Azure Container Services Docs – Weekly Update (2025-11-30 to 2025-12-07)
The most meaningful Azure Kubernetes Service, Container Registry, Application Gateway for Containers, and Fleet Manager documentation changes from the last 7 days. Summaries are AI-filtered to skip trivial edits.
📊 Updates this week: ACR (5), AGC (40), AKS (34), Fleet (5)
-
General · AKS · updated: 2025-12-02 06:02This article provides guidance on how to upgrade a single node pool and the cluster control plane for multiple node pools in Azure Kubernetes Service (AKS). It includes details on the process and considerations for ensuring the cluster is running the latest features and security updates.
-
General · AKS · updated: 2025-12-02 06:02Users can no longer change the virtual machine (VM) size of a node pool after it has been created. Additionally, when creating multiple node pools at the same time, the Kubernetes versions must match the control plane version, but users can now make updates post-provisioning using per node pool operations. New guidance has also been added on setting taints, labels, or tags for a node pool, allowin…
-
General · AGC · updated: 2025-12-05 00:37Minor documentation maintenance updates.
-
General · AKS · updated: 2025-12-02 23:10The documentation now includes two new partner solutions: Elastic and Upwind, under the Observability and Security categories, respectively. Users can leverage Elastic’s AI-powered search capabilities for real-time data insights and Upwind’s runtime fabric for enhanced security and visibility of cloud deployments. This addition expands the options available for users seeking observability and secu…
-
General · AGC · updated: 2025-12-05 00:37Updates content with clarifications and improvements.
-
General · AGC · updated: 2025-12-04 18:46Minor documentation maintenance updates.
-
Operations · AKS · updated: 2025-12-03 23:10The documentation has been updated to clarify the process for updating Azure Kubernetes Service (AKS) clusters to use the latest Azure CNI IP Address Management (IPAM) modes and data plane technologies. Users can now update existing AKS clusters to utilize Azure CNI Overlay and Azure CNI Powered by Cilium, with specific requirements outlined for Kubernetes versions and configurations, including th…
-
General · AKS · updated: 2025-12-03 23:10The documentation for Azure Kubernetes Service (AKS) has been updated to clarify the roles and functionalities of Container Networking Interface (CNI) plugins. Users can now find more detailed descriptions of the overlay and flat networking models, including their advantages and specific use cases, which will aid in selecting the most suitable CNI plugin for their clusters. Additionally, the requi…
-
General · AKS · updated: 2025-12-06 06:02The documentation for configuring AKS Scheduler Profiles has been revised to clarify the structure of the configuration. Users can now see the updated format that includes the "profiles" section, allowing for a more organized setup of the scheduler, specifically detailing the "node-binpacking-scheduler" and its associated plugin configuration. This change enhances the clarity and usability of the…
-
General · AKS · updated: 2025-12-03 18:11The documentation now specifies that users must have Azure CLI version 2.80.0 or higher to deploy egress gateways for the Istio service mesh add-on in Azure Kubernetes Service. Additionally, the command for applying the Istio sample has been updated to reference version 1.27 instead of 1.24, ensuring users are working with the latest configuration.
-
General · ACR · updated: 2025-12-01 23:08The documentation now includes details on the Google Artifact Registry (`*.pkg.dev`), specifying that it supports authenticated pulls only via Azure CLI. Additionally, users are guided to use a Service Account Key for authentication with Google Artifact Registry, with recommendations for setting a custom expiry date and storing the key in Azure Key Vault. This enhances the clarity on authenticatio…
-
General · AGC · updated: 2025-12-05 00:37The documentation now includes updates for version 1.8.12, which introduces improvements to the Web Application Firewall (WAF). Additionally, version 1.8.9 has been clarified to highlight the implementation of a slow start load balancing algorithm, an updated image using Azure Linux 3.0, and a fix for the nodeSelector issue, enhancing overall functionality and performance for users.
-
General · AKS · updated: 2025-12-04 06:02The documentation now clarifies that when using Azure CNI in Overlay mode, the Pod CIDR must not overlap with any external IP addresses or networks, as this could lead to connectivity issues with external endpoints. Additionally, the link for upgrading existing clusters to Azure CNI overlay has been updated to point to the correct resource.
-
General · AGC · updated: 2025-12-05 00:37Minor documentation maintenance updates.
-
General · AGC · updated: 2025-12-04 18:46Minor documentation maintenance updates.
-
Compute · AKS · updated: 2025-12-02 18:10The documentation has been updated to correct a typo in the ephemeral storage key for Karpenter, changing it from "sku-storage-ephemeral-os-maxsize" to "sku-storage-ephemeralos-maxsize." This correction ensures that users can accurately configure ephemeral storage settings for Karpenter in Azure Kubernetes Service (AKS).
-
General · Fleet · updated: 2025-12-04 06:02The documentation now includes a new section detailing how resource snapshots are created, stating that any change to resources covered by the CRP or RP resource selector will automatically trigger the creation of a new resource snapshot within 60 seconds. Additionally, the article has been updated to clarify that Fleet Manager manages snapshots for both ClusterResourcePlacement and ResourcePlacem…
-
General · AKS · updated: 2025-12-02 23:10Minor documentation maintenance updates.
-
General · AKS · updated: 2025-12-05 06:04The documentation now emphasizes that users should explore alternative options, such as Network Security Groups (NSGs) or self-managed Calico, to ensure continued support and compatibility. Additionally, it clarifies that Azure Network Policy Manager (NPM) will no longer support Windows nodes after September 30, 2026, and Linux nodes after September 30, 2028. Users are also informed about the limi…
-
General · AGC · updated: 2025-12-04 18:46Minor documentation maintenance updates.
-
Compute · AKS · updated: 2025-12-02 18:10The documentation now includes details about the NVIDIA GRID Driver License Check in the GPU health monitoring section, allowing users to verify the license status of the installed GRID driver on supported NVIDIA VM SKUs. Additionally, health checks are now conducted on GPU nodes provisioned with the A10 SKU, enhancing monitoring capabilities for users utilizing these resources.
-
General · AGC · updated: 2025-12-04 18:46Minor documentation maintenance updates.
-
General · AGC · updated: 2025-12-04 18:46Minor documentation maintenance updates.
-
General · AKS · updated: 2025-12-05 23:10The documentation for the AKS scheduler configuration has been updated to clarify the functionality of various scheduling plugins, including `DefaultPreemption`, `ImageLocality`, and `InterPodAffinity`. Users can now better understand how to configure these plugins with specific arguments, such as `PodPriority` and `Affinity`, to influence pod scheduling decisions based on resource availability an…
-
General · Fleet · updated: 2025-12-04 23:12The documentation now explicitly supports intelligent placement for both cluster-scoped (`ClusterResourcePlacement`) and namespace-scoped (`ResourcePlacement`) resources, enhancing users’ ability to make scheduling decisions based on cluster properties. Additionally, users can now find updated examples for both resource types, which include specific YAML configurations for `ResourcePlacement`, all…
-
Security · AKS · updated: 2025-12-05 23:10The documentation now includes a new security bulletin, AKS-2025-0013, which addresses a vulnerability in the Kubernetes kube-controller-manager related to the in-tree Portworx StorageClass. This issue could allow authorized users to leak sensitive information from unprotected endpoints in the control plane’s host network. Users of AKS versions v1.28-akslts, v1.29-akslts, and v1.30-akslts are info…
-
Operations · AGC · updated: 2025-12-05 00:37Minor documentation maintenance updates.
-
General · AGC · updated: 2025-12-05 00:37Minor documentation maintenance updates.
-
General · AKS · updated: 2025-12-03 18:11The documentation for using Group Managed Service Accounts (gMSA) in Azure Kubernetes Service (AKS) has been updated to clarify the requirements and steps for configuration. Users can now find improved instructions on creating YAML files for gMSA, including specific placeholders for domain names and account usernames, which enhance clarity for setup. Additionally, the guidance on enabling and disa…
-
General · ACR · updated: 2025-12-05 12:02Minor documentation maintenance updates.
-
General · AKS · updated: 2025-12-04 06:02The documentation now clarifies that users must ensure the AKS cluster identity has `Read` access to subnets when configuring load balancers with IP addresses in different subnets. Additionally, it emphasizes that users need an existing resource group with a virtual network and subnet to create a private endpoint. The retirement of the Basic Load Balancer on September 30, 2025, is highlighted, urg…
-
General · AKS · updated: 2025-12-04 06:02The documentation now emphasizes the need for users to assess the compatibility of existing network policies before migrating from Network Policy Manager (NPM) to Cilium Network Policy, as certain behaviors may differ post-migration. Specifically, it highlights that egress traffic to local nodes, which was previously allowed under NPM, will be blocked unless explicitly permitted after the migratio…
-
General · AGC · updated: 2025-12-05 00:37Updates content with clarifications and improvements.
-
General · AGC · updated: 2025-12-04 18:46Minor documentation maintenance updates.
-
General · AKS · updated: 2025-12-03 23:10The documentation for configuring Azure CNI networking in Azure Kubernetes Service (AKS) has been updated to clarify the use of Container Networking Interface (CNI) and improve the language for better understanding. Users can now find more precise instructions on creating and using virtual network subnets, as well as updated references for planning IP addresses specific to Azure Kubernetes Service…
-
General · AGC · updated: 2025-12-04 18:46Significant updates have been made to the documentation for the Application Gateway for Containers Web Application Firewall (WAF). Users should note that the WAF policy must now be in the same subscription and region as the Application Gateway resource, and only Default Rule Set (DRS) managed rule sets are supported. Additionally, Bot Manager Ruleset versions 1.0 and 1.1 are supported, while versi…
-
Operations · AGC · updated: 2025-12-04 18:46Minor documentation maintenance updates.
-
General · AGC · updated: 2025-12-05 00:37Minor documentation maintenance updates.
-
General · Fleet · updated: 2025-12-02 23:10The documentation has been updated to clarify that users can now define a rollout strategy for both `ClusterResourcePlacement` and `ResourcePlacement` in Azure Kubernetes Fleet Manager, enhancing their ability to manage resource placements effectively. Additionally, the article now includes examples and configuration parameters for both types of placements, allowing users to better understand how…
-
General · AGC · updated: 2025-12-04 18:46Minor documentation maintenance updates.
-
General · ACR · updated: 2025-12-05 12:02The documentation has been updated to clarify the terminology regarding registry upgrades. Users will now find references to "Changing SKUs" instead of "Changing tiers," ensuring consistency and accuracy in the guidance provided for upgrading their container registries.
-
General · AGC · updated: 2025-12-04 18:46The documentation has been updated to reflect the use of version 1.8.12 of the application gateway for containers, replacing the previous version 1.8.9 in the deployment commands. Users should now follow the updated commands to ensure compatibility with the latest features and fixes in version 1.8.12.
-
General · Fleet · updated: 2025-12-03 23:10The documentation for detecting and managing workload drift with Azure Kubernetes Fleet Manager has been updated to clarify the use of the `applyStrategy` property in both `ClusterResourcePlacement` and `ResourcePlacement`. Users can now find examples and commands for applying `ResourcePlacement`, which allows for more granular control over workload drift detection and management across clusters.…
-
General · AGC · updated: 2025-12-04 18:46Minor documentation maintenance updates.
-
General · AGC · updated: 2025-12-04 18:46Minor documentation maintenance updates.
-
General · AGC · updated: 2025-12-05 00:37Minor documentation maintenance updates.
-
General · AKS · updated: 2025-12-05 23:10Minor documentation maintenance updates.
-
General · AGC · updated: 2025-12-04 18:46Minor documentation maintenance updates.
-
General · AKS · updated: 2025-12-02 06:02Learn how to use capacity reservation groups with node pools in Azure Kubernetes Service (AKS) to guarantee allocated capacity for your node pools.
-
General · AGC · updated: 2025-12-04 18:46This article documents the latest Helm chart for Application Gateway for Containers’ ALB Service Mesh Extension.
-
General · AGC · updated: 2025-12-04 18:46Learn how to integrate Application Gateway for Containers with Istio service mesh for secure ingress traffic.
-
General · AKS · updated: 2025-12-02 06:02This article provides guidance on how to upgrade a single node pool and the cluster control plane for multiple node pools in Azure Kubernetes Service (AKS). It includes details on the process and considerations for ensuring the cluster is running the latest features and security updates.
-
General · AKS · updated: 2025-12-02 06:02This article explains how to manage node pools in Azure Kubernetes Service (AKS), including scaling, upgrading, and configuring resources to meet changing application demands. It provides essential prerequisites and limitations for managing node pools effectively.
-
General · AKS · updated: 2025-12-02 06:02This article details how to manually and automatically scale node pools in Azure Kubernetes Service (AKS). It covers the scaling process, considerations, and best practices for managing node pool resources.
-
Networking · AKS · updated: 2025-12-04 06:02This document outlines the process for updating Azure CNI IP Address Management (IPAM) modes and data plane technologies in existing Azure Kubernetes Service (AKS) clusters. It emphasizes the importance of keeping clusters updated for optimal performance and supportability.
-
General · AGC · updated: 2025-12-04 18:46This article provides updated information on SSL offloading for the Application Gateway API in Kubernetes, including best practices and configuration details to enhance security and performance.
-
General · AGC · updated: 2025-12-05 00:37This document includes updates related to the API specifications for the Application Gateway for containers in Kubernetes, ensuring that users have the latest information on configurations and usage.
-
Networking · AKS · updated: 2025-12-04 06:02This document outlines the process for updating Azure CNI IP Address Management (IPAM) modes and data plane technologies in existing Azure Kubernetes Service (AKS) clusters. It emphasizes the importance of keeping clusters updated for optimal performance and supportability.
-
General · AKS · updated: 2025-12-02 06:02This article details how to manually and automatically scale node pools in Azure Kubernetes Service (AKS). It covers the scaling process, considerations, and best practices for managing node pool resources.
-
General · AKS · updated: 2025-12-02 06:02This article explains how to manage node pools in Azure Kubernetes Service (AKS), including scaling, upgrading, and configuring resources to meet changing application demands. It provides essential prerequisites and limitations for managing node pools effectively.
-
General · AGC · updated: 2025-12-05 00:37Minor documentation maintenance updates.
-
General · AGC · updated: 2025-12-04 18:46Minor documentation maintenance updates.
-
General · AKS · updated: 2025-12-02 18:10The documentation now clarifies that users can specify up to 200 authorized IP ranges for the API server, and if they need to exceed this limit, they should consider using API Server VNet Integration, which supports up to 2,000 authorized IP ranges. Additionally, the propagation time for the rules remains at up to two minutes, with a slight rephrasing for clarity.
-
General · AKS · updated: 2025-12-05 23:10The documentation now clarifies that when using the `az aks create` command to install the Managed Gateway API CRDs on a newly created cluster, users must enable an implementation of the Gateway API for the managed CRD installation. Additionally, an example has been added to demonstrate how to enable the managed Gateway API installation with the Istio service mesh add-on using the `–enable-azure-…
-
General · AKS · updated: 2025-12-03 23:10The documentation now clarifies that starting September 15, 2024, Konnectivity will no longer be supported for private key vaults in new subscriptions or those that haven’t previously used this configuration, with continued support for existing configurations until AKS version 1.30 reaches end of life. Additionally, it specifies that for private clusters using KMS with a private key vault, the net…
-
General · AGC · updated: 2025-12-04 18:46The documentation now clarifies that enabling the Web Application Firewall (WAF) on Application Gateway for Containers incurs additional charges, with specific pricing details provided for each meter. Users will see updated rates, such as $0.031 per application gateway for container WAF-hour and $0.018 per frontend WAF-hour, reflecting the increased costs associated with WAF usage.
-
General · AKS · updated: 2025-12-05 23:10Minor documentation maintenance updates.
-
Compute · AKS · updated: 2025-12-04 23:12The documentation now includes the `Standard_ND96isr_H100_v5` VM size as a supported option for multi-instance GPU on AKS, in addition to the previously listed `Standard_NC40ads_H100_v5` and A100 GPU VM sizes. This update allows users to utilize an additional VM size for their multi-instance GPU workloads, enhancing their options for resource allocation.
-
General · AGC · updated: 2025-12-05 00:37Minor documentation maintenance updates.
-
General · AGC · updated: 2025-12-04 18:46Minor documentation maintenance updates.
-
General · AKS · updated: 2025-12-04 06:02Minor documentation maintenance updates.
-
General · AGC · updated: 2025-12-04 18:46Minor documentation maintenance updates.
-
General · Fleet · updated: 2025-12-04 06:02The documentation for the Azure Kubernetes Fleet Manager has been updated to clarify the use of the `whenToTakeOver` property in both `ClusterResourcePlacement` and `ResourcePlacement`. Users can now explicitly control how existing workloads are managed during placement, with detailed examples provided for both types of resource placements. Additionally, the article emphasizes the importance of un…
-
General · ACR · updated: 2025-12-05 12:02The documentation for Azure Container Registry has been updated to clarify the terminology from "service tiers" to "SKUs," enhancing user understanding of the differences in features and limits among the Basic, Standard, and Premium SKUs. Users can now find detailed information on SKU features, including the availability of private endpoints exclusively in the Premium SKU, and improved description…
-
General · AGC · updated: 2025-12-05 16:25The documentation now includes a clarification regarding frontends in Application Gateway for Containers, emphasizing that a frontend represents a unique entry point for client traffic. Users are informed that multiple hostnames can resolve to the same frontend, and if isolation is needed—such as using the same hostname across different environments—they should create separate frontends to maintai…
-
General · AGC · updated: 2025-12-05 00:37Minor documentation maintenance updates.
-
General · AGC · updated: 2025-12-05 00:37Minor documentation maintenance updates.
-
General · AGC · updated: 2025-12-05 00:37Minor documentation maintenance updates.
-
Security · AGC · updated: 2025-12-04 18:46Minor documentation maintenance updates.
-
General · AGC · updated: 2025-12-04 18:46Minor documentation maintenance updates.
-
General · AGC · updated: 2025-12-05 00:37Minor documentation maintenance updates.
-
General · AGC · updated: 2025-12-05 00:37Minor documentation maintenance updates.
-
General · AKS · updated: 2025-12-03 23:10The documentation for deploying an Azure Kubernetes Service (AKS) cluster with a custom Container Network Interface (CNI) plugin has been updated for clarity. Users can now find more precise instructions on how to create an AKS cluster without a preinstalled CNI plugin and are reminded that Microsoft support does not cover CNI-related issues for these custom deployments. Additionally, the requirem…
-
General · ACR · updated: 2025-12-03 06:02The documentation for pushing multi-architecture images has been updated to correct the image name from "myyimage" to "myimage" in the build command examples. This change ensures that users are using the correct image name when building and pushing their multi-architecture images to the container registry.
Full tracker (with filters): Azure Container Services Docs Tracker