Weekly Azure Roundup: Governance, Serverless AI, and Data Security
Azure’s recent updates introduce new resource management options, deeper AI features, upgraded tooling, and security improvements. The latest previews and releases make it easier to manage core infrastructure, automate developer workflows, and secure data at scale—continuing to build on recent governance, migration, and optimization guidance.
Azure Service Groups and Advanced Resource Management
Azure Service Groups are now in public preview, allowing resource grouping for targeted monitoring and health checks at the tenant level. These containers function separately from traditional RBAC or policy scopes, making it easier to group resources for app-centric monitoring or detailed cost analysis via the REST API, portal, and Azure Monitor health model.
MCP Server Hosting and Azure Functions Flex Consumption
Developers can now deploy remote MCP servers as fully serverless applications using Azure Functions Flex Consumption (early preview), supporting Python, Node.js, and .NET SDKs. Integration options include the Azure MCP Extension or your own SDK, with deployment managed via Azure CLI, local debugging, and API Management extensions. The model allows flexible scaling and cost management, and early adopter feedback will help refine it further. This development supports a shift towards truly cloud-native, serverless MCP deployments, following recent expansions to MCP integration and IDE support.
Azure SDK: AI Libraries, Observability, and Data Movement
The August Azure SDK update covers releases and betas for several programming languages. New AI libraries for JavaScript and Python are now generally available and integrate with Azure AI Foundry and Azure OpenAI Services. .NET’s updated Storage Data Movement library addresses migration and file transfer pain points, and new Management, Monitor, and Metrics tools are being introduced for Carbon Optimization, Recovery Services, Rust language support, browser automation, and storage management. Migration documentation supports smoother setup and better cost visibility. These SDK improvements build on previous enhancements, supporting interoperability, AI integration, and ongoing cross-language support.
Enterprise AI/ML Security and Scalability with Azure Application Gateway
An in-depth analysis outlines best practices for using Azure Application Gateway as a secure entry point for AI/ML services, including OpenAI, Cognitive Services, and custom APIs. The article covers routing, TLS/mTLS, web application firewalls, logging, observability, and integration practices. Adaptive load routing and planned features aim to support demanding workloads.
Microsoft Fabric: Workspace Security, Metric Insights, and Data Orchestration
Microsoft Fabric now offers workspace-level Private Link (preview), allowing granular network isolation per workspace. The Fabric Capacity Metrics App preview introduces an Item History page for deeper evaluation of compute trends and resource planning. Fabric Data Factory Copy Jobs now support multiple schedulers, reducing duplication and simplifying integration with CI/CD and pipelines. New OpenAPI spec generation features make it easier to integrate function APIs with other systems. These features expand on recent security, orchestration, and automation enhancements in Fabric, showing a stronger focus on precise management and developer automation.
- Microsoft Fabric Introduces Workspace-Level Private Link (Preview)
- Preview of Item History Page in Microsoft Fabric Capacity Metrics App
- Simplifying Data Ingestion with Copy Job: Multiple Scheduler Support in Microsoft Fabric
- OpenAPI Specification Generation in Fabric User Data Functions
Elastic SAN, Storage Best Practices, and Data Protection
Azure Elastic SAN now features integrated backup through Azure Backup and Commvault, currently in preview. Azure Backup provides lifecycle-managed snapshots, while Commvault enables rapid cross-region restore and protection. Both are designed for VM-oriented protection and meet cost/retention needs with detailed setup guidance. A comprehensive Azure Storage guide covers product fundamentals, security, cost, and best practices for Blob, File, Queue, Table, Disk, and Elastic SAN services—continuing the ongoing evolution of storage solutions.
- Enhance Your Data Protection Strategy with Azure Elastic SAN’s Newest Backup Options
- Azure Storage: Fundamentals, Services, and Community Best Practices
SQL and Data Connectivity in Microsoft Fabric and Power BI
A new video walks through Fabric SQL database setup, OneLake and Purview management, service selection, and live analytics integration, offering practical insights for Fabric’s SQL and pricing. The on-premises Data Gateway August release introduces Entra ID authentication for PostgreSQL, improving security and supporting more secure cloud analytics. These advances align with earlier efforts to unify and secure data connectivity across the Microsoft ecosystem.
- SQL Database in Microsoft Fabric
- On-premises Data Gateway August 2025 Release: Entra ID Support for PostgreSQL
Developer Experience and Tooling: Azure Developer CLI (azd)
The August 2025 release of the Azure Developer CLI enhances reliability, adds documentation, and expands template options. Enhancements cover PowerShell support, .NET Aspire detection, Visual Studio fixes, and improved workflows for environment and deployment management. Documentation now covers configuration, CI/CD, and progression from local builds to production. A template library further assists teams with deployments involving monitoring, AI, and data integration. These updates continue last week’s improvements for development toolchains and automation on Azure.
Azure Platform Updates: Infrastructure, Serverless, and Security Enhancements
Recent Azure updates include new VM options, improved diagnostics, and flexible deployment solutions. New DC EC esv6 VMs support specialized workloads, AKS now offers integrated Azure Bastion for easier remote access, serverless Functions can now scale with Flex Consumption, and Application Gateway receives maxSurge for zero-downtime updates. Storage improvements clarify Azure Files Premium cost, add Blob Storage regional archiving, and enhance NetApp Files logging and cool access settings. Log Analytics now supports up to 100M results per query, and deprecated workflows (Sentinel/Defender in China, CNAME certs) are announced. These enhancements build on work to make Azure’s platform more robust, adaptable, and cost-efficient.
Other Azure News
Azure File Sync now leverages managed identities, moving away from credential-based management for stronger security and simpler operations, with migration tutorials and PowerShell scripts provided. Microsoft’s open source journey entry shares their contributions from the Linux kernel to global-scale AI—including AKS, Dapr, Radius, and published best practices. A new entry in Azure Essentials covers saving costs with Azure Hybrid Benefit, giving users details on licensing, rights, and migration planning tools. These updates underline Azure’s focus on managed identities, open source partnership, and actionable cost management advice—consistent with last week's directions.