Skip to content

Commit

Permalink
TechDoc updates related to CAF v6.2.0 changes (especially around new …
Browse files Browse the repository at this point in the history
…policies)
  • Loading branch information
Adin Ermie committed Jan 3, 2025
1 parent b7e2741 commit a311bee
Show file tree
Hide file tree
Showing 2 changed files with 6 additions and 0 deletions.
4 changes: 4 additions & 0 deletions docs/azure/best-practices/azure-ai.md
Original file line number Diff line number Diff line change
Expand Up @@ -40,3 +40,7 @@ When working with Azure OpenAI, you may need to create a Private Endpoint to res
It has been observed in several cases, where the DNS `A-Record` for the Azure OpenAI service is not being created properly in the Private DNS Zone. This can cause issues with the service not being able to resolve the endpoint.

If you encounter this issue, please open a [support ticket](../../welcome/support.md) with the Public Cloud Platform support team to investigate and resolve the issue.

## Regulated Landing Zone Compliance

If you are deploying Azure Cognitive Services, OpenAI, or Machine Learning, there are several Microsoft Enterprise Scale guardrail policies that are enforced that control permitted SKUs, secure authentication through Managed Identities, storage configuration, outbound network access, etc.
2 changes: 2 additions & 0 deletions docs/azure/design-build-deploy/networking.md
Original file line number Diff line number Diff line change
Expand Up @@ -13,6 +13,8 @@ There are no subnets that are pre-created within the VNet. Each team is responsi

For further guidance on creating subnets with associated NSGs (specifically using Terraform), refer to the [Be Mindful](../best-practices/be-mindful.md#using-terraform-to-create-subnets) documentation.

Additionally, as part of implementing a **Zero Trust** security model, all subnets need to be created as [Private Subnets](https://learn.microsoft.com/en-us/azure/virtual-network/ip-services/default-outbound-access#utilize-the-private-subnet-parameter-public-preview).

## Spoke-to-Spoke connectivity

If your team has multiple environments (ie. Dev, Test, Prod, Tools) within the same Project Set, you may require connectivity between the different environments. This is known as spoke-to-spoke connectivity.
Expand Down

0 comments on commit a311bee

Please sign in to comment.