;/LI&gt;
&lt;/UL&gt;
&lt;img /&gt;
&lt;UL&gt;
&lt;LI&gt;Provide or create new service principal. Note secret of service principal&lt;/LI&gt;
&lt;/UL&gt;
&lt;img /&gt;
&lt;UL&gt;
&lt;LI&gt;Goto Download and run script session. You can copy script and run it directly or you can download script and run it. Please do not forget to update service principal secret in script.&lt;/LI&gt;
&lt;/UL&gt;
&lt;img /&gt;
&lt;UL&gt;
&lt;LI&gt;You can verify the resources created as part of Private endpoint created&lt;/LI&gt;
&lt;LI&gt;There will be three private DNS zones created&lt;/LI&gt;
&lt;/UL&gt;
&lt;img /&gt;
&lt;UL&gt;
&lt;LI&gt;A private endpoint resource will be created with hybrid compute as target resource&lt;/LI&gt;
&lt;/UL&gt;
&lt;img /&gt;
&lt;UL&gt;
&lt;LI&gt;Create a private DNS resolver and inbound endpoint in it.&amp;nbsp;&lt;/LI&gt;
&lt;/UL&gt;
&lt;img /&gt;
&lt;UL&gt;
&lt;LI&gt;Provide necessary details.&lt;/LI&gt;
&lt;/UL&gt;
&lt;img /&gt;
&lt;UL&gt;
&lt;LI&gt;Add inbound endpoint and click create&lt;/LI&gt;
&lt;/UL&gt;
&lt;img /&gt;
&lt;UL&gt;
&lt;LI&gt;Note the private IP of inbound endpoint, which is needed to specify DNS forwarder in on-premise&lt;/LI&gt;
&lt;/UL&gt;
&lt;img /&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;UL&gt;
&lt;LI&gt;Configure DNS forwarder in On-premise DNS&lt;/LI&gt;
&lt;/UL&gt;
&lt;img /&gt;
&lt;UL&gt;
&lt;LI&gt;Add all three private DNS zone domains&lt;/LI&gt;
&lt;/UL&gt;
&lt;img /&gt;
&lt;UL&gt;
&lt;LI&gt;Bypass private DNS zone domains&amp;nbsp; (This step is required if you have internet proxy in your infrastructure.&lt;/LI&gt;
&lt;/UL&gt;
&lt;img /&gt;
&lt;UL&gt;
&lt;LI&gt;Now you are all set to deploy script generated in for onboarding&lt;/LI&gt;
&lt;/UL&gt;
&lt;img /&gt;
&lt;UL&gt;
&lt;LI&gt;Now you can see the onboarded machine in azure arc portal&lt;/LI&gt;
&lt;/UL&gt;
&lt;img /&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 07 Feb 2025 17:09:48 GMT</pubDate>
      <guid>https://techcommunity.microsoft.com/t5/azure-arc/lab-azure-arc-with-private-endpoint/m-p/4375071#M253</guid>
      <dc:creator>Aaida_Aboobakkar</dc:creator>
      <dc:date>2025-02-07T17:09:48Z</dc:date>
    </item>
    <item>
      <title>Azure Arc Patching</title>
      <link>https://techcommunity.microsoft.com/t5/azure-arc/azure-arc-patching/m-p/4374675#M250</link>
      <description>&lt;P&gt;Working on getting boxes onboarded with Azure Arc since we are mostly cloud based, but still have a few boxes left on prem. In my lab I am able to enroll and setup patching via Azure without much issue. Via the console it reports stuff running, etc however when checking on the box I dont see the patches via update history or wmic qfe list. But when I check the rev, I see the OS is current (I installed from an ISO that was 12 months old)&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Seems like the data is out of sync or just missing locally. Other than Azure Arc's log, is there anyway to validate its working correctly? sorry, just paranoid and want to make sure its solid...&lt;/P&gt;</description>
      <pubDate>Thu, 06 Feb 2025 17:32:44 GMT</pubDate>
      <guid>https://techcommunity.microsoft.com/t5/azure-arc/azure-arc-patching/m-p/4374675#M250</guid>
      <dc:creator>RussMeyer-Epik</dc:creator>
      <dc:date>2025-02-06T17:32:44Z</dc:date>
    </item>
    <item>
      <title>LAB: Onboarding On-premises Machine to Azure Arc by using Proxy as Connectivity Method</title>
      <link>https://techcommunity.microsoft.com/t5/azure-arc/lab-onboarding-on-premises-machine-to-azure-arc-by-using-proxy/m-p/4374537#M249</link>
      <description>&lt;H1&gt;&lt;SPAN class="lia-text-color-15"&gt;What is Azure Arc?&lt;/SPAN&gt;&lt;/H1&gt;
&lt;P&gt;Azure Arc is a set of technologies that extends Azure management and enables Azure services to run across on-premises, multi-cloud, and edge environments. It allows you to manage resources such as servers, Kubernetes clusters, databases, and applications running outside Azure using familiar Azure tools and services like Azure Policy, Azure Monitor, and Defender for cloud.&lt;/P&gt;
&lt;P&gt;With Azure Arc, you can bring these resources into Azure's control plane, standardize operations, and apply consistent security and governance across your entire IT landscape.&lt;/P&gt;
&lt;P&gt;This simplifies hybrid and multi-cloud management while leveraging Azure's features, making it easier to innovate and maintain control over your infrastructure.&lt;/P&gt;
&lt;H1&gt;&lt;SPAN class="lia-text-color-15"&gt;LAB Architecture&lt;/SPAN&gt;&lt;/H1&gt;
&lt;H4&gt;&lt;SPAN class="lia-text-color-15"&gt;Lab pre-requisites:&lt;/SPAN&gt;&lt;/H4&gt;
&lt;UL&gt;
&lt;LI&gt;Set up and on-premises environment with an VM and Enterprise Proxy.&lt;/LI&gt;
&lt;LI&gt;An Azure subscription where we can on board machine.&lt;/LI&gt;
&lt;LI&gt;Understand the system, network pre-requisite.&amp;nbsp;&lt;A class="lia-external-url" href="http://Plan Deployment" target="_blank" rel="noopener"&gt;Plan Deployment&lt;/A&gt;&lt;/LI&gt;
&lt;/UL&gt;
&lt;img /&gt;
&lt;P&gt;Please note the hostname as this will show in azure arc portal once you on board machine into azure arc.&lt;/P&gt;
&lt;img /&gt;
&lt;P&gt;Also, you can verify whether proxy is configured using command &lt;STRONG&gt;netsh winhttp show proxy&lt;/STRONG&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;BLOCKQUOTE&gt;
&lt;P&gt;&lt;SPAN class="lia-text-color-8"&gt;&lt;STRONG&gt;Note: You don't need to use proxy connectivity option if your internet traffic is already routing via proxy in the network level. You can use this option if you need your agent to communicate via a&amp;nbsp;&lt;U&gt;different proxy&lt;/U&gt; which not already configured at network level.&lt;/STRONG&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;/BLOCKQUOTE&gt;
&lt;H1&gt;&lt;SPAN class="lia-text-color-15"&gt;Steps to deploy:&lt;/SPAN&gt;&lt;/H1&gt;
&lt;H4&gt;&lt;SPAN class="lia-text-color-15"&gt;Generate Script to on-board on-premises machine:&lt;/SPAN&gt;&lt;/H4&gt;
&lt;H6&gt;&lt;SPAN class="lia-text-color-10"&gt;Go to Azure Arc--&amp;gt;Machines and Click on Create.&lt;/SPAN&gt;&lt;/H6&gt;
&lt;img /&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;img /&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;SPAN class="lia-text-color-10"&gt;Select an option best suited for you. I am using &lt;STRONG&gt;Add multiple servers&lt;/STRONG&gt; Option&lt;/SPAN&gt;&lt;/P&gt;
&lt;img /&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;SPAN class="lia-text-color-10"&gt;Fill the details, provide your proxy sever URL.&lt;/SPAN&gt;&lt;/P&gt;
&lt;img /&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;SPAN class="lia-text-color-10"&gt;Provide service principal already have or create new one.&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN class="lia-text-color-10"&gt;Provide tags if you need.&lt;/SPAN&gt;&lt;/P&gt;
&lt;img /&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;SPAN class="lia-text-color-10"&gt;Go to&amp;nbsp;&lt;STRONG&gt;download and run script&lt;/STRONG&gt;&amp;nbsp;option. Either you can download or copy the script and directly and run it in your machine.&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN class="lia-text-color-10"&gt;Update Service Principal secret inside script then the script is ready to use.&lt;/SPAN&gt;&lt;/P&gt;
&lt;img /&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;H1&gt;&lt;SPAN class="lia-text-color-15"&gt;Run the script in on-premises machine&lt;/SPAN&gt;&lt;/H1&gt;
&lt;P&gt;&lt;SPAN class="lia-text-color-10"&gt;Go to on-premises machine PowerShell and run script. The script will install the Azure Arc agent and connect the system with Arc control Plane.&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;BLOCKQUOTE&gt;
&lt;P&gt;&lt;SPAN class="lia-text-color-10"&gt;Not necessarily these steps need to do by PowerShell. You are having multiple way to connect machine to azure arc. Eg: CLI, API calls etc. Please go through Azure arc documentation to know more.&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;/BLOCKQUOTE&gt;
&lt;P&gt;&lt;SPAN class="lia-text-color-10"&gt;The following action will take place once you run the script.&lt;/SPAN&gt;&lt;/P&gt;
&lt;UL&gt;
&lt;LI&gt;&lt;SPAN class="lia-text-color-10"&gt;&lt;STRONG&gt;Azure Connected Machine Agent Installation&lt;/STRONG&gt;&lt;/SPAN&gt;&lt;/LI&gt;
&lt;LI&gt;&lt;SPAN class="lia-text-color-10"&gt;&lt;STRONG&gt;Setting proxy configuration&lt;/STRONG&gt;&lt;/SPAN&gt;&lt;/LI&gt;
&lt;LI&gt;&lt;SPAN class="lia-text-color-10"&gt;&lt;STRONG&gt;Connect machine to Azure&lt;/STRONG&gt;&lt;/SPAN&gt;&lt;/LI&gt;
&lt;/UL&gt;
&lt;img /&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;img /&gt;&lt;img /&gt;
&lt;P&gt;&lt;SPAN class="lia-text-color-10"&gt;Now your machine is onboarded, and you can enjoy all the services in azure. In nutshell you can treat your on-premises machine as azure vm and apply all the related series.&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 06 Feb 2025 15:34:15 GMT</pubDate>
      <guid>https://techcommunity.microsoft.com/t5/azure-arc/lab-onboarding-on-premises-machine-to-azure-arc-by-using-proxy/m-p/4374537#M249</guid>
      <dc:creator>Aaida_Aboobakkar</dc:creator>
      <dc:date>2025-02-06T15:34:15Z</dc:date>
    </item>
    <item>
      <title>Azure Arc Gateway with Custom internet Proxy: LAB</title>
      <link>https://techcommunity.microsoft.com/t5/azure-arc/azure-arc-gateway-with-custom-internet-proxy-lab/m-p/4374487#M248</link>
      <description>&lt;H1&gt;&lt;SPAN class="lia-text-color-15"&gt;What is Azure Arc?&lt;/SPAN&gt;&lt;/H1&gt;
&lt;P&gt;Azure Arc is a set of technologies that extends Azure management and enables Azure services to run across on-premises, multi-cloud, and edge environments. It allows you to manage resources such as servers, Kubernetes clusters, databases, and applications running outside Azure using familiar Azure tools and services like Azure Policy, Azure Monitor, and Defender for cloud.&lt;/P&gt;
&lt;P&gt;With Azure Arc, you can bring these resources into Azure's control plane, standardize operations, and apply consistent security and governance across your entire IT landscape.&lt;/P&gt;
&lt;P&gt;This simplifies hybrid and multi-cloud management while leveraging Azure's features, making it easier to innovate and maintain control over your infrastructure.&lt;/P&gt;
&lt;H1&gt;&lt;SPAN class="lia-text-color-15"&gt;What is Azure Arc Gateway?&lt;/SPAN&gt;&lt;/H1&gt;
&lt;P&gt;If you use enterprise proxies to manage outbound traffic, the Azure Arc gateway lets you onboard infrastructure to Azure Arc using only seven (7) endpoints. With Azure Arc gateway, you can:&lt;/P&gt;
&lt;UL&gt;
&lt;LI&gt;Connect to Azure Arc by opening public network access to only seven fully qualified domain names (FQDNs).&lt;/LI&gt;
&lt;LI&gt;View and audit all traffic an Azure Connected Machine agent sends to Azure via the Arc gateway.&lt;/LI&gt;
&lt;/UL&gt;
&lt;H2&gt;&lt;SPAN class="lia-text-color-15"&gt;How the Azure Arc gateway works&lt;/SPAN&gt;&lt;/H2&gt;
&lt;P&gt;Azure Arc gateway consists of two main components:&lt;/P&gt;
&lt;UL&gt;
&lt;LI&gt;&lt;STRONG&gt;The Arc gateway resource:&lt;/STRONG&gt;&amp;nbsp;An Azure resource that serves as a common front-end for Azure traffic. This gateway resource is served on a specific domain. Once the Arc gateway resource is created, the domain is returned to you in the success response.&lt;/LI&gt;
&lt;LI&gt;&lt;STRONG&gt;The Arc Proxy:&lt;/STRONG&gt;&amp;nbsp;A new component added to Arc agentry. This component runs as a service called "Azure Arc Proxy" and acts as a forward proxy used by the Azure Arc agents and extensions. &lt;U&gt;&lt;STRONG&gt;No configuration is required on your part for the Arc Proxy. This Proxy is part of Arc core agentry and runs within the context of an Arc-enabled resource.&lt;/STRONG&gt;&lt;/U&gt;&lt;/LI&gt;
&lt;/UL&gt;
&lt;P&gt;When the gateway is in place, traffic flows via the following hops:&amp;nbsp;&lt;STRONG&gt;Arc agentry → Arc Proxy → Enterprise proxy → Arc gateway → Target service&lt;/STRONG&gt;&lt;/P&gt;
&lt;BLOCKQUOTE&gt;
&lt;P&gt;&lt;STRONG&gt;Important Note: The Arc gateway feature for Azure Arc-enabled servers is currently in Public Preview in all regions where Azure Arc-enabled servers is present&lt;/STRONG&gt;&lt;/P&gt;
&lt;/BLOCKQUOTE&gt;
&lt;H1&gt;&lt;SPAN class="lia-text-color-15"&gt;LAB Architecture&lt;/SPAN&gt;&lt;/H1&gt;
&lt;P&gt;&lt;STRONG&gt;Lab pre-requisites:&lt;/STRONG&gt;&lt;/P&gt;
&lt;UL&gt;
&lt;LI&gt;Set up and on-premises environment with an VM and Enterprise Proxy.&lt;/LI&gt;
&lt;LI&gt;An Azure subscription where we can on board machine.&lt;/LI&gt;
&lt;LI&gt;Understand the limitations and system requirements: &lt;A class="lia-external-url" href="https://learn.microsoft.com/en-us/azure/azure-arc/servers/arc-gateway?tabs=portal#current-limitations" target="_blank" rel="noopener"&gt;Limitations&lt;/A&gt;&lt;/LI&gt;
&lt;/UL&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;img /&gt;
&lt;P&gt;Please note the hostname as this will show in azure arc portal once you on board machine into azure arc.&lt;/P&gt;
&lt;img /&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Also, you can verify whether proxy is configured using command &lt;STRONG&gt;netsh winhttp show proxy&lt;/STRONG&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;BLOCKQUOTE&gt;
&lt;P&gt;&lt;SPAN class="lia-text-color-8"&gt;&lt;STRONG&gt;Note: You don't need to use proxy connectivity option if your internet traffic is already routing via proxy in the network level. You can use this option if you need your agent to communicate via a &lt;U&gt;different proxy&lt;/U&gt; which not already configured at network level.&lt;/STRONG&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;/BLOCKQUOTE&gt;
&lt;H1&gt;&lt;SPAN class="lia-text-color-15"&gt;Steps to deploy Azure Arc Gateway with Proxy&lt;/SPAN&gt;&lt;/H1&gt;
&lt;H1&gt;&lt;SPAN class="lia-text-color-15"&gt;Create an Azure Arc Gateway:&lt;/SPAN&gt;&lt;/H1&gt;
&lt;P&gt;&lt;SPAN class="lia-text-color-10"&gt;Go to Azure Arc Gateway session, click on create and create an arc gateway&lt;/SPAN&gt;&lt;/P&gt;
&lt;img /&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;img /&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;H1&gt;&amp;nbsp;&lt;/H1&gt;
&lt;H1&gt;&amp;nbsp;&lt;/H1&gt;
&lt;H1&gt;&lt;SPAN class="lia-text-color-15"&gt;Generate Script to on-board on-premises machine:&lt;/SPAN&gt;&lt;/H1&gt;
&lt;H6&gt;&lt;SPAN class="lia-text-color-10"&gt;Go to Azure Arc--&amp;gt;Machines and Click on Create.&lt;/SPAN&gt;&lt;/H6&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;img /&gt;
&lt;P&gt;&lt;SPAN class="lia-text-color-10"&gt;Select an option best suites for you . I am using &amp;nbsp;Add multiple servers Option&lt;/SPAN&gt;&lt;/P&gt;
&lt;img /&gt;
&lt;P&gt;&lt;SPAN class="lia-text-color-10"&gt;Fill the details, provide your proxy sever URL and select arc gateway created&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;img /&gt;
&lt;P&gt;&lt;SPAN class="lia-text-color-10"&gt;Provide service principal already have or create new one.&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN class="lia-text-color-10"&gt;Provide tags if you need.&lt;/SPAN&gt;&lt;/P&gt;
&lt;img /&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;SPAN class="lia-text-color-10"&gt;Go to &lt;STRONG&gt;download and run script&lt;/STRONG&gt; option. Either you can download or copy the script and directly and run it in your machine.&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN class="lia-text-color-10"&gt;Update Service Principal secret inside script then the script is ready to use.&lt;/SPAN&gt;&lt;/P&gt;
&lt;img /&gt;&lt;img /&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;H1&gt;&lt;SPAN class="lia-text-color-15"&gt;Run the script in on-premises machine&lt;/SPAN&gt;&lt;/H1&gt;
&lt;P&gt;&lt;SPAN class="lia-text-color-10"&gt;Go to on-premises machine PowerShell and run script. The script will install the Azure Arc agent and connect the system with Arc control Plane. The script will take care of proxy direction and arc gateway setting.&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;BLOCKQUOTE&gt;
&lt;P&gt;&lt;SPAN class="lia-text-color-10"&gt;Not necessarily these steps need to do by PowerShell. You are having multiple way to connect machine to azure arc. Eg: CLI, API calls etc. Please go through Azure arc documentation to know more. &lt;SPAN class="lia-text-color-20"&gt;Azure&lt;A class="lia-external-url" href="https://learn.microsoft.com/en-us/azure/azure-arc/servers/" target="_blank" rel="noopener"&gt;&amp;nbsp;Arc Enabled Servers&lt;/A&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;/BLOCKQUOTE&gt;
&lt;P&gt;&lt;SPAN class="lia-text-color-10"&gt;The following action will take place once you run the script.&lt;/SPAN&gt;&lt;/P&gt;
&lt;UL&gt;
&lt;LI style="font-weight: bold;"&gt;&lt;STRONG&gt;&lt;SPAN class="lia-text-color-10"&gt;Azure Connected Machine Agent Installation&lt;/SPAN&gt;&lt;/STRONG&gt;&lt;/LI&gt;
&lt;LI style="font-weight: bold;"&gt;&lt;STRONG&gt;&lt;SPAN class="lia-text-color-10"&gt;Setting proxy configuration&lt;/SPAN&gt;&lt;/STRONG&gt;&lt;/LI&gt;
&lt;LI style="font-weight: bold;"&gt;&lt;STRONG&gt;&lt;SPAN class="lia-text-color-10"&gt;Enabling and starting Azure Arc Proxy service&lt;/SPAN&gt;&lt;/STRONG&gt;&lt;/LI&gt;
&lt;LI style="font-weight: bold;"&gt;&lt;STRONG&gt;&lt;SPAN class="lia-text-color-10"&gt;Connection Type will set to 'gateway'&lt;/SPAN&gt;&lt;/STRONG&gt;&lt;/LI&gt;
&lt;LI style="font-weight: bold;"&gt;&lt;STRONG&gt;&lt;SPAN class="lia-text-color-10"&gt;Connect machine to Azure&lt;/SPAN&gt;&lt;/STRONG&gt;&lt;/LI&gt;
&lt;/UL&gt;
&lt;img /&gt;&lt;img /&gt;&lt;img /&gt;
&lt;P&gt;Now your machine is onboarded, and you can enjoy all the services in azure. In nutshell you can treat your on-premise machine as azure vm and apply all the related series.&lt;/P&gt;</description>
      <pubDate>Thu, 06 Feb 2025 14:45:06 GMT</pubDate>
      <guid>https://techcommunity.microsoft.com/t5/azure-arc/azure-arc-gateway-with-custom-internet-proxy-lab/m-p/4374487#M248</guid>
      <dc:creator>Aaida_Aboobakkar</dc:creator>
      <dc:date>2025-02-06T14:45:06Z</dc:date>
    </item>
    <item>
      <title>WAC in Azure</title>
      <link>https://techcommunity.microsoft.com/t5/azure-arc/wac-in-azure/m-p/4295967#M177</link>
      <description>&lt;P&gt;I am looking for info on how to get access to the Windows Admin Center on Azure. I am finally getting back to getting this implemented and thought I read that I can enroll my on-prem servers into WAC on Azure. I want to be able to manage my patching, see vulnerabilities, and also get my Hyper V host workload metrics. Was I reading this in correctly and it still needs to be installed on a local server?&lt;/P&gt;</description>
      <pubDate>Wed, 13 Nov 2024 23:11:33 GMT</pubDate>
      <guid>https://techcommunity.microsoft.com/t5/azure-arc/wac-in-azure/m-p/4295967#M177</guid>
      <dc:creator>sparksjoseph1997</dc:creator>
      <dc:date>2024-11-13T23:11:33Z</dc:date>
    </item>
  </channel>
</rss>

