Comments (4)
User can opt-in the Azure metadata security protocol for their VM by specifying the newly introduced VM or VMSS property, thus their VM can be protected from SSRF and Scorpin heart attack to IMDS and WireServer endpoints.
Target Date
08-06-2024@hmyan90 This new feature seems to be related to security, right? If so, we will schedule it for the next sprint
yes, this is a very high priority security feature. We will need to get it into July release. Please reach out to PM [email protected] for the priority clarify if needed. thanks.
from azure-cli.
Hi @hmyan90, could you please help generate python sdk in Swagger PR Azure/azure-rest-api-specs#29402 so that we can use it for development and testing.
from azure-cli.
Thank you for opening this issue, we will look into it.
from azure-cli.
User can opt-in the Azure metadata security protocol for their VM by specifying the newly introduced VM or VMSS property, thus their VM can be protected from SSRF and Scorpin heart attack to IMDS and WireServer endpoints.
Target Date
08-06-2024
@hmyan90 This new feature seems to be related to security, right? If so, we will schedule it for the next sprint
from azure-cli.
Related Issues (20)
- Support Auto OS Upgrade and Update Policy arguments in Az VMSS Update HOT 7
- Customer feedback | az containerapp job | Warning about behavior of job start # HOT 2
- Customer feedback | az cosmosdb sql container | Incorrect example HOT 2
- Internal Feedback | az sig create | Soft-delete should not be appearing here HOT 2
- az aks show get AttributeError: 'NoneType' HOT 7
- azure/CLI@v2 with azcliversion: 2.62.0 get an error "ERROR: Invalid base64-encoded string: number of data characters (29) cannot be 1 more than a multiple of 4" HOT 4
- az apim api import to existing API clears serviceUrl when the optional --service-url parameter isn't provided HOT 1
- az login with interactive login via browser fails with AADSTS900144: The request body must contain the following parameter: 'client_id'. HOT 6
- az storage blob sync does not yet support --auth-mode login HOT 1
- Customer feedback | az aks create | incorrect example HOT 2
- Follow PEP 420 and PEP 518 during packaging HOT 1
- `az functionapp list-flexconsumption-locations` shows unsupported regions HOT 3
- az vm boot-diagnostics get-boot-log: Output is a mess with managed storage account HOT 1
- DNS zone import command has different behavior depending on the CLI version being used. HOT 3
- bug: azure-cli 2.60+ - ssh fails using keys generated with az ssh config when run multiple times with service principal authentication HOT 3
- Cannot set `expander` with multiple parameter in aks cluster autoscaler profile HOT 2
- Release RPM packages for Azure Linux 3.0 HOT 2
- Release docker images for Azure Linux 3.0 HOT 1
- Add `csv` as a supported output format HOT 3
- Az login with service principal does not work using SNI cert, not sending certificate chain HOT 3
Recommend Projects
-
React
A declarative, efficient, and flexible JavaScript library for building user interfaces.
-
Vue.js
🖖 Vue.js is a progressive, incrementally-adoptable JavaScript framework for building UI on the web.
-
Typescript
TypeScript is a superset of JavaScript that compiles to clean JavaScript output.
-
TensorFlow
An Open Source Machine Learning Framework for Everyone
-
Django
The Web framework for perfectionists with deadlines.
-
Laravel
A PHP framework for web artisans
-
D3
Bring data to life with SVG, Canvas and HTML. 📊📈🎉
-
Recommend Topics
-
javascript
JavaScript (JS) is a lightweight interpreted programming language with first-class functions.
-
web
Some thing interesting about web. New door for the world.
-
server
A server is a program made to process requests and deliver data to clients.
-
Machine learning
Machine learning is a way of modeling and interpreting data that allows a piece of software to respond intelligently.
-
Visualization
Some thing interesting about visualization, use data art
-
Game
Some thing interesting about game, make everyone happy.
Recommend Org
-
Facebook
We are working to build community through open source technology. NB: members must have two-factor auth.
-
Microsoft
Open source projects and samples from Microsoft.
-
Google
Google ❤️ Open Source for everyone.
-
Alibaba
Alibaba Open Source for everyone
-
D3
Data-Driven Documents codes.
-
Tencent
China tencent open source team.
from azure-cli.