The Ultra Transcenders glossary

2,575 Microsoft cloud, security and AI terms, each explained in a sentence or two and linked to Microsoft Learn. One glossary for the whole series, not tied to any one exam.

#

--attach-acr

Option on az aks create or az aks update that links a container registry to an AKS cluster by assigning AcrPull to the kubelet identity, so nodes can pull its images.

168.63.129.16 (WireServer)

Special platform address (WireServer) through which Azure delivers the VM agent channel, built-in DNS, DHCP and load balancer health probes. Traffic to it must stay open, or those platform functions stop working.

3DES (Triple Data Encryption Standard)

Older symmetric block cipher (Triple DES) regarded today as weak. Storage customer-managed keys cannot use it as a key type.

5-tuple

The five values that identify a flow: protocol plus the source and destination IP addresses and ports. Azure Load Balancer hashes them by default to spread traffic, and IP flow verify in Network Watcher takes them as its input.

@secure() decorator

Bicep decorator marking a parameter or output of type string or object as sensitive, so its value is kept out of Resource Manager logs and deployment history.

\${{inputs.<name>}} (job input expression)

An expression used in an Azure Machine Learning command that, when the job runs, is substituted with the input's downloaded or mounted path, or with its literal value. The preceding flag has to match the argparse name in the script.

_backup.filter

File placed in an app's site\wwwroot folder that lists paths for custom App Service backups to skip; during a restore, those excluded paths are not touched.

_dnsauth TXT record

A TXT record named _dnsauth.<subdomain> that Front Door Standard/Premium checks to confirm you own a domain. It plays no part in routing.

A

A record

Points a DNS name at an IPv4 address. A typical use is pointing a root (apex) domain at an app.

AAAA record

Type of DNS entry that resolves a host to its IPv6 address.

ABAC

See Azure ABAC.

ABFS (Azure Blob File System driver)

Short for Azure Blob File System driver. Hadoop, Spark and HDInsight rely on this HDFS-compatible connector to read and write ADLS Gen2 data.

abfss:// (Azure Blob File System (secure))

Secure URI scheme used to reach ADLS Gen2 data, always through the dfs endpoint (account.dfs.core.windows.net); blob endpoint addresses are not used with it.

Abuse monitoring

Azure OpenAI mechanism that looks across a customer's traffic for recurring misuse and flags it for review by Microsoft. Individual responses are not filtered by it.

Accelerated Networking

SR-IOV capability that cuts latency, jitter and CPU overhead for VM networking in Azure. HPC VM sizes with RDMA achieve even lower latency.

Access keys (storage account keys)

Pair of 512-bit keys belonging to a storage account; every account SAS and service SAS is signed with one of them. Once both are regenerated, direct key access and all those SAS tokens stop working.

Access package

Bundle in entitlement management that groups apps, groups and sites together with request policies and an expiry. Access to the resources is withdrawn once an assignment expires.

Access policies (Key Vault)

Older permission model for Key Vault, now superseded by the Azure RBAC model.

Access restrictions (App Service access restrictions)

Allow and deny rules for inbound App Service traffic, matched on IP range, service tag or subnet. They can, for instance, restrict an app to a corporate NAT's public addresses.

Access reviews

Microsoft Entra ID Governance capability that periodically asks reviewers or users themselves to confirm membership for guests, app users or groups, removing anyone who does not respond. PIM, by contrast, handles privileged roles.

Access tier

Setting for block blobs in standard accounts (Hot, Cool, Cold or Archive). Cooler tiers cost less to store but more to access.

Account SAS

Shared access signature created with an account key. One token may cover multiple services (ss), resource types (srt) and permissions (sp), service-level operations included, but turning off Shared Key authorisation blocks it.

Accountability principle

Under this responsible AI principle, identifiable people must answer for how an AI system behaves; human oversight, override capability and governance committees support it.

Accuracy (classification metric)

Overall measure for a classification model: the share of all test cases it predicts correctly.

ACI

See Azure Container Instances.

ACL (access control list)

List of permissions set on a file or folder; examples include the POSIX-style lists in ADLS Gen2 and NTFS lists on Azure Files. Attribute conditions cannot be expressed in them.

ACR

See Azure Container Registry.

ACR geo-replication

Capability of Premium Azure Container Registry that keeps images in multiple regions while clients still use a single registry name.

ACR Tasks

Capability present in all Azure Container Registry SKUs for building, pushing and patching images in the cloud, through quick tasks (az acr build), triggered tasks or multi-step tasks.

AcrPull

Data-plane role built into Azure Container Registry that allows reading tags and pulling images. Assign it to whichever identity performs the pull.

AcrPush

Azure Container Registry built-in role for pushing as well as pulling images. It is the narrowest role that permits pushes, though signing images is outside it.

AcrQuarantineWriter

Azure Container Registry built-in role belonging to the quarantine feature: it lets an identity push quarantined images and update their quarantine status. It has nothing to do with signing.

Action groups

Sets of notification and automation targets in Azure Monitor that an alert calls when it fires. Detecting the problem is the alert rule's job, not theirs.

Active assignment

Type of PIM assignment that grants the role straight away, with no activation step, for as long as the assignment lasts.

Active Directory - Integrated (Microsoft Entra Integrated)

Sign-in choice in SSMS, since renamed Microsoft Entra Integrated, that silently passes on a hybrid user's existing Windows credentials using federation or seamless SSO.

Active Directory - Password (Microsoft Entra Password)

SSMS sign-in choice, since renamed Microsoft Entra Password, that prompts for a Microsoft Entra user name and password.

Active geo-replication

Azure SQL Database feature that replicates a single database to as many as four readable secondaries, failed over manually. SQL Managed Instance does not offer it.

Active-active VPN gateway

Configuration where tunnels run on both gateway instances, and each instance has a Standard static public IP of its own. Azure Route Server branch-to-branch transit needs this mode plus ASN 65515.

Activity log

Record, held for 90 days, of control-plane operations in a subscription such as deployments and Policy events. Data-plane actions, Key Vault reads for example, are not captured.

Activity log alert

Alert rule without state that triggers on a matching Activity log event, deleting a management lock for instance. A scope, a condition and an action group are required; a Log Analytics workspace is not.

AD (Active Directory)

Short for Active Directory, the directory service built into Windows Server (AD DS). Entra Connect synchronises on-premises forests to Microsoft Entra ID.

AD CS (Active Directory Certificate Services)

Short for Active Directory Certificate Services, a Windows Server role that operates a private certificate authority. Because the certificates it issues are not publicly trusted, services needing a public CA, such as Front Door bring-your-own-certificate, refuse them.

AD DS (Active Directory Domain Services)

Short for Active Directory Domain Services, the domain controller-based Windows directory run on-premises. Microsoft Entra Domain Services offers a managed counterpart.

AD DS authentication (Azure Files)

Option that domain-joins a storage account to on-premises AD DS, letting synced hybrid users mount its SMB shares using Kerberos. RBAC controls share-level access, while Windows ACLs govern files and folders.

AD FS (Active Directory Federation Services)

Short for Active Directory Federation Services, a federation server hosted on-premises. Its older publishing role, Web Application Proxy, is a separate thing from Microsoft Entra application proxy.

Adaptive thinking (thinking type adaptive)

Mode in which Claude itself chooses whether to reason and for how long, guided by the effort parameter. Claude Opus 4.7 and newer models support only this thinking mode.

Add-AzNetworkInterfaceIpConfig

Cmdlet in Az.Network for adding another IP configuration to a NIC that already exists. Passing -PrivateIpAddressVersion IPv6 lets a VM gain IPv6 without needing a second NIC.

Add-AzVirtualNetworkPeering

Az.Network cmdlet for creating a VNet peering link in a single direction. For hub-and-spoke gateway sharing, set -AllowGatewayTransit on the link from hub to spoke and -UseRemoteGateways on the link from spoke to hub.

Additional context (Authenticator)

Microsoft Authenticator option that enriches push and passwordless prompts with where the sign-in is coming from geographically and which application asked for it.

Additional local administrators (Microsoft Entra Joined Device Local Administrator)

Microsoft Entra ID P1 device setting that grants selected users local administrator rights across all Microsoft Entra joined devices. Targeting only some devices is not possible.

Address space

The CIDR block or blocks that define a VNet. Every subnet has to fall inside it; blocks can be added, or altered when nothing is using them.

ADLS Gen2 (Azure Data Lake Storage Gen2)

Short for Azure Data Lake Storage Gen2: a standard GPv2 account with hierarchical namespace turned on, so analytics workloads get true directories and POSIX-style ACLs.

Admin user (ACR)

Built-in admin account on a container registry, turned off by default, with one username and two passwords that can be regenerated. It grants full push and pull rights under a single shared identity.

Administrative (Activity log category)

Category of Activity log entries covering every create, update, delete and action call made via Resource Manager, for example adding a tag, attaching a disk or creating a resource group.

Administrative units

Containers in Microsoft Entra ID that limit the reach of directory administrators to particular users, groups or devices. They are neither Azure Policy scopes nor cost groupings.

ADUC (Active Directory Users and Computers)

Short for Active Directory Users and Computers, the on-premises console for administering AD users and objects individually. Bulk changes are impractical with it.

Adult content detection (Adult visual feature)

Image Analysis 3.2 capability, needing no training, that flags images through isAdultContent, isRacyContent and isGoryContent with scores between 0 and 1. Newer moderation is offered by Azure AI Content Safety.

Advanced data parsing

Structure-aware document processing: it applies OCR to scanned pages, joins tables spanning pages, recovers headers and produces chunks tagged with heading, page and table metadata, in contrast to fixed-size or page-by-page chunking.

Advanced Data Security

See Microsoft Defender for SQL.

Advanced hunting

Threat-hunting feature of the Microsoft Defender portal that runs KQL over 30 days of raw Defender XDR data, plus onboarded Sentinel data, and supports custom detections. It finds activity after it happens rather than blocking it.

Advanced Threat Protection

Part of Defender for SQL that raises alerts for possible SQL injection, code vulnerable to injection, brute-force attacks and access by unusual principals or from unusual locations.

AES (Advanced Encryption Standard)

Short for Advanced Encryption Standard, a symmetric cipher. With TDE, the RSA TDE protector wraps an AES-256 data encryption key.

afdverify

Verification CNAME in Front Door (classic), mapping afdverify.<host> to afdverify.<name>.azurefd.net, which proves ownership of a custom domain while live traffic stays where it is.

Affordance (prompting)

Prompting approach where the model is offered callable tools or functions, letting it pass tasks like calculations or lookups to code rather than guess the answer.

AG

See Always On availability group.

Agent Application (published agent)

Resource that Azure creates on publishing an agent version; it has a stable endpoint plus its own Microsoft Entra agent identity and blueprint. Role assignments held by the project identity do not carry over and need to be granted again.

Agent endpoint (stable agent endpoint)

Fixed URL through which consumers call an agent by name. A version selector decides whether it always serves the newest version, without redeployment, or stays pinned to a single active version.

Agent ID Administrator

Privileged role in Microsoft Entra for managing agent identities and blueprints across their lifecycle. Approving partner agent permissions and granting admin consent are beyond it.

Agent identity

Service principal of a special kind representing an AI agent, holding no credentials itself. It can act on its own using app-only permissions or for a user using delegated ones; Conditional Access offers only block, not grant controls, for it.

Agent identity blueprint (blueprint)

Template in Microsoft Entra Agent ID that holds credentials for one type of agent and obtains tokens for the agent identities created from it. Policies like Conditional Access set on it reach all those identities; Azure RBAC roles cannot be assigned to it.

Agent instructions (system message)

System message of an agent defining its role, objectives, tone and boundaries; it also steers, though not deterministically, when tools get called.

Agent Monitoring Dashboard

View in Microsoft Foundry, powered by Application Insights, that tracks token consumption, latency, successful runs and evaluation scores and can raise alerts. It gives visibility at runtime and is not a gate for releases.

Agent risk

Condition in Conditional Access based on the risk level Microsoft Entra ID Protection assigns to agent identities, letting a policy stop high-risk agents from obtaining tokens.

Agent version

Snapshot of an agent's configuration that cannot be changed. Every edit, a single prompt tweak included, produces a new one, and rolling back simply means referencing an earlier version.

Agent's user account (agent user)

Optional Microsoft Entra user object tied one-to-one to an agent identity, for services such as a mailbox, Teams or OneDrive that expect a user. No password or passkey exists for it, and privileged admin roles cannot be assigned to it.

Agentic retrieval

Query approach in Azure AI Search where an LLM turns a conversation into several planned subqueries; these execute together, are reranked semantically, and the best chunks are merged. Classic RAG, by contrast, issues just one query.

Agentless discovery for Kubernetes

Capability in Defender CSPM and Defender for Containers that inventories Kubernetes clusters and assesses their posture through APIs, using the Kubernetes Agentless Operator role. Pod admission and blocking are outside its scope.

Agentless malware scanning

Snapshot-based malware check for VM disks that runs Microsoft Defender Antivirus engines with no agent installed. It comes with Defender for Servers Plan 2, not with Defender CSPM by itself.

Agentless scanning (agentless machine scanning)

Defender for Cloud technique that inspects snapshots of VM disks for secrets, vulnerabilities and installed software, with nothing installed on the VM.

Agents (classic) API (threads, runs, messages)

First-generation Foundry Agent Service API, based on threads, messages and runs. It is deprecated, replaced by conversations and responses, and retires on 31 March 2027.

AGIC

See Application Gateway Ingress Controller.

AGWFirewallLogs

Log Analytics table, resource-specific, that stores WAF events from Application Gateway. Front Door uses different tables.

AI Administrator

Microsoft Entra role for managing Microsoft 365 Copilot and other AI settings; holders may also consent on behalf of the whole tenant, Microsoft Graph application permissions excepted.

AI agent

Software pairing a generative model with tools, enabling it to understand what is asked, converse and act to reach a goal.

AI bill of materials (AI BOM)

Catalogue compiled by AI security posture management in Defender CSPM listing what a generative AI app is built from, including its models, SDKs and data sources.

AI enrichment (skillset)

Indexing-time process in Azure AI Search where skills such as OCR, key phrase extraction, entity recognition and image analysis turn raw content into fields that can be searched.

AI gateway (Foundry)

API Management instance linked to a Microsoft Foundry resource; it sits in front of registered models, tools and agents, adding access control, rate limiting and diagnostics. Custom agents cannot be registered without one.

AI gateway in Azure API Management

Collection of API Management gateway capabilities, offered in every tier rather than as its own product, for placing model APIs, MCP servers and A2A agent APIs behind caller authentication, token metering and content screening.

AI Red Teaming Agent

PyRIT-based tool in Microsoft Foundry that mounts simulated adversarial attacks on models and agents and reports how often attacks succeed. It identifies risk without blocking anything.

AI security posture management (AI-SPM)

Part of Defender CSPM, absent from Foundational CSPM, that finds generative AI workloads, compiles an AI bill of materials and highlights AI-specific recommendations and attack paths.

AIProjectClient

Starting object of the Microsoft Foundry SDK, constructed from the project endpoint plus a Microsoft Entra credential like DefaultAzureCredential. Because only Entra ID authentication is supported, no project key or SAS exists.

AIServices (resource kind)

Setting kind to AIServices creates the multi-service Microsoft Foundry resource, which Microsoft recommends; Speech, Vision, Language, Azure OpenAI and Content Understanding are then reached with a single credential at a single endpoint.

AKS (Azure Kubernetes Service)

Short for Azure Kubernetes Service, a managed Kubernetes offering that gives full control of clusters and node pools. Scaling uses the cluster autoscaler and Horizontal Pod Autoscaler; user sign-in is not built in.

Alert processing rules (action rules)

Rules applied after an alert fires that attach or suppress action groups, on a schedule if required. Only notifications are affected; the alert rule stays in place and keeps firing.

Alert rule

Azure Monitor definition made up of a scope naming the target resources, a condition setting the signal and logic, and optionally action groups. A separate rule is needed for every signal that has different recipients.

All resources (Conditional Access) (All cloud apps)

Broadest Conditional Access target, previously called All cloud apps, which takes in every resource such as Microsoft 365 and the Azure portal. Microsoft Azure Management covers less.

AllMetrics

Category in a diagnostic setting that sends out a resource's platform metrics. If only log categories are chosen, metrics are not exported.

Allow Azure services and resources to access this server

Networking option on Azure SQL that lets in connections from every Azure IP address, even resources owned by other customers. Leaving it off follows least privilege.

Allow forwarded traffic

Peering option permitting traffic that did not start in the peer VNet, but was forwarded by a gateway or NVA, to pass over the peering.

Allow gateway transit (allowGatewayTransit)

Peering option set on the hub, which owns the gateway, so that peered VNets can share its ExpressRoute or VPN gateway. The spoke sets Use remote gateways to match; on a VNet lacking a gateway the option has no effect.

Allow storage account key access (AllowSharedKeyAccess)

Storage setting which, once disabled, makes every request authorised by Shared Key fail with 403, covering account keys plus account and service SAS. Microsoft Entra identities gain nothing from it, and user delegation SAS keeps working.

AllowAzureLoadBalancerInBound

Built-in NSG inbound rule at priority 65001 that admits traffic coming from Azure Load Balancer, health probes included.

allowBlobPublicAccess (Allow Blob anonymous access)

Account-level storage property; setting it to false blocks anonymous reads on all containers regardless of what each container's access level says.

Allowed locations

Built-in Azure Policy that rejects resources in any region missing from its list, making it the usual way to control where deployments go.

Allowed locations for resource groups

Azure Policy definition that constrains only where resource groups are created; resources within those groups can still be placed in other regions.

Allowed resource types

Deny-effect built-in Azure Policy that permits only the resource types it lists and blocks the rest.

Allowed virtual machine size SKUs

Azure Policy that limits deployments to a chosen set of VM sizes.

AllowInternetOutBound

Built-in NSG outbound rule at priority 65001 that lets traffic reach the internet. A deny rule with a smaller priority number overrides it.

AllowVNetInBound

Built-in NSG inbound rule at priority 65000 that admits anything from the VirtualNetwork service tag, which also covers peered VNets.

AllowVnetOutBound

Built-in NSG outbound rule at priority 65000 that lets VMs open connections towards their own VNet and peered VNets. The NSG at the destination still has to permit the port.

Alt text (Image Analysis)

Image description for accessibility, produced by Image Analysis captioning above a confidence threshold. New solutions should prefer Content Understanding or a multimodal model.

Always Encrypted

Client-side encryption of SQL columns using keys never revealed to the database engine, meaning cloud administrators and DBAs only ever see ciphertext.

Always On availability group (AG)

High-availability feature of SQL Server that keeps synchronous or asynchronous replicas on different servers or VMs without shared storage. As every replica is a live SQL Server, it is an expensive way to provide DR.

AMA

See Azure Monitor agent.

Amazon EC2 (EC2)

Amazon's virtual machine offering. Defender for Cloud can onboard EC2 instances automatically, installing Azure Arc and Defender components, when its AWS connector has Defender for Servers turned on.

Amazon ECR (ECR)

Amazon's registry service for container images, which Defender for Containers can scan once the AWS connector is in place.

AMD SEV-SNP (Secure Encrypted Virtualization-Secure Nested Paging)

Hardware feature from AMD that encrypts and isolates virtual machine memory; the confidential VM series DCasv5/DCadsv5 and ECasv5/ECadsv5 rely on it.

AmlOnlineEndpointConsoleLog

Table in Log Analytics capturing console output from Azure Machine Learning online endpoint containers, useful when a container will not start or handles requests incorrectly.

AMPLS

See Azure Monitor Private Link Scope.

AMQP (Advanced Message Queuing Protocol)

Short for Advanced Message Queuing Protocol; Service Bus and Event Hubs accept it as well as HTTPS.

AnalysisResult

Object that poller.result() returns in Content Understanding; its JSON body carries the extracted fields and markdown content.

Analytics rule

KQL-based detection in Microsoft Sentinel that searches ingested data, generates alerts and bundles them into incidents. Rules identify threats but do not fix them.

Analytics tier

Hot data tier of Microsoft Sentinel supporting hunting, detections and every Sentinel feature; its analytics retention can be extended to as much as two years.

Analyze image API (image:analyze)

REST operation in Content Safety that rates a blob URL or base64-encoded picture against four harm categories, returning severity 0, 2, 4 or 6; it is called as POST {endpoint}/contentsafety/image:analyze.

Analyze text API (text:analyze)

Content Safety call (POST {endpoint}/contentsafety/text:analyze) that rates text for violence, hate, sexual content and self-harm, optionally matching it against named blocklists.

analyze-text endpoint (/language/:analyze-text)

Single Azure Language REST endpoint (/language/:analyze-text) in which the kind field of the request, for example SentimentAnalysis, EntityRecognition or LanguageDetection, chooses the feature. The older /text/analytics/v3.x paths are superseded by it.

AnalyzeTextOptions

Request class in the Content Safety SDK carrying the text, categories, blocklist names and output type; AnalyzeText accepts it.

Annotate (guardrail action)

Guardrail action that reports detection details such as detected, filtered and severity yet lets the content through. Blocking requires Annotate and block instead.

Annotate and block

Guardrail action in Microsoft Foundry that marks detected risk and also stops it; at the tool-call intervention point, this means the tool call never runs.

Anomaly detection

Identifying data points or time-series values that look out of the ordinary, such as fraud or a spike from a sensor. Microsoft retired the dedicated Azure AI Anomaly Detector service on 1 October 2026.

Anonymous (authorisation level)

See Authorisation levels.

Anonymous IP address

Sign-in risk detection in Microsoft Entra ID Protection, raised when someone signs in through an anonymising proxy like Tor.

Apache Avro

Compact binary data format organised by rows; Event Hubs Capture produces its files in this format natively.

Apache Spark pool

Spark compute in Azure Synapse used to build and update Delta Lake tables, run machine learning and stream changes from the Cosmos DB change feed.

Apex domain (root domain, zone apex)

The bare domain without any subdomain (example.com), also known as the zone apex or root domain. Since a CNAME is not allowed there, routing it to a service like Front Door relies on CNAME flattening or Azure DNS alias records.

API (application programming interface)

Short for application programming interface: a contract that client code calls programmatically, for example a web API secured with tokens or the Files, Images or Responses APIs.

API key (Foundry resource key) (resource key)

Key generated alongside an Azure OpenAI or Foundry Tools resource and supplied through the api-key header. It is used only when keyless authentication with Microsoft Entra ID cannot be.

API key (Foundry) (key-based authentication)

Secret shared by callers of an Azure OpenAI or Microsoft Foundry endpoint, conferring full access without any role check. Passing it around eliminates separation of roles, and it offers no network isolation.

API Management (APIM)

Azure's API gateway, where policies like rate limits, quotas, ip-filter and validate-jwt are defined once and apply to every API. Production VNet injection is offered in the Premium tier.

API Management llm-content-safety policy

Policy for the AI gateway in API Management: it passes prompts or completions to Azure AI Content Safety and rejects the call with 403 if a blocklist matches, Prompt Shields detect an attack, or a harm category passes its threshold, where 0 is strictest and 7 most lenient.

API Management llm-token-limit policy

Inbound AI gateway policy that caps token usage per counter key. Exceeding tokens-per-minute produces 429, an exhausted token quota produces 403, and estimate-prompt-tokens lets it reject before calling the backend.

API Management validate-jwt policy

API Management inbound policy validating a JWT's issuer, audience, signature and required claims, for instance using the Microsoft Entra OpenID configuration. By default it answers 401 when a token is absent or invalid.

API permissions

Blade of a Microsoft Entra app registration where the client asks for application or delegated permissions; once consent is given they show up as claims in tokens.

API server authorized IP address ranges

AKS capability restricting who can reach the public Kubernetes API server to specified IP ranges. Existing public clusters can have it switched on.

API-driven inbound provisioning

Inbound Microsoft Entra provisioning in which an app or script submits SCIM bulk requests built from any HR source, a CSV file for instance. The ECMA connector, by contrast, provisions outbound.

APIM

See API Management.

APIM named values (named values)

Reusable name/value pairs referenced from API Management policies. A value can be held in plain text, encrypted inside APIM as a secret, or pulled from Key Vault through the instance's managed identity.

APIM protocols and ciphers (Protocols + ciphers)

Blade in API Management for switching TLS/SSL protocols (SSL 3.0, for example) and cipher suites on or off, on the client side and towards backends. By default the minimum is TLS 1.2.

APIM subscription key (Ocp-Apim-Subscription-Key)

Caller key supplied either as a query-string parameter or in the Ocp-Apim-Subscription-Key header. API Management's gateway checks it as an APIM subscription key, which is not a Microsoft Entra token, while Foundry Tools like Content Safety read the resource key from it.

APM (application performance monitoring)

Short for application performance monitoring, the collection of request, dependency, failure and exception telemetry that sits at the heart of Application Insights.

App Configuration (Azure App Configuration)

Central store in Azure for feature flags and application settings. Its key-values can be made read-only, but those locks differ from Resource Manager locks.

App Configuration Data Owner

Data-plane Azure role with full rights over key-values in App Configuration. No Microsoft Entra directory permissions come with it.

App manifest (application manifest)

Portal-editable JSON describing a Microsoft Entra app registration's attributes, including keyCredentials, accessTokenAcceptedVersion and groupMembershipClaims.

App registration

Object in Microsoft Entra ID describing an app's identity, the permissions it needs and which account types it supports; multi-tenant apps and OpenID Connect sign-in depend on it.

App roles

Roles declared by an API in its app registration. When one app calls another using client credentials, the assigned roles appear in the token's roles claim.

App Service

Managed PaaS hosting for web apps and Web App for Containers, run in a sandbox without OS access. Deployment slots and autoscale start at the Standard tier.

App Service Authentication (Easy Auth)

Code-free sign-in feature of App Service, also called Easy Auth, supporting Microsoft Entra ID along with other identity providers.

App Service backup

Scheduled or on-demand custom backup saving an app's configuration and content as blobs in a storage container within the same subscription. It is configured for each app or slot and can be restored to a different one.

App Service custom domain

Host name bound to an App Service app once the service has confirmed an asuid TXT record and an A or CNAME record. Serving it over HTTPS also requires binding a TLS certificate.

App Service Environment (ASE)

Network-isolated, single-tenant deployment of App Service on the Isolated plan. Because its cost is much higher, it suits only workloads that demand isolation.

App Service plan

Billing unit providing the compute, defined by region, OS, pricing tier and instance size and count, on which one or more apps run. Separate plans are needed for Linux and Windows apps.

App settings

Environment variables injected into an App Service app as name/value pairs, taking precedence over values in appsettings.json or Web.config. Each can be marked as specific to a slot.

Append (Policy effect)

Policy effect in Azure that inserts fields only while a resource is being created or updated; resources that already exist are not corrected by it.

Append a tag and its value to resources

Append-effect built-in policy that adds a tag whenever a resource is created or updated, leaving tags users set intact. Resource groups are not covered.

Append blob

Block-based blob tuned for writes that only add to the end, such as logs. Access tiers cannot be applied to it.

Append effect

Effect in Azure Policy whose field additions happen solely during create or update requests; already-deployed resources stay unremediated.

Application Administrator

Microsoft Entra role able to manage every enterprise application and app registration, application proxy included. It may grant admin consent, apart from Microsoft Graph app roles.

Application Developer

Microsoft Entra role allowing its holders to register apps even if "Users can register applications" is No. Other people's apps are outside its control.

Application Gateway

Layer-7 load balancer deployed per region, offering URL-based routing, TLS offload, cookie-based affinity and an optional WAF.

Application Gateway autoscaling

Capability of Application Gateway v2 that varies the instance count between configured minimum and maximum values, at most 125. Plan subnet size for that maximum, adding one address per private frontend IP.

Application Gateway Basic SKU

Low-traffic Application Gateway v2 SKU that supports header rewrite but omits WAF, mTLS and URL rewrite.

Application Gateway for Containers

Recent Application Gateway-based option for load balancing and ingress on AKS, offered as an alternative to AGIC.

Application Gateway Ingress Controller (AGIC)

Add-on for AKS that reads Kubernetes Ingress resources and sets up an Application Gateway, WAF v2 included, to match them.

Application Gateway v1 (Standard / WAF tiers)

First-generation Application Gateway SKU, with Standard and WAF tiers and authentication certificates, which retired on 28 April 2026. Gateways already on v2 cannot revert to it.

Application Gateway v2

Present-day Application Gateway SKU, Standard_v2 or WAF_v2, offering zone redundancy, autoscaling, a static VIP, Key Vault integration and header rewrite. It requires its own subnet, ideally a /24.

Application Gateway WAF tier

Tier of Application Gateway that brings OWASP Core Rule Set protection, now WAF_v2 since the v1 WAF tier retired on 28 April 2026. No WAF is included with the Standard tier.

Application groups

Collections of RemoteApp apps or full desktops in Azure Virtual Desktop, which administrators assign to users.

Application Insights

APM service within Azure Monitor providing application telemetry, availability tests, usage analytics and Application Map. Data from workspace-based instances lives in Log Analytics.

Application Insights Profiler

Capability of Application Insights that records performance traces from a running app, revealing slow requests and hot paths in the code. User behaviour is not what it profiles.

Application Map

Diagram in Application Insights showing the components of an application and how they call each other.

Application object

An app's single global definition, i.e. its app registration in the home tenant; every tenant using the app gets a service principal created from it.

Application permissions

Microsoft Entra permissions granted to the app itself and used without any signed-in user, which means they reach every user's data. For per-user access they are not least privilege.

Application Proxy

See Microsoft Entra application proxy.

Application rule

Azure Firewall rule type that controls outbound HTTP, HTTPS and MSSQL traffic according to the destination FQDN, with full URL filtering requiring Premium. DNAT and network rules are evaluated before it.

Application security group (ASG)

Named collection of VM NICs that NSG rules can use as source or destination in place of IP addresses. NICs join only when explicitly added, and they must all belong to one VNet.

Application segment (app segment)

Destination defined on an enterprise application for Microsoft Entra Private Access, made up of an FQDN, wildcard FQDN, IP or range together with ports and protocol. Matching traffic is reachable solely by users assigned to that app.

Approved Inventory

State in Defender EASM for assets the organisation owns directly. Such assets are scanned every day and, by default, are the only ones dashboard charts display.

Archive (tier)

Offline access tier for blobs, cheapest to store yet dearest to access. Reading a blob means rehydrating it first, which can take as long as 15 hours.

Area of interest (smart crop)

Smart-crop capability of Image Analysis that, for a requested aspect ratio, returns a bounding box around the most important part of the image, useful for thumbnails and cropping.

argparse

Module in the Python standard library for parsing named arguments passed to a script on the command line. If a flag's name differs from what was declared, the script errors or the argument stays unset.

ARM (Azure Resource Manager)

Short for Azure Resource Manager, the control plane Azure uses for deploying and managing resources.

ARM template

JSON file describing Azure infrastructure declaratively. Once deployed it keeps no live connection to the resources, unlike Blueprints, which retires fully on 31 January 2027.

Artifact Registry (Google Artifact Registry)

Google Cloud's service for storing container images. Once the GCP connector is set up, Defender for Containers can scan what it holds.

AS path (autonomous system path)

BGP attribute recording each ASN a route has passed through. Routes with shorter paths usually win, so adding extra ASNs makes one look less attractive.

AS Path (hub routing preference)

Routing preference for a Virtual WAN hub under which the shortest BGP AS path wins regardless of where the route came from. When local routes tie, ExpressRoute is chosen over site-to-site VPN.

AS-path prepending (autonomous system path)

Making a BGP route less attractive by repeating ASNs to lengthen its AS path, steering traffic towards a different site or path.

ASE

See App Service Environment.

ASIM parsers (Advanced Security Information Model parsers)

Short for Advanced Security Information Model parsers: KQL functions that map Microsoft Sentinel data onto shared schemas when queried. That happens after ingestion has been charged, so ingestion costs are unaffected.

Ask a question node (ask_question)

Workflow step in Microsoft Foundry that prompts the user, waits for an answer and keeps it in a variable like Local.Var01 so later conditions can test it.

ASM (Azure Service Manager)

Short for Azure Service Manager, the classic deployment model that came before Azure Resource Manager. New resources should not use it.

ASN (autonomous system number)

Short for autonomous system number, which identifies a BGP routing domain. Azure VPN gateways use 65515 by default, a reserved value on-premises peers must avoid; Defender EASM also discovers ASNs as an internet asset type.

ASR

See Azure Site Recovery.

Asset chain-based management

Way of removing assets in bulk in Defender EASM, chosen by the discovery group, seed or discovery chain entry that found them; everything discovered downstream goes too.

AssignableScopes

Property of a role definition stating at which management groups, subscriptions, resource groups or resources a custom role may be assigned.

Assigned group

Microsoft Entra group whose membership is maintained by hand by its owners or administrators rather than through a dynamic rule.

Assignment required

Setting on an enterprise application that allows sign-in only by users and groups that have been assigned to it.

Assistants API (Azure OpenAI Assistants)

Azure OpenAI's OpenAI-style API based on assistants, threads and runs. It was deprecated and retired on 26 August 2026, with Foundry agents using conversations and responses taking its place.

Association

Routing setting for a Virtual WAN hub. Each connection is associated with exactly one route table, and that table determines the routes the connection learns.

Attack paths (attack path analysis)

Defender CSPM capability showing how an attacker could chain exploitable weaknesses together to reach critical assets.

Attack surface composition

Within Defender EASM's Attack Surface Summary dashboard, the area that shows how many assets exist in each category; it does not list insights.

Attack surface priorities

Severity view in Defender EASM's summary dashboard. Insights are banded as high, medium or low, and the low band takes in deprecated technology plus infrastructure that will soon expire.

Attack Surface Summary

Top-level overview dashboard in Defender EASM. One section, priorities, ranks insights by how severe they are; another, composition, just tallies assets.

Attention

In a transformer, the mechanism determining the weight each other token in the context carries when predicting the next one.

Audience

Setting on a point-to-site VPN gateway using Microsoft Entra ID authentication; it contains the app ID of the Azure VPN Client or of a custom app. Only a single Audience value is allowed per gateway.

Audio + human-labeled transcript data

Training material for custom speech: recordings in mono 16-bit PCM WAV (RIFF) format at 8 or 16 kHz, zipped up together with a plain-text file listing each recording's name alongside what was said.

AudioConfig

Object in the Speech SDK specifying where audio comes from or goes to, for example FromStreamInput, FromWavFileInput or FromDefaultMicrophoneInput.

AudioOutputConfig

Speech SDK class choosing a single destination for synthesised speech: a file, a named device, a custom output stream or the default speaker.

AudioStreamFormat

Speech SDK class describing how an audio stream is encoded, namely channels, bits and sample rate. It does not act as an output destination.

Audit action group

Named bundle of database-engine events, BATCH_COMPLETED_GROUP being one, selected when defining an audit policy. By default Azure SQL audits BATCH_COMPLETED_GROUP together with successful and failed database authentication.

Audit effect

Policy effect in Azure that records a warning and flags matching resources as non-compliant, without ever blocking or altering them.

AUDIT_CHANGE_GROUP

Fires when someone creates, alters or drops an audit or audit specification, so it captures changes to the auditing setup itself; logins and queries are covered by other action groups.

AuditEvent

Category of Key Vault resource logs that tracks each data-plane get, set or delete, noting who called, from which IP address, and whether it succeeded.

AuditIfNotExists

Azure Policy effect that flags a resource as non-compliant if a related resource, identified by details.type and matching existenceCondition, is absent. It only reports and never deploys anything.

Auditing (Azure SQL)

Azure SQL capability that sends database audit logs to Log Analytics, Event Hubs or a storage account; that account is allowed to be in a different region.

Authentication Administrator

Microsoft Entra role for managing authentication methods on individual user accounts. Tenant-wide SSPR and the authentication methods policy lie outside its reach.

Authentication certificate

How Application Gateway v1 trusted backends: the public key (.cer) of the backend's certificate was uploaded into backend settings. On v2, trusted root certificates take its place.

Authentication methods policy

Tenant-level Microsoft Entra policy that switches on each sign-in method, such as FIDO2, Authenticator, certificate-based authentication, TAP or SMS, for chosen users or groups.

Authentication Policy Administrator

Least-privileged Microsoft Entra role for tenant-level SSPR settings and the authentication methods policy, neither of which Authentication Administrator can change.

Authentication strength

Grant control in Conditional Access that restricts which combinations of methods meet a policy, for example the built-in Phishing-resistant MFA. It narrows methods without enabling them; enabling is done in the authentication methods policy.

Authorisation code (grant)

OAuth 2.0 grant used by native and web apps: the user signs in, and the app then acts on their behalf with delegated permissions.

Authorisation levels (Azure Functions)

Key requirements for HTTP triggers in Azure Functions: Anonymous needs no key, Function accepts a function or host key, and Admin requires the master key.

Auto-failover group (failover group)

Azure SQL feature that geo-replicates a group of databases or an entire Managed Instance, failing over automatically behind listener endpoints that stay the same. For Managed Instance it is the sole regional DR option.

Auto-instrumentation

Turning on Application Insights for an app without changing its code, for instance through the App Service blade.

Auto-shutdown

VM option in Azure that deallocates the machine at a fixed time every day to cut costs. Backups continue to run while it is stopped.

Autocomplete

Query API in Azure AI Search that finishes partially typed terms using suggester fields, invoked with suggesterName. To get matching documents back, use Suggestions instead.

AutoGen

Multi-agent framework from Microsoft Research, known for patterns like GroupChat, now succeeded by Microsoft Agent Framework.

Automated Backup (SQL IaaS Agent)

Feature of the SQL IaaS Agent extension: SQL Server instances on Azure VMs get backed up into a storage account.

Automatic backups (Azure SQL)

Backups that Azure SQL takes on its own, allowing point-in-time restore over a window of 1 to 35 days. Keeping backups longer requires long-term retention (LTR).

Automatic scaling (App Service)

Rule-free scale-out choice for Premium v2 to v4 App Service plans that adds prewarmed instances according to HTTP traffic. Scaling on a CPU threshold is not possible with it.

Automation account

Container in Azure Automation that holds runbooks, configurations and assets.

Automation rule

Microsoft Sentinel rule triggered when an incident or alert from any source is created or updated, used to centrally set status, assign owners, apply tags and launch playbooks.

Autoregistration (auto registration)

When enabled on a private DNS zone's virtual network link, VMs in that VNet get A records created automatically, kept in step as their IPs change and removed when they are deleted. A VNet may autoregister into only one private zone.

Autoscale

Azure Monitor capability that adds or removes instances on a schedule or once a metric rule has been true for its full duration. The maximum instance count merely sets a ceiling and never triggers scaling itself.

Autoscale scaling plan

Feature built into Azure Virtual Desktop that powers session hosts on and off and scales them according to a schedule.

Availability set

Grouping that distributes VMs across as many as 3 fault domains and 20 update domains inside a single datacentre, backed by a 99.95% SLA. It offers neither autoscale nor zone distribution.

Availability tests

Synthetic monitoring in Application Insights, using standard tests or custom TrackAvailability tests; the older URL ping tests retire on 30 September 2026.

Availability zones

Separate physical datacentre locations inside one region. Placing VMs in at least two of them earns a 99.99% SLA.

AWS connector (Defender for Cloud) (native AWS connector)

Connector linking Defender for Cloud to Amazon Web Services, finished by running a generated CloudFormation template on the AWS side. If Defender for Servers is enabled, it provisions Azure Arc onto EC2 instances automatically.

az acr build

Azure CLI command for an ACR quick task, which sends the build context to Azure, builds the image there and pushes the result into a registry that already exists.

az acr create

Use this Azure CLI command, specifying a SKU, to provision a new container registry.

az acr credential

Group of Azure CLI commands for viewing or regenerating the admin-user credentials of a registry.

az acr login

Azure CLI command that uses the signed-in Microsoft Entra identity to log Docker in to a registry, so that pushes and pulls work.

az aks

Azure CLI commands for managing AKS. For example, az aks install-cli installs kubectl, while running az aks update or az aks nodepool update with --enable-cluster-autoscaler --min-count --max-count enables autoscaling.

az cognitiveservices account create

Azure CLI command creating a Foundry Tools or Foundry resource based on --location, --sku and --kind. Customer-managed key configuration belongs in --encryption; --assign-identity merely creates a managed identity.

az container create

Azure CLI command that deploys a container group to Azure Container Instances. Its options cover the image, exposed ports, a VNet subnet, the restart policy, and registry access through credentials or --acr-identity.

az deployment group create

Azure CLI command for deploying a template into a resource group that already exists.

az deployment sub create

Azure CLI command for deploying a template at the subscription level, which is how resource groups themselves can be created.

az ml model restore

Command in the Azure Machine Learning CLI that un-archives a model or model version so it shows up in listings again, for rollback or auditing.

az ml online-deployment get-logs

Azure Machine Learning CLI command fetching container logs for a deployment, from the inference server by default or from storage-initializer, to troubleshoot issues like init() failures or missing packages.

az ml online-endpoint update --traffic

Azure CLI command for dividing live requests across the deployments behind one online endpoint, given as name=percentage pairs such as blue=90 green=10; the values have to add up to either 100 or 0.

az network bastion

Group of Azure CLI commands (rdp, ssh and tunnel) for reaching VMs through Bastion; for example, az network bastion rdp starts mstsc against a machine that has no public IP address.

az network dns zone import

Single Azure CLI step that reads a BIND-format zone file and either builds a new Azure DNS zone from it or merges its records into an existing one.

AZ SKU (availability zone SKU)

Any VPN or ExpressRoute gateway SKU carrying the AZ suffix (VpnGw1AZ to 5AZ, ErGw1Az to 3Az). In regions with availability zones its instances spread across zones; in other regions it deploys regionally, becoming zone-redundant once zones are introduced there.

az storage blob

Set of Azure CLI commands for working with blob data; upload-batch pushes a whole local folder, while copy start-batch copies between containers on the server side.

azcmagent

CLI that ships with the Azure Connected Machine agent. Running azcmagent connect registers a server with Azure Arc, and supplying a service principal ID plus a secret or certificate makes that onboarding unattended.

AzCopy

Microsoft's command-line utility for moving data into, out of and between storage accounts; queue management and copying a running VM are outside what it can do.

AZFWNetworkRule

When Azure Firewall logs in resource-specific mode, entries produced by its network rules land in this Log Analytics table.

AZFWThreatIntel

Log Analytics table, in resource-specific mode, where Azure Firewall writes events raised by threat intelligence.

Azure ABAC (attribute-based access control)

Attribute-based conditions added on top of Azure RBAC role assignments, such as granting access only to blobs carrying a certain index tag. Blobs (ADLS Gen2 included) and queues support them; Azure Files and Tables do not.

Azure AD

See Microsoft Entra ID.

Azure AD Application Proxy

See Microsoft Entra application proxy.

Azure AD B2B

See Microsoft Entra B2B.

Azure AD B2C

Identity platform for customer-facing apps; since 1 May 2025 new customers can't buy it and are directed to its successor, Microsoft Entra External ID. Tokens it issues can be checked by API Management's validate-jwt policy via its OpenID configuration.

Azure AD Connect

See Microsoft Entra Connect.

Azure AD Connect Health

See Microsoft Entra Connect Health.

Azure AD DS

See Microsoft Entra Domain Services.

Azure AD Identity Protection

See Entra ID Protection.

Azure AD PIM

See Privileged Identity Management.

Azure Advisor

Azure service that reviews resources you already run and recommends improvements in cost, performance, reliability and security based on best practice.

Azure AI Account Owner

See Foundry Account Owner.

Azure AI Administrator

Built-in role meant for Azure Machine Learning and Foundry hubs only, where it holds every control plane permission over Azure AI and the services it relies on. Today's Foundry resources are governed by Foundry Owner or Foundry Account Owner instead.

Azure AI Agent Service

See Foundry Agent Service.

Azure AI Content Safety

Foundry Tool that scores text and images for hate, sexual, violent and self-harm content, returning a severity level for each category; Foundry guardrails are built on the same technology.

Azure AI Content Understanding

See Azure Content Understanding in Foundry Tools.

Azure AI Developer

Built-in role scoped to an Azure Machine Learning workspace or hub: holders can do anything inside it except administer the workspace itself. For Foundry projects, the equivalent roles are Foundry Owner and Foundry User.

Azure AI Face (Face service)

Foundry Tool limited to human faces: it detects them, verifies whether two match (1:1) and identifies a person from a group (1:many). Verification and identification are Limited Access features.

Azure AI Foundry

See Microsoft Foundry.

Azure AI Language

See Azure Language in Foundry Tools.

Azure AI Owner

See Foundry Owner.

Azure AI Project Manager

See Foundry Project Manager.

Azure AI Search admin key

Either of a search service's two admin API keys (primary and secondary), each granting full read and write access and each regenerable. Rotation without downtime: point clients at the secondary, regenerate the primary, then do the reverse.

Azure AI Search partition (partition)

Storage and I/O unit of a search service, each holding part of the indexes. Adding partitions increases storage and indexing throughput; the number of search units equals replicas multiplied by partitions.

Azure AI Search query key

Read-only API key used only to query the documents collection of an index; a service can hold up to 50. Every query key works across all indexes, and query keys are created or deleted rather than regenerated.

Azure AI Search replica (replica)

Additional copy of a search service's engine and indexes. Replicas spread queries for load balancing and improve availability, so adding them is the fix when queries are throttled with HTTP 503.

Azure AI Search tool (AzureAISearchTool)

Tool that lets an agent query an Azure AI Search index that already exists. You supply project_connection_id and index_name; by default it runs vector_semantic_hybrid queries and returns five results (top_k 5).

Azure AI services

See Foundry Tools.

Azure AI Speech

See Azure Speech in Foundry Tools.

Azure AI Translator

See Azure Translator in Foundry Tools.

Azure AI User

See Foundry User.

Azure AI Vision (Computer Vision)

See Azure Vision in Foundry Tools.

Azure Analysis Services

Azure service hosting tabular OLAP models for large numbers of Power BI and Excel users; semantic models in Power BI Premium are its modern counterpart.

Azure Arc

Azure service for managing servers that live outside Azure without moving them, by installing the Azure Connected Machine agent; it does not migrate anything.

Azure Arc-enabled servers

Servers running Windows or Linux outside Azure that become Azure resources once the Azure Connected Machine agent is installed; data collection rules can then drive the Azure Monitor agent on them.

Azure ATP

See Defender for Identity.

Azure Automation

Azure service that runs runbooks, scripts that carry out imperative steps such as scaling Azure Virtual Desktop host pools. It is not an infrastructure-as-code tool.

Azure Automation State Configuration

DSC service within Azure Automation, due to retire on 30 September 2027. It compiles configurations, assigns them to onboarded machines that are running, and reports back on compliance.

Azure Backup

Azure's backup service, which keeps recovery points, long-term retention included, in a Recovery Services vault. It restores data rather than failing workloads over, which is the job of Site Recovery.

Azure Backup always-on soft delete (enhanced soft delete)

Setting on Recovery Services and Backup vaults that, once enabled, is permanent. Deleted backup data stays recoverable for 14 to 180 days (14 by default, first 14 free); blob and Azure Files operational backups aren't covered.

Azure Backup reports (Backup Reports)

Reporting for Azure Backup, fed by diagnostic settings on each vault. Log Analytics workspaces receiving the data may be in any region, whereas a storage account target has to share the vault's region.

Azure Backup security PIN

Short-lived PIN, valid for five minutes, created from a Recovery Services vault's Properties. Hybrid backups through MARS, MABS or DPM ask for it before critical actions such as stopping protection with data deletion or changing the passphrase; Azure VM backups aren't covered.

Azure Bastion

Managed service that lets you open RDP and SSH sessions from the portal over TLS on port 443, so VMs need no public IP. Just-in-time VM access differs in that it opens ports 3389 and 22.

Azure Batch

Azure service that schedules parallel, HPC and rendering jobs onto pools of compute nodes it scales automatically; multi-instance tasks support MPI workloads.

Azure Blueprints

Deprecated service bundling policies, roles and templates, each assignment staying live-linked and scoped to a single subscription. Nothing new could be defined after 31 July 2026, and on 31 January 2027 it retires in favour of deployment stacks and Template Specs.

Azure Boards

Work-tracking service within Azure DevOps.

Azure Cache for Redis (Azure Redis Cache)

Managed in-memory cache placed close to an application for session state and cache-aside query results. It is being retired (Enterprise on 31 March 2027; Basic, Standard and Premium on 30 September 2028), so Azure Managed Redis is the choice for new designs.

Azure CLI (CLI)

Command-line tool for managing Azure that runs on any platform; examples include az login, az storage queue and az policy state trigger-scan.

Azure CNI

Network plugin for AKS in which each pod receives an IP address from the VNet; virtual nodes depend on it.

Azure CNI Overlay

AKS networking option where pods draw IPs from a private overlay range and VNet addresses are consumed only by nodes; it works with Windows nodes.

Azure Connected Machine agent

Agent from Azure Arc installed on servers outside Azure. Once a server is Arc-enabled this way, services such as Defender for Cloud can push extensions to it, though the agent doesn't gather VM logs itself.

Azure Connected Machine Onboarding

Narrowly scoped built-in role, typically given to a service principal, whose only purpose is onboarding machines into Azure Arc in bulk.

Azure Container Apps

Container hosting built on KEDA where Azure runs the underlying cluster for you; apps scale automatically and can be zone-redundant.

Azure Container Instances (ACI)

Way to run container groups without any cluster, billed per second. It offers neither autoscaling nor spreading across zones, and Azure Machine Learning treats it as a legacy v1 deployment target.

Azure Container Registry (ACR)

Private Azure registry for container images. Images can be geo-replicated, cleaned up by retention policies and built by ACR Tasks, while webhooks let a push kick off continuous deployment.

Azure Container Registry SKUs

Azure Container Registry comes in Basic, Standard and Premium. Every tier includes ACR Tasks and the admin user; private endpoints, content trust, connected registries and dedicated data endpoints are Premium-only.

Azure Container Service

Azure's container orchestration service before AKS, now retired; it never had an on-premises version.

Azure Content Delivery Network (CDN)

Service caching static web content on edge servers near users. New profiles can no longer be made on the classic Azure CDN Standard from Microsoft, which retires on 30 September 2027; Azure Front Door Standard or Premium is the route for new deployments.

Azure Content Moderator (Content Moderator)

Older moderation service, reached through the /contentmoderator path, that flagged content as a yes/no result and supported custom term lists. It is deprecated, retiring on 15 March 2027, and Azure AI Content Safety replaces it.

Azure Content Understanding in Foundry Tools (Content Understanding)

Foundry Tool whose generative AI analyzers turn documents, images, audio and video into structured fields by extracting, classifying or generating values.

Azure Cosmos DB Data Migration Tool

Utility that moves data from sources such as SQL Server into Azure Cosmos DB.

Azure custom roles

Roles you author yourself in Azure RBAC, listing your own permitted actions, for cases no built-in role covers; a tenant can hold as many as 5,000.

Azure CycleCloud

Tool for creating and operating HPC clusters on Azure around third-party schedulers like Slurm, LSF or PBS Pro.

Azure Data Explorer

KQL-based service for fast, interactive analysis of telemetry and logs at petabyte scale; Time Series Insights users moved to it as the successor.

Azure Data Factory

Managed data integration service for ETL and ELT, built from pipelines, copy activities, triggers, mapping data flows and integration runtimes. It works in batches rather than routing individual transactions.

Azure Data Lake Analytics

Analytics service based on U-SQL that held no data of its own; it was retired in February 2024.

Azure Data Share

Azure service for sending data to another organisation's subscription as full or incremental snapshots on a schedule.

Azure Data Studio

Database tool retired on 28 February 2026 that once carried the Azure SQL Migration extension. Since then, Database Migration Service jobs are started from the Azure CLI, PowerShell or the Azure portal.

Azure Database for MariaDB

Managed MariaDB offering, now retired, under the Microsoft.DBforMariaDB resource provider; resetting the server's admin password required the Microsoft.DBforMariaDB/servers/write permission.

Azure Database for MySQL flexible server

See MySQL Flexible Server.

Azure Database for PostgreSQL

Azure's managed PostgreSQL. It grows by scaling up and by adding read replicas rather than multi-master writes; to spread writes horizontally you use its elastic clusters feature, based on Citus.

Azure Database for PostgreSQL flexible server

Current deployment option of Azure's managed PostgreSQL. It scales up and offers read replicas but not multi-master; writes are distributed horizontally through the Citus-based elastic clusters feature.

Azure Database Migration Service (DMS)

Azure service for moving whole instances or many databases at once into Azure SQL targets such as SQL Managed Instance, either online or offline.

Azure DDoS Protection

Azure defence for public IP addresses against volumetric and protocol-level DDoS attacks. Paid tiers (DDoS Network Protection and DDoS IP Protection) build on the basic infrastructure protection that comes free.

Azure Dedicated HSM

Thales hardware security module dedicated to one tenant and placed in your own VNet; the service is being retired and takes no new customers.

Azure Defender

See Defender for Cloud workload protection plans.

Azure Defender for SQL

See Microsoft Defender for SQL.

Azure DevOps

Microsoft's suite of DevOps services, among them Azure Boards and Azure Pipelines.

Azure DevOps Administrator

Microsoft Entra role for managing enterprise-level Azure DevOps policies across the organisations connected to the tenant; it gives no rights to register apps or grant admin consent.

Azure Disk Backup

Azure Backup protection for managed disks that needs no agent, taking snapshots kept in the same region; recovery isn't orchestrated automatically.

Azure Disk Encryption (ADE)

Due to retire on 15 September 2028, this feature encrypts VM OS and data disks from inside the guest (BitLocker or DM-Crypt), keeping keys in Key Vault. Dynamic volumes, Write Accelerator disks and ephemeral OS disks aren't supported.

Azure Disk Encryption for volume encryption

Key Vault access policy setting (enabled-for-disk-encryption) without which Azure Disk Encryption can't store keys and secrets in the vault; the vault also has to be in the same region as the VM.

Azure DNS

Family of Azure services for hosting and resolving DNS, covering public zones, private zones and DNS Private Resolver; you can't register domain names through it.

Azure DNS name servers

Four authoritative name servers (ns1-xx.azure-dns.com, .net, .org and .info) that Azure allocates to each public zone and lists on the zone's overview page; every one of them belongs in the NS records at the domain registrar.

Azure DNS Private Resolver

Managed resolver inside a VNet that removes the need for DNS server VMs in hybrid setups. Its inbound and outbound endpoints each need their own subnet of at least /28 delegated to Microsoft.Network/dnsResolvers, and it can link only to a VNet in the same region.

Azure Document Intelligence in Foundry Tools (Document Intelligence, Form Recognizer)

Foundry Tool that pulls text and fields out of forms and documents using read, layout, prebuilt models (such as invoice and receipt) and custom models.

Azure endpoint

Kind of Traffic Manager endpoint pointing at an Azure service, such as a web app or a public IP resource that has a DNS name; a MultiValue profile can't use it.

Azure Event Hubs

Azure service for ingesting telemetry at high volume over HTTPS or AMQP; diagnostic settings can send data to it.

Azure Extended Network (extended network for Azure)

Windows Admin Center feature letting migrated VMs keep their IP addresses by stretching an on-premises subnet into Azure; two appliance VMs carry a VXLAN tunnel between them, and up to 250 addresses can be extended.

Azure Extended-Network Gateway

The appliance VM placed in Azure for Azure Extended Network. Its OS must be Windows Server 2022 Datacenter: Azure Edition, and it needs two NICs: one on the extended subnet, one on a routable subnet.

Azure Face service (Face API)

Service within Azure Vision that detects faces, verifies one face against another and identifies a face among many. Access is limited, and among the Vision options it alone can say whose face it is.

Azure File Sync

Agent installed on Windows Server on premises that keeps a local cache of an Azure file share, syncing changes both ways and tiering cold files to the cloud.

Azure Files

Azure's managed file shares over SMB or NFS. There is no Archive tier, and a single encryption key applies across the whole storage account.

Azure Files backup

Azure Backup for file shares, using a Recovery Services vault that must share the storage account's region. Schedules are either daily or hourly; hourly ones repeat every 4, 6, 8 or 12 hours, with 1 and 2 added in newer policies.

Azure Files OAuth over REST

Capability allowing Microsoft Entra users, groups and managed identities to use OAuth tokens against the FileREST data API. The roles that grant it carry readFileBackupSemantics or writeFileBackupSemantics; the SMB share roles don't apply.

Azure Firewall

Stateful network firewall run by Azure as a managed service; it can be placed in Virtual WAN hubs and administered through Firewall Manager.

Azure Firewall Manager

Service for administering Azure Firewall policies centrally, letting child policies inherit from a parent across subscriptions and regions.

Azure Firewall Premium

Top Azure Firewall SKU, which builds on Standard with IDPS, TLS inspection, URL filtering and web categories; using those features requires a firewall policy on the Premium tier.

Azure Firewall rule collection

Set of rules of a single type (DNAT, network or application) that share one action and one priority and sit within a rule collection group. Priority only decides order among collections of the same rule type.

Azure Firewall Standard

Mid-level Azure Firewall SKU: it filters with application and network rules, can block known-bad addresses using threat intelligence and acts as a DNS proxy. Inspecting TLS traffic and IDPS are Premium-only.

Azure Front Door

Layer-7 global front end that fails over between origins using anycast, terminates TLS, routes requests by URL path and can apply a rate-limiting WAF.

Azure Functions

Serverless compute for event-driven code, started by triggers such as HTTP, timer, Blob or Event Grid and hosted on a Consumption, Premium or Dedicated plan.

Azure Functions Consumption plan

Older serverless hosting plan for Functions that caps each run at 10 minutes and lacks both VNet integration and inbound private endpoints, all of which Flex Consumption, Premium and Dedicated plans provide.

Azure Functions Dedicated plan (App Service plan)

Running Functions on an App Service plan. Executions have no time limit, and from the Basic tier upwards apps can integrate with a VNet.

Azure Functions Premium plan (Elastic Premium)

Functions hosting plan that keeps instances pre-warmed to avoid cold starts and supports VNet integration; executions default to 30 minutes, a limit you can raise in host.json.

Azure geography

Grouping of Azure regions such as United States; restoring a Key Vault backup is allowed only inside the geography it came from.

Azure Government

Separate cloud for US government workloads, physically isolated from global Azure, so VNet peering between the two isn't possible.

Azure Hybrid Benefit

Licensing benefit that cuts Azure costs by reusing Windows Server or SQL Server licences with Software Assurance, or RHEL and SUSE subscriptions. Ubuntu isn't eligible, nor is the DTU purchasing model of Azure SQL.

Azure Information Protection (AIP)

Service that classifies and protects documents in Office apps, applying a single label to each (if several match, the last one in the policy wins). Its classic client has been retired, with Microsoft Purview sensitivity labels taking over.

Azure Instance Metadata Service (IMDS)

Endpoint at the non-routable address 169.254.169.254, reachable only from within a VM, that returns metadata about the VM and issues managed identity tokens. An outbound NSG rule denying the AzurePlatformIMDS tag cuts off access.

Azure Internet Analyzer

Now-retired Azure service for measuring how internet performance looked to end users connecting to Azure endpoints.

Azure IR

Integration runtime in Data Factory that can connect only to data stores in the cloud.

Azure Key Vault (Key Vault)

Azure service holding secrets, keys and certificates. If the region has a paired region in the same geography, contents replicate to it, and during a best-effort failover initiated by Microsoft the vault can only be read.

Azure Key Vault provider for Secrets Store CSI Driver (azure-keyvault-secrets-provider)

AKS add-on that gives pods access to Key Vault certificates, keys and secrets by mounting them as CSI volumes; it can optionally copy them into Kubernetes secrets too.

Azure KMS (Key Management Service)

Endpoint used to activate Windows on Azure VMs: azkms.core.windows.net (20.118.99.224 and 40.83.235.53) on TCP port 1688. With forced tunnelling in place, user-defined routes sending those IPs to next hop Internet keep activation working.

Azure Kubernetes Service Cluster Admin Role

Built-in role whose only permission is listing the cluster admin credential (kubeconfig) of an AKS cluster.

Azure Language in Foundry Tools (Azure AI Language, Text Analytics)

Foundry Tool offering natural language processing over existing text, such as sentiment, key phrase extraction, entity recognition, PII detection, summarisation and language detection. Prebuilt features work without training, and nothing new is generated.

Azure Lighthouse

Azure service that lets a managing tenant work on resources delegated to it from other tenants; resources aren't moved or migrated.

Azure Load Balancer

Layer-4 load balancer operating within a region, with zone redundancy on the Standard SKU; it has no WAF, doesn't terminate TLS and can't route by URL.

Azure Login action (azure/login)

Step in a GitHub Actions workflow that authenticates to Azure, either as the service principal of an Entra app or as a user-assigned managed identity; using OpenID Connect avoids storing any secret.

Azure Machine Configuration (guest configuration)

Azure Policy capability that checks or enforces settings at the OS level on Azure VMs and Arc-enabled machines; it replaces Automation State Configuration and the DSC extension.

Azure Machine Learning (AML)

Azure platform where you train, deploy, monitor and retrain models of your own, practising MLOps through tools such as pipelines, online endpoints, model monitoring and prompt flow.

Azure Machine Learning CLI v2 (az ml)

Extension adding az ml commands to the Azure CLI, used to create jobs, assets, endpoints and deployments defined in YAML files.

Azure Machine Learning component (component)

Reusable building block for a pipeline, versioned and self-contained, much like a function: it declares a name, inputs and outputs, and bundles the command, code and environment it runs.

Azure Machine Learning designer (Designer)

Visual, drag-and-drop tool inside Azure Machine Learning studio for assembling pipelines that train models. Foundry models are browsed and deployed elsewhere.

Azure Machine Learning environment (environment)

Versioned asset that pairs a Docker image with a pip or conda specification, so every job or deployment using it gets identical dependencies. You point to it by name plus a version number, or by name with @latest.

Azure Machine Learning pipeline (ML pipeline)

Reusable job that links components together, for example data preparation then training then scoring, and can be run on a schedule.

Azure Machine Learning registry (Azure ML registry)

Shared store, with its own access control and lineage tracking, for versioned models, environments, components and data assets used by many workspaces such as dev, test and prod. Workspaces still exist alongside it.

Azure Machine Learning SDK v2 (azure-ai-ml)

Python SDK currently used with Azure Machine Learning, centred on the MLClient class. It has no logging API, so MLflow is used to log metrics.

Azure Machine Learning workspace (AML workspace)

Main Azure Machine Learning resource, holding models, environments, components and data assets, recording job history and pointing to compute and datastores. Anything registered there is owned by that workspace unless it is put in a registry.

Azure Migrate

Azure service that discovers, assesses and migrates on-premises servers using an appliance deployed on premises; its project is created in the destination subscription.

Azure Migrate appliance

Discovery VM run on premises and registered to exactly one Azure Migrate project; it is deployed from a Hyper-V VHD, a VMware OVA or an installer script, finds servers without agents and collects the performance data that assessments draw on.

Azure Migrate collector

See Azure Migrate appliance.

Azure Migrate project

Resource created in the destination subscription to store what Azure Migrate discovers and assesses; it is separate from the appliance running on premises.

Azure Monitor

Observability platform for Azure that brings together metrics, logs and traces from both Azure and hybrid resources so they can be analysed and alerted on.

Azure Monitor agent (AMA)

Agent now used to collect logs from a machine's guest OS, driven by data collection rules; it took over from the Log Analytics agent (MMA).

Azure Monitor alerts

Rules in Azure Monitor that send notifications or trigger actions once a condition on metrics, logs or the activity log is satisfied.

Azure Monitor Logs

Within Azure Monitor, the store for log data: records of logs and performance counters are kept in Log Analytics workspaces, where KQL queries retrieve them.

Azure Monitor Metrics

Part of the Azure Monitor data platform that stores numeric values as time series. Platform metrics are gathered without any setup and retained for 93 days.

Azure Monitor workspace

Workspace that holds only Prometheus metrics; log data belongs in a Log Analytics workspace instead.

Azure NetApp Files

Azure service offering managed file volumes over NFS and SMB.

Azure Network Adapter

Windows Admin Center option for linking a single Windows Server to a VNet by point-to-site VPN. If the VNet has no VPN gateway it creates one, taking about 25 minutes, and no VPN hardware is needed on premises.

Azure Network Function Manager

Azure service for deploying network functions from partners, such as a mobile packet core, onto Azure Stack Edge devices; it plays no part in securing VNets.

Azure OpenAI (Azure OpenAI in Foundry Models)

Use of OpenAI models in Azure, including GPT, o-series, embeddings, image and Whisper, through either a Foundry resource or an Azure OpenAI resource. Content Understanding isn't available from a standalone Azure OpenAI resource.

Azure OpenAI AvailabilityRate (Model Availability Rate)

Metric for Azure OpenAI calculated as total calls less server errors, divided by total calls; it reveals unavailability on the service side, meaning HTTP 5xx responses.

Azure OpenAI Embedding skill (AzureOpenAIEmbeddingSkill)

Skill in an AI Search skillset that sends each chunk to an embedding model deployment (text-embedding-3-small, text-embedding-3-large or ada-002) during indexing to produce vectors; charges come from Azure OpenAI.

Azure OpenAI in Foundry Models (Azure OpenAI Service)

OpenAI models offered by Azure as a fully managed service with guardrails built in, covering GPT-4.1, GPT-5, o-series, image, audio and embeddings. Rather than running infrastructure, you pick a deployment type.

Azure OpenAI On Your Data

Feature of Azure OpenAI, now deprecated, for grounding chat answers in your own content retrieved from a search index. Its replacement for new work is Foundry Agent Service paired with Azure AI Search or Foundry IQ.

Azure OpenAI Service

See Azure OpenAI in Foundry Models.

Azure OpenAI Studio

See Microsoft Foundry.

Azure OpenAI v1 API

Azure OpenAI API without version parameters, called from the ordinary OpenAI() client with base URL https://<resource-name>.openai.azure.com/openai/v1/; the host comes from the resource name rather than the project.

Azure Pipelines

CI/CD service within Azure DevOps that deploys applications and infrastructure as code, with environments, approvals and checks.

Azure Policy

Azure service that audits and enforces how resources are configured, for example their location, SKU or tags, using definitions and assignments. It neither deploys resources nor controls access.

Azure Policy for Kubernetes (Azure Policy add-on for AKS)

Admission control for Kubernetes based on Gatekeeper v3, installed as an AKS add-on or, on other clusters, an Arc extension. It acts as a webhook so that non-compliant pods are rejected by Azure Policy definitions set to Deny.

Azure Policy initiative

Collection of Azure Policy definitions that are assigned as one unit; security policies and custom standards in Defender for Cloud have to take this form.

Azure PowerShell (Az PowerShell module)

Set of Az.* modules from Microsoft that let you manage Azure from PowerShell, using cmdlets like Set-AzStorageAccount.

Azure public peering

Older ExpressRoute peering for reaching Azure's public endpoints; it is deprecated for new circuits, with Microsoft peering in its place.

Azure Purview

See Microsoft Purview.

Azure RBAC

Azure's model for granting access: built-in or custom roles are assigned at a scope to users, groups or managed identities. Calling Foundry keylessly with Entra ID requires a data-plane role, for example Foundry User (formerly Azure AI User) or Cognitive Services OpenAI User.

Azure RBAC permission model (Key Vault)

Way of authorising access to Key Vault through Azure role assignments, for instance Key Vault Secrets User, in place of vault access policies.

Azure Redis Cache

See Azure Cache for Redis.

Azure Relay

Messaging service connecting cloud and on-premises endpoints through outbound connections on port 443, without a VPN, inbound ports or VNet routing. The on-premises data gateway and App Service Hybrid Connections rely on it.

Azure Reservations

Discounts on Azure resources such as dedicated hosts or SQL vCores in return for committing to a one- or three-year term.

Azure reserved addresses

Five addresses in each subnet that Azure keeps for itself: the network address, the default gateway, two for Azure DNS and the broadcast address. A /24 therefore offers 251 usable addresses and a /29 only 3; IPv4 subnets of /30 or /31 aren't allowed.

Azure Resource Mover

Azure service that relocates existing VMs, disks and NICs to another region or resource group, checking their dependencies along the way.

Azure Route Server

Managed service that peers over BGP with network virtual appliances in a VNet and installs the learned routes on the VMs. It works purely in the control plane, so traffic never passes through it.

Azure security baseline (Machine Configuration)

Built-in Machine Configuration baselines for Azure and Arc-enabled machines: the Azure Security Baseline for Windows or Linux and the CIS Linux Benchmarks. Since built-in definitions are read-only, you tailor them with the Modify settings wizard under Policy > Machine Configuration.

Azure Security Benchmark

See Microsoft cloud security benchmark.

Azure Security Center

See Microsoft Defender for Cloud.

Azure Sentinel

See Microsoft Sentinel.

Azure Service Fabric

Platform for microservices that runs both in Azure and on premises, supporting stateful services, upgrades service by service and automatic repair based on health.

Azure Service Health (Service Health)

Dashboard tailored to your subscriptions that reports Azure platform outages, scheduled maintenance and health advisories affecting them.

Azure Site Recovery (ASR)

Disaster recovery service replicating VMs to a secondary site or region; recovery time is measured in minutes and recovery points are kept for no longer than 15 days.

Azure Site Recovery Provider

Component installed on each Hyper-V host, or on the VMM server where one is used, which registers that server with a Recovery Services vault and manages replication.

Azure Speech in Foundry Tools (Azure Speech)

Foundry Tool for spoken language, able to transcribe audio into text, synthesise voice from text, translate what is said and run live voice conversations.

Azure SQL auditing

Azure SQL feature that sends audit logs to Event Hubs, a Log Analytics workspace (the only KQL-queryable option) or a storage account, which in the portal must be in the server's region and can't be premium FileStorage or legacy BlobStorage.

Azure SQL connection policy (Proxy / Redirect)

Azure SQL option deciding how clients reach the database: via the gateway with Proxy, or straight to the hosting node with Redirect. It affects the network path only, not who may connect.

Azure SQL Database

Platform-as-a-service database offered as a single database or in an elastic pool, sized up to 4 TB or 128 TB on Hyperscale. SQL Agent, CLR and queries across databases aren't available.

Azure SQL Managed Instance (MI)

Fully managed SQL Server instance offering almost complete compatibility, including SQL Agent, CLR and queries across databases; disaster recovery to another region is achieved with auto-failover groups.

Azure SQL Migration extension

Azure Data Studio extension, now retired along with that tool in February 2026, that ran online or offline Database Migration Service migrations of databases to SQL Database or SQL Managed Instance. DMS is now driven from the Azure portal, PowerShell or the Azure CLI.

Azure Stack Edge

Edge appliance managed by Microsoft and administered from Azure, bringing compute, AI and network functions to on-premises sites.

Azure Storage Explorer (Storage Explorer)

Desktop application for handling data in storage accounts that already exist, such as blobs and their tiers, file shares, tables, queues and SAS URLs; creating a storage account isn't possible from it.

Azure Storage firewall

Network rules on a storage account, applied when public network access is limited to selected networks. Only the listed IP ranges, VNet subnets, resource instances and trusted services can reach the public endpoint; all other traffic is refused.

Azure Stream Analytics

Serverless service that processes streaming data with a SQL-like language, offering windowing functions and anomaly detection out of the box.

Azure Translator in Foundry Tools (Translator)

Foundry Tool that translates text and whole documents from one language into another; extracting fields from forms is not something it does.

Azure Update Manager

Azure's patching service: it assesses which OS updates Azure VMs and Arc-enabled servers are missing and installs them, whether right away or within scheduled maintenance windows.

Azure Virtual Desktop (Windows Virtual Desktop)

Azure-hosted Windows desktop and app service; to add or remove session hosts in a host pool you use either an Autoscale scaling plan or Automation runbooks.

Azure Virtual Machines for deployment

Access policy option on a Key Vault (enabled-for-deployment) that permits Microsoft.Compute to pull certificates, kept as secrets, into VMs at creation time. Azure Disk Encryption doesn't rely on this setting.

Azure Virtual Network Manager

Service for centrally managing connectivity, as hub-and-spoke or mesh, and security admin rules across VNets in many subscriptions. VNets in other tenants must be added as static members, because dynamic membership driven by Azure Policy works only within one tenant.

Azure Vision in Foundry Tools (Azure AI Vision, Computer Vision)

Foundry Tool for analysing images, reading text from them (OCR) and detecting faces. Image Analysis API versions 3.2 and 4.0 are both deprecated, with retirement set for 25 September 2028.

Azure VM Agent

Software inside each VM that handles communication with the Azure fabric controller and carries out VM extensions, so no extension can be installed on a VM lacking it.

Azure VM backup policy

Policy defining when Azure Backup protects a VM (once a day or once a week, or several times a day under the Enhanced policy) and how long recovery points are retained at daily, weekly, monthly and yearly levels.

Azure VPN Client

Microsoft's VPN app for Windows 11 and macOS, needed for point-to-site connections that authenticate with Entra ID; you set it up by importing the azurevpnconfig.xml file from the profile package.

Azure Windows VM Agent (Windows VM agent)

Small service in each Windows VM through which the Azure fabric installs and runs extensions, the backup extension included. Collecting monitoring telemetry is left to other agents.

azure-ai-projects (AIProjectClient)

Python SDK for Microsoft Foundry; its AIProjectClient opens a connection to a project, and telemetry.get_application_insights_connection_string() fetches the connection string of the Application Insights resource linked to that project.

azure-core-tracing-opentelemetry

Python package connecting Azure SDK calls to OpenTelemetry; for tracing agents on the client side it is installed together with opentelemetry-sdk and azure-ai-projects.

Azure-provided DNS

Default resolver for a VNet, at 168.63.129.16, which answers with records from private DNS zones linked to that VNet; a custom DNS server has to forward queries to it to resolve those records.

Azure-SSIS IR

When Data Factory needs to execute SSIS packages, it uses this integration runtime, hosting the SSISDB catalogue in either SQL Managed Instance or SQL Database.

AzureActivity

Table in Log Analytics where a subscription's activity log is stored.

AzureAIOpenTelemetryTracer

Callback tracer for LangChain and LangGraph that sends OpenTelemetry spans to Foundry and Azure Monitor, but only if supplied as config={'callbacks':[tracer]}; the enable_content_recording setting decides whether message content is captured.

AzureBackupReport (Azure Backup Reporting Data)

Diagnostics category on a vault, now legacy, that fed Backup reports and worked only with Azure diagnostics mode. Its replacement is the set of resource-specific Core Azure Backup Data events.

AzureBastionSubnet

Name that Azure Bastion's dedicated subnet must have. Since 2 November 2021 it must be /26 or larger for all SKUs needing one (every SKU but Developer); previously /27 was allowed.

AzureCosmosDB (service tag)

Service tag covering Azure Cosmos DB's IP ranges, which can be scoped to a region and used as the destination of an outbound NSG rule.

AzureDiagnostics

Log Analytics table shared by many services, receiving Azure resource logs from diagnostic settings that use the legacy Azure diagnostics mode, Azure Firewall logs being one example. Guest operating system logs don't go here.

AzureFirewallManagementSubnet

Subnet (minimum /26) set aside for the management NIC of Azure Firewall; that NIC must have a public IP address of its own and a default route to the internet.

AzureFirewallSubnet

Mandatory name of the subnet, /26 or bigger, dedicated to hosting Azure Firewall.

AzureFrontDoor.Backend

Service tag for the IP addresses Front Door uses when contacting origins. Pairing it with a filter on the X-Azure-FDID header in an access restriction ensures only your own Front Door instance gets through.

AzureFrontDoor.FirstParty

Service tag that Microsoft reserves for its own Front Door-hosted services; locking down your origin is not what it is for.

AzureFrontDoor.Frontend

Service tag covering the Front Door addresses that clients connect to, applied when controlling outbound traffic.

AzureKeyCredential

Credential type in the Azure SDKs that authenticates with a fixed API key, in contrast to token-based credentials like DefaultAzureCredential.

AzureKeyVault (service tag)

Service tag, usable outbound and optionally regional, that represents the IP ranges of Azure Key Vault.

AzureLoadBalancer (service tag)

Service tag standing for 168.63.129.16, which Azure's infrastructure load balancer uses as the source of its health probes; rules using it match probe traffic, never client requests.

AzureMetrics

When a diagnostic setting exports platform metrics with AllMetrics ticked, they arrive in this Log Analytics table.

azureml:// URI (datastore URI)

Data reference syntax in Azure Machine Learning, written azureml://datastores/<name>/paths/<path>, that locates data through a datastore already registered in the workspace.

AzureNetworkAnalytics_CL

Table in Log Analytics populated by Traffic Analytics with processed NSG flow log results; each field name ends with a type suffix, for example FlowType_s, SubType_s or FlowStartTime_t.

AzurePlatformIMDS (service tag)

Service tag for the Instance Metadata Service at 169.254.169.254, meaningful only outbound. Denying it in an outbound NSG rule stops the VM reaching IMDS; inbound rules using it do nothing.

AzureRM

Former Azure PowerShell module, deprecated on 29 February 2024 and superseded by Az; for example, Get-AzureRmRoleDefinition is now Get-AzRoleDefinition.

azurevpnconfig.xml

Profile file for the Azure VPN Client, found in the P2S profile package downloaded once the gateway is set up for Entra ID authentication; users import it, or it is pushed out to them.

B

B-series

Burstable VM family that accumulates CPU credits while running under its baseline and uses them up when it bursts above it.

B2B collaboration

Microsoft Entra feature that invites external users one by one as guests; by itself it doesn't provision, approve or expire their access automatically.

B2B direct connect

Microsoft Entra cross-tenant access setting that applies only to shared channels in Teams.

Backend (Front Door classic)

See Origin.

Backend pool

Targets of a load balancer, identified by IP address or NIC IP configuration. A pool can't span VNets, and a Standard load balancer won't accept a VM that has a Basic public IP.

Backend pool (Front Door classic)

See Origin group.

Backend settings (backend HTTP settings)

Reusable Application Gateway configuration, shareable between rules, covering how backends are contacted: protocol and port, any host name override, a custom health probe and the certificates trusted on the backend.

Backlogged Input Events

Stream Analytics metric showing how many received input events are still waiting to be processed. If it never drops back to zero, the job is falling behind and should be given more streaming units.

Backup and restore (Key Vault)

Key Vault feature producing an encrypted blob of a stored object; restoring it works only into a vault within the same subscription and the same Azure geography as the original.

Backup center

Single pane in Azure Backup for managing all your vaults and backup policies together.

Backup Contributor

Azure role allowed to manage backups within a Recovery Services vault, though it can neither create vaults nor give access to others.

Backup Management Service

Service application of Azure Backup; to back up VMs encrypted with Azure Disk Encryption, it needs access to the vault's keys and secrets, granted by an access policy or a Key Vault role.

Backup MUA Operator

To perform a backup operation that multi-user authorisation (MUA) protects, a user needs this role assigned on the relevant Resource Guard.

Backup Operator

Built-in role for day-to-day vault work: starting backups and restores. Deleting backups, creating vaults and creating policies are all beyond it.

Backup policy

Setting in an Azure Backup vault fixing when one type of workload is backed up and for how long. Policies don't extend beyond their vault, so VM and Azure Files policies must be created in each vault separately.

Backup storage redundancy (storage replication type)

Replication choice for a Recovery Services vault (GRS unless you pick LRS or ZRS). Set it before protecting the first item, because it is locked once backup has been configured.

Backup vault

Vault type in Azure Backup aimed at newer workloads, for instance managed disks, Azure Blobs, AKS and Azure Database for PostgreSQL. Protecting Azure VMs, Azure Files or MARS backups requires a Recovery Services vault instead.

BACPAC

Export file holding both the schema and the data of a SQL database. Because the export is only consistent if nothing writes to the database meanwhile (or if you export from a copy), it counts as an offline migration method.

BareMetal Infrastructure

Azure offering of dedicated physical servers, SAP HANA Large Instances being one example, linked to your network over ExpressRoute.

Base analyzer

Prebuilt parent analyzer for a given modality (prebuilt-document, prebuilt-image, prebuilt-audio or prebuilt-video), from which a custom analyzer inherits by setting baseAnalyzerId.

Base64 data URI

Embedding the image itself in image_url as a data:image/jpeg;base64,... string; this is the approach when no public URL hosts the image.

Basic (Log Analytics table plan)

Low-cost Log Analytics table plan where ingestion is cheap but each query is charged per GB and runs at workspace scope. Full KQL and simple log search alerts are supported; standard log search alerts are not.

Basic Load Balancer

Load Balancer SKU retired on 30 September 2025. It was open by default, worked only with Basic public IPs and lacked zones and HA Ports, and its backend pool was confined to a single availability set, scale set or standalone VM.

Basic SKU public IP

Public IP SKU, retired on 30 September 2025, that could be static or dynamic and was open by default; Standard Load Balancer, Bastion and Azure Firewall would not accept it.

Bastion Developer SKU

Free tier of Azure Bastion, hosted on shared infrastructure, which connects to a single VM at a time, works without an AzureBastionSubnet and can't reach peered VNets. Every paid tier (Basic, Standard, Premium) needs its own AzureBastionSubnet sized /26 or larger.

Batch endpoint

Endpoint type for asynchronous scoring jobs: data in storage is split into mini-batches, processed in parallel on a compute cluster, and results are saved back to storage. Choose it for large scheduled workloads, not when low latency matters.

Batch synthesis API

Asynchronous text to speech REST API suited to big batches of SSML or plain text. Unlike the real-time REST API, which stops at 10 minutes of audio, it can generate longer output such as audiobooks.

Batch transcription

Asynchronous REST API that transcribes large quantities of recorded audio held in storage and delivers the text later; it is unsuitable for live captioning.

BATCH_COMPLETED_GROUP

Audit action group in Azure SQL that logs the full text of each query batch and stored procedure once it completes; it belongs to the recommended auditing configuration.

BCP (bulk copy program)

Bulk copy utility run from the command line to load data into SQL Server and Azure SQL; it is slower than the COPY statement.

Bearer token (access token)

Access token placed in an HTTP Authorization: Bearer header; any party holding it can call the API it protects.

begin_analyze()

Method on ContentUnderstandingClient that kicks off analysis asynchronously and immediately hands back an LROPoller; calling poller.result() then yields the AnalysisResult.

BFD (Bidirectional Forwarding Detection)

Protocol that spots a failed ExpressRoute link in less than a second. Microsoft's MSEE routers already have it on for new peerings, so you enable it on your own edge routers and tie it to the BGP session.

BGP (Border Gateway Protocol)

Dynamic routing protocol used with both ExpressRoute and VPN connections. On ExpressRoute private peering it is the only way to exchange routes, including a 0.0.0.0/0 default route for forced tunnelling.

BGP community

Label attached to routes Microsoft advertises, such as 12076:5010 marking one service or region. Route filters, and routers on premises, match on these values to decide which prefixes to take.

BGP peer IP

IP address from which each router runs its BGP session. Azure allocates one to a VPN gateway when BGP is switched on, and you record the internal address of your on-premises router in the local network gateway.

BGP peering with the virtual hub (hub BGP peering)

Virtual WAN capability where a network virtual appliance in a spoke connected directly to the hub runs a BGP session with the hub's router; the spoke's VNet connection must be associated with defaultRouteTable.

BGP route propagation

Setting on a route table, shown as Propagate gateway routes, that decides whether routes a VNet gateway has learned are passed to the subnet. Turning it off on spoke subnets stops on-premises routes from sidestepping a firewall.

BGP transit routing

Behaviour of a VPN gateway that passes prefixes learned from one BGP peer on to its other peers, letting chained BGP-enabled site-to-site and VNet-to-VNet connections reach one another; default routes are not passed on.

BI

See Power BI.

Bicep

Domain-specific language for declaring Azure infrastructure as code, which is compiled into ARM templates.

Billable Foundry resource (skillset) (cognitiveServices)

Key or identity of a Foundry resource linked to a skillset, letting built-in Vision, Language and Translator skills process more than the free allowance of 20 documents per indexer per day; a single multi-service resource is enough for all of them.

BIND zone file

Plain text file in the standard format that lists a DNS zone's records. You can import it with az network dns zone import in the Azure CLI or through the portal; Azure PowerShell offers no cmdlet for this.

BingGroundingToolDefinition

In the classic C# agents SDK, the tool definition you create from a Bing connection ID; supply it in the tools list of CreateAgentAsync rather than through ToolResources.

BitLocker (BitLocker Drive Encryption)

Full-volume encryption built into Windows; drives used with Azure Import/Export are protected with AES-256 BitLocker.

Blast radius (Exposure Management) (View blast radius)

Graph view in Exposure Management showing how compromise of a chosen node, such as an identity or a choke point, could spread to critical assets.

Blob index tags

Indexed, searchable key-value attributes set on blobs, which lifecycle rules can filter on via blobIndexMatch and ABAC conditions can use; filtering by them isn't possible with a SAS.

Blob storage

Azure's object store for unstructured content like images and video; a single block blob can reach roughly 190.7 TiB.

BlobStorage (legacy account)

Older storage account kind that holds only blobs on standard performance and offers access tiers; it retires on 13 October 2026, so accounts should move to general-purpose v2.

Block access (Conditional Access)

When a Conditional Access policy with this grant applies, the sign-in is refused outright; because block wins over all other controls, meeting MFA or compliance requirements in a different policy cannot override it.

Block blob

The blob type built from individual blocks, suited to text and binary files of up to roughly 190.7 TiB; access tiers and object replication work only with this type.

BlockBlobStorage

Premium, SSD-backed account kind dedicated to block and append blobs, giving the lowest latency; redundancy is limited to LRS or ZRS and access tiers aren't available.

Blocklist

A content filter can reference this user-defined collection of terms or regular expressions, holding as many as 10,000 entries, to stop particular words getting through.

BlocklistClient

Client in the Content Safety SDK for managing text blocklists: creating, listing and deleting them, and adding or removing items (add_or_update_blocklist_items, remove_blocklist_items with at most 100 per call, delete_text_blocklist).

Blue-green deployment (safe rollout)

Safe rollout approach for an online endpoint: a new green deployment is added with no traffic, tested, then given a growing share; to roll back, send all traffic to blue again (blue=100).

BM25 (Okapi BM25)

Full-text ranking function that weighs how often a term occurs, how rare it is across the corpus and how long each document is.

BOM (byte-order mark)

Bytes placed first in a text file to signal its encoding. Fine-tuning data should be saved as UTF-8 with a BOM, keeping each file below 512 MB; ASCII, UTF-16 or ISO-8859-1 files risk failing validation.

Boot integrity monitoring

Trusted launch feature in which the Guest Attestation extension remotely confirms that a VM booted cleanly; Defender for Cloud raises an alert if attestation fails.

Bot Manager rule set (Bot Manager)

WAF managed rules that sort incoming bots into good, bad or unknown categories and apply an action to each.

Bounded staleness

Cosmos DB consistency setting where reads may trail writes, but never by more than a configured count of versions or time interval; it is the strongest level that carries a write-latency SLA for multi-region accounts.

Bounding box

The x, y, width and height pixel coordinates marking where a detected object sits in an image; object detection outputs them, whereas image classification doesn't.

Branch protection

Rules on a branch such as main (branch protection in GitHub, branch policies in Azure Repos) that stop people pushing to it directly and require reviewed pull requests for merges.

Branch-to-branch (route exchange)

Optional Azure Route Server feature, disabled by default, that passes routes among NVAs and the VPN and ExpressRoute gateways in its VNet, enabling transit between ExpressRoute and site-to-site VPN.

Brand detection (logo detection)

Recognises the logos of thousands of well-known brands from a built-in catalogue, giving back each name with a confidence and bounding box; available in Image Analysis 3.2, and your own logos call for a trained custom model.

Budgets

In Cost Management, spending limits you can scope and filter by tag, which raise alerts when actual or forecast spend nears or passes them.

Built-in authentication for App Service and Container Apps (Easy Auth)

Easy Auth: sign-in handled by the platform itself (as a sidecar for Container Apps), working with Entra ID, Google, GitHub, Facebook, X or any OpenID Connect provider. Turning on Require authentication turns away anonymous callers; pair it with HTTPS only.

Built-in evaluators (evaluators)

Ready-made scorers in Foundry covering safety, quality, similarity, RAG and agent behaviour, with OpenAI graders and custom options alongside; they report how outputs perform but never alter settings or retrain anything.

Bulk operations

Entra admin centre tasks run from a CSV template you download first: creating member users, inviting guests, deleting users (only the UserPrincipalName column) and exporting the user list.

Business Critical

Azure SQL vCore tier offering the lowest latency by running Always On replicas on local SSD, plus zone-redundant failover that loses no data; serverless isn't offered.

BYOC (bring your own certificate)

Option for HTTPS on a Front Door custom domain in which your own certificate sits in Azure Key Vault, read through a managed identity or registered service principal; direct upload isn't possible and the chain must come from a Microsoft Trusted CA.

BYOK (bring your own key)

Customer-managed key approach where the key lives in your own Key Vault, serving for instance as the TDE protector or as a storage account's encryption key.

C

CA (certificate authority)

Entity that issues digital certificates; point-to-site VPN needs one only when clients authenticate with root and client certificates, not when RADIUS or Entra ID is used.

Calendars.ReadWrite

Microsoft Graph permission for creating, reading, updating and deleting events; as an application permission it spans every calendar in the organisation and needs admin consent, while delegated it reaches only the signed-in user's own calendars.

Calendars.ReadWrite.Shared

Delegated Graph permission reaching any calendar the signed-in user has access to, shared and delegate calendars included, but never the whole organisation.

Candidate (Defender EASM asset state)

Asset state in Defender EASM meaning there is some, but insufficient, linkage to your seeds; someone must check ownership by hand, and the asset is only scanned during discovery.

CanNotDelete (Delete lock)

Lock level under which a resource can still be read and modified but not deleted; moving it remains possible.

Capacity reservation groups

Containers for on-demand capacity reservations that secure VM capacity in a chosen region or zone; you pay for the reservation whether VMs use it or not.

Capacity unit (CU)

Unit used to size and bill Application Gateway v2, set by whichever is greatest of one compute unit, 2,500 persistent connections or 2.22 Mbps; an instance supplies roughly 10 of them.

Captioning

Turning speech in live or recorded video into timed text shown on screen; a speech to text use case that can also filter profanity and display partial results.

CD (continuous deployment)

Practice of releasing every change automatically, such as an ACR webhook that redeploys a containerised web app when a new image is pushed.

CEF (Common Event Format)

Format for text logs sent over syslog by firewalls and similar devices. A Linux log forwarder passes these messages to Microsoft Sentinel, which stores them in CommonSecurityLog.

CEF via AMA

Sentinel data connector in which a Linux forwarder runs the Azure Monitor Agent with a DCR to receive CEF messages; it supersedes the older CEF connector built on the Log Analytics agent.

Certificate (Key Vault)

Key Vault object holding an X.509 certificate, whose associated key and secret are managed alongside it.

Certificate authentication (P2S) (Azure certificate)

Point-to-site authentication method: you upload a root certificate the gateway trusts, and every client proves itself with a client certificate issued from that root.

Certificate lifetime actions

Settings in a Key Vault certificate policy, triggered a number of days before expiry or at a percentage of lifetime, that either renew automatically or email the contacts; renewal works through these, not through key rotation policies.

Certificate-based authentication (CBA)

Lets people authenticate to Microsoft Entra by presenting an X.509 certificate from your organisation's PKI. Scoped to a group, it becomes an extra option, can count as passwordless MFA and doesn't stop anyone using other methods.

Chain-of-thought prompting (chain of thought, CoT)

Technique where the prompt tells a non-reasoning model to work through the problem one step at a time, showing its reasoning before giving the answer.

Change Analysis

Records changes to Azure resource properties without an agent; it now appears as change history in Resource Graph.

Change feed

A log, in order, of changes made to blobs; point-in-time restore for block blobs depends on it.

Change Tracking and Inventory

Uses the Azure Monitor Agent to follow changes to files, registry keys, software and services inside guest operating systems, keeping the records in Log Analytics.

Chat Completions API (chat.completions)

Azure OpenAI interface built around a messages array of roles, plus response_format and tools that nest a function object; it remains supported, though the Responses API is advised for new applications.

Chat message roles (system, user, assistant, tool)

Labels on chat messages: instructions go under system, the person's input under user, the model's previous answers under assistant, and results returned by a called tool under tool (or function).

Chat playground

Lets you try a deployed chat model in Foundry without writing code, adjusting the system message, temperature, past messages included and maximum response length.

CheckingEndpoint

Interim Traffic Manager status an endpoint holds before its first probe result arrives; it continues to appear in DNS answers during that time.

Checkov

Open-source scanner for infrastructure-as-code that Microsoft Security DevOps runs; because it understands Terraform, ARM, Kubernetes manifests, CloudFormation, Helm charts and Dockerfiles, its format coverage exceeds Template Analyzer's.

ChecksFailedPercent (% Checks Failed)

One of the Connection Monitor metrics, together with RoundTripTimeMs and Test Result, on which Azure Monitor metric alerts can trigger, for instance when a site-to-site VPN goes down.

Child zone

When a subdomain like research.adatum.com gets its own DNS zone, the parent zone delegates to it using an NS record set with the subdomain's name.

Chunk overlap

Portion of text shared between neighbouring chunks so context isn't lost at the split; overdoing it (say a third of each chunk) means top-k retrieval brings back near-identical passages.

Chunking

Dividing content into short passages before it is embedded and indexed. Oversized chunks mix unrelated sections and weaken meaning, so Azure AI Search advises around 512 tokens each, overlapping by about 10-25%.

CI/CD (continuous integration and continuous delivery)

Pipelines, for example in Azure Pipelines or GitHub Actions, that build, test and deploy code automatically; short for continuous integration and continuous delivery.

CIDR (Classless Inter-Domain Routing)

Notation for IP ranges that writes an address followed by a prefix length, as in 10.1.255.0/24; short for Classless Inter-Domain Routing.

CIEM (cloud infrastructure entitlement management)

Analysis of identity permissions across multiple clouds; since Entra Permissions Management was retired in October 2025, Defender for Cloud is where this capability lives.

Circuit authorization (authorization key)

Created by an ExpressRoute circuit's owner, it yields a key that a different subscription redeems to link its gateway to the circuit; each connection needs its own, and no extra circuit is required.

Classic subscription administrators (Service Administrator and Co-Administrators)

Old roles with authority over a whole subscription, namely Account Administrator, Service Administrator and Co-Administrator; they were retired in August 2024 in favour of Azure RBAC.

Classification

Predictive, supervised learning that assigns an item to one of a set of categories, for instance deciding whether an email is spam; it isn't generative.

Claude models in Foundry (Anthropic Claude)

Anthropic models available to deploy through Microsoft Foundry. From Opus 4.7 onwards they support adaptive thinking only, refusing temperature and an enabled thinking type, whereas Sonnet 4.6 still takes both.

Client address pool

Range of private addresses handed out to point-to-site VPN clients; it must not overlap on-premises or VNet ranges and is set once the VPN gateway has been created.

Client credentials (grant)

App-only OAuth 2.0 flow in which the application signs in as itself, not on behalf of a user; daemons, service-to-service calls and managed identities rely on it.

Client secret (application password)

Password-like credential added to an app registration under Certificates & secrets, with its value displayed just once; public client apps don't have one.

ClientSecretCredential

Credential type in the Azure Identity library for signing in as a service principal from three values (tenant ID, client ID, client secret); the secret it depends on needs protecting and regular rotation.

Cloud App Security Administrator

Administers Defender for Cloud Apps in Microsoft Entra, but holds no permission to register applications or grant consent.

Cloud Application Administrator

Entra role matching Application Administrator except that it can't manage application proxy.

Cloud Device Administrator

Entra role whose rights cover turning devices on or off in the directory, deleting them and viewing BitLocker recovery keys, with no access at all to Azure resources.

Cloud security explorer

Part of Defender CSPM where you write graph queries, or start from templates, against the cloud security graph to ask about inventory, internet exposure or OS; it searches what is already known rather than scanning or capturing traffic.

Cloud security graph

Context engine in Defender for Cloud that links inventory, exposure, permissions, vulnerabilities and lateral movement paths; attack path analysis and cloud security explorer both build on it, and Defender CSPM is required.

Cloud tiering

When enabled on an Azure File Sync server endpoint, rarely opened files move up to the cloud share, while the server keeps a local cache of those used often.

CloudAppEvents

Holds enriched activity from Office 365 and connected SaaS apps for advanced hunting. Data arrives only through Defender for Cloud Apps and its Microsoft 365 connector; Purview Audit by itself doesn't fill it.

CLR (common language runtime)

Lets .NET code run inside SQL Server (common language runtime); SQL Server on VMs and SQL Managed Instance support it, while Azure SQL Database doesn't.

CLU (conversational language understanding)

Conversational language understanding: a custom Azure Language feature for chatbots that works out the intent behind an utterance and pulls out its entities; it retires on 31 March 2029.

Cluster autoscaler

Scales an AKS node pool, Windows pools included, by adding or removing VMs as the demand from pods rises and falls.

ClusterIP

Kubernetes' default Service type; it is given an internal address from the service CIDR and can be reached only from within the cluster.

CNAME (canonical name record)

Alias record in DNS that points one name at another, for example www at <app>.azurewebsites.net; it can't be placed at the apex of a zone.

CNI (Container Network Interface)

See Azure CNI.

Code interpreter tool (code_interpreter)

Agent tool provided out of the box that writes Python and executes it in a sandbox to do maths, analyse data or draw charts.

Codeless Connector Framework (CCF)

Lets you create SaaS data connectors for Microsoft Sentinel without writing code, by defining four things in sequence: the custom output table, the DCR, the connector's UI and its connection rules.

Codex

Former OpenAI model for code (code-davinci-002), now retired in Azure; current GPT models, GPT-5 codex variants among them, do coding work instead, and codex-mini is itself deprecated with retirement on 15 November 2026.

Cognitive Services Contributor

Role for managing resources: it can create them, see and regenerate keys and tailor content filters, though it can't call models with Entra ID; usually more access than a task requires.

Cognitive Services Data Reader

Built-in role granting only read data actions over Foundry Tools data, such as Speech projects.

Cognitive Services OpenAI Contributor

Azure OpenAI role that adds dataset uploads, fine-tuning and deployment creation to everything OpenAI User allows, yet can neither create resources nor see keys.

Cognitive Services OpenAI User

The narrowest Azure OpenAI role for calling models through Entra ID; it can see the endpoint and deployments and use the playgrounds, but not deploy, view keys or upload fine-tuning data.

Cognitive Services Speech User

Grants use of the Speech transcription and synthesis APIs, real-time and batch, and lets you view but not change custom models; pair it with a custom subdomain when authenticating through Entra ID.

Cognitive Services User

Built-in role permitted to call any model or Foundry Tool on the resource and to list and read its keys, which is wider access than Azure OpenAI inference alone requires.

CognitiveServices (resource kind)

The kind value used by the older multi-service Azure AI services resource; AIServices is the kind to choose for new ones.

Coherence evaluator (CoherenceEvaluator)

AI-assisted Foundry evaluator for general use that rates how logically a response flows and how well organised and consistent it is, looking only at the query and response without outside knowledge.

Cohort

In the Responsible AI dashboard, a group of data points you pick out so you can set its errors and metrics against others and spot gaps that one global cohort conceals.

Cold (tier)

Online access tier for blobs that costs less to store than Cool but more to read, while data stays instantly available.

Color scheme detection (colour scheme)

Tells you the main foreground, background and accent colours of a picture and whether it is black and white; part of Image Analysis 3.2.

Column encryption key (CEK)

In Always Encrypted, the key that actually encrypts column values; it sits encrypted in the database metadata and the driver retrieves it, so clients never receive it directly.

Column master key (CMK (Always Encrypted))

Protects the column encryption keys in Always Encrypted. It never lives in the database itself but in Azure Key Vault or the Windows certificate store, and client apps need permission to use it.

COM (Component Object Model)

Windows component technology (Component Object Model); since App Service can't register COM components, apps relying on them must run on VMs.

Command job

Runs a single command, for example python script.py, as an Azure Machine Learning job, with its inputs, outputs, environment and compute target all declared up front.

Commitment tiers

Log Analytics pricing levels starting at 100 GB per day that cut costs by around 15-30% versus pay-as-you-go, with no data dropped.

CommonSecurityLog

Destination table in Log Analytics for CEF-formatted messages that a Microsoft Sentinel log forwarder passes on.

Communication Compliance (Microsoft Purview Communication Compliance)

Purview insider-risk tool that flags messages in email, Teams or Copilot interactions that may be inappropriate or breach regulations so reviewers can respond; DLP policies sit elsewhere.

Company branding

Lets you change only the look of the Entra sign-in page, such as its logo, background and text; it neither names groups nor verifies domains.

Completions playground (legacy completions API)

Older Foundry playground where you typed a prompt and got text back, tied to the legacy Completions API and models like gpt-35-turbo-instruct. Use the chat playground with the Responses or Chat Completions API for anything new.

Composed model

Single model ID in Document Intelligence that bundles as many as 500 custom extraction models; from v4.0 (2024-11-30), a classifier you train explicitly decides which model handles each document.

Compressed audio input (AudioStreamFormat.GetCompressedFormat)

Speech SDK ability to accept MP3, OPUS/OGG, FLAC, ALAW and MULAW through push or pull streams, with GStreamer doing the decoding; GetWaveFormatPCM applies to uncompressed audio instead.

Compute cluster (AmlCompute)

Azure Machine Learning compute of several managed CPU or GPU nodes that scales from min_instances to max_instances with each job; set the minimum to 0 and an idle scale-down time so you pay only when jobs are running.

Computer use tool (computer use)

Tool giving an agent's model control of a graphical interface, reading screenshots, clicking and typing, so GUI tasks can be automated.

Computer vision

AI workload concerned with understanding images and video, for example spotting faces, people, logos, objects or areas of flooding.

Conda specification (conda file)

To build a versioned Azure Machine Learning environment, this YAML file names the Python packages to be layered onto a base Docker image.

Conditional Access

Policy engine in Microsoft Entra ID P1 that, depending on signals such as risk or named locations, allows access subject to controls like MFA or a compliant device, or blocks it.

Conditional Access App Control

Routes browser sessions through a Defender for Cloud Apps reverse proxy so that Entra Conditional Access can enforce access and session policies on them as they happen.

Conditional forwarder

Rule on a DNS server that sends lookups for a particular domain to named servers; it doesn't make those networks reachable.

Confidence score

Value between 0 and 1 attached to every prediction or extracted field to express the model's certainty; unlike accuracy, it isn't measured across a test set.

Confidential disk encryption

Available just for confidential VMs, this encrypts the OS disk with keys bound to that VM's TPM, meaning the disk is unreadable anywhere else.

Confidential VM

Virtual machine on Intel TDX or AMD SEV-SNP hardware, with memory encrypted against the host; it requires a confidential size such as DCasv5 or ECasv5 and a supported image.

Configuration server

Appliance that orchestrated replication of VMware machines for the older Site Recovery experience; you ran it on-premises, importing an OVF template into vSphere. Microsoft retired that classic approach in March 2026.

configure_azure_monitor

Single setup call in the Azure Monitor OpenTelemetry distro: pass it an Application Insights connection_string and your app's telemetry (logs, metrics, traces) flows into Azure Monitor.

Connected organization

In entitlement management, an outside partner's directory that you register so access-package policies are able to include its users.

Connected registry

Premium ACR capability providing an edge or on-premises copy of a registry, read-only by default or read-write, that keeps images in sync with its parent in the cloud.

Connection (virtual network gateway connection)

Resource that attaches a virtual network gateway to its peer, which may be an ExpressRoute circuit, a second VNet gateway (Vnet2Vnet) or a local network gateway over IPsec. Resetting it recovers a single tunnel and avoids rebooting the whole gateway.

Connection Monitor

Continuously probes network paths from sources to destinations in Network Watcher. Each monitor accepts source VMs only from its own region, so multiple source regions mean multiple monitors.

Connection troubleshoot

One-time Network Watcher check from a VM to another VM, an FQDN, a URI or an IP and port, reporting whether it is reachable, the latency and which hop (route or NSG) breaks it.

Connections Active (ConnectionsActive)

Online endpoint metric in Azure Monitor showing how many client TCP connections are open at once.

Connectivity configuration

Virtual Network Manager setting that creates mesh or hub-and-spoke topologies, using peerings or connected groups, over a network group; route exchange between gateways isn't part of it.

Connectivity provider (ExpressRoute partner)

Telecoms partner that, given the circuit's service key, provisions ExpressRoute at a peering location; with ExpressRoute Direct you connect without one.

Consumption (Functions plan)

Serverless, event-driven Azure Functions hosting plan charged per execution; runs are capped at 10 minutes and VNet integration isn't available.

Consumption-only environment

Legacy v1 type of Container Apps environment limited to the Consumption plan. If you bring your own VNet, the subnet can't be delegated and needs a size of /23 or bigger.

Contained user (contained database user)

Database user that authenticates at database level with no login in master, such as an Entra user, group or managed identity added through CREATE USER ... FROM EXTERNAL PROVIDER.

Container Apps environment

Boundary that groups Azure Container Apps for security, isolation and networking; decisions about workload profiles versus Consumption only, a custom VNet, and internal or external access can't be changed after creation.

Container Apps environments

Each one gives Azure Container Apps an isolated boundary in its own VNet and can host Consumption as well as Dedicated workload profiles; its network setup can't be altered after creation.

Container Apps peer-to-peer encryption

Environment option, disabled by default, that encrypts app-to-app traffic in Container Apps with TLS using platform-managed certificates; apps are authenticated to one another, but calls between them aren't authorised by it.

Container Apps workload profiles

The default Container Apps environment type, offering Consumption and Dedicated profiles on a subnet of at least /27; unlike the legacy Consumption-only type (/23), it supports UDRs, private endpoints and NAT Gateway egress.

Container group

ACI's top-level unit, comparable to a Kubernetes pod: one or more containers placed on the same host, sharing ports, an IP, volumes and a lifecycle; if it holds several containers, it must run Linux.

Container image vulnerability assessment

Agentless CVE scanning by Defender for Containers that covers images in registries and those running in clusters, kicked off when an image is pushed, imported or recently pulled.

Container insights

Gathers logs and performance data from AKS and other containerised workloads as part of Azure Monitor.

Content extraction

Content Understanding begins here, converting whatever comes in to text plus metadata, by transcribing audio and video or by running OCR and layout analysis on documents.

Content filter (guardrail controls)

Guardrail set up in Foundry that rates prompts and completions for risks such as hate, violence, sexual content, self-harm, prompt attacks and protected material, blocking anything at or above a chosen severity.

Content filters

See Foundry guardrail.

Content Moderator (Azure Content Moderator)

Older moderation service that Azure AI Content Safety has replaced; deprecated in February 2024, it retires on 15 March 2027.

Content Safety severity levels

How harm is graded within each category: images come back only as 0, 2, 4 or 6 (safe, low, medium, high), while text uses 0 to 7 or the reduced set 0, 2, 4, 6.

Content Safety Studio

Web portal where, with nothing more than a Content Safety resource, you can try out image and text moderation while tuning severity thresholds, look after blocklists, track usage and export code.

Content Safety text and image moderation

Scores a piece of text or an image for severity across four harms (hate, sexual, violence, self-harm) in Azure AI Content Safety; prompt injection is outside its scope.

Content trust

See Docker Content Trust.

Content Understanding agentic mode

In preview from API version 2026-06-01-preview, this Content Understanding mode works through the evidence in a document to validate content and perform calculations; to begin with, each request takes a single file.

Content Understanding analyzer (analyzer)

Defines in Content Understanding how input is processed and what fields come out, either through a prebuilt analyzer or through a field schema you write yourself.

Content Understanding pro mode

Preview mode, offered only through the 2025-05-01-preview API that has since been retired, which brought reasoning, several input files and a reference knowledge base for checking across documents; agentic mode is taking its place.

Content Understanding service limits

Caps on what Content Understanding accepts; for documents, supported formats are PDF, TIFF, JPEG, PNG, BMP, HEIF/HEIC and Office files, while WebP is not.

Content Understanding standard mode

Cheapest, fastest Content Understanding mode and the default, handling one file per request; a good fit for large volumes of individual documents like invoices.

ContentSafetyClient

Content Safety SDK client built from an endpoint plus either a key or an Entra credential; moderation runs through its AnalyzeText and AnalyzeImage methods (analyze_text and analyze_image in Python).

ContentSafetyEvaluator

Combined evaluator that checks a query and response for the severity of self-harm, sexual, violent and hateful or unfair content in one pass.

ContentUnderstandingClient

Content Understanding client for Python; calling its begin_analyze() kicks off an analysis and hands back a poller.

Context window

How many tokens, counting input and output together, a model can handle in one request; GPT-4.1-mini manages roughly 1M, for instance, against 128k for the now-retired Phi-3-mini.

Contract model (prebuilt-contract)

Prebuilt Document Intelligence model that pulls fields out of contracts, among them Title, Contract ID, Parties and Jurisdictions.

Contributor

Built-in Azure role with full management of resources, except that it can't give access to anyone.

Conversation (Foundry Agent Service) (conversation object)

Server-side object, identified by an ID, that persists items such as messages, tool calls and their outputs across turns and sessions; running a response against it supplies the whole history and adds the new output to it.

Conversational AI

Workload in which software holds a back-and-forth exchange, understanding questions and answering them, as chat bots and generative AI chat apps and agents do.

Cool (tier)

Online blob tier that is cheaper than Hot to store data in but dearer to access.

Cooldown

How long autoscale waits after scaling before any rule may act again, 5 minutes by default; this differs from the period over which the metric is evaluated.

Copilot Studio (Microsoft Copilot Studio)

Microsoft's low-code tool for building workflows and AI agents. Its generative agents may hand each tool call they intend to make to an external threat detection service, Microsoft Defender for example, for checking.

Copilot Studio external threat detection

Preview option in the Power Platform admin center whereby each tool call a generative Copilot Studio agent plans is sent to a provider endpoint, authorised via an Entra app ID, that permits or blocks it; with no reply within one second, the call is allowed.

copy (ARM template)

Loop element in ARM templates for creating several resources, properties (for example storageProfile.dataDisks), variables or outputs, with a ceiling of 800 iterations.

Copy activity

Activity in a Data Factory pipeline that moves data from one store to another.

COPY statement (COPY INTO)

The quickest and recommended method of loading a Synapse dedicated SQL pool; it doesn't need external tables or file formats.

copyIndex()

Returns the current iteration of an ARM copy loop, counting from zero; inside a property loop, give it the loop name, as in copyIndex('dataDisks'), so every disk gets its own LUN and name.

CoreDNS (kube-dns)

AKS's default cluster DNS, running as pods in kube-system, that resolves internal names and enables service discovery; its service IP can only be reached within the cluster.

CorrelationRemover

Applied before training, this Fairlearn transformer cancels out the correlation that other features share with sensitive ones; you then need to train the model again.

Cosine similarity (cosine distance)

Scores how semantically close two embedding vectors are by the angle between them; vector search relies on it.

Cosmos DB (Azure Cosmos DB)

NoSQL database distributed globally, offering writes in multiple regions, automatic indexing and latency below 10 ms.

Cosmos DB Built-in Data Reader

Data-plane RBAC role native to Cosmos DB that lets Microsoft Entra ID tokens be used to read data.

Cosmos DB for NoSQL (SQL API)

The native API of Cosmos DB, storing JSON documents and querying them with SQL-style syntax.

Cosmos DB for PostgreSQL

See PostgreSQL.

Cosmos DB for Table

API in Cosmos DB that is compatible with Azure Table storage, so moving across mostly means swapping the connection string.

Cost analysis

Lets you slice and explore Azure spending in Cost Management by scope, tag, service or time period.

Cost Management

Azure's service for analysing costs, setting budgets and reporting by tag on resources that already run in Azure; it can't forecast what a migration will cost beforehand.

Cost reporting

Tracking spending across subscriptions by tagging resources and then grouping Cost Management budgets and reports on those tags.

CPE (customer premises equipment)

The equipment at a branch, typically an SD-WAN appliance or router, through which that site connects into a Virtual WAN hub; stands for customer premises equipment.

CPU (central processing unit)

The processor that runs a VM's workload (central processing unit); while B-series VMs run under their baseline, they accumulate CPU credits.

CQL (Cassandra Query Language)

Query language of Apache Cassandra, used by Cosmos DB's API for Cassandra.

Crash-consistent snapshot

Captures just what has already been written to disk, which happens if the VM is shut down or deallocated when backup runs or if an app-consistent snapshot can't be taken; a recovery point is still created.

Create new (restore option)

Restores an Azure VM from a recovery point as a brand-new VM, or as disks only, in the same region, leaving the original machine running.

CREATE USER FROM EXTERNAL PROVIDER

Statement in T-SQL that adds a contained database user for an Entra identity, whether a person, group, managed identity or service principal. Doing so enables Entra sign-in to that database but leaves SQL logins working.

Credential passthrough

Older Premium-tier Azure Databricks feature that let users reach ADLS under their own identity; it has been deprecated since Databricks Runtime 15.0, and Unity Catalog is the recommended replacement.

Cross-region load balancer (global load balancer)

Global tier of Standard Load Balancer: a single anycast public IP fronts a backend pool made up of regional public Standard load balancers, and traffic goes to whichever healthy region is closest. Basic SKUs can't take part.

Cross-tenant access settings

Determine, in Microsoft Entra, how far your tenant trusts and collaborates over B2B with other tenants, for both incoming and outgoing access.

Cross-tenant CMK (cross-tenant customer-managed keys)

Setup in which a storage account's customer-managed key comes from a key vault in a different Entra tenant, accessed through a multitenant application with a federated credential.

Cross-tenant synchronization

Entra capability, set up on the source tenant, that provisions, updates and deprovisions that tenant's users in a target tenant automatically.

CRS (Core Rule Set)

The OWASP Core Rule Set, on which the Application Gateway WAF bases its rules.

CSV (comma-separated values)

Plain-text format with comma-separated values, often used for flat exports such as an HR file feeding API-driven provisioning.

Curated environment

Azure Machine Learning environment that Microsoft prepares and publishes in its managed azureml registry for use without modification; when changes are needed, create a custom environment.

Custom analyzer (Content Understanding)

Built on top of a base analyzer like prebuilt-document, this is where you add a field schema, methods and validation instructions of your own in Content Understanding.

Custom audience (custom audience app ID)

Lets each point-to-site gateway admit only certain groups: register an app, set its client ID as that gateway's Audience and authorise the Azure VPN Client app as a client, creating one such registration per gateway.

Custom categories (Content Safety)

Lets Content Safety detect categories you define, either in standard form (trained over several hours and retiring on 1 September 2026) or in rapid form from samples; for a handful of niche terms, a blocklist takes less effort.

Custom classification model (custom classifier)

Document Intelligence model, trained on two or more document types, that sorts and splits incoming files by type ahead of extraction; you apply confidence thresholds to what it returns.

Custom DNS server

DNS server addresses configured on a VNet, or overridden on a NIC, in place of Azure-provided DNS, such as AD DS domain controllers; VMs need to be able to reach that private IP.

Custom domain

A DNS name of your own attached to a service. In an Entra tenant it is verified through a TXT or MX record, and every on-premises UPN suffix used to sign in must be one (.local can't be); for App Service it is bound with CNAME or TXT validation.

Custom evaluators

When none of the built-in evaluators suit, you can write your own as an LLM-as-judge prompt or as Python code.

Custom extraction model

Trained on your labelled documents, sometimes only five of them, to extract the fields you specify; Document Intelligence offers it as either custom neural or custom template.

Custom health probe (custom probe)

Application Gateway probe tied to backend settings in which you choose host, path, interval, match criteria and (on v2) port, for example to test port 8080.

Custom IPsec/IKE policy (IPsec/IKE connection policy)

Set of algorithms for IKE Phase 1 and IPsec Phase 2, together with DH and PFS groups and SA lifetimes, applied to one connection rather than the gateway; each connection takes one policy, and every parameter has to be filled in.

Custom keys connection

Foundry connection that holds any key-value secrets you choose. Name an API key to match the securitySchemes entry in an OpenAPI spec, for example, and the header is supplied for you at run time.

Custom log table (_CL table)

Table in Log Analytics whose name ends in _CL and whose schema you define, populated through a DCR with data no standard table suits.

Custom NER (custom named entity recognition)

Trainable Azure Language capability for detecting the entity types your own domain cares about; it locates them without redacting anything.

Custom neural model

Custom extraction model in Document Intelligence based on deep learning that copes with differing layouts of the same document type, structured or semi-structured; Microsoft recommends starting with it rather than custom template.

Custom neural voice

See Professional voice fine-tuning.

Custom roles (Azure custom roles)

Azure RBAC roles containing actions you pick yourself, for when no built-in role fits; a tenant can hold as many as 5,000.

Custom route table

Route table you create in a Virtual WAN hub to isolate traffic, for instance for a set of VNets; it can't be used once routing intent is turned on.

Custom Script Extension

Runs PowerShell or Bash scripts on a VM after pulling them from GitHub, Azure Storage or another location the VM can reach; a common use is installing NGINX or IIS.

Custom speech

Improves recognition of domain vocabulary by fine-tuning a base speech model on your text, or on audio paired with transcripts. You start a project and choose the base model, then upload data and train it, and finally test and deploy.

Custom speech endpoint

Needed for real-time recognition with a custom speech model and identified by its endpointId. Batch transcription doesn't require one, and the model behind it can be replaced without any downtime.

Custom speech model expiration

What happens once a custom speech model expires: real-time endpoint calls drop back to the newest base model for that locale, whereas batch jobs naming the model fail with a 4xx error; the model itself remains.

Custom string masking function (partial())

The partial() function in dynamic data masking, which reveals a chosen number of characters at the start and end and fills the middle with custom padding.

Custom subdomain (Foundry Tools) (custom domain name)

Endpoint unique to a resource, https://<name>.cognitiveservices.azure.com, that Microsoft Entra ID authentication requires because regional endpoints reject Entra tokens; once set, it can't be undone.

Custom template model (custom form)

Custom extraction model in Document Intelligence for documents with one fixed layout, trained in 1-5 minutes; any variation in layout calls for a separate model.

Custom text classification

Trainable Azure Language capability that labels each whole document with one of your own classes, like telling personal email from work email.

Custom Vision (Azure AI Custom Vision)

Lets you train image classifiers and object detectors on your own labelled pictures as a Foundry Tool. It is being retired, with support running until 25 September 2028, and it can't extract fields from documents.

Custom voice (custom neural voice, brand voice)

Text to speech feature with limited access that produces a distinctive synthetic voice, for a brand or character, trained on recordings of a real speaker.

Custom voice endpoint (deploymentId endpoint)

Synthesises speech from a custom voice you have deployed, at voice.speech.microsoft.com/cognitiveservices/v1?deploymentId=...; it offers no way to list available voices.

Custom Web API skill (WebApiSkill)

Azure AI Search skill (Microsoft.Skills.Custom.WebApiSkill) that sends enrichment calls to an HTTP endpoint you supply in uri, for example an Azure Function fronting a Document Intelligence model. Setting a context that ends in /* makes it run per item.

Customer edge router (CE)

For ExpressRoute, the router owned by you or your partner that forms BGP sessions with Microsoft's Enterprise Edge routers (MSEEs); BFD gets configured here.

Customer-managed account failover

Makes the secondary of a geo-redundant storage account the new primary while keeping its DNS names. A planned failover preserves geo-redundancy, whereas after an unplanned one the account stays LRS until you set up geo-replication again.

Customer-managed keys (CMK)

RSA or RSA-HSM key of 2048, 3072 or 4096 bits that you keep in Key Vault or Managed HSM to wrap a storage account's encryption key. You can switch it on later, except for tables and queues, whose CMK support must be chosen at creation.

CVE (Common Vulnerabilities and Exposures)

Public, numbered list of known software vulnerabilities (Common Vulnerabilities and Exposures) that vulnerability assessment findings refer to.

D

D-series

Family of general-purpose VMs with a balanced ratio of CPU to memory, suited to web servers, enterprise applications and dev/test.

DACPAC

Package capturing a database schema as a SQL data-tier application, used for example to build the target schema ahead of a migration.

Daemon app

Service or background process that runs without anyone signed in, authenticating as itself via client credentials, which is why it needs application permissions with admin consent.

Daily cap

Limit on a Log Analytics workspace that halts data ingestion for the rest of the day once a set volume is hit.

DALL-E (dall-e-3)

OpenAI's former image-generation model; Azure retired dall-e-3 on 4 March 2026, with the gpt-image series taking over.

Dapr

Distributed Application Runtime, offered in Container Apps and as an AKS extension, which gives apps ready-made building blocks like pub/sub and state management.

Data access governance reports (DAG reports)

Oversharing reports found in the SharePoint admin center with SharePoint Advanced Management. Snapshot reports list site permissions and content shared with Everyone or EEEU, while activity reports track sharing links and EEEU sharing across the previous 28 days.

Data asset

In Azure Machine Learning, a versioned, named pointer to a storage location (uri_file, uri_folder or mltable) that behaves like a bookmark, leaving the data where it is rather than copying it.

Data Box

Physical device shipped for moving large amounts of data into Azure offline; Data Box Gateway uploads in one direction only, and neither offers continuous synchronisation.

Data Catalog

Older Azure service for cataloguing data, now replaced by Microsoft Purview; it isn't used for grouping resources.

Data collection endpoint (DCE)

Where data sent through the Logs Ingestion API arrives; adding it to an Azure Monitor Private Link Scope (AMPLS) keeps ingestion private.

Data collection rule (DCR)

Rule in Azure Monitor specifying what the Azure Monitor Agent or Logs Ingestion API gathers (XPath event filters, for example), any transformation applied, and the destination.

Data Collector Set

In Performance Monitor, a scheduled bundle that logs chosen counters together with ETW traces and configuration information.

Data connector (Microsoft Sentinel data connector)

Brings data into the Microsoft Sentinel workspace from Azure resources, Microsoft services or third-party sources; ingestion is its only job, with no detection or response.

Data Discovery & Classification

Capability in Azure SQL that finds columns holding sensitive data and labels them, without encrypting or masking anything.

Data disk

A managed disk for application data, connected to the VM at a specific LUN. Attaching it while the VM is running causes no downtime.

Data drift

Monitoring signal that checks how the production distribution of each input feature differs from a baseline, normally the training data, with measures like PSI or Jensen-Shannon distance; crossing a threshold can kick off retraining.

Data Factory

See Azure Data Factory.

Data Lake Storage Gen1 (ADLS Gen1)

First generation of Azure Data Lake storage, which reached retirement in February 2024; ADLS Gen2 is its successor.

Data lake tier (Microsoft Sentinel data lake)

Sentinel storage option priced low for logs you rarely touch. You can still query it via search jobs, KQL jobs and ordinary KQL, and keep data for as long as 12 years in total.

Data Management Gateway

See Self-hosted IR.

Data Migration Assistant (DMA)

Deprecated Microsoft utility for evaluating SQL Server readiness and copying schema plus data into Azure SQL Database. Its assessment role has passed to Azure Arc-enabled SQL Server and to SSMS.

Data Path Availability

Metric reporting frontend (VIP) availability on a Standard Load Balancer; check it first when a VM behind the load balancer appears to be down.

Data plane

Operations that act on what is inside a resource, for example the secrets, keys and certificates held in a vault; in Key Vault these are authorised through data roles or access policies and filtered by the Key Vault firewall.

Data Security Posture Management (DSPM)

Brings together DLP, Insider Risk Management and sensitivity-label insights in Microsoft Purview to surface risks to sensitive data, and adds data risk assessments plus remediation for oversharing.

Data zone

Boundary set by Microsoft, covering the US, the EU or Asia Pacific and spanning several countries and regions, within which Data Zone deployments keep data processing.

Data Zone Batch (DataZoneBatch)

Batch deployment type matching Global Batch in discount and 24-hour target turnaround, except that jobs are processed only inside the data zone.

Data Zone Standard (DataZoneStandard)

Deployment type billed per token that can route requests to any region inside a Microsoft-defined data zone (US, EU or APAC), giving higher quota than regional deployments.

DataActions

Section of a role definition listing data-plane operations, such as reading blobs or logging in to a VM; putting these operations under Actions instead has no effect.

Database scoped credential

A credential that belongs to one database, made using CREATE DATABASE SCOPED CREDENTIAL by someone holding CONTROL permission there.

Database-level auditing

Auditing policy on a single Azure SQL database that operates alongside server-level auditing with destinations of its own; turning it off never halts the server's audit of that database.

Databricks (Azure Databricks)

Analytics platform built on Apache Spark where data is processed in notebooks; Unity Catalog is the governance model it recommends.

Databricks service principal

Non-human identity for calling Azure Databricks from scripts, pipelines or other automation running outside Azure; personal access tokens, by contrast, belong to individual users.

Datastore

A named pointer in the workspace to Blob, Azure Files or ADLS Gen2 storage that keeps the connection details, so code never needs to carry storage keys itself.

Dataverse

The data store behind Power Platform; a shortcut can surface its data in Microsoft Fabric.

davinci-002

Older base model for plain text completion only, so it can't be fine-tuned on images.

DB2

Relational database from IBM; its schemas and data can be moved to Azure SQL using SQL Server Migration Assistant (SSMA).

db_datareader

Built-in database role whose members may query every user table; paired with db_datawriter it gives read and write access without broader privileges.

db_datawriter

Built-in database role allowing inserts, updates and deletes on every user table, without permission to select from them.

db_owner

Built-in role granting complete control over a database, which is too much for everyday data access. If membership comes only through an Entra group, creating a database scoped credential fails with error 2760.

DBFS (Databricks File System)

Abstraction in Databricks that presents underlying storage, ADLS Gen2 for example, as a file system.

DC (domain controller)

A server running AD DS. Placing these servers in Azure as well as on-premises keeps synchronisation and user sign-in working if one location fails.

DCasv5 (DCadsv5)

General-purpose confidential VM sizes protected by AMD SEV-SNP. Sizes with lookalike names, such as Ddsv5 or D2ads_v5, offer no confidential computing.

DCE

See Data collection endpoint.

DCR

See Data collection rule.

DCR transformation (transformation)

A KQL statement inside a data collection rule that drops or reshapes incoming records before storage. Selecting which Windows events the agent gathers is done with XPath instead.

DDoS Network Protection

Plan enabled on virtual networks to shield their public IP addresses, bundling rapid-response support, cost protection and reduced WAF pricing.

Dedicated (Functions plan)

Running Azure Functions on an App Service plan, which removes the execution time limit and offers VNet integration on Basic and higher tiers.

Dedicated cluster (Log Analytics)

To encrypt Azure Monitor Logs with your own keys, the Log Analytics workspace must be linked to this cluster tier. Setting a CMK on a storage account gives Log Analytics no such protection.

Dedicated data endpoints

On Premium container registries, per-region data host names of the form <registry>.<region>.data.azurecr.io that let firewalls allow just that registry. They control network reach only, not permissions.

Dedicated host

See Dedicated host groups.

Dedicated host groups

Collections of physical dedicated hosts that live in one availability zone each, so covering several zones requires a separate group per zone.

Dedicated SQL pool (formerly SQL Data Warehouse)

Massively parallel warehouse in Synapse, previously named SQL Data Warehouse, which spreads data across 60 distributions and runs no more than 128 queries at once.

Default health probe

Automatic Application Gateway probe built from the protocol and port in the backend settings, aimed at 127.0.0.1 when no host is given. Problems on any other port go unnoticed.

Default outbound access

Outbound internet connectivity Azure gives a VM through a Microsoft-owned public IP when nothing explicit is configured. Private subnets, the default in VNets created from 31 March 2026, don't get it.

Default route (0.0.0.0/0)

The 0.0.0.0/0 route matching any destination. Advertised by on-premises routers through BGP on ExpressRoute private peering (Microsoft peering won't do), it sends internet traffic from connected VNets back on-premises.

Default security rules (NSG)

Built-in NSG rules at priorities 65000-65500: AllowVnetInBound, AllowAzureLoadBalancerInBound and DenyAllInBound, plus AllowVnetOutBound, AllowInternetOutBound and DenyAllOutBound. Removal is impossible; custom rules at 100-4096 take precedence.

Default share-level permission

Account-wide option granting one SMB share role to all authenticated identities on every file share, so individual users don't need their own assignments.

Default Site

In forced tunnelling, the route-based VPN gateway is pointed at one local network gateway as its default, and every internet-bound packet goes there. That on-premises device must permit 0.0.0.0/0 in its traffic selectors.

Default to Microsoft Entra authorization in the Azure portal

When enabled on a storage account, the portal accesses data with the signed-in user's Entra identity instead of keys. Identity-based SMB access does not depend on it.

Default user permissions

Entra settings governing ordinary users, such as whether they may register applications or open the Microsoft Entra admin portal. Blocking the portal only hides the UI and does not secure anything.

default() masking function

Dynamic data masking option that hides a value completely, returning XXXX for text, zero for numeric types, 1900-01-01 for a date and 1900-01-01 00:00:00.0000 for a datetime.

DefaultAzureCredential

Credential type in the Azure SDKs that works through several sources in turn: a developer's own sign-in on a workstation, or the managed identity through IMDS when hosted in Azure. No keys or secrets need storing.

defaultRouteTable (Default route table)

Every Virtual WAN hub ships with this route table, labelled Default. Unless configured otherwise, each connection associates with it and propagates routes to it, and branches are required to remain associated.

Defender Antivirus passive mode

Mode in which another vendor's antivirus is primary, so Microsoft Defender Antivirus stops remediating while EDR carries on. Windows Server needs ForceDefenderPassiveMode set to enter it.

Defender CSPM

Defender for Cloud's paid posture tier. On top of the free foundations it brings agentless scanning, attack path analysis, AI security posture management and the cloud security explorer.

Defender EASM inventory filters

Inventory view filters in Defender EASM. Because State = Approved is applied by default, clear that filter to list assets in any other state.

Defender EASM labels

Free-form tags for recording business context on Defender EASM assets. Adding one alters neither an asset's state nor its scanning or ownership.

Defender for Cloud Apps session policy

Policy in Conditional Access App Control that watches or restricts what users do in browser sessions, such as downloading, uploading or copying. Tool calls made by AI agents fall outside it.

Defender for Cloud Data and AI security dashboard

A per-subscription overview of data and AI resources showing their coverage, internet exposure and leading issues. A complete picture depends on enabling Defender for Storage, Defender for Databases, AI threat protection and Defender CSPM including sensitive data discovery.

Defender for Cloud DevOps security (Defender for DevOps)

Brings GitHub, GitLab and Azure DevOps into Defender for Cloud, showing IaC, dependency, secret and code findings side by side. Problems are caught early, yet deployments that skip the pipeline are not blocked.

Defender for Cloud email notifications

Emailed security alerts from Defender for Cloud. Out of the box only High severity is sent, and each recipient receives roughly four high, two medium and one low per day at most.

Defender for Cloud pull request annotations (PR annotations)

DevOps security comments on IaC problems, posted only against the lines a pull request changes, in GitHub or Azure DevOps. Defender CSPM is a prerequisite; on Azure DevOps you also need Contributor or Owner rights and a Build Validation policy on main.

Defender for Cloud workload protection plans (Azure Defender)

Paid threat-protection plans for specific resource types: Servers, Storage, Databases, Containers, App Service, Key Vault, Resource Manager and APIs. Virtual networks have no plan of their own.

Defender for container registries

Former Defender plan, now retired and folded into Microsoft Defender for Containers, which scanned ACR images when pushed, imported or recently pulled.

Defender for Containers runtime threat protection

Detection, powered by the Defender sensor, of suspicious behaviour across Kubernetes clusters, nodes and workloads. Alerts follow once pods are running; nothing is blocked at admission.

Defender for Identity (Microsoft Defender for Identity)

Microsoft Defender service for detecting threats against on-premises Active Directory; it does no access reviews or identity governance.

Defender for Servers Plan 1

The lower of the two Defender for Servers tiers: it includes Defender for Endpoint integration, giving EDR and anti-malware, plus vulnerability assessment through an agent. JIT access, FIM and agentless scanning come only with Plan 2.

Defender for Servers Plan 2

Top Defender for Servers tier, which includes FIM, JIT VM access, agentless scanning and, from August 2023, Defender for DNS alerts. You turn it on per subscription or per Log Analytics workspace.

Defender for Storage malware scanning (on-upload malware scanning)

As blobs are uploaded, Microsoft Defender Antivirus checks them. Charges are per GB, limited each month per account (10,000 GB by default), and results can land in blob index tags, Event Grid, Log Analytics or security alerts.

Defender security for AI agents

Set up in the Defender portal by connecting Copilot Studio and the Microsoft 365 app connector, which share one Entra App ID. Agent tool calls are then checked at run time, risky ones blocked, and alerts and incidents raised.

Defender sensor

DaemonSet from Defender for Containers that runs on each node and gathers runtime telemetry with eBPF for threat detection. AKS gets it as a security profile; EKS and GKE get it as an Arc extension.

Degraded

Status Traffic Manager gives an endpoint whose health checks are failing. Such endpoints are omitted from DNS answers, except when all of them are degraded at once.

DEK (data encryption key)

The symmetric AES key that actually encrypts the data; a protector, for example the TDE protector, wraps it in turn.

Delegated permissions

Entra permission type under which an app works on behalf of whoever is signed in, reaching only the data that user can access.

Delta Lake

Table format adding transactions to files in the data lake. In Synapse, Spark pools can write these tables, while serverless SQL pools can only query them.

Demographic parity

A fairness constraint that mitigates allocation harms by asking for comparable selection rates in every sensitive group.

Deny (Policy effect)

An Azure Policy effect that stops any create or update request that would break the policy.

Deny assignments

Azure RBAC entries that block actions even where a role assignment allows them. Once only Azure services such as deployment stacks made them; users can now create them too (New-AzDenyAssignment or az role deny-assignment create), covering write, delete and action operations but not groups.

Deny effect

When a create or update request would be non-compliant, this Azure Policy effect rejects it, which leaves Audit with no non-compliant resources to flag.

Deny settings (DenyDelete, DenyWriteAndDelete)

On a deployment stack, DenyDelete or DenyWriteAndDelete applies deny assignments to the managed resources that bind every principal, Owners too, apart from any excluded.

DenyAllInBound

The priority-65500 default NSG rule that drops any inbound traffic, internet included, which no earlier rule has allowed.

Dependency (Defender EASM asset state)

Asset state in Defender EASM for infrastructure run by third parties that your own assets rely on directly; these are tracked apart from the Approved Inventory.

dependsOn

In an ARM template, the list of resource names or IDs (commonly built with resourceId()) to deploy before this resource. It controls sequencing only and provides no iteration.

DeployIfNotExists (Policy effect)

When a related resource is absent, this Azure Policy effect deploys an ARM template to create it. Resources that already exist are corrected only by a remediation task running as the assignment's managed identity.

Deployment (Virtual Network Manager)

Pushes a Virtual Network Manager configuration, as the goal state, to selected regions. Nothing changes until this happens, and each deployment applies to every VNet within the region.

Deployment credentials (FTPS, basic authentication)

Username and password pairs for local Git and FTP/S on App Service. They use basic authentication and are not Entra identities.

Deployment modes (Incremental, Complete)

The two ways ARM can deploy: Incremental, the default, creates or updates what the template lists and ignores everything else; Complete also removes resource group contents absent from the template.

Deployment slots

Extra App Service environments, available from the Standard tier, that you warm up and then swap with production, keeping the ability to swap back.

Deployment stacks

Azure resources treating a set of jointly deployed resources as a single managed unit; together with Template Specs they replace Blueprints.

Deployment type (Foundry Models)

Chosen when you deploy a model, it decides two things: billing (provisioned, batch or standard pay-per-token) and where inference data may be processed (anywhere globally, within a data zone or inside one geography).

Description (Image Analysis 3.2) (Describe, VisualFeatureTypes.Description)

Visual feature in Image Analysis 3.2 that produces natural-language caption sentences sorted by confidence, read from Description.Captions[0].Text. Version 4.0 swaps it for Caption.

Detection mode

A WAF setting in which managed and custom rule matches are only logged and no request is blocked.

Deterministic encryption

Always Encrypted option where a given value always encrypts to identical ciphertext. That allows equality searches, joins, grouping and indexes, at the cost of exposing patterns in the data.

Developer deployment type (DeveloperTier)

Deployment type meant purely for trying out fine-tuned models; each deployment lasts 24 hours and comes with no SLA or data residency commitment, so it isn't suitable for production.

Device code (grant)

OAuth grant for devices that lack a browser or keyboard: sign-in is completed on a separate device.

DevTest Labs User

Azure role that lets someone create and work with their own virtual machines, limited to a DevTest Labs lab.

DH group (Diffie-Hellman group)

The Diffie-Hellman group chosen for key exchange during IKE Phase 1 (Main Mode) in a custom IPsec/IKE policy, such as DHGroup24 or DHGroup14.

DHCP (Dynamic Host Configuration Protocol)

Azure delivers each NIC's private IP to the guest operating system using this protocol, so keep the OS set to obtain addresses automatically and configure any static IP on the Azure NIC.

Diagnostic setting

Configuration sending a resource's metrics and logs to a storage account, Event Hubs, Log Analytics or a partner solution; a resource can have five at most.

Diarization (speaker diarization)

Splitting a transcript by voice so each segment shows which speaker was talking. Speech and the Content Understanding audio analyzers both offer it.

DIP (direct IP)

Direct IP: the address of an individual back-end instance sitting behind a load balancer. Its availability is what the Health Probe Status metric reports.

Direct Lake

Mode for Fabric semantic models that loads Delta or Parquet files from OneLake straight into VertiPaq, giving almost import-level performance without duplicating data.

DirectAccess

Older Windows Server feature giving remote clients an always-connected link, since replaced by Always On VPN. It does not connect sites or virtual networks.

Directory Reader (Directory Readers)

An Entra role, not an Azure role, allowing basic directory information to be read. Members can already do that by default, though guests might require the role.

Directory.Read.All

Graph permission for reading users, groups, apps and other directory data. A daemon that reads the directory needs at least this as an application permission, which always requires admin consent.

DirectQuery

Power BI connection mode in which reports fetch data from the source in real time; Direct Lake outperforms it.

Disconnected (peering state)

Shown when the other VNet's side of a peering has been removed, so traffic stops. The remedy is to delete the peering and create it again on both networks.

Discovery group

In Defender EASM, a set of seeds and exclusions discovered together on its own schedule, weekly unless changed. Removing the group, or any seed in it, can delete all assets it found.

Discovery seeds

Starting points such as domains, hosts, IP blocks, ASNs, email contacts and WHOIS organisations, from which Defender EASM recursively finds related internet-facing assets. Private IP addresses are not accepted.

Disk Backup Reader

Built-in role that must be granted on the source managed disk to the Backup vault's managed identity, letting Azure Disk Backup read the disk.

Disk Snapshot Contributor

For Azure Disk Backup to create and clean up snapshots, the Backup vault's managed identity must hold this built-in role over the resource group where snapshots are kept.

Distributed availability group

An availability group built across two other availability groups, each on its own cluster; it supports scenarios like migrating SQL Server from Windows to Linux.

Distributed network name (DNN)

A SQL Server listener option on Azure VMs. Unlike a virtual network name (VNN) it works without any Azure Load Balancer and completes failover faster.

Distribution group (distribution list)

Exchange group with an email address whose only purpose is delivering mail to members; it cannot be used to assign permissions or as an Azure Monitor alert recipient.

DLP

See Microsoft Purview Data Loss Prevention.

DM-Crypt

Azure Disk Encryption encrypts the disks of Linux VMs by using this kernel subsystem.

DMA

See Data Migration Assistant.

DMS

See Azure Database Migration Service.

DNAT rule (destination network address translation)

Azure Firewall rule, evaluated before any other, that maps a public IP and port on the firewall to an internal IP and port, with the translated traffic allowed automatically.

DNN

See Distributed network name.

DNS (Domain Name System)

The system that turns names into addresses. In Azure, private endpoints depend on private DNS zones, which are queried through 168.63.129.16.

DNS forwarding ruleset

Up to 1,000 rules sending named domains to target IPs, bound to an outbound endpoint of a DNS Private Resolver and linked to same-region VNets, which needn't peer with the resolver's VNet. 168.63.129.16 can't be a target.

DNS Manager

The DNS management console in Windows Server; it has no way to publish zones into Azure DNS.

DNS proxy

Azure Firewall policy option under which clients send DNS queries to port 53 on the firewall's private IP, and the firewall passes them on to its own DNS servers (Azure DNS by default). FQDN-based network rules need it, and on-premises resolvers may forward to it.

Docker bridge address

Address range of the docker0 bridge on each node (172.17.0.1/16, for instance), which pods and services don't use. AKS's dockerBridgeCidr property is deprecated and now does nothing.

Docker Content Trust (DCT)

Signed-image push and pull on Premium ACR, based on Notary v1. It has been deprecated since 31 March 2025, can't be turned on for new registries after 31 May 2026, and goes away on 31 March 2028.

docker push

Uploads a local image to a container registry from the Docker CLI. Beforehand, authenticate using az acr login and give the image a tag that includes the registry's login server.

Document attack (indirect attack, indirect prompt injection)

Instructions concealed in outside content such as emails, web pages, documents or text read from images, aiming to take over the model's session. Prompt Shields for documents detects them.

Document cracking

The opening step of an indexer: source files or records are opened, and their text, metadata and, if requested, images are pulled out.

Document Extraction skill (DocumentExtractionSkill)

A utility skill that takes a file supplied within the enrichment pipeline as file_data and breaks it into text and, optionally, images. No pixel-level reading happens.

Document Intelligence add-on capabilities (features)

Extra Document Intelligence options switched on with the features query parameter: barcodes, formulas, keyValuePairs, languages, ocrHighResolution, queryFields and styleFont.

Document Intelligence service limits

Input caps for Document Intelligence: files up to 500 MB on S0 or 4 MB on F0; image dimensions between 50 × 50 and 10,000 × 10,000 pixels; and at most 1 GB of training data for custom neural models.

Document Intelligence Studio

Browser-based tool where you can test Document Intelligence models and, using a Blob container, label data and train or compose custom classification, neural and template models.

Document translation (Azure.AI.Translation.Document)

Batch, asynchronous Translator capability that converts entire documents from a source blob container into a target one, preserving layout, and can apply glossaries.

Document translation glossary (glossaryUrl)

A blob of custom terms, stored in the target container and pointed to by glossaryUrl, that dictates how particular words are translated. A glossary whose language pair differs is skipped.

Document-level access control (native ACL)

Azure AI Search preview capability that captures permissions from SharePoint or ADLS Gen2 at indexing time and filters results by the Entra token the caller sends with each query.

Domain delegation

Pointing a domain at Azure DNS by replacing the NS records at the registrar with all four name servers assigned to the Azure zone, given as names rather than IPs.

Domain registrar

You buy public domains from a registrar, which also keeps each domain's NS records in the parent zone. Since Azure DNS isn't a registrar, delegation always takes place on the registrar's side.

Domain verification ID

The asuid TXT record must hold this per-app value, which App Service displays on its Custom domains page.

Domain-specific content detection (celebrities and landmarks models)

Image Analysis 3.2 capability, via analyzeImageByDomain or the details parameter, that identifies landmarks or celebrities and returns their names rather than a descriptive caption.

DPM (Data Protection Manager)

System Center Data Protection Manager. It and MABS are the hybrid backup servers that the Azure Backup security PIN protects.

DPO (direct preference optimization)

Direct preference optimization, a fine-tuning technique that trains on pairs of better and worse responses without needing a reward model. Records contain input, preferred_output and non_preferred_output, and the two outputs can't be identical.

DR (disaster recovery)

Disaster recovery means getting a service running again from another region or site, with success judged by RPO and RTO; uptime SLAs and data retention are different concerns.

DRS (Default Rule Set)

The Default Rule Set, Microsoft's managed WAF rules that succeed OWASP CRS and defend against XSS, SQL injection and other frequent attacks. Single rules may be overridden or switched off.

DS series

Inexpensive general-purpose VM sizes with Accelerated Networking and Premium Storage support, a good match for workloads like SQL Server.

DSC (Desired State Configuration)

Desired State Configuration, a PowerShell configuration-management approach for VMs; it configures existing machines and cannot provision new ones.

DSPM for AI (Microsoft Purview Data Security Posture Management for AI)

Purview solution securing data used by Copilot, agents and AI apps. Its one-click recommendations generate policies, for example DLP scoped to Microsoft 365 Copilot and Copilot Chat, which you then adjust in the solution that owns them rather than in DSPM.

DTU (Database Transaction Unit)

Database Transaction Unit, a single figure combining CPU, memory and I/O, used by the DTU purchasing model for Azure SQL.

DTU model

Purchasing model for Azure SQL with Basic, Standard and Premium tiers and the licence bundled in; reserved capacity and Azure Hybrid Benefit aren't available.

Dual-stack

A virtual network or subnet that has an IPv6 range alongside its IPv4 one. IPv6 subnets are always /64, drawn from the VNet's IPv6 space and added to a subnet that already exists.

Dynamic data masking

Hides parts of query results, such as all but the final four digits, from users without privileges, leaving the stored values untouched. Holders of the UNMASK permission see real data.

Dynamic groups

Entra groups whose members are added and removed automatically by rules on user or device attributes; they are no substitute for an access review.

Dynamic membership rules

Expressions defining dynamic group membership, written with hyphenated, case-insensitive operators like -eq, -in, -notIn, -match, -startsWith, -and and -or. One rule cannot combine device and user attributes.

Dynamics 365 Customer Insights (Customer Insights)

Customer data platform with journey orchestration, part of Dynamics 365; it plays no role in monitoring Azure or managing its costs.

E

E5 (Microsoft 365 E5)

Top-tier Microsoft 365 licensing bundle that includes Entra ID P2 together with ID Governance capabilities.

Easy Auth

See App Service Authentication.

EC (elliptic curve)

Key Vault key type based on elliptic curves (P-256, P-384 or P-521). Storage accounts can't use it as a customer-managed key.

ECMA connector

Lets Entra push user provisioning out to on-premises apps backed by LDAP or SQL; HR-driven inbound provisioning is a different thing.

EDI (electronic data interchange)

Electronic data interchange, the business-to-business exchange of documents, which Azure handles with integration accounts in Logic Apps.

EDR (endpoint detection and response)

Defender for Endpoint's endpoint detection and response, which uses behaviour to detect and react to post-breach activity and continues even when Defender Antivirus is passive.

EDR in block mode

Plan 2 capability of Defender for Endpoint allowing a passive-mode Defender Antivirus to block and clean up threats found by EDR after a breach. It adds protection but doesn't resolve clashes between antivirus products.

EEEU (Everyone except external users)

SharePoint's built-in group of all internal users, guests excluded. Anything shared with it, such as a public site or item, is open to the whole organisation and may appear in Microsoft 365 Copilot answers.

Effective security rules

Network Watcher feature showing the merged subnet and NIC NSG rules that apply to a network interface; it does not test any traffic.

effort (Claude) (output_config effort)

Setting on Claude that balances depth of reasoning against cost and latency. Choosing high, xhigh or max yields the most thorough reasoning; low and medium respond faster and cost less.

Elastic pool

A group of Azure SQL databases drawing on a shared allocation of vCores or eDTUs, ideal when many databases peak at different times.

Elastic queries

Azure SQL Database feature for querying across databases, which requires code changes; SQL Managed Instance handles three-part names without it.

Elevate access (Access management for Azure resources)

A toggle under Entra Properties; when the signed-in Global Administrator switches it on, that one admin becomes User Access Administrator at root scope (/).

Eligible assignment

A role assignment in PIM that has no effect until the user activates it, satisfying whatever MFA, justification or approval is required.

ELT (extract, load, transform)

Extract, load, transform: raw data lands in the target system first and is transformed there. See ETL for the opposite order.

Email Azure Resource Manager role

Action group notification type: when an alert fires, it emails every user or group assigned the chosen subscription-level role, whether Monitoring Reader, Reader, Owner, Monitoring Contributor or Contributor.

Embedding

A list of numbers, spanning many dimensions, that captures meaning; items with similar meaning end up near one another, as cosine similarity measures.

Embeddings (vector embeddings)

Vectors of numbers encoding what text means, placing related content close together as judged by cosine similarity. Switching model or vector size requires embedding all content again.

Embeddings model (text-embedding-3)

A model whose output is vectors rather than text, used to power semantic search, recommendations and similarity matching.

Enable access to Azure Virtual Machines for deployment

Advanced Key Vault access policy that allows virtual machines to fetch certificates held as secrets. Azure Disk Encryption does not require it.

enable_content_recording

Tracing option deciding whether tool arguments and message content are captured; setting it to False keeps them out of traces.

enabledForTemplateDeployment

Key Vault option, shown as Azure Resource Manager for template deployment, allowing ARM to fetch secrets while deploying. Whoever deploys must also hold Microsoft.KeyVault/vaults/deploy/action.

enableSegment (contentCategories)

Content Understanding analyzer option that divides a file into segments, assigns each one to a category from contentCategories and can hand each segment to a different analyzer.

Encryption at host

VM setting that encrypts caches, temp disks and ephemeral OS disks on the physical host, so data reaches storage already encrypted. It is incompatible with Azure Disk Encryption, which it is recommended to replace.

Encryption scopes

Encryption keys applied per blob or per container, layered over the account's own encryption; available for blob storage only.

End-to-end TLS

The client's TLS ends at Application Gateway, which then encrypts a fresh connection to the backend. For this, HTTPS is required in the backend settings, and the backend's certificate has to be trusted.

Endpoint (Front Door)

Host name in Front Door Standard/Premium, shaped like <name>-<hash>.z01.azurefd.net, to which routes are attached and custom domains point by CNAME.

Endpoint type (Standard / Azure DNS zone endpoints)

Storage account option, fixed at creation, that decides how endpoint host names are built; Azure DNS zone endpoints insert a zone identifier so far more accounts are possible. Access and networking costs are unaffected.

EnforceOPAConstraint

Retired Azure Policy effect for Kubernetes, alongside EnforceRegoPolicy, that enforced Open Policy Agent Gatekeeper constraints. Azure Policy for Kubernetes now uses Audit and Deny instead.

EnforceRegoPolicy

See EnforceOPAConstraint.

Enhanced policy

Backup policy for Azure VMs that supports several backups per day, scheduled every 4, 6, 8 or 12 hours.

Enterprise application

In Entra, the service principal for an app: you assign users here, and it is where Conditional Access and single sign-on are enforced.

Enterprise exposure graph (exposure graph)

Exposure Management's map of assets, identities, findings and how they connect, fed by Entra ID, Defender for Cloud, Defender for Endpoint, Defender for Identity and connectors. Attack paths are built from it, and advanced hunting can query it.

Enterprise State Roaming (ESR)

Synchronises Windows settings between the Entra devices a user signs in to. Its management now sits under Windows Backup for Organizations, and it has no say over device joins or administrator rights.

Entitlement management

Entra ID Governance capability built around access packages, which can require approval, expire automatically and include connected organisations.

Entity linking

Azure Language capability that resolves which entity is meant and points it to a Wikipedia article. It performs no redaction and is retired on 1 September 2028.

Entity Linking skill (V3) (EntityLinkingSkill)

Built-in enrichment skill that identifies entities in text and supplies Wikipedia links for them.

Entity Recognition skill (V3) (EntityRecognitionSkill)

A built-in skill relying on named entity recognition from Azure Language. Entities like Organization, Person, DateTime and Location come back as metadata, not as vectors.

Entra Application Proxy

See Microsoft Entra application proxy.

Entra B2B

See Microsoft Entra B2B.

Entra Connect

See Microsoft Entra Connect.

Entra Domain Services

See Microsoft Entra Domain Services.

Entra ID

See Microsoft Entra ID.

Entra ID P1

Conditional Access requires this Entra licence, as does protecting on-premises AD with Password Protection.

Entra ID P2

Entra licence tier that adds Privileged Identity Management, access reviews and Identity Protection.

Entra ID Protection (Identity Protection)

Calculates sign-in risk and user risk and enforces the MFA registration policy; it comes with Entra ID P2.

Entra Permissions Management

Microsoft's multicloud CIEM (cloud infrastructure entitlement management) product, retired 1 October 2025; it was never meant for access reviews.

Ephemeral OS disk

An OS disk held on the VM host's local storage instead of Azure Storage. It keeps no state across redeploys or resizes, can't be stopped and deallocated, and isn't supported by Azure Backup, Site Recovery or ADE.

Equalized odds

Fairness constraint for binary classifiers asking that sensitive groups see comparable false-positive and true-positive rates.

ErGw1Az

ExpressRoute gateway SKU deployed across availability zones, offering roughly 1 Gbps like Standard, without FastPath support.

ErGw2Az

The zone-redundant equivalent of the High Performance ExpressRoute gateway; FastPath isn't available on it.

ErGw3Az

Zone-redundant counterpart to the Ultra Performance ExpressRoute gateway, with FastPath support.

ErGwScale (ExpressRoute scalable gateway)

Scalable ExpressRoute gateway SKU, zone-redundant, built from 1-Gbps scale units numbering 1 to 40, either fixed or autoscaled. FastPath requires 10 units or more.

Error analysis

A Responsible AI dashboard tool. Using a decision tree and a heat map, it pinpoints cohorts that err more often than the model does overall.

estimateFieldSourceAndConfidence (estimateSourceAndConfidence)

Optional Content Understanding setting, set for the whole analyzer or as estimateSourceAndConfidence on single fields, that reports each field's confidence from 0 to 1 and where it came from, so weak results can be sent for human review.

ETL (extract, transform, load)

Extract, transform, load: data is reshaped before it reaches the target. Data Factory offers ETL and ELT as a managed service.

ETW (Event Tracing for Windows)

Event Tracing for Windows, a kernel-level mechanism for tracing events from drivers and applications; it doesn't capture network packets.

Evaluation dataset

A constant collection of test inputs, a query plus optional context and ground truth, fed to every model or prompt variant so their results can be compared fairly.

Event (table)

Table in Log Analytics where entries from Windows event logs are kept.

Event Grid

Routes events, Key Vault SecretNearExpiry for example, by pushing them to handlers such as Azure Functions. It stores nothing and cannot receive Entra diagnostic settings.

Event Grid custom topic

An Event Grid endpoint you create yourself to accept events, such as Defender for Storage scan results, and deliver them to subscribers like Logic Apps or Azure Functions.

Event Grid domain

Lets one Event Grid resource fan out a large number of topics or event types, each to its own subscribers.

Event Grid trigger

Starts an Azure Function whenever an Event Grid event arrives.

Event Hubs

See Azure Event Hubs.

Event Hubs Capture

Automatically saves Event Hubs data as Avro files in ADLS Gen2 or Blob Storage, cutting a file whenever a size or time window is reached.

Exclusions (Policy)

Scopes taken out of a policy assignment; they can only narrow its coverage, never widen it.

existenceCondition

Used by AuditIfNotExists and DeployIfNotExists inside a policy rule's details, this is what the related resource is checked against; a true result means the effect doesn't fire.

Exponential backoff

Retry approach that waits twice as long after every failure, adds random jitter and stops after a set number of attempts; advised for HTTP 429 and temporary 5xx errors.

ExponentiatedGradient

A Fairlearn reduction method: it wraps a binary classification estimator and repeatedly retrains it on reweighted data so the result meets equalized odds or demographic parity.

Export template (Automation script)

Produces a template reflecting resources as they currently are, whereas deployment history keeps the template that was actually deployed. It used to be called Automation script.

Expose an API

Part of an app registration where you set the Application ID URI and the delegated scopes clients can request. Platforms, token claims and app role assignment are configured elsewhere.

ExpressRoute

A dedicated private link between on-premises networks and Azure, using Microsoft peering or private peering.

ExpressRoute and S2S VPN coexistence (coexisting connections)

Running a route-based VPN gateway (VpnGw1 or above, never Basic) alongside the ExpressRoute gateway in one VNet, sharing a GatewaySubnet of at least /27; the VPN acts as backup or links other sites.

ExpressRoute circuit

The logical link between on-premises and Microsoft, provided by a connectivity partner or through ExpressRoute Direct. A service key identifies it, and it carries both Microsoft and private peering.

ExpressRoute Direct

A pair of 10 or 100 Gbps ports connecting straight into Microsoft's edge without a connectivity provider. It is the sole circuit type offering MACsec.

ExpressRoute FastPath

Takes the ExpressRoute gateway out of the data path so on-premises traffic reaches VMs directly with the lowest latency. It needs Ultra Performance, ErGw3Az or ErGwScale of 10+ scale units, and does not make failover quicker.

ExpressRoute gateway

Connects a virtual network to an ExpressRoute circuit from inside GatewaySubnet. Only one is allowed per VNet, and VPN traffic needs a separate gateway.

ExpressRoute gateway migration (gateway migration experience)

To turn a Standard, HighPerformance or UltraPerformance gateway into an AZ SKU, this guided experience deploys a second gateway next to it in the existing GatewaySubnet. The alternative is deleting and recreating it.

ExpressRoute gateway Standard SKU

ExpressRoute gateway SKU of around 1 Gbps that is neither zone-redundant nor FastPath-capable.

ExpressRoute Global Reach (Global Reach)

Add-on joining the private peerings of two ExpressRoute circuits so on-premises sites can talk across Microsoft's backbone. ExpressRoute Local can't use it, and Premium is needed only between geopolitical regions.

ExpressRoute Local

Lower-cost circuit option whose reach stops at the one or two Azure regions close to its peering location. Unlimited data, with egress bundled, is the only billing choice, and Global Reach is unsupported.

ExpressRoute Premium

Add-on that lets a circuit reach Azure regions beyond its own geopolitical region.

ExpressRoute Standard

Circuit SKU covering all Azure regions within its geopolitical region; data can be billed Metered or Unlimited.

extensionProfile

Part of a scale set model that lists VM extensions, such as DSC or Custom Script, so each instance receives them when provisioned.

External (APIM VNet mode)

API Management virtual network mode in which the gateway stays public but can call private back ends inside the VNet.

External collaboration settings

Entra settings that control guest access, which domains are allowed or blocked, and who may invite guests: everyone, members, or only admins and Guest Inviters.

External endpoint

Traffic Manager endpoint type pointing to an IPv4/IPv6 address or FQDN, which can be outside Azure. MultiValue routing accepts only External endpoints defined by IP address.

External user lifecycle

Entitlement management option that, once a guest's final access package assignment ends, blocks them and later deletes them from the directory (30 days by default).

ExternalPublic

Traffic Analytics label for flows between Azure VMs and public IPs owned by neither Microsoft nor a known attacker. Query it with FlowType_s == "ExternalPublic" (in NTANetAnalytics, use FlowType).

F

F0 pricing tier (Foundry Tools) (free tier)

The free tier of a Foundry Tools resource, specified as sku F0, which allows only a limited number of transactions.

Fabrication (hallucination)

Convincing yet wrong content produced by an LLM, which does not check facts. Grounding lowers how often it happens but can't remove it entirely.

Face detection

Finding where human faces appear in an image and giving their bounding boxes, without recognising or verifying identity.

Face detection (Image Analysis)

Image Analysis 3.2 capability returning a bounding rectangle per face found. Identifying or verifying people requires the Face service instead.

Faceted navigation (facets)

Lets users narrow search results by category values, each shown with a count; the fields involved must be facetable and are typically filterable too.

FAILED_DATABASE_AUTHENTICATION_GROUP

Captures unsuccessful attempts to log in to a database. This database-scoped audit action group is among those recommended for Azure SQL.

FAILED_LOGIN_GROUP

SQL Server audit action group, scoped to the server, that records failed logins to the instance. The recommended Azure SQL Database groups don't include it.

Failover cluster instance (FCI)

High-availability option for SQL Server that requires storage shared between nodes, a premium file share for example.

Fairlearn

Open-source library underpinning fairness assessment in Azure Machine Learning, offering disparity metrics plus reduction and post-processing mitigation algorithms.

Fairness assessment

Responsible AI dashboard tool, based on Fairlearn, that measures gaps in model performance and selection rate between groups formed from sensitive features like age, ethnicity or gender.

Fairness principle

The Responsible AI principle that AI should treat people fairly, so groups in similar situations aren't affected differently. It means neither high overall accuracy nor giving everyone the same output.

Fast transcription

Converts recorded audio files to text in one synchronous REST call that finishes quicker than the audio's duration and has predictable latency; part of Speech to text.

FastPath

See ExpressRoute FastPath.

Fault domain (FD)

VMs that share a network switch and power source. To contain rack-level failures, an availability set distributes its VMs across as many as three of these (two in certain regions).

FCI

See Failover cluster instance.

Federated identity credential (workload identity federation)

Lets an outside workload, GitHub Actions or Kubernetes for instance, obtain an Entra token in exchange for its own token, so no secret has to be stored.

Few-shot learning (few-shot prompting)

Putting sample inputs with their outputs into a prompt to demonstrate the pattern and format wanted, without altering model weights; zero-shot prompting gives no samples.

FIDO2 security key (passkey (FIDO2))

Passwordless hardware authenticator that resists phishing. Push-based methods show a number to match and the sign-in location; this one shows neither.

Field generation method (extract, classify, generate)

How a Content Understanding schema field is filled: extract takes the value as written (documents only), classify chooses from categories, and generate infers or summarises it.

Field mappings (fieldMappings)

Indexer configuration passing a source field unchanged into an index field with another name or type. It is applied once documents are cracked and before any skillset runs.

Field schema (fieldSchema)

The list of fields a Content Understanding analyzer extracts, each defined by name, type, description and method: extract, classify or generate.

FIFO (first in, first out)

First in, first out: messages are processed in strict order. Service Bus achieves this with message sessions, which Storage queues can't offer.

Figures (Document Intelligence) (output=figures)

Charts and images that the Layout model detects; requesting output=figures also produces downloadable cropped images of them.

File integrity monitoring (FIM)

Capability in Defender for Servers Plan 2 that watches registry keys, configuration files and operating system files on Linux and Windows machines for changes.

File projection

Writes only normalised images (/document/normalized_images/*), as binary files, from the enrichment into a Blob container in the knowledge store.

File recovery (item-level restore)

Restores individual files from an Azure VM backup. You download a script, valid for a limited time, that mounts the recovery point's disks over iSCSI on a suitable machine; copy what you need, then select Unmount Disks.

File search tool (file_search)

Gives an agent hybrid search over files users upload: they are parsed, split into 800-token chunks and embedded in a vector store. For an already curated index, use a different tool.

Files API

Used to upload files to Azure OpenAI. An image sent this way receives an ID that an input_image item can point to, repeatedly and across separate requests.

FileStorage

Storage account kind on premium SSD dedicated to Azure Files, supporting only ZRS or LRS redundancy.

Find-RoleCapability (JEA)

Searches for JEA (Just Enough Administration) role capabilities; this PowerShellGet cmdlet is unrelated to Azure role-based access control.

Fine-tuning

Continuing to train a pretrained base model on task examples, through supervised fine-tuning, DPO or RFT, so its weights shift towards a style, format or task. It neither acts as a safety control nor adds new knowledge well.

finish_reason

Explains why a chat completion ended. Values are stop (completed normally), length (truncated by max_tokens or the token limit), content_filter (content omitted) and tool_calls (a tool was invoked).

Firewall Management NIC (previously forced tunneling mode)

A second Azure Firewall interface, in AzureFirewallManagementSubnet with a public IP of its own, carrying management traffic. Forced tunnelling requires it; an existing firewall gains one after a stop and restart.

Firewall policy (Azure Firewall policy)

Holds Azure Firewall settings and rules in one resource that can be attached to multiple firewalls in different hubs and regions. Available as Standard or Premium.

Flex Consumption

A newer hosting plan for Azure Functions that scales with events and allows longer executions.

Floating IP (direct server return)

Option on a load-balancing rule that leaves the frontend IP as the destination address, letting back ends reuse ports. It does not provide session affinity.

Flow log version 2

Adds flow state plus bytes and packets in each direction to NSG flow logs. Begin (B) entries have no counts, whereas continuing (C) and end (E) entries cover traffic since the last tuple, so totals are the sum of all C and E entries.

Fluency evaluator (FluencyEvaluator)

AI-assisted general-purpose evaluator that rates how well a response reads (readability, sentence complexity, vocabulary and grammar), judging the response by itself.

Flux

Provides GitOps on AKS and Arc-enabled Kubernetes as an add-on; it doesn't act as a service mesh.

Forced tunnelling

Routing Azure's internet-bound traffic through an on-premises device or NVA rather than letting it break out directly. ExpressRoute achieves this when 0.0.0.0/0 is advertised over BGP, and site-to-site VPN uses BGP or a default site; Azure Firewall needs a management NIC (AzureFirewallManagementSubnet and a management public IP) for it.

ForceDefenderPassiveMode

Setting this REG_DWORD to 1 before a Windows Server is onboarded switches its Defender Antivirus into passive mode; the value lives under HKLM\SOFTWARE\Policies\Microsoft\Windows Advanced Threat Protection.

Form Recognizer

See Azure Document Intelligence in Foundry Tools.

Foundation model

A large, general model trained through self-supervision (predicting the next token) on vast quantities of unlabelled data. It can be used directly or adapted to a wide range of tasks.

Foundational CSPM

The no-cost posture tier of Defender for Cloud, which supplies Secure Score, recommendations and the Microsoft cloud security benchmark. Attack paths, AI-SPM and threat protection are not part of it.

Foundry Account Owner (Azure AI Account Owner)

A built-in role able to manage Foundry resources and projects, including deployments, networking and connections, and to grant the Foundry User role. Lacking data actions, it cannot build anything inside a project.

Foundry Agent Service

Fully managed Microsoft Foundry offering in which prompt, voice and hosted agents are created, deployed, run and scaled. Models, tools, guardrails, versioning, tracing and network isolation all come built in.

Foundry Control Plane

Lets organisations govern, monitor and trace their agents from one central place in Microsoft Foundry. Agents built outside Foundry can be included after being registered via an AI gateway into a project that is wired to Application Insights.

Foundry control plane and data plane

The two halves of Foundry's RBAC model. Control plane actions cover resource settings, networking, deployments and project creation, whereas data plane actions cover work inside a project such as building agents, running evaluations and uploading files.

Foundry deployment type

Option picked at model deployment time, such as Global Standard, Standard, Data Zone, provisioned or batch. It determines both the billing model and the location where data gets processed.

Foundry evaluations

Quality and safety scoring of models and agents in Microsoft Foundry, using evaluators that are either built in or custom. Evaluations measure risk but do not block anything at runtime.

Foundry guardrail

In Microsoft Foundry, a named set of controls, each pairing a risk with an intervention point and an action, that classifies prompts and completions for harms like hate and fairness, sexual, violence and self-harm, then blocks or annotates them. Formerly content filters; an agent's guardrail entirely replaces its model deployment's.

Foundry IQ

A managed knowledge layer for Foundry agents, made up of knowledge bases and knowledge sources and built on agentic retrieval in Azure AI Search. It provides grounding that respects permissions and includes citations.

Foundry managed virtual network (managed VNet)

Virtual network run by Microsoft that isolates outbound traffic from Foundry Agent Service and connects to Storage, Cosmos DB and AI Search over managed private endpoints. Once switched on, it cannot be turned off.

Foundry Models sold by Azure

Models, Azure OpenAI among them, that Microsoft hosts, bills and supports, with SLAs, Entra ID authentication and private networking. For regulated data they are the option that offers enterprise governance.

Foundry Owner (Azure AI Owner)

Built-in role combining control plane and data plane rights, so its holders can stand up resources and projects, look after models and also build within projects; it is among the most privileged Foundry roles.

Foundry playground (model playground)

Interactive space in the Foundry portal where a deployed model can be tried out before any code is written. Users tweak temperature, top_p, max tokens and the system prompt, compare models and export sample code; production traffic does not belong here.

Foundry project (project)

A container beneath a Foundry resource that keeps one team's agents, data, files, evaluations and project connections separate. Model deployments and resource-level connections are shared from the parent, and governance is not configured at this level.

Foundry project endpoint (project endpoint)

URL in the form https://<resource>.services.ai.azure.com/api/projects/<project> that is passed when creating an AIProjectClient. It took over from the connection strings used in early previews.

Foundry Project Manager (Azure AI Project Manager)

A built-in role that can both manage Foundry projects and build within them. When granting access to others, the only role it can assign is Foundry User.

Foundry SDK (azure-ai-projects)

Client library (azure-ai-projects) that operates on a Microsoft Foundry project via AIProjectClient, covering agents, datasets, deployments and connections. It also provides an OpenAI-compatible client for conversations, responses and evaluations.

Foundry Tools (Azure AI services, Azure Cognitive Services)

Microsoft's collection of AI APIs that can be used ready-made or customised, spanning areas such as Vision, Speech, Language, Document Intelligence, Content Safety and Content Understanding.

Foundry Tools containers

Docker images that let certain Foundry Tools, for example Language and Read OCR, run at the edge or on-premises with billing still going to Azure. Both custom and prebuilt features are offered this way.

Foundry User (Azure AI User)

Least-privileged built-in role aimed at developers: it pairs read access with the data actions needed to create and try things out inside a Foundry project, and each project's managed identity is granted it too.

Foundry workflows (workflow)

Preview Foundry feature that orchestrates agents and logic in a fixed, declarative order, supporting variables, if/else branches and human-in-the-loop steps. Workflows are being retired on 1 December 2026 and Agent Framework replaces them.

FQDN (fully qualified domain name)

The full DNS name of a host, zone included, for example www.contoso.com.

Frequency penalty (frequency_penalty)

A setting used at inference, ranging from -2.0 to 2.0, that lowers a token's likelihood according to how many times it has already occurred. Its main effect is to cut down word-for-word repetition.

Front Door (classic) (Azure Front Door classic)

The first-generation Azure Front Door tier, built around frontend hosts, backend pools and routing rules. It cannot use Private Link origins or accept new domains, and it retires on 31 March 2027.

Front Door classic routing rule

See Route (Front Door).

Front Door Premium (Azure Front Door Premium)

The Azure Front Door tier that builds on Standard by adding bot protection, managed WAF rule sets and Private Link origins.

Front Door Standard (Azure Front Door Standard)

Lower Azure Front Door tier, with support for routes, custom domains, rule sets and your own WAF rules. Managed WAF rule sets and Private Link origins are only available after upgrading to Premium.

FrontDoorAccessLog

A Front Door log category that captures each request, including its URI, client IP and status. It helps when studying traffic patterns, for instance to decide on rate limits.

FrontDoorWebApplicationFirewallLog

Log category on Front Door that lists every request caught by a WAF rule, together with which rule it hit and what happened as a result.

Frontend host (Front Door (classic) frontend endpoint)

In Front Door (classic), the host name, either *.azurefd.net or a custom domain, to which a WAF policy gets linked. Linking it does not filter any traffic by itself.

Frontend IP configuration

The public or private IP address on a load balancer that clients connect to. Inbound NAT rules and load-balancing rules point at it.

Function tool (function calling)

Gives an agent or model access to logic written in your own application. It is listed among the tools as type function with a name, a description and a JSON Schema describing its arguments; when called, your code does the work and passes the result back.

G

Gatekeeper (OPA Gatekeeper)

An admission controller webhook for Kubernetes based on Open Policy Agent, which Azure Policy for Kubernetes builds on. Running a separately installed copy alongside the add-on is unsupported.

Gateway Load Balancer

A load balancer SKU that inserts transparent third-party NVAs into the path of a Standard Load Balancer frontend, using VXLAN to chain them.

Gateway transit

A peering option that lets spoke VNets use a hub's route-based VPN or ExpressRoute gateway, enabled with Allow gateway transit on the hub and Use remote gateways on the spoke.

Gateway-required VNet integration

Legacy option letting App Service reach VNets located in a different region, by connecting over an SSTP point-to-site VPN into a route-based virtual network gateway. Because it carries extra gateway charges, it is being retired on 31 March 2027 and regional VNet integration replaces it.

GatewayDiagnosticLog

A resource log on VPN Gateway that keeps an audit trail of changes made to the gateway's configuration.

GatewayManager (service tag)

Represents the management traffic Azure's own infrastructure sends. On an Application Gateway v2 subnet, the NSG has to let this tag in on ports 65200-65535 (65503-65534 for v1).

GatewaySubnet

The subnet reserved for ExpressRoute or VPN gateways, which should be at least /27.

GDPR (General Data Protection Regulation)

The EU's General Data Protection Regulation, which governs how personal data is processed. Defender EASM includes a GDPR Compliance dashboard for associated risks.

GDPR Compliance dashboard

A Defender EASM dashboard that highlights risks to personal-data compliance, for example exposed PII, cookies, login protocols and problems with certificates.

General document model (prebuilt-document)

A retired Document Intelligence model (prebuilt-document) that pulled out key-value pairs. Since v4.0 the layout model with its keyValuePairs feature covers this job.

General Purpose

An Azure SQL service tier that pairs a single compute node with remote storage. Compared with Business Critical it has higher latency and lacks a synchronous replica.

General-purpose v1 (GPv1, Storage)

The older storage account kind (Storage), which lacks access tiers, Archive and premium file shares and retires on 13 October 2026. Converting to ZRS requires first upgrading to GPv2, a one-way change.

Generative AI

AI that produces new content such as code, text, audio or images in response to a prompt. Predicting a class or a numeric value is predictive machine learning rather than generative AI.

Geographic (routing)

A Traffic Manager routing method that picks the endpoint according to where the user is located geographically.

Geomatch

An operator for WAF custom rules that compares the client's country or region (RemoteAddr) so traffic can be allowed or blocked based on geography.

Geopolitical region

The set of Azure regions that a Standard ExpressRoute circuit is able to reach. Reaching beyond it, or using Global Reach across such regions, calls for ExpressRoute Premium.

Get (secret permission)

Key Vault permission on secrets that allows a single secret to be read; App Service Key Vault references need nothing beyond it.

Get-AzLocalNetworkGateway

Az.Network cmdlet returning a local network gateway object; for forced tunnelling, that object can be passed as -GatewayDefaultSite.

Get-AzPolicyAssignment

An Az PowerShell cmdlet for reading policy assignments that already exist, looked up by ID or by name and scope. It does not create anything.

Get-AzPolicyDefinition

Cmdlet in Az.Resources that fetches a policy definition, for instance using -Name, so it can be handed to New-AzPolicyAssignment.

Get-AzPolicyRemediation

Cmdlet in Az.PolicyInsights that reads remediation tasks already in place; it does not carry out any remediation itself.

Get-AzRoleAssignment

Az cmdlet used to list who holds which role assignments; role definitions come from a different cmdlet.

Get-AzRoleDefinition

An Az cmdlet for retrieving a role definition. Piping its output into ConvertTo-Json produces a starting file for building a custom role.

Get-AzureADDirectoryRole

An AzureAD PowerShell cmdlet, now deprecated in favour of Get-MgDirectoryRole, for working with Entra directory roles. It has nothing to do with Azure RBAC definitions.

Get-AzVirtualNetworkGateway

Az.Network cmdlet used to fetch a virtual network gateway object. Setting the default site is outside what it does, as it only reads.

get_openai_client()

A method on AIProjectClient that hands back an OpenAI client already authenticated to the project. You use it for responses.create (reading response.output_text), plus conversations, evaluations and fine-tuning.

Git

A distributed version control system. Anything kept in Git, prompts included, gains a history of authors, timestamps, diffs and tags, and changes can be reverted.

Git integration (Azure Machine Learning)

Azure Machine Learning feature that tracks, for every job, which repository, branch and commit the submitted code came from. Registered assets are not versioned by it, only code.

GitHub Actions

Event-driven workflow automation in GitHub, started by things like a push or pull request. Typical uses include deploying Bicep or CLI templates and launching Azure Machine Learning jobs with no manual step.

GitHub Copilot

An AI pair programmer that offers code suggestions, explains what code does and can write documentation or inline comments.

Global Administrator

The Microsoft Entra role with complete control over the directory. On its own it gives no rights over Azure resources; the holder must elevate access to manage all subscriptions first.

Global Batch (GlobalBatch)

An asynchronous deployment type for big files of requests, aiming to finish within 24 hours at roughly half the price, with its own quota. With no real-time SLA, it is unsuitable for interactive scenarios.

Global Provisioned (GlobalProvisionedManaged)

Deployment type that reserves PTU capacity and allows inference to run in any Azure region. Processing is therefore not kept within the resource's geography, as it would be with Standard.

Global Secure Access

Brand covering Microsoft's SSE (Security Service Edge) products, namely Internet Access and Private Access from Entra, which are set up through the Microsoft Entra admin center.

Global Standard (GlobalStandard)

Deployment type billed per token whose data may be processed in any Azure region that has capacity. It offers the biggest default quota and earliest access to new models, making it the recommended first choice.

Global VNet peering (global virtual network peering)

Peering that connects VNets in separate Azure regions. It works inside a single cloud but cannot join Azure public to Azure Government or to Azure operated by 21Vianet.

Global WAF policy (Global WAF (Front Door))

Azure Front Door's kind of WAF policy, linked to a profile, a route or a domain. Associating it with an application gateway is not possible.

GPT (Generative Pretrained Transformer)

A family of large language models from OpenAI, based on the transformer architecture and pretrained on big text collections, used to understand and produce language and code.

GPT-3.5 Turbo (GPT-3.5 Turbo)

An older OpenAI chat model that takes text in and returns text. Because it cannot read images or transcribe audio, it is unsuitable for vision work or vision fine-tuning.

GPT-4 Turbo

GPT-4 chat model, since retired in Azure, that was older and pricier than its successors. Narrow text tasks are better served, at lower cost, by a small language model.

GPT-4 vision-preview (GPT-4 Turbo with Vision preview)

Preview model adding vision to GPT-4, with OCR, object grounding and video enhancements. Now retired, it gave way to gpt-4 turbo-2024-04-09 and later GPT-4o, so it should not be chosen for new image scenarios.

GPT-4.1

OpenAI chat models gpt-4.1, gpt-4.1-mini and gpt-4.1-nano, which accept images and text and return text. They are deprecated in Azure: nano retires on 14 October 2026, while the full and mini models follow on 14 April 2027.

GPT-4.1-mini

An Azure OpenAI chat model that is quicker and cheaper, accepts images as well as text and offers a context window of roughly 1M tokens, smaller on certain deployment types. It can be fine-tuned with SFT or DPO.

GPT-4o (GPT-4o)

OpenAI chat model that is multimodal, taking images and text and, in some variants, audio. Temperature and penalty parameters work with it, and the 2024-08-06 version allows supervised, DPO and vision fine-tuning.

gpt-4o-transcribe

A GPT-4o-based model that turns speech in audio files into text via the Audio API. Version 2025-03-20 is retiring on 15 October 2026.

GPT-5 series

A series of OpenAI reasoning models, including gpt-5, mini and nano and their successors, that take text and images. Penalty and temperature parameters are not supported.

gpt-image-1 (gpt-image series)

OpenAI's text-to-image model series, which took over from DALL-E in Azure. The first gpt-image-1 preview is retiring on 23 October 2026, so newer models such as gpt-image-2 or gpt-image-1-mini are used for new projects.

gpt-image-1-mini

A quicker, cheaper member of the gpt-image family. It can inpaint using a mask but offers neither input_fidelity nor dedicated preservation of faces.

GPU (graphics processing unit)

A graphics processing unit, an accelerator suited to highly parallel work like graphics and AI. Azure offers them in the NV and NC VM series.

GPv1

See General-purpose v1.

GPv2

See Standard general-purpose v2.

Grant controls

The part of a Conditional Access policy that either blocks access or demands conditions such as MFA, a compliant device or an approved client app. Several can be combined, requiring all of them or just one.

GridSearch (Fairlearn)

A reduction algorithm in Fairlearn that retrains an estimator across a grid of different reweightings. It returns multiple models so you can pick the balance between accuracy and disparity.

Ground truth (expected response)

The expected answer included with evaluation data, which evaluators like F1 or Response Completeness use as the benchmark when judging a model's response.

Groundedness evaluator (GroundednessEvaluator)

An evaluator for RAG that rates, from 1 to 5, how far a response is backed by the supplied context rather than invented (the precision side). Context must be provided.

Groundedness Pro evaluator

Preview evaluator for RAG that calls Azure AI Content Safety, so no model deployment is required, and gives a strict yes or no on whether an answer agrees with the context retrieved.

Grounding (grounding data)

Putting relevant and up-to-date facts into the prompt so that the model bases its answer on them, which cuts fabrication and makes citations possible. It is central to RAG.

Grounding data

Reliable content placed into the prompt when the request is made, so the model draws its answer from that material instead of guessing, which lowers fabrication.

Group chat (workflow pattern) (group chat)

An orchestration pattern for multiple agents where control moves from agent to agent dynamically, in contrast to a fixed sequential workflow.

Group naming policy

A policy for Microsoft 365 groups combining blocked words with prefixes and suffixes; a prefix can be plain text or an attribute like [Company], [Office] or [Department].

Group-based licensing

Licence assignment made to the direct members of a security-enabled group, requiring Entra ID P1 or P2. Members of nested groups are not included, and a licence a user inherits cannot be removed from that user directly.

GRS (geo-redundant storage)

Geo-redundant storage keeps six copies in total: three locally redundant in the primary region and three in the paired region. The secondary copy can be read only once a failover has happened.

GStreamer

Open-source multimedia library that the Speech SDK relies on to decode compressed audio streams into PCM. It is not bundled, so you install it yourself and add it to the path.

Guardrail action (Block, Annotate)

The action set on a guardrail control. Block stops the detected content, whereas Annotate merely tags and logs it and lets it through.

Guardrail intervention point

Where a Foundry guardrail control inspects content: user input, output, tool call or tool response, the last two being preview features for agents only.

Guardrails + controls (Foundry portal) (Try it out)

A section of the Foundry portal with a Try it out page for running Content Safety checks, such as protected material detection and moderation of text or images, against a Foundry resource.

Guest Attestation extension

Lets Azure monitor a VM's boot integrity by passing its vTPM boot measurements to Azure Attestation. The VM also needs Secure Boot and vTPM switched on and must be able to reach the AzureAttestation service tag outbound.

Guest Inviter

An Entra role whose holders can still invite guests when the external collaboration settings restrict invitations to admins.

Guest user

Entra account whose UserType is Guest, created when a B2B invitation is accepted; its UPN takes the #EXT# form, but that is not what the person signs in with.

Guest user access restrictions

A setting under external collaboration that governs how much of the directory guests can view once they have joined; it does not govern who may invite them.

GZRS / RA-GZRS (geo-zone-redundant storage)

Geo-zone-redundant storage combines zone-redundant copies in the primary region with locally redundant copies in a secondary region. The RA- variant lets you read from the secondary.

H

HA (high availability)

High availability means a service keeps running despite local failures, for instance by spreading replicas across zones.

HA Ports (high availability ports)

A rule on an internal Standard Load Balancer, using protocol All and port 0, that balances every TCP and UDP flow on every port, which suits active-active NVAs.

Hallucination

Output from a model asserting things that its sources or the facts do not support. It is gauged indirectly through groundedness, and a falling hallucination rate counts as an improvement.

haltOnBlocklistHit

A flag on the Analyze text request. When true, analysis of harm categories stops as soon as a blocklist term matches; when false, every analysis runs anyway.

Harm categories

The four risk types used to classify content, namely violence, sexual, self-harm and hate and fairness. For both images and text, each receives a severity of safe, low, medium or high.

Hate and unfairness evaluator (HateUnfairnessEvaluator)

An evaluator in the risk and safety group that finds hateful or unfair content targeting people or social groups in agent or model outputs and rates its severity.

HDD (hard disk drive)

A hard disk drive, the magnetic storage that underpins the performance of Standard HDD storage.

HDFS (Hadoop Distributed File System)

The Hadoop Distributed File System. ADLS Gen2 is compatible with it through the ABFS driver.

Health check (App Service)

An App Service feature that calls a chosen path on every instance and takes any instance that fails out of the load balancer's rotation.

Health insurance card model (prebuilt-healthInsuranceCard.us)

A prebuilt Document Intelligence model that reads US health insurance cards, pulling out fields for the insurer, member, group and prescriptions. It is not designed for medical reports.

Health probe

A TCP, HTTP or HTTPS check a load balancer uses to decide whether backends are healthy. For an HTTP probe, its path has to return HTTP 200.

Health Probe Status

A metric on Standard Load Balancer for DIP availability that shows what proportion of back ends are healthy.

Hierarchical namespace (HNS)

Enabling this option on a GPv2 storage account makes it ADLS Gen2, bringing directories and ACLs.

High Performance (HighPerformance)

An ExpressRoute gateway SKU that is not zone-redundant (non-AZ) and does not offer FastPath.

HNS

See Hierarchical namespace.

Horizontal pod autoscaler (HPA)

The Kubernetes autoscaler that adjusts the number of pods in AKS; it does not scale nodes.

Host caching

A caching option set per VM disk. ReadOnly is the data-disk default and safe for reads, ReadWrite risks losing cached writes if the host fails, and None suits write-heavy disks.

Hosted agent

A Foundry agent whose code and framework are your own, packaged as a container that Foundry runs behind a managed endpoint. Declarative prompt agents are the alternative.

Hot (tier)

The online blob access tier where storing data costs the most but accessing it costs the least.

HPA

See Horizontal pod autoscaler.

HPC (high-performance computing)

Large-scale parallel computation, which Azure serves through CycleCloud or Azure Batch and VM sizes capable of RDMA.

HR (human resources)

Human resources; in identity terms, the system, for example Workday, that acts as the source for inbound provisioning.

HSM (hardware security module)

A tamper-resistant hardware device that safeguards cryptographic keys; in Azure, Managed HSM and the RSA-HSM keys of Key Vault Premium use them.

HSRP (Hot Standby Router Protocol)

The Hot Standby Router Protocol provides redundant gateways on a LAN; Azure routing does not use it.

HTTP / HTTPS (Hypertext Transfer Protocol, Secure)

The protocols of the web, with HTTPS being HTTP secured by TLS.

HTTP 403 Forbidden

The status returned when the caller has authenticated but is blocked, either because the identity is missing a needed role or because the network denies it. Running az login with no data-plane role assignment is a common cause.

HTTP 429 (Azure OpenAI) (Too Many Requests)

Status returned once a deployment goes over its RPM or TPM limit, or when capacity is throttled. Back off exponentially and respect retry-after-ms before retrying, because failed calls still count against the limit.

HTTP application routing

AKS ingress add-on, since retired, that came without Azure WAF.

HTTP listener (Application Gateway)

Part of an Application Gateway that receives traffic on a set frontend IP, port and protocol, plus a host name when multi-site. A WAF policy can be scoped per site to it.

Hub router (virtual hub router)

The routing component in every virtual hub that swaps routes with connections, gateways and BGP peers, and that carries traffic between VNets.

Hub routing preference (HRP)

A virtual hub option, set to ExpressRoute by default or to VPN or AS Path, that decides between on-premises routes with the same prefix once longest prefix match and the static-over-BGP rule have been applied.

Hub-spoke topology (hub-spoke)

A network layout in which workloads live in spoke VNets peered to a central hub VNet, and the hub hosts shared services like the gateway and firewall.

Human in the loop

An approach where a person checks, approves or overrides what an AI decides or does, which supports accountability. In Foundry workflows, an Ask a question node waits for the answer and uses it to gate what happens next.

Hunting queries

Proactive threat searches written in KQL and saved in Microsoft Sentinel's Hunting area, run against the workspace.

Hybrid Connections

An App Service feature that uses Azure Relay and the Hybrid Connection Manager to reach one on-premises host and port. It has no effect on VNets or routing.

Hybrid identity

A user account that originates in on-premises AD DS and is synchronised into Microsoft Entra ID. Features such as AD DS authentication for Azure Files need it.

Hybrid Identity Administrator

The Entra role for managing federation, PHS, PTA, cloud sync and Entra Connect settings. It is the cloud role with the least privilege that still covers Entra Connect.

Hyper-V

The hypervisor built into Windows. The VMs for the Azure Extended Network appliance require the Hyper-V role, using nested virtualisation, and an external virtual switch for each NIC.

Hyper-V Replica

A feature included with Hyper-V in Windows Server that copies VMs asynchronously from one Hyper-V host to another to provide disaster recovery.

Hyper-V virtual switch (external virtual switch)

A software switch in Hyper-V attached to a virtual or physical NIC. For the Extended Network appliance, each NIC needs its own external switch.

Hyperscale

Azure SQL Database tier built for very big databases (as much as 128 TB), offering quick scale operations and read replicas across which load is balanced.

I

IaaS (infrastructure as a service)

Infrastructure as a service: the customer runs and maintains virtual machines including their operating systems, for instance SQL Server hosted on an Azure VM.

IaC (infrastructure as code)

Infrastructure as code means deploying resources from declarative files, for example Bicep or ARM templates.

IAM (identity and access management)

Short for identity and access management. The Azure portal's Access control (IAM) blade is where RBAC roles are assigned.

ICMP (Internet Control Message Protocol)

The protocol behind ping, distinct from both UDP and TCP. Between peered VNets, the default AllowVnetInBound NSG rule permits it.

ID document model (prebuilt-idDocument)

A prebuilt Document Intelligence model that reads passports and driving licences, returning fields like the document number, name, expiry date and date of birth.

Identity Protection

See Entra ID Protection.

Identity-based authentication (Azure Files)

SMB access to Azure Files using identities from AD DS, Entra Domain Services or Entra Kerberos. SAS tokens play no part in SMB access.

IdentityLogonEvents

A table in advanced hunting holding authentication events from Microsoft online services (via Defender for Cloud Apps) and on-premises AD (via Defender for Identity). It only covers sign-ins that have already happened.

IdFix

A Microsoft utility that detects and corrects problems in on-premises AD attributes, such as duplicates and invalid characters in proxyAddresses or userPrincipalName, ahead of directory synchronisation.

Idle timeout

The time, 4 minutes by default, that a TCP flow with no activity is kept open on a load balancer rule. It does not provide session stickiness.

IDPS (intrusion detection and prevention system)

Signature-based intrusion detection and prevention in Azure Firewall Premium, which raises alerts on or blocks harmful traffic. It only takes effect with a Premium policy attached.

IKEDiagnosticLog

A VPN Gateway resource log giving detailed IKE and IPsec negotiation information, including SAs, proposals and PSK failures. Check it first when a tunnel fails to come up or repeatedly drops.

IKEv2 (Internet Key Exchange version 2)

Open-standard IPsec key exchange protocol for site-to-site tunnels, also offered as a point-to-site tunnel type that authenticates with certificates or RADIUS. Authentication through Microsoft Entra ID is not possible with it.

ILPIP (instance-level public IP)

An instance-level public IP is attached straight to a VM's NIC on a 1:1 basis with no SNAT. If the subnet has a NAT gateway, new outbound flows use that instead, though inbound traffic still arrives via the ILPIP.

Image Analysis

Azure Vision API that returns several visual features in a single request: for instance tags, a caption, text recognised by Read OCR and the bounding boxes of detected objects.

Image Analysis 3.2

The earlier version of Image Analysis, offering the broadest range of features: tags, objects, brands, faces, landmarks, celebrities, Describe captions, image type, colour scheme and adult content.

Image Analysis 4.0

More recent release of Image Analysis, whose improved models handle Read, captioning (including dense captions), tagging, object and people detection and smart cropping. It is deprecated, with retirement set for 25 September 2028.

Image Analysis skill (ImageAnalysisSkill)

A built-in skill in Azure AI Search that returns captions, tags, faces and objects for normalised images. It does not extract text; the OCR skill does that.

Image captioning

An Azure Vision feature that writes a single readable sentence describing an image; dense captions instead describe as many as 10 regions.

Image classification

A computer vision technique that gives the whole image one or more labels without locating anything, for example distinguishing benign from malignant or identifying a bear's species.

image data type

A deprecated SQL Server type for large binary data, superseded by varbinary(max). Columns of type image cannot be encrypted with Always Encrypted.

Image detail level (detail)

An option on an input_image item, either low, high or the default auto, that balances resolution against token consumption. With low, a 512x512 version of the image is processed.

Image edit API (images/edits)

The Images endpoint for modifying an existing image according to a prompt, optionally using a mask and input_fidelity. Text-to-image generation, by contrast, takes no account of an original image.

Image edit mask (mask)

A PNG matching the input image's dimensions in which fully transparent pixels (alpha 0) mark the sole region the model is allowed to alter.

Image generation tool (image_generation)

Foundry Agent Service tool, available out of the box, that lets an agent create pictures from text by pairing an orchestrator model with a gpt-image-1 deployment. It should not be confused with an input content type.

Image moderation (Content Safety) (Analyze Image API)

Content Safety image:analyze call that needs no training and assigns severities of 0, 2, 4 or 6 for violence, self-harm, sexual and hate content. Instructions hidden inside images are not detected.

Image pull secret

A Kubernetes secret containing credentials for a registry, for example a service principal, used when pulling images. It is not needed if the kubelet identity holds AcrPull.

Image tagging (tags)

An Image Analysis feature producing single-word tags, each with a confidence score, for actions, scenery, objects and living things in an image.

Image type detection (ImageType)

A feature only in Image Analysis 3.2 that flags line drawings and scores clip art from 0 to 3. Descriptions and object detection do not determine image type.

image_url

The field on an input_image item that contains either a base64 data URI or a fully qualified public URL. Because Microsoft infrastructure must be able to reach the URL, private or firewall-protected addresses will fail.

imageAction (generateNormalizedImages)

A parameter in indexer configuration. Setting it to generateNormalizedImages, with dataToExtract set to contentAndMetadata, pulls images out and normalises them into /document/normalized_images ready for OCR and image analysis.

imageReference

A property in a VM's storageProfile that identifies a platform or Marketplace image through publisher, offer, sku and version. VHD URIs and custom images are specified through different properties.

Images API (image generation API)

Azure OpenAI's images/generations endpoint, which uses gpt-image models to turn prompts into images; editing and masks are handled by the separate edits endpoint.

IMDS

See Azure Instance Metadata Service.

Immersive Reader (Azure AI Immersive Reader)

Foundry Tool designed to make text easier to understand, for example by translating it, speaking it aloud, highlighting parts of speech and isolating it on screen.

Immutability policy

See Immutable Blob storage.

Immutable Blob storage

Write-once, read-many protection for blobs, provided through legal holds or time-based retention.

Immutable vaults

Recovery Services vault option ensuring recovery points cannot be removed ahead of their expiry.

Import/Export

Azure Import/Export lets you ship disks so data can be loaded into or exported from Azure storage as a one-off; it is not meant for continuous ingestion.

Impossible travel (atypical travel)

A sign-in risk detection in ID Protection that flags sign-ins from far-apart places made in less time than the journey between them would take.

Inbound endpoint

Private IP endpoint of DNS Private Resolver, placed in a dedicated subnet, to which on-premises DNS sends queries through conditional forwarding. Answers come from the private zones linked to the resolver's VNet.

Inbound HR provisioning

Entra provisioning that creates users in Entra ID or AD from HR systems, using either Workday gallery apps or API-driven provisioning.

Inbound NAT rule

Forwards one port on a frontend IP to the NIC of a single VM. No backend pool, load-balancing rule or health probe is needed, but the same frontend port cannot be used by two rules on one frontend IP.

Inclusiveness principle

The responsible AI principle that AI should engage and empower all people, breaking down barriers with accessibility features, language support and compatibility with screen readers and other assistive technology.

Index field attributes (searchable, filterable, facetable, sortable, retrievable, key)

Settings applied to each field in an Azure AI Search index: searchable for full text, retrievable to return it, filterable for exact-match $filter, sortable, facetable for counts, and key for the unique document ID.

Indexer (search indexer)

The pull-model crawler in Azure AI Search that takes data from a single data source, can apply a skillset and loads the output into a single index. It runs on demand or on a schedule, at most every five minutes.

Indexer schedule

A repeating interval for running an indexer, five minutes at the shortest, which allows a lengthy indexing job to continue from where it left off when change detection is turned on. It does not make indexing run in parallel.

Indirect attack evaluator (XPIA (cross-domain prompt injected attack))

Risk and safety evaluator, also called XPIA, that checks whether an answer was hijacked by jailbreak instructions planted in retrieved documents or other context.

Indirect spoke

VNet that hangs off an NVA's VNet through peering instead of attaching to the virtual hub. Reaching it takes a static route on the hub towards the NVA VNet connection, a static route on that connection towards the NVA's IP, and a UDR so replies return through the NVA.

Inference

The act of producing a response with a trained model. Each request neither retrains the deployed model nor makes it look up stored training documents.

Information extraction

A workload that turns content such as receipts, invoices and forms, whether in documents, images, audio or video, into structured fields.

Infrastructure encryption (double encryption)

Also called double encryption: storage data is encrypted a second time with AES-256 at the infrastructure layer, using a different Microsoft-managed key. You have to choose it while creating the storage account or encryption scope.

Infrastructure rule collection (Azure Firewall)

A built-in Azure Firewall rule collection, which cannot be configured, that permits platform FQDNs. It is evaluated once application rules have run and ahead of the final default deny.

Ingestion-time transformation (DCR transformation)

A KQL statement inside a data collection rule that drops or modifies incoming records before they are written to the workspace. Selecting which Windows events to gather is a separate job, done through XPath.

Initial domain (onmicrosoft.com domain)

The domain in the form <name>.onmicrosoft.com that each Entra tenant receives at creation; it cannot be deleted or altered.

Initiative

Several Azure Policy definitions grouped together for assignment as a single unit.

Inpainting

Partial image editing in which the edit API, given the original and a mask, regenerates only the masked region while composition and lighting elsewhere stay as they were.

input_fidelity

A parameter on GPT-image edits, low by default or high, that keeps the features and style of input images, like a product's identity or faces, intact while leaving unrelated areas alone. gpt-image-1-mini does not support it.

input_image

The Responses API content item representing an image. Its image_url holds a base64 data URI or public URL, or a file_id can point to a Files API upload, and detail may be set optionally.

input_text

The Responses API content item that holds the prompt text in its text field. A single user message can combine it with input_image items.

Insecure Protocols workbook

A workbook in Microsoft Sentinel that detects the use of weak protocols, for example SMBv1, NTLMv1, SSL/TLSv1 and unsigned LDAP binds.

Insider Risk Management (Microsoft Purview Insider Risk Management)

A Microsoft Purview solution that scores risky user activity, such as leaking or stealing data, from activity indicators and raises alerts. DLP policies are not edited here.

Instant access (instant models)

A Foundry preview for calling supported models by name, in code or the playground, without first deploying them. A deployment is still needed for data residency, custom content filters or reserved throughput.

Instant Restore (snapshot tier)

Azure VM backup snapshots held with the disks to make restores fast, retained 1 to 5 days under Standard policy or as many as 30 under Enhanced. Anything older is restored from the vault tier.

Integrated vectorization

Azure AI Search capability that lets an indexer split documents into chunks using the Text Split skill and produce embeddings via a skill like Azure OpenAI Embedding; a corresponding vectorizer on the index turns search queries into vectors.

Integrated vulnerability assessment (Qualys scanner)

A Qualys-powered extension for Defender for Servers, now retired and replaced by Defender Vulnerability Management. It scanned Arc machines and Windows and Linux Azure VMs, though not scale set instances.

Integration runtime (IR)

The compute used by Data Factory, which comes as Azure IR, Azure-SSIS IR or self-hosted IR.

Intent recognition (Speech) (IntentRecognizer)

Retired on 30 September 2025, this Speech SDK feature mapped spoken utterances to intents; use speech to text and then CLU or an Azure OpenAI model instead.

Intermediate CA certificate (Azure Firewall Premium)

Used by Azure Firewall Premium to sign server certificates on the fly during TLS inspection, this CA certificate must be exportable and is kept as a Key Vault secret. A user-assigned managed identity gives the firewall access, and clients need to trust the root above it.

Internal (APIM VNet mode)

The API Management VNet mode where the gateway can be reached solely through a private IP address.

Internal load balancer (ILB)

Load balancer whose frontend is a private address inside a subnet. It distributes traffic among application tiers or for VPN-connected users and is unreachable from the internet.

Internet (service tag)

The service tag representing public IP address space beyond the VNet. Denying traffic from Internet leaves traffic within the VNet unaffected.

Internet routing

Routing preference in which traffic leaves Microsoft's network for a transit ISP at the POP closest to the storage account, reducing networking costs. It is unsupported for Azure File Sync and AD-joined Azure Files.

Intune (Microsoft Endpoint Manager)

Microsoft's device management service, once branded Microsoft Endpoint Manager. Its compliance policies are what the compliant-device grant in Conditional Access relies on.

Invoice model (prebuilt-invoice)

A prebuilt Document Intelligence model that pulls fields from invoices, including vendor, customer, InvoiceId, dates, totals and line items.

IO (input/output)

Input/output refers to reads and writes against storage; Premium Azure Files delivers IO latency in single-digit milliseconds. Compare IOPS.

IOPS (input/output operations per second)

Input/output operations per second measure how fast a disk performs; a P50 disk, for instance, offers 7,500.

IoT Central

An IoT application platform delivered as SaaS; it does not do stream processing.

IoT Hub

A service that ingests telemetry from devices to the cloud and also manages those devices, offering an alternative to Event Hubs.

IP (Internet Protocol)

The Internet Protocol handles addressing on networks; a private endpoint gives a service its own private IP address.

IP configuration

NIC setting that carries a private IP, dynamic or static, and optionally a public one. NAT rules and backend pools on a load balancer refer to it.

IP firewall rules (Foundry Tools) (IP network rules)

Rules permitting particular public IP ranges to reach the public endpoint of Search or a Foundry Tools resource. Because traffic still travels across the internet, this is the weakest form of isolation.

IP flow verify

Network Watcher tool that tests a packet and reports whether it would be let through or dropped, naming the deciding NSG rule.

IP forwarding

A NIC setting allowing a VM, such as an NVA, to accept and pass on traffic destined for other IP addresses. It must be on when UDRs route traffic through the appliance.

IP Group (Azure Firewall)

Azure Firewall resource at the top level that groups IP addresses and ranges so many rules can share them; DNAT and application rules use it as a source, while network rules can use it as either source or destination.

IP network rule

A storage firewall entry (IpRules) permitting a public IPv4 address or CIDR range, for example an on-premises egress range. An account can hold up to 400; they cannot match private addresses and do not affect requests from the same Azure region.

IP-based connection

A feature of Bastion at Standard tier and above that lets you connect to a target using its private IP address rather than picking the VM resource.

ip-filter policy (API Management)

Inbound API Management policy that restricts callers to, or blocks them from, given IP addresses or ranges. It works only inside APIM; application gateways cannot use it.

IPAM (Virtual Network Manager) (IP address management)

Capability in Azure Virtual Network Manager for building IP address pools and allocating CIDRs that do not overlap to VNets. It plans addressing only, without routing or filtering.

IPMatch

An operator for WAF custom rules that compares the client's IP with a list of addresses or CIDR ranges.

IPsec (Internet Protocol Security)

Internet Protocol Security is the set of protocols that negotiates and encrypts the tunnels used by VNet-to-VNet and site-to-site VPNs.

IPsec/IKE (Internet Protocol Security / Internet Key Exchange)

Together, Internet Protocol Security and Internet Key Exchange form the protocol suite that sets up and encrypts site-to-site and VNet-to-VNet VPN tunnels.

IPv6 (Internet Protocol version 6)

Addressing based on 128 bits, available in Standard public IPs and dual-stack VNets. Public IPs for Azure Firewall and Bastion have to be IPv4.

IR

See Integration runtime.

iSCSI (Internet Small Computer Systems Interface)

Protocol that carries block storage over TCP on port 3260. When recovering files, Azure Backup's script mounts recovery point disks as local volumes using it.

ISE (integration service environment)

An integration service environment was a costly, dedicated Logic Apps environment that was retired on 31 August 2024 and superseded by Logic Apps Standard.

ISO 27001

The international standard for information security management, which the regulatory compliance dashboard in Defender for Cloud reports against.

Isolated tier (App Service)

The IsolatedV2 pricing tier, in which apps are hosted on an App Service Environment deployed into a VNet you own, able to scale out as far as 100 instances.

ISP (internet service provider)

A company that provides internet connections. Blocking of outbound TCP 445 by many such providers stops SMB traffic from getting through to Azure Files.

Issuer

A field on a point-to-site gateway using Entra ID, set to the Secure Token Service URL https://sts.windows.net/{TenantID}/ including the final slash. It is neither the Graph nor the login URL.

Istio

A service mesh offered as an AKS add-on, providing mTLS, routing and traffic splitting.

IT Service Management Connector (ITSMC)

Lets action groups in Azure Monitor open tickets or other work items in an external ITSM tool; it is set up inside a Log Analytics workspace, where it establishes the ITSM connection.

ITSM (IT service management)

Discipline of handling incidents and work items, along with the products that support it, such as ServiceNow or SCSM. Azure Monitor action groups connect to these systems with an ITSM action or a Secure Webhook.

IWA (Integrated Windows Authentication)

Sign-in method where domain users access apps with their existing Windows credentials over Kerberos or NTLM. To expose such apps outside the network, Microsoft Entra application proxy can publish them using Kerberos Constrained Delegation.

J

Jailbreak risk detection

See Prompt Shields for user prompts.

JBoss EAP (Enterprise Application Platform)

Java enterprise application server from Red Hat. App Service offers it as one of its Java runtimes, next to Java SE and Tomcat.

JIT (just-in-time)

Approach where access is switched on only at the moment it is needed and expires after a set time; examples are PIM role activation and JIT VM access, which opens ports 3389 or 22 temporarily.

join/action permission (Microsoft.Network/.../join/action)

Network Contributor has this Azure RBAC action but Reader does not. It allows an identity to attach one resource to another, such as associating a firewall with a subnet, public IP or firewall policy.

Journal file

For every drive it prepares, the WAImportExport tool produces a .jrn file recording the BitLocker key, drive serial number and account details. You upload these files when you create the Import/Export job.

JSON (JavaScript Object Notation)

Text-based format for structured data. ARM templates and Cosmos DB documents are written in it, and most Azure REST APIs exchange request and response bodies as application/json.

JsonADDomainExtension

Microsoft.Compute extension added to a Windows virtual machine in a template so that the VM joins an Active Directory domain as part of the deployment.

JSONL (JSON Lines)

Format in which each line holds a single JSON object. Fine-tuning training data and batch input files must use it, so CSV, TSV or one big JSON array may be rejected; ordinary REST calls don't involve it.

Just-in-time VM access (JIT VM access)

Defender for Servers capability that keeps management ports closed through deny rules in an NSG or Azure Firewall, then opens them temporarily for the requester's IP, by default for at most 3 hours. VMs lacking either control aren't supported.

JWT (JSON Web Token)

Compact, digitally signed token format. The Microsoft identity platform issues its access and ID tokens this way, and clients send them to REST APIs.

K

KCD

See Kerberos Constrained Delegation.

KEDA (Kubernetes Event-driven Autoscaling)

Kubernetes Event-driven Autoscaling: drives the HPA with metrics from event sources such as queues and streams to scale pods. AKS offers it as an add-on, and Azure Container Apps relies on it for scaling.

Kerberos

Authentication protocol based on tickets, native to Windows and Active Directory. Azure Files, Entra Domain Services and application proxy KCD all support it.

Kerberos Constrained Delegation (KCD)

Mechanism allowing a service, for instance Entra application proxy, to request Kerberos tickets on behalf of a user so that apps using Integrated Windows Authentication get single sign-on.

Key (Key Vault)

RSA or EC key held in Key Vault, which carries out operations like signing, encryption and key wrapping for you. Normally its private part never leaves the vault.

Key encryption key (KEK)

Optional Key Vault RSA key whose job is to wrap, or encrypt, a second encryption key such as the secret used by Azure Disk Encryption. Its versioned key URL identifies it.

Key phrase extraction

Capability of Azure Language that pulls out the main ideas in a piece of text and returns them as a simple list, without confidence scores or categories.

Key Phrase Extraction skill (KeyPhraseExtractionSkill)

Azure AI Search built-in skill whose output, the key phrases found in text, is added to documents as enrichment metadata.

Key rotation policy (rotation policy)

Automatic rotation of a Key Vault key, either a fixed interval after creation or ahead of expiry, plus a setting for when to notify. Secrets can't have one; only keys can.

Key Vault

See Azure Key Vault.

Key Vault access policies

Older permission model for Key Vault in which each vault grants principals rights over keys, secrets and certificates. Microsoft now recommends the Azure RBAC model instead.

Key Vault access policy

Single entry in the legacy Key Vault model that gives one user, group, app or managed identity chosen operations on keys, secrets or certificates, applying to the entire vault.

Key Vault Administrator

With this RBAC role, an identity can perform any data-plane operation on the keys, secrets and certificates in scope. Scoped to a single object, though, it gives no rights over anything else in the vault.

Key Vault backup and restore

Lets you download a key, secret or certificate from a vault as a protected blob. Restoring it is limited to vaults that sit in that same subscription and Azure geography.

Key Vault certificate

X.509 certificate stored as a Key Vault object; Key Vault manages it alongside its associated key and secret and can renew it automatically.

Key Vault Contributor

Built-in role for managing vaults, their firewall and their access policies. Reading keys, secrets or certificates is outside its rights, as is assigning roles.

Key Vault Crypto Officer

RBAC role that can do anything with keys (keys/*), apart from managing permissions.

Key Vault Crypto Service Encryption User

Least-privilege RBAC role for a service identity, for example a SQL server or storage account, that uses a customer-managed key: it can read key metadata and wrap or unwrap.

Key Vault Crypto User

RBAC role allowing reads of key metadata plus the cryptographic operations: sign, verify, encrypt, decrypt, wrap and unwrap.

Key Vault integration (Application Gateway)

Application Gateway v2 feature that pulls listener certificates out of Key Vault, signing in with a user-assigned managed identity. HSM-protected certificates aren't supported, only software-protected ones.

Key Vault managed storage account keys

Older Key Vault capability for storing storage account keys and regenerating them on a schedule. Microsoft Entra ID authorisation for storage has replaced it.

Key Vault network settings (Key Vault firewall)

Firewall controls on a vault that restrict data-plane access to permitted public IP ranges and VNet subnets via service endpoints, optionally letting trusted services bypass. IP rules can't contain private addresses.

Key Vault Premium

Tier of Key Vault offering HSM-protected RSA-HSM and EC-HSM keys in addition to the software-protected keys found in Standard. Rotation policies work on either tier.

Key Vault Reader

RBAC role limited to reading metadata about the vault and its objects; it can't see secret values or perform cryptographic operations.

Key Vault references

With app settings written as @Microsoft.KeyVault(...), App Service and Azure Functions pull secret values from Key Vault, so no code change is needed.

Key Vault secret

String value kept in Key Vault, for example a password, connection string or API key.

Key Vault Secrets Officer

RBAC role that can carry out every action on secrets, managing permissions excepted.

Key Vault Secrets User

Under the Key Vault RBAC model, this role lets an identity read the contents of secrets.

Key Vault soft delete

Protection, now always enabled, under which a deleted vault and its keys, secrets and certificates can be recovered for 7 to 90 days (90 by default). The vault name remains reserved throughout.

Key Vault Standard

Lower Key Vault tier, offering software-protected RSA and EC keys at FIPS 140 Level 1. Keys backed by an HSM require Premium, though key rotation policies are available on either tier.

Key Vault VM extension

Extension for VMs that checks Key Vault periodically and installs newer versions of watched certificates into a Linux path or the Windows certificate store. Keys and secrets aren't synchronised.

Keyframe (key frame)

Frame chosen to represent a shot in a video. Content Understanding samples one per shot and feeds these images in as visual input when it extracts fields.

Keyless authentication (Microsoft Entra ID authentication)

Recommended way of calling AI services and models: rather than sending an API key, the caller presents a Microsoft Entra ID token and is authorised through an RBAC role.

Keys and Endpoint

Page in the Azure portal for an Azure OpenAI or Foundry Tools resource, listing the resource's REST endpoint together with its two access keys, Key1 and Key2.

KeywordRecognizer (keyword spotting)

Class in the Speech SDK that runs on the device, waits for a particular custom keyword defined by a .table model and fires an event on detection. It isn't meant for general transcription.

Knowledge mining

Making large amounts of content searchable and open to analysis by indexing it and enriching it with AI, usually through Azure AI Search.

Knowledge source

In agentic retrieval, the object that tells a knowledge base which content to use, whether indexed or remote (SharePoint, Blob, OneLake or the web). It has nothing to do with knowledge stores.

Knowledge store (knowledgeStore)

Property of an Azure AI Search skillset that uses projections to save enriched output into Azure Storage tables and blobs, so it can be analysed outside the search index.

KQL (Kusto Query Language)

Kusto Query Language, used read-only to query Azure Data Explorer, Log Analytics and Microsoft Sentinel; log alert rules are written in it too.

KQL job

KQL query, run once or on a schedule, against the Microsoft Sentinel data lake, reaching back as far as 12 years; its results can be promoted into the analytics tier.

kubectl

Command-line tool for working with workloads in a Kubernetes cluster, installed by running az aks install-cli. Cluster-level AKS settings like the cluster autoscaler are set through Azure instead.

Kubelet identity (agent pool managed identity)

AKS nodes pull container images using this user-assigned managed identity, so AcrPull on the registry must be granted to it rather than to the control plane identity.

kubelogin

Plug-in that supplies credentials to kubectl by performing the Microsoft Entra sign-in for AKS. Running az aks install-cli installs it.

kubenet

Simple network plugin for AKS that uses fewer VNet IP addresses and can't run Windows nodes. Its retirement date is 31 March 2028, and clusters should move to Azure CNI Overlay.

Kubernetes Agentless Operator

Defender for Cloud relies on this built-in role to discover Kubernetes clusters without agents. It includes no data-plane rights on container registries.

Kubernetes cluster should not allow privileged containers

Azure Policy built-in definition for Kubernetes; when you assign it with the Deny effect, requests for privileged containers are refused by the API server.

Kubernetes RBAC (Kubernetes role-based access control)

Authorisation built into Kubernetes, using Roles and ClusterRoles plus bindings. Signing in to AKS with Entra gives no rights on its own; users or groups need a binding first.

L

Language detection

Capability of Azure Language that works out which language some text is in. Translation and filtering are outside its scope.

Language Detection skill (LanguageDetectionSkill)

Azure AI Search built-in skill that tags every document with the code of its main language, which later skills and filters can use.

Language identification (LID)

Speech capability that works out which of a set of possible languages is being spoken: up to 4 when detecting at the start of audio, or up to 10 when detecting continuously. It runs with speech to text or speech translation.

Language Studio

Older web portal used to try out and customise Azure Language capabilities. Today those capabilities are used through the Foundry portal.

Late Input Events

Metric in Stream Analytics that counts events which arrived after the late arrival tolerance window, so were either dropped or given an adjusted timestamp.

Latency sensitivity (additional latency)

Setting on a Front Door origin group, in milliseconds and 0 by default, that extends the range around the quickest origin; every origin within that range receives traffic according to its weight.

Layout model (prebuilt-layout)

Called prebuilt-layout, this Document Intelligence model returns the text, tables, selection marks and structure of a document; turning on the keyValuePairs feature adds key-value pairs.

LB

See Azure Load Balancer.

LDAP (Lightweight Directory Access Protocol)

Lightweight Directory Access Protocol, the standard way to bind to and query directories like Active Directory. In Azure it is provided by Entra Domain Services.

Leaked credentials

User risk detection in Microsoft Entra ID Protection, raised when valid credentials turn up on the dark web or in public. It is always classified as high risk.

Ledger

Feature of Azure SQL that uses cryptographic digests so any tampering with table history can be detected. Masking and encrypting data are not part of it.

Lifecycle management

Blob Storage policy whose rules delete blobs, or shift them to another access tier, once they reach an age counted from creation, modification, last access or last tier change. GPv2 and legacy BlobStorage accounts support it, as do premium block blob accounts for deletion only.

Limited Access

Under this Microsoft policy, sensitive AI features such as custom neural voice or Face identification and verification can only be used after registering and being approved as a managed customer with an approved use case.

LinkID (linkIdentifier)

Number that identifies a private endpoint connection. It travels in the TCP Proxy v2 header so that the provider of a Private Link service can distinguish its consumers.

Linux log forwarder

Linux machine set aside to collect syslog and CEF messages from devices on port 514 using rsyslog or syslog-ng, then pass them via the Azure Monitor Agent into a Microsoft Sentinel workspace.

List (secret permission)

Permission on Key Vault secrets allowing a caller to enumerate those in a vault, though their values are not returned.

Listener

Entry point of an Application Gateway, which accepts requests on a given frontend IP, port and protocol, optionally per host name for multi-site setups. You attach the HTTPS certificate and SSL profile to it, but traffic flows only once a routing rule references it.

listKeys action (Microsoft.Storage/storageAccounts/listKeys/action)

Running Microsoft.Storage/storageAccounts/listKeys/action, a control-plane action, hands back the storage account keys. Anyone with it therefore has full Shared Key access to data, data actions or not.

LLM (large language model)

Large language model, usually a transformer network with billions of parameters that learnt to predict the next token from vast amounts of text. Compared with a small language model it is more capable across tasks, but slower and costlier.

Load-balancing rule

In Azure Load Balancer, the rule that links a frontend IP and port to a backend pool, checked by a health probe. Traffic not covered by a rule is not forwarded.

LoadBalancer (Kubernetes Service)

Type of Kubernetes Service that makes AKS provision a frontend IP on an Azure Load Balancer pointing at the pods, so the service gets an address reachable from outside.

Local network gateway

Represents the on-premises site in Azure, recording the VPN device's public IP and the address prefixes behind it, for use by site-to-site VPN connections. Point-to-site doesn't use it.

Log alert

Type of Azure Monitor alert driven by a KQL query over Log Analytics data. Logs that exist only in Event Hubs or storage accounts are out of its reach.

Log Analytics agent (MMA)

Older MMA/OMS monitoring agent, retired in August 2024. The Azure Monitor Agent, configured with data collection rules, replaces it.

Log Analytics Contributor

Built-in Azure role allowing a user to read every kind of monitoring data and to change monitoring settings, such as diagnostic settings and Log Analytics workspaces.

Log Analytics data export

Ongoing copy of table data from a Log Analytics workspace into Event Hubs or a storage account. Once exported, the data can't be queried from Sentinel or the workspace unless extra tooling is added.

Log Analytics workspace

Where Azure Monitor keeps log data for querying with KQL. Microsoft Sentinel, VM insights and workspace-based Application Insights all depend on one.

Log search alert (log alert)

Scheduled Azure Monitor alert rule built on a KQL query; it evaluates Log Analytics data either for an entire workspace or for just one resource.

loggingOptOut

Query parameter in Azure Language that prevents your input from being kept for up to 48 hours for troubleshooting. Most features default it to false; PII and health default it to true.

Logic App Contributor

Built-in Azure role for creating and managing logic apps; granting other people access to them is beyond its rights.

Logic App Operator

Built-in Azure role that can view logic apps and their run history and switch them on or off; creating or editing them isn't allowed.

Logic Apps

Low-code Azure service for building automated workflows from triggers, actions and connectors, used for things like integrating systems or sending approval emails.

Logic Apps authorization policy (Microsoft Entra ID OAuth for Logic Apps)

Setting on a logic app that checks Microsoft Entra OAuth tokens sent to request-based triggers against an issuer and claims. SAS still works alongside it unless you also turn on Disable SAS authentication, which only Consumption offers.

Logic Apps Consumption (Consumption logic app)

Logic app type that runs multitenant, is billed per execution and holds one workflow per resource. It can use Entra OAuth authorisation policies on its Request trigger and supports disabling SAS.

Logic Apps integration accounts

Azure resource holding the B2B and EDI artefacts, such as maps, schemas, partners and agreements, that Logic Apps workflows use.

Logical server (Azure SQL server)

In Azure SQL, the parent resource for a set of databases, carrying their logins, Entra admin, firewall rules, auditing and TDE configuration. Think of it as a management boundary; it isn't an instance of SQL Server.

Login server

Fully qualified name of a container registry, such as myregistry.azurecr.io. Before running docker push, images have to be tagged with it.

Logit bias (logit_bias)

Parameter that maps token IDs to a value between -100 and 100, making those tokens more or less likely to be generated; a value of -100 effectively blocks the token.

Logs Ingestion API

Lets you push your own data into Log Analytics: requests go to a data collection endpoint, and a data collection rule decides how it lands in the workspace.

Long Audio API

Asynchronous Speech API from an earlier generation, meant for producing synthesised audio of 10 minutes or more. It is due to retire on 1 April 2027, superseded by Batch synthesis.

Long-term retention (LTR)

Azure SQL feature for holding on to full backups well beyond the normal window: weekly, monthly or yearly copies can be retained for a decade.

Longest prefix match

How Azure chooses between routes: if more than one matches a destination, the most specific prefix is used. That is why a 0.0.0.0/0 UDR leaves traffic inside the VNet untouched.

Low-priority VM (tier: low_priority)

Discounted, preemptible VM tier that Azure Machine Learning compute clusters used to offer. It has been retired, and clusters still asking for low priority now get Spot VMs billed at the Spot rate.

LROPoller (long-running operation poller)

Object returned by the Azure SDK for long-running operations. Calling result() polls until done and gives back the result, status() just reports state, and wait() blocks but returns nothing.

LRS (locally redundant storage)

Locally redundant storage, the lowest-cost redundancy option, keeps three copies of the data inside a single datacentre in the primary region.

LSF (Load Sharing Facility)

IBM Spectrum Load Sharing Facility, a job scheduler for HPC workloads that Azure CycleCloud supports.

LTR

See Long-term retention.

LUIS (Language Understanding)

Language Understanding, a former service for recognising intents. Conversational language understanding (CLU) replaced it, and it has now been retired completely.

LUN (logical unit number)

Logical unit number, the slot that identifies each data disk attached to a virtual machine. No two disks on the same VM can share one.

M

MABS (Microsoft Azure Backup Server)

Microsoft Azure Backup Server, installed on-premises to back up workloads both locally and to Azure. Multi-user authorisation (MUA) isn't available with it.

Machine Configuration assignment types

Machine Configuration offers three modes. Audit only reports compliance, ApplyAndMonitor sets the configuration once and from then on just reports drift, and ApplyAndAutoCorrect sets it and repairs drift on the following evaluation.

Machine secrets scanning

Defender for Cloud check, done without agents, that searches VM disk snapshots for secrets in plain text such as tokens, SSH private keys and connection strings. It requires Defender for Servers Plan 2 or Defender CSPM.

Machine translation

Converting text from one language into another automatically, using a model such as a generative model or Azure Translator.

Mail-enabled security group

Group combining security permissions with an email address, administered through Exchange or the Microsoft 365 admin centre. Group-based licensing supports it, according to the current documentation.

Mail.Read

Graph permission granting read access to a user's mail. It doesn't count as low impact, so where a low-impact consent policy is in force, users can't consent to it without admin approval.

Managed Application Contributor

Lets you create the resources behind a managed application. It is purely an Azure RBAC role, without any directory permissions.

Managed Application Operator

Built-in role for working with managed application resources: reading them and running actions on them is allowed, managing role assignments is not.

Managed compute

Way of deploying models in Foundry on dedicated GPU VMs that Foundry manages, exposed through a REST endpoint and charged by compute hour. It suits open-source, partner and custom models, not Azure OpenAI ones.

Managed compute (Foundry) (managed real-time endpoint)

In Foundry, deploys open-source, partner or custom models onto dedicated GPUs that are charged per hour. It is not an option for Azure OpenAI models.

Managed disks

Block storage disks for VMs whose underlying storage accounts Azure looks after. The only redundancy choices are LRS and ZRS.

Managed HSM

Pool of FIPS-validated hardware security modules in Azure Key Vault, dedicated to a single tenant, able to store customer-managed encryption keys such as a TDE protector.

Managed identity

Identity in Microsoft Entra given to an Azure resource so that no secret has to be stored. It comes in two kinds: user-assigned and system-assigned.

Managed Identity Contributor

Built-in Azure role allowing full create, read, update and delete of user-assigned managed identities.

Managed Identity Operator

Built-in Azure role for reading user-assigned managed identities that already exist and assigning them to resources; creating and deleting them requires a different role.

Managed online endpoint

Azure Machine Learning online endpoint where Azure provisions and runs the compute for you; it offers autoscale, traffic mirroring and splitting traffic between deployments.

Managed private endpoints

Private endpoints that a managed virtual network, such as the one in Data Factory or Synapse, creates towards a target resource. They only work after the target's owner approves them.

Managed rule set

Collection of WAF rules maintained by Azure, such as OWASP CRS/DRS and bot rules, that look for attack signatures in request content. Filtering by rate, geography or client address is not something they do.

Managed virtual network

VNet that Azure manages for a service, for example a Synapse workspace, isolating its compute and keeping traffic on the Microsoft backbone. You can only pick it when creating the service.

Management certificate

Older authentication mechanism: a certificate that callers of the classic Azure Service Management API presented to prove who they were.

Management groups

Sit above subscriptions so that Azure Policy and RBAC assignments are inherited downwards. A management group is always confined to one tenant.

Management plane (control plane)

Layer of Azure operations that act on a resource itself, such as changing a key vault's properties, firewall or access policies. Azure RBAC authorises it, and it gives no access to the data inside the resource.

Mapping data flows

Data transformations designed visually and executed on Spark, available inside Synapse and Data Factory pipelines.

Markdown

Lightweight text formatting language. Document Intelligence and Content Understanding output extracted content, including text, tables and transcripts, in it.

Markdown output (Document Intelligence) (outputContentFormat=markdown)

Option on the layout model that returns the extracted content as Markdown, rendering tables as HTML; handy when chunking documents for RAG.

Marketplace image

Virtual machine image from Azure Marketplace, identified by its publisher, offer, SKU and version, or by a URN combining all four.

MARS

See Microsoft Azure Recovery Services agent.

Match rule (WAF custom rule)

Kind of WAF custom rule with several match conditions joined by AND; when every condition holds, it takes a single action: Allow, Block, Log or Redirect.

Max completion tokens (max_completion_tokens, max response)

Caps how many tokens a model may generate, reasoning tokens included, which limits both the length of the response and what it costs.

max_tokens (max completion tokens, max response)

Limits the number of tokens a model produces for a response. The prompt and the output together still have to fit within the model's context length.

MCP (Model Context Protocol)

Model Context Protocol, an open standard for making tools and data available to models. To use one, a Foundry agent points at a remote MCP server, naming it with a server label and giving its URL.

Memory search tool (MemorySearchTool)

Tool for Foundry agents that writes to and reads from a memory store; a scope, for example one ID per user, keeps each user's memories separate.

Memory store (agent memory, long-term memory)

Long-term memory managed for Foundry agents, partitioned by scope, that retains condensed facts such as a user's preferences from one session to the next. It doesn't hold the full conversation history.

Mesh topology (Virtual Network Manager)

Connectivity configuration in Virtual Network Manager where a connected group links each VNet in the network group to all the others in both directions. It is regional unless you opt for global mesh.

Message sessions

Feature of Service Bus ensuring that related messages carrying the same session ID are processed in first-in, first-out order.

Metaprompt and grounding mitigation layer

Layer of generative AI mitigation at the application level, in which grounding data and the system message guide the model away from output that is ungrounded or harmful.

Metered data plan (MeteredData)

ExpressRoute pricing in which outbound data is billed per GB. Switching to Unlimited is allowed, but you can't switch back afterwards.

Metric alert

Alert rule in Azure Monitor that checks numerical metrics from a resource at a regular frequency. Log entries are invisible to it.

MFA (multifactor authentication)

Multifactor authentication: asking for another factor on top of a password at sign-in, usually required by a Conditional Access grant control.

MFA Server (Azure Multi-Factor Authentication Server)

Azure Multi-Factor Authentication Server, an on-premises product that is deprecated and no longer processes requests. Microsoft Entra MFA in the cloud takes its place.

MI

See Azure SQL Managed Instance.

Microsoft 365 (Office 365)

Formerly Office 365, Microsoft's software-as-a-service productivity suite. A Microsoft Entra tenant provides its identity, and its data is not governed by Azure RBAC.

Microsoft 365 app connector

API connector in Defender for Cloud Apps that brings in Microsoft 365 activity, allowing related incidents and alerts to show up in the Defender portal.

Microsoft 365 Copilot

Assistant built into Microsoft 365 apps that grounds its answers in an organisation's data via Microsoft Graph. Because it respects existing permissions, content that has been overshared can appear in responses.

Microsoft 365 Defender

See Microsoft Defender XDR.

Microsoft 365 groups

Collaboration groups in Microsoft 365 that give members a shared calendar, mailbox and file space.

Microsoft account (MSA)

Consumer Microsoft account for personal use, such as one on live.com or outlook.com. B2B guests can sign in with it by default, without configuring another identity provider.

Microsoft Agent 365

Control plane for AI agents, licensed per user, that brings Entra security controls like Conditional Access to agents. The agent inventory lives in its registry within the Microsoft 365 admin centre.

Microsoft Agent Framework (Agent Framework)

Open-source SDK that succeeds AutoGen and Semantic Kernel. It is used to build agents and graph-based multi-agent workflows, with support for tools, memory, session state and human-in-the-loop steps.

Microsoft Authenticator

App for mobile devices offering one-time codes, push notifications that use number matching, and passwordless sign-in by phone.

Microsoft Azure Management (Microsoft Azure Management)

Target app in Conditional Access that covers Azure Resource Manager and the Azure portal, so policies can enforce controls such as MFA for managing Azure.

Microsoft Azure operated by 21Vianet (Azure China 21Vianet)

Azure cloud in China, run by 21Vianet and physically isolated from global Azure; VNet peering between the two isn't possible.

Microsoft Azure Recovery Services agent (MARS)

Usually installed on on-premises Windows machines, the MARS agent sends their files, folders and system state directly into a Recovery Services vault.

Microsoft Cloud App Security

See Microsoft Defender for Cloud Apps.

Microsoft cloud security benchmark (MCSB)

Framework of security best practices from Microsoft, previously called Azure Security Benchmark, which Defender for Cloud assigns as its default standard.

Microsoft cloud settings

Lets an organisation collaborate through B2B with tenants that live in another Microsoft cloud, such as Azure Government or Azure operated by 21Vianet; configured within cross-tenant access settings.

Microsoft Configuration Manager (Configuration Manager)

Microsoft's endpoint management product run on-premises, used to roll out software, settings and updates to devices. A server with its client installed is not thereby onboarded to Defender for Cloud.

Microsoft Defender Antivirus

Antimalware built into Windows. It integrates with Defender for Endpoint and can operate in either passive or active mode.

Microsoft Defender External Attack Surface Management (Defender EASM)

Discovers the internet-facing assets an organisation owns, including domains, hosts, IPs, ASNs and certificates, and highlights their vulnerabilities. Defender for Cloud differs in assessing only the resources you connect to it.

Microsoft Defender for AI Services (threat protection for AI workloads)

Plan within Defender for Cloud that uses threat intelligence and Prompt Shields to alert in real time when generative AI applications come under attack.

Microsoft Defender for APIs (Defender for APIs)

Protection for APIs that you publish via Azure API Management, offered as one of the Defender for Cloud plans.

Microsoft Defender for App Service (Defender for App Service)

Protects App Service apps by detecting attacks against them, such as traffic arriving from anomalous IP addresses; offered as a Defender for Cloud plan.

Microsoft Defender for Cloud (formerly Azure Security Center)

Combines security posture management with workload protection: a free foundational CSPM tier, paid Defender plans, Secure Score and recommendations. Its regulatory compliance dashboard shows status only and blocks nothing.

Microsoft Defender for Cloud Apps (Microsoft Cloud App Security)

Cloud access security broker (CASB) from Microsoft, providing discovery of SaaS apps, session control and protection of data.

Microsoft Defender for Cloud Servers Scanner Resource Provider

First-party app (ID 0c7668b5-3260-4ad0-9f53-34ed54fa19b2) behind agentless scanning. Where disks use a CMK, it requires the Key Vault Crypto Service Encryption User role or the Get, Wrap Key and Unwrap Key permissions.

Microsoft Defender for Containers (Defender for Containers)

Secures container images and Kubernetes clusters wherever they run, whether AKS with ACR, EKS with ECR or GKE with Artifact Registry, and includes vulnerability scanning of registry images. Offered as a Defender for Cloud plan.

Microsoft Defender for Databases (Defender for Databases)

Defender for Cloud groups its database threat protection under this plan, which spans Azure SQL, Cosmos DB, open-source relational databases and SQL Server running on machines.

Microsoft Defender for DNS (Defender for DNS)

Spots DNS tunnelling and data exfiltration, malicious resolvers, and domains used for phishing or command and control. This protection now ships within Defender for Servers Plan 2.

Microsoft Defender for Endpoint (MDE, Defender ATP)

Microsoft's platform for antivirus and endpoint detection and response, which Defender for Servers integrates with.

Microsoft Defender for Key Vault (Defender for Key Vault)

Plan within Defender for Cloud that raises alerts when key vaults are accessed in suspicious or unusual ways.

Microsoft Defender for open-source relational databases (Defender for open-source relational databases)

Detects threats like brute-force attempts against Azure Database for MySQL and PostgreSQL flexible servers, as well as Amazon RDS engines in linked AWS accounts; one of the Defender for Cloud plans.

Microsoft Defender for Resource Manager (Defender for Resource Manager)

Plan within Defender for Cloud that flags suspicious control-plane operations carried out through Azure Resource Manager.

Microsoft Defender for Servers (Defender for Servers)

Covers Arc-enabled servers and Azure VMs in Defender for Cloud. Plan 1 brings integration with Defender for Endpoint; Plan 2 goes further with agentless scanning, file integrity monitoring and alerts from Defender for DNS.

Microsoft Defender for SQL (Advanced Threat Protection)

Combines SQL vulnerability assessment with Advanced Threat Protection, which alerts on brute force, SQL injection and anomalous access. As a Defender for Cloud plan it detects threats; it doesn't mask or encrypt data.

Microsoft Defender for Storage (Advanced Threat Protection for Storage)

Threat detection and malware scanning for Azure Files and Blob Storage, Data Lake Storage Gen2 included, but not for Queue or Table storage. You switch it on for a whole subscription or for individual accounts.

Microsoft Defender portal

At security.microsoft.com, one place to work with Defender XDR, Microsoft Sentinel, Defender for Cloud Apps and further Microsoft security products.

Microsoft Defender Vulnerability Management (MDVM)

Engine that Microsoft uses for vulnerability scanning in Defender for Containers and Defender for Servers, assessing container images and VMs, scale sets included.

Microsoft Defender Vulnerability Management add-on (MDVM add-on)

Licence giving devices premium MDVM features, such as firmware and certificate assessment, security baselines and blocking of vulnerable apps. Servers covered by Defender for Servers Plan 2 have these already.

Microsoft Defender XDR (Microsoft 365 Defender)

Brings Defender products such as Cloud Apps, Identity, Office 365 and Endpoint together, joining their signals into incidents that span the time before and after a breach. Includes advanced hunting and automatic disruption of attacks.

Microsoft Endpoint Manager

Name formerly used for Microsoft's family of device-management products, which are now brought together as Microsoft Intune.

Microsoft Entra admin

Set on an Azure SQL managed instance or logical server, this is the single Entra principal (a user, group, managed identity or service principal) able to log in to all its databases and to add further Entra users.

Microsoft Entra Agent ID

Gives AI agents identities in Entra of their own, created from blueprints, so they fall under Conditional Access, ID Protection and governance just like users do.

Microsoft Entra application proxy (Azure AD Application Proxy)

Makes on-premises web applications reachable from outside using a connector that only makes outbound connections, so neither a VPN nor open inbound ports are required.

Microsoft Entra authentication for Azure SQL

Connecting to Azure SQL as an Entra user, group or managed identity rather than with a SQL login, which brings Conditional Access and MFA into play.

Microsoft Entra B2B (Azure AD B2B)

Brings people from outside the organisation in as guest accounts; they authenticate with their own home tenant or identity provider.

Microsoft Entra Connect (Azure AD Connect)

Keeps Microsoft Entra ID in step with an on-premises Active Directory by synchronising its identities to the cloud.

Microsoft Entra Connect Health (Azure AD Connect Health)

Watches the health of AD FS, AD DS and Entra Connect sync, reporting on it and sending alerts by email.

Microsoft Entra Connect provisioning agent

Agent installed on-premises that Entra cloud provisioning uses to create users in Active Directory.

Microsoft Entra custom roles

Directory roles you assemble from the permissions that support customisation. They can be assigned to the whole tenant or to one object, such as an app registration, but never to Azure resources.

Microsoft Entra Domain Services (Azure AD DS)

Domain hosted and managed in Azure that provides Kerberos, NTLM and LDAP. Its contents come from Entra ID, so no connection to on-premises is required.

Microsoft Entra External ID

Platform for external identities from Microsoft, spanning B2B collaboration and customer (CIAM) tenants. New customers use it in place of Azure AD B2C.

Microsoft Entra ID (Azure AD)

Cloud identity service from Microsoft, previously named Azure AD, which provides the tenant behind Microsoft 365 and Azure.

Microsoft Entra ID authentication (P2S) (Azure AD authentication)

Authentication option for point-to-site VPN in which users sign in through Entra ID, so Conditional Access and MFA apply. You need the Azure VPN Client and the OpenVPN tunnel type.

Microsoft Entra ID Free (Entra ID Free)

Edition of Entra ID that comes with Microsoft 365 and Azure subscriptions. Premium features like group-based licensing are missing, so licences have to go directly to users.

Microsoft Entra ID Governance

Set of features, and the licence for them, covering lifecycle workflows, entitlement management and access reviews.

Microsoft Entra join (Entra joined devices)

Registers devices owned by the organisation directly in Entra ID, governed by the Users may join devices setting; personal BYOD devices are registered instead.

Microsoft Entra Kerberos (Azure AD Kerberos)

Azure Files identity source where Entra ID hands out the Kerberos tickets for SMB access. It supports hybrid identities and, more recently, cloud-only ones; each storage account can have just one identity source.

Microsoft Entra Private Access

Part of Global Secure Access that lets users reach private applications without a VPN, under Conditional Access control.

Microsoft Entra roles (directory roles)

Administrative roles at tenant level, User Administrator for example, that manage objects in Entra but confer no rights over Azure resources, which Azure RBAC handles separately.

Microsoft Entra tenant

Instance of the Entra ID directory dedicated to an organisation, with an initial .onmicrosoft.com domain picked when it is created. Every Azure subscription trusts one tenant only.

Microsoft Entra Workload ID (workload identity)

Lets AKS pods get Entra tokens with no stored secrets by federating their Kubernetes service account with a managed identity or app registration in Entra.

Microsoft Entra-only authentication

Setting on an Azure SQL server that turns off SQL authentication, leaving Entra identities as the only way to connect.

Microsoft Fabric

Analytics platform from Microsoft delivered as SaaS on top of OneLake, offering capabilities including Direct Lake and shortcuts.

Microsoft Fabric data agent tool (Fabric tool)

Lets a Foundry agent put questions to a Fabric data agent about enterprise analytics data; requests travel over a project connection on behalf of the user who is signed in.

Microsoft Foundry (Azure AI Foundry)

Formerly called Azure AI Foundry, the Azure platform where AI models and agents are built, evaluated and run within one resource, with evaluations, guardrails and AI red teaming.

Microsoft Foundry AI agent evaluation GitHub Action (ai-agent-evals)

Brings offline evaluation of Foundry agents into CI/CD on GitHub. A test dataset is sent to the agents, catalogue evaluators grade what comes back, versions are compared statistically, and the result can hold back a release.

Microsoft Foundry project (Foundry project)

Boundary for development within a Foundry resource, where teams build and evaluate generative AI apps and agents.

Microsoft Foundry resource (Foundry resource)

Azure resource at the top of the Foundry hierarchy (Microsoft.CognitiveServices/accounts, kind AIServices). It governs model deployments, networking, security, policy and shared connections, while child projects keep teams isolated.

Microsoft Graph

API giving access to Entra and Microsoft 365 data. Authorisation uses application or delegated permissions rather than Azure RBAC.

Microsoft network routing (Microsoft global network)

Default choice of routing preference: traffic is handed onto Microsoft's global network as close to the client as possible, at the nearest point of presence, for optimal performance.

Microsoft peering

Routing domain on ExpressRoute that reaches public endpoints of Azure PaaS and Microsoft 365 using public IP prefixes you own. Circuits created since August 2017 advertise nothing until you attach a route filter.

Microsoft Purview (Azure Purview)

Family of Microsoft products for data governance, security and compliance. Its Data Map stores only metadata, such as lineage, schema and classification, never the data itself.

Microsoft Purview Audit (Purview Audit)

Searches the unified audit log for admin and user activity across Microsoft services. The Standard tier keeps records for 180 days, while Premium adds longer retention and intelligent insights.

Microsoft Purview Audit (Premium) (Advanced Audit)

Higher audit tier that retains SharePoint, OneDrive, Exchange and Entra ID records for a year and offers intelligent insights like MailItemsAccessed, plus retention policies reaching 10 years with an add-on.

Microsoft Purview Audit (Standard)

Unified audit log tier you get by default, keeping records for 180 days; custom retention policies and intelligent insights aren't included.

Microsoft Purview Data Loss Prevention (DLP)

Policies in Purview that look for sensitivity labels or sensitive information types in content held in many places, including Microsoft 365 Copilot, and respond by auditing, warning or blocking. You can simulate a policy before enforcing it.

Microsoft Purview DSPM for AI (Data Security Posture Management for AI)

Purview solution for data used in interactions with Copilot, agents and other AI apps, providing observability, assessments of data risk and policies you can apply in one click.

Microsoft Purview Information Protection (Azure Information Protection (AIP))

Previously Azure Information Protection; applies sensitivity labels and encryption to email and documents.

Microsoft Responsible AI Standard

Microsoft's guidance for developing AI systems, organised around six principles: accountability, transparency, inclusiveness, privacy and security, reliability and safety, and fairness.

Microsoft Security Copilot (Security Copilot)

Security assistant powered by generative AI, used in its own portal or embedded in Intune, Entra, Defender and Purview, and extensible with agents and plugins.

Microsoft Security DevOps (MSDO)

Runs security scanners like Checkov, Terrascan and Template Analyzer as part of a pipeline, either as an Azure DevOps task or a GitHub action. Setting categories: 'IaC' restricts it to the IaC scanners.

Microsoft Security Exposure Management (MSEM)

Posture solution found in the Defender portal. By bringing cloud, identity, endpoint and external attack surface assets into one enterprise exposure graph, it reveals which assets are critical, how attacks could travel, where choke points lie and how big the blast radius is.

Microsoft Sentinel

Microsoft's cloud-native SIEM, with SOAR capabilities, which stores and queries its data in a Log Analytics workspace.

Microsoft Sentinel content hub

Page in Sentinel for finding, installing and updating packaged solutions and standalone content. Installation only provides templates, so every item still has to be switched on.

Microsoft Sentinel Contributor

Built-in Azure role that includes everything Responder can do and can also create and modify workbooks, analytics rules and content hub solutions.

Microsoft Sentinel incident (incident)

Record in Sentinel that gathers related alerts, evidence and entities into one case to investigate; each has a severity, a status and an owner.

Microsoft Sentinel Reader

Built-in Azure role for viewing incidents, workbooks and data in Sentinel; it can't change incidents.

Microsoft Sentinel Responder

Built-in Azure role combining Sentinel Reader rights with managing incidents, such as assigning owners and changing severity or status. Guests additionally need Directory Reader before they can assign incidents.

Microsoft Sentinel solution

Bundle of Sentinel content for a product or scenario, such as playbooks, workbooks, connectors and analytics rules. Unlike standalone content, it installs from the content hub as one unit and you update it by hand.

Microsoft Trusted CA List

Certificate authorities whose root certificates Front Door will accept when you bring your own certificate. Self-signed certificates and private CAs like AD CS are excluded.

Microsoft-hosted agents

Azure Pipelines agents operated by Microsoft, each job getting a new VM outside your network. Reaching private resources therefore needs added connectivity or self-hosted agents instead.

Microsoft-registered Azure VPN Client app

App ID that Microsoft has already registered, set as the Audience for point-to-site authentication with Entra ID, so you neither register an app yourself nor grant separate admin consent.

microsoft-user-default-low

App consent policy built into Entra that lets users consent only to low-impact permissions, and only for apps registered in the tenant or from verified publishers.

Microsoft.Authorization

Namespace of the resource provider handling policy, resource locks, role definitions and role assignments. Only roles such as Owner and User Access Administrator hold roleAssignments/write.

Microsoft.AzureActiveDirectory service endpoint

Older service endpoint tag, relevant only to integrating Data Lake Storage Gen1 with a virtual network. Native service endpoint support doesn't exist for Microsoft Entra ID.

Microsoft.ClassicNetwork

Provider of classic (ASM) networking resources. NSGs and other networking resources in Resource Manager belong to Microsoft.Network instead.

Microsoft.CognitiveServices (Microsoft.CognitiveServices/accounts)

Azure OpenAI, Foundry and Foundry Tools accounts are all resources of this provider. Their IDs take the form subscriptions/{id}/resourceGroups/{rg}/providers/..., with no tenant ID anywhere in them.

Microsoft.Compute

Namespace of the resource provider that covers virtual machines, managed disks (Microsoft.Compute/disks) and the data actions for signing in to VMs (virtualMachines/login/action).

Microsoft.ContainerInstance

Azure Container Instances resources fall under this provider namespace, so holding Microsoft.Compute permissions gives no rights over them.

Microsoft.HybridNetwork

Azure Network Function Manager uses this resource provider namespace.

Microsoft.Insights

Under this provider namespace you find the resources of Azure Monitor, for instance alert rules and diagnostic settings, along with data collection rules and their endpoints.

Microsoft.KeyVault

Namespace of the Key Vault resource provider, with actions such as Microsoft.KeyVault/vaults/write; it is also what the Key Vault service endpoint is called.

Microsoft.MachineLearningServices

Azure Machine Learning workspaces are created under this resource provider. Foundry Tools accounts are not.

Microsoft.Network

Namespace of the Azure resource provider for networking, covering VNets, NSGs, Network Watcher and more. Network Contributor is granted its actions.

Microsoft.OperationalInsights

Namespace under which Azure registers Log Analytics workspace resources. Features such as Traffic Analytics depend on two of its actions: workspaces/read and workspaces/sharedkeys/action.

Microsoft.Resources

The Azure namespace that owns core management objects: subscriptions, resource groups, deployments and tags, the last of which are governed by Microsoft.Resources/tags/* actions.

Microsoft.Search

Namespace that hosts Azure AI Search, whose resources appear as searchServices. No provider called Microsoft.CognitiveSearch exists.

Microsoft.Security

Namespace behind Microsoft Defender for Cloud, holding its configuration, pricing plans and security assessments.

Microsoft.Solutions

Managed applications in Azure are registered under this namespace.

Microsoft.Sql service endpoint

Sends a subnet's Azure SQL traffic straight across the Microsoft backbone network, so it skips any forced tunnel to on-premises.

Microsoft.Storage

Namespace for Azure Storage resources, and also the name given to its regional service endpoint. Enabling that endpoint once on a subnet reaches all storage accounts in the same region.

Microsoft.Storage.Global (cross-region service endpoint)

Variant of the storage service endpoint that reaches accounts in every region rather than only the local one. A subnet may enable either this or the regional Microsoft.Storage, never both.

Microsoft.Support

Azure support tickets live under this namespace.

Microsoft.Web

Namespace covering App Service and Azure Functions apps. Permissions granted on Microsoft.Compute do not extend to these resources.

MinChildEndpoints

Setting on a nested Traffic Manager endpoint, 1 by default, that says how many child endpoints must stay healthy. If fewer do, the parent regards the entire child profile as degraded.

Mini-batch

The set of input files handed to a single run() invocation in a batch deployment. When node preemption cuts work short, unfinished mini-batches are retried and finished ones are not repeated.

minimumTlsVersion (Minimum TLS version)

On a storage account, this property (TLS1_0, TLS1_1 or TLS1_2) causes any request negotiated with a lower TLS version to fail with HTTP 400. Network filtering and blocking plain HTTP are outside its scope.

ML (machine learning)

Building models that infer patterns from data so they can predict outcomes, for instance through regression or classification, using tools like Azure Machine Learning or Synapse Spark pools. Predictive ML is distinct from generative AI.

MLflow

An open-source framework for experiment tracking and model management. Azure Machine Learning adopts it as its tracking API, so each workspace acts as a compatible MLflow tracking server.

MLflow experiment

A named container for runs, chosen with mlflow.set_experiment, so their parameters and metrics can be compared side by side. Where a model's artifacts are stored is not determined by it.

MLflow model (mlflow_model)

When a model is stored in MLflow format, with an MLmodel file and conda requirements, you can deploy it to batch or online endpoints with no scoring script or environment of your own.

MLflow run

A single tracked execution, begun with mlflow.start_run or implicitly within a job. Parameters are captured via log_param, metrics via log_metric, and artifacts are stored alongside.

MLflow tracking URI

The location MLflow sends logged data to. Azure Machine Learning jobs configure it for you; outside them you supply it with mlflow.set_tracking_uri.

mlflow.autolog

Function that, for supported frameworks, captures parameters, metrics and models without explicit logging calls. Passing log_models=False still records metrics but leaves the model out.

mlflow.register_model

Function that takes a logged model, referenced as runs:/<run-id>/<artifact-path>, and adds it to the workspace registry while preserving its link back to the originating run.

mlflow.sklearn.log_model (log_model)

Function that saves a scikit-learn model in MLflow format at whatever artifact path you supply, such as "model". That path is used literally and has nothing to do with the experiment's name.

MLTable (AssetTypes.URI_MLTABLE)

A YAML file called MLTable that tells Azure Machine Learning how to load the data files sitting beside it as a table. AutoML and parallel jobs consume it, and you reference the containing folder rather than the file itself.

mltable Python package (mltable)

Python library for working with MLTable blueprints. You call mltable.load() on the folder holding the file, then to_pandas_dataframe() to materialise, take() to sample rows, or save() to write a blueprint out.

MMA

See Log Analytics agent.

Model archive (az ml model archive)

Archiving a model or a single version drops it from default listings yet keeps files and metadata, so references still resolve and restoring it later is possible; deletion, by contrast, cannot be undone.

Model catalog

Where the Foundry portal lets you browse, benchmark, try out and deploy models, filtering by task, capability or deployment option; providers include OpenAI, Microsoft, Meta, Anthropic, Cohere, Mistral and Hugging Face.

Model deployment (deployment)

Inside a resource, each deployment is a named copy of a Foundry model with its own TPM quota and deployment type. Requests identify the model by this deployment name.

Model deployment name

Label you assign when deploying a model, and the value sent in the model parameter. Routing uses this label (my-mini-gpt, say) rather than the name of the underlying model.

Model interpretability

Part of the Responsible AI tooling, built on InterpretML, that reports feature importance both overall and for individual predictions, revealing any reliance on sensitive or proxy features.

Model leaderboard

Preview view in the Foundry model catalog that scores models on benchmarks for quality, safety, estimated cost and throughput. It plots trade-offs and lets you compare as many as three models directly.

Model mitigation layer

Bottom layer of generative AI risk mitigation, concerned with selecting, understanding and possibly fine-tuning the model. Swapping models does not by itself count as a safety control.

Model monitoring (Azure Machine Learning model monitoring)

Capability in Azure Machine Learning that, on a schedule, checks production inference data against reference data for each signal. When a metric crosses its threshold it raises an alert, by email unless Event Grid events are configured.

Model parameters (weights)

The weights a model learns in training, which together hold what it knows. How many there are is what distinguishes a small language model from a large one.

Model router

A Foundry model you deploy once that picks, per prompt and in real time, which underlying model answers: cheap small ones for easy prompts, reasoning or frontier ones for hard ones. Modes are Balanced, Cost and Quality.

Model temperature (temperature)

Sampling setting between 0 and 2 controlling how random the output is. Lower values yield focused, repeatable responses and higher ones more creative text; tune this or Top P, but not both.

Model version upgrade policy

Option on a Standard deployment deciding when it switches to a newer model version: auto-update to the default, upgrade once the current version expires, or never upgrade automatically.

Moderate text content (Content Safety Studio)

Try-it-out page in Content Safety Studio and Foundry for testing a single sentence or a bulk dataset. It reports category and severity, lets you tune thresholds and blocklists, and can export the matching code.

Modify (Policy effect)

Policy effect in Azure that can add, replace or remove tags and other properties. Resources that already exist are brought into line by running a remediation task.

Modify effect

With this policy effect, Azure can add, replace or strip tags and other properties. For resources that already exist, a remediation task makes the change, running under the managed identity of the assignment.

Monitor condition

Whether the condition behind a fired alert is still true determines this value, which Azure sets to Fired or Resolved. For activity log alerts it never leaves Fired.

Monitor online activity (Content Safety Studio)

Reporting page in Content Safety Studio that summarises how the moderation API has been used, with trends in category and severity, block rate, latency and blocklist matches. No new content is tested here.

Monitor Only (Defender EASM asset state)

Asset state in Defender EASM for items that matter to your attack surface yet are not under your direct control and are not technical dependencies either, such as related companies or franchisees.

Monitoring Contributor

Built-in Azure role able to read every kind of monitoring data and change monitoring configuration such as alerts, action groups and diagnostic settings. It cannot alter other resources or locks.

Monitoring signal

Each model monitor in Azure Machine Learning is made up of these checks, each carrying separate metrics and thresholds: data quality, data drift, prediction drift, feature attribution drift, model performance, or custom.

MPI (Message Passing Interface)

Message Passing Interface, a standard by which nodes in an HPC job exchange data. Azure Batch runs such workloads using multi-instance tasks.

MPP (massively parallel processing)

Massively parallel processing, in which a query is split across numerous compute nodes; the Synapse dedicated SQL pool is built this way.

MPSJ (multi-plan subnet join)

Multi-plan subnet join, an App Service capability that lets multiple App Service plans within one subscription use the same VNet integration subnet. That subnet needs a size of /26 or larger.

MS-PIM

To manage Azure resource roles, PIM works through this service principal, which therefore requires User Access Administrator at subscription or management group level.

MSEE (Microsoft Enterprise Edge)

Microsoft Enterprise Edge, the routers on which ExpressRoute circuits terminate. Their BGP defaults are a 60-second keep-alive and a 180-second hold time.

mstsc (Remote Desktop Connection)

The Remote Desktop Connection client built into Windows. By itself it cannot connect to a VM lacking a public IP, but az network bastion rdp launches it via Azure Bastion.

mstts:express-as

SSML extension from Microsoft for choosing a speaking style for a voice, such as calm, gentle or advertisement_upbeat. If the style is not valid, the entire element is disregarded.

mstts:express-as role

Attribute of mstts:express-as letting a voice act as someone of another age or gender, for instance YoungAdultFemale or SeniorMale, while the voice name stays the same. Roles that are not supported are ignored.

mTLS (mutual TLS)

Mutual TLS, a TLS variant where the client also presents a certificate that the server checks, giving authentication in both directions.

MUA

See Multi-user authorization.

Multi-instance tasks

Azure Batch tasks that run across multiple compute nodes at once, which is how MPI workloads are executed.

Multi-region writes

Cosmos DB option under which each region holds a replica that accepts writes.

Multi-service Foundry resource (Microsoft Foundry resource)

Azure OpenAI plus several Foundry Tools reachable through a single key and endpoint in one resource; a single-service resource, by comparison, covers only one tool.

Multi-site listener

Application Gateway listener type that chooses a route based on host name, so numerous sites can sit behind a single frontend IP and port. On v2 it accepts up to five host names or wildcards.

Multi-user authorization (MUA)

Safeguard in Azure Backup whereby critical backup operations only proceed once a role on a Resource Guard has been obtained; that guard is best kept in a different tenant.

Multimodal model (vision-enabled model)

A generative model able to take several kinds of input, for example images alongside text, within one request.

MultiValue

Traffic Manager routing method that answers each query with multiple healthy endpoints, at most 10. It accepts only External endpoints specified as IPv4 or IPv6 addresses.

My Apps

Portal in Microsoft Entra where users open the apps assigned to them. A browser extension for it supplies credentials for password-based SSO.

MySQL Flexible Server

Option for running Azure Database for MySQL. Burstable lacks zone-redundant high availability, which is available only on the General Purpose and Business Critical tiers.

N

Named locations

Countries or IP address ranges you define in Microsoft Entra ID so that Conditional Access policies can use them as conditions.

Nano Server

For .NET Core apps, this is the leanest Windows base image for containers; PowerShell and WMI are both left out.

NAT gateway (Azure NAT Gateway)

Gives a subnet managed, outbound-only SNAT through static public IPs and is Microsoft's preferred explicit outbound option. Unsolicited inbound connections are never accepted.

NAT IP configuration (Private Link service)

In a Private Link service, consumer traffic is source-NATed to these provider VNet addresses. Up to eight can be added for scale, as each supplies about 64,000 TCP ports per backend VM.

Native client support

Azure Bastion option, on Standard tier and above, that allows az network bastion rdp and ssh to connect using a client installed locally, mstsc for example.

NC / NV series

Azure VM sizes with GPUs: NC targets compute workloads and NV targets visualisation.

NER (named entity recognition)

Named entity recognition. In Azure Language it picks out entities and assigns categories, Location, Person, Organization, PersonType, Quantity, DateTime and Skill among them.

Nested endpoint

Lets a parent Traffic Manager profile include a child profile as one of its endpoints, so that two routing methods combine.

Nested groups

Groups placed inside other groups as members. Azure honours role assignments made via such nesting, whereas group-based licensing applies only to direct members.

Nested Traffic Manager profiles

Arrangement where a parent profile uses child profiles as its endpoints, mixing routing methods, for example Weighted children under a Geographic parent. Every profile still has just one method.

Nested virtualization

Hosting Hyper-V within a virtual machine. The appliance VMs of Azure Extended Network, for instance, need it so the Hyper-V role can be turned on.

.NET

Microsoft's development framework. If an app is built on the full .NET Framework and needs operating-system access, host it on a VM; App Service supports auto-instrumentation for .NET.

Network Contributor

Built-in role that manages networking resources through Microsoft.Network/*. Flow logs and Traffic Analytics also need storage, Log Analytics workspace and DCR actions, which this role does not include.

Network Controller

Server role in Windows Server SDN that provides central management of the virtual network infrastructure.

Network group

Collection of VNets or subnets in Azure Virtual Network Manager, drawn only from within the manager's scope and filled either statically or dynamically by Azure Policy. VNets outside the scope can never be members.

Network Insights

Health and metrics dashboards for network resources inside Azure Monitor, drawing on a Log Analytics workspace.

Network manager scope

Defines which subscriptions and management groups an Azure Virtual Network Manager covers. Configuration never reaches VNets beyond it, and where two managers overlap and disagree, the higher scope takes effect.

Network Performance Monitor (NPM)

Former network monitoring solution that relied on the Log Analytics agent; it has been retired in favour of Connection Monitor.

Network rule

In Azure Firewall, these rules filter on protocol, port, IP address or service tag, plus FQDN once DNS proxy is on. Evaluation order puts them after DNAT and ahead of application rules.

Network Watcher

Collection of Azure network troubleshooting tools: next hop, IP flow verify, packet capture, Connection Monitor and flow logs, among others.

Network Watcher Agent extension

Packet capture and Connection Monitor both depend on this extension, named AzureNetworkWatcherExtension. Only Azure VMs and Azure Arc-enabled servers can run it.

Network Watcher effective security rules

Shows, for one NIC of a running VM, the combined inbound and outbound rules drawn from subnet and NIC NSGs and from Virtual Network Manager admin rules. No flow is tested; it simply lists them.

Network Watcher IP flow verify

Checks a 5-tuple against the security and admin rules on a VM's NIC and reports whether it is allowed or denied, naming the rule responsible. Only TCP and UDP are supported, and scale sets are excluded.

Network Watcher next hop

Use it to troubleshoot routing for a destination: it returns the route table in effect (System Route or a UDR's table) with the next hop's type and IP. NSG filtering is not examined.

Network Watcher NSG diagnostics

Covers cases IP flow verify cannot, simulating a flow (ICMP too) against a VM, NIC, scale set NIC or Application Gateway v2 to report allow or deny and the rules involved.

NetworkAccessTraffic

Table in Log Analytics recording traffic events from Global Secure Access, that is Microsoft Entra Internet Access and Private Access. Azure VNet flow data is not stored in it.

Neural voice (standard voice)

Ready-made text to speech voice built on deep neural networks, usable immediately across more than 100 languages and locales.

New-AzApplicationGatewayFirewallCondition

Cmdlet that builds a match condition for a WAF custom rule from a match variable, an operator such as GeoMatch or IPMatch, and the values to match.

New-AzApplicationGatewayFirewallCustomRule

Cmdlet that assembles an Application Gateway WAF custom rule from match conditions, setting its name, priority, type (MatchRule or RateLimitRule), conditions and action.

New-AzApplicationGatewayFirewallMatchVariable

Cmdlet producing the match variable, RemoteAddr for instance, used in a WAF custom-rule condition on Application Gateway. Building a custom rule begins here.

New-AzApplicationGatewayFirewallPolicyExclusion

Cmdlet that defines an exclusion from managed rules within an Application Gateway WAF policy.

New-AzConfigurationAssignment

Cmdlet from Az.Maintenance that links a maintenance configuration, such as a patching schedule, to a VM, scale set or dedicated host. No software is installed by it.

New-AzIpsecPolicy

Cmdlet in Az.Network for defining a custom IPsec/IKE policy on a connection, covering IKE encryption and integrity, DH group, IPsec encryption and integrity, PFS group, and SA lifetime and size.

New-AzIpsecTrafficSelectorPolicy

Defines traffic selectors for a connection purely as local and remote address ranges; encryption is not configured by this Az.Network cmdlet.

New-AzManagementGroupDeployment

Runs a template deployment whose target is a management group.

New-AzPolicyAssignment

Cmdlet that applies a policy definition (-PolicyDefinition) at a chosen scope (-Scope, for example a resource group's ResourceId). To change an assignment that already exists, use Set-AzPolicyAssignment.

New-AzPolicyDefinition

Cmdlet that creates a policy definition without assigning it anywhere; Set-AzPolicyDefinition is used to change one.

New-AzResourceGroupDeployment

Cmdlet that deploys a template into a resource group that must already exist, in Incremental (the default) or Complete -Mode. It cannot create the group itself.

New-AzResourceLock

Locks a subscription, resource group or resource; choose ReadOnly or CanNotDelete with -LockLevel.

New-AzRoleAssignment

Gives a user, group or service principal a role at some scope. This Az cmdlet took over from New-AzureRmRoleAssignment.

New-AzRoleDefinition

Cmdlet that defines a custom role, taking either a role object or a JSON file supplied with -InputFile.

New-AzServiceEndpointPolicy

Cmdlet in Az.Network for creating a service endpoint policy, which limits a subnet's outbound traffic to particular Azure Storage accounts.

New-AzSubscriptionDeployment (New-AzDeployment)

Cmdlet, also available as New-AzDeployment, for deploying a template at subscription scope; resource groups can be created from there.

New-AzTenantDeployment

Cmdlet for deploying a template with the tenant as the target scope.

New-AzVirtualHub

Creates a Virtual WAN hub. Setting VPN connection policies is a separate task this Az.Network cmdlet does not perform.

New-AzVirtualNetworkGateway

Cmdlet in Az.Network that deploys a VPN or ExpressRoute gateway into GatewaySubnet. Connection policies are neither created nor changed by it.

New-AzVirtualNetworkGatewayConnection

Cmdlet in Az.Network for creating site-to-site (IPsec), VNet-to-VNet or ExpressRoute connections. Its parameters include -SharedKey, -IpsecPolicies, -UsePolicyBasedTrafficSelectors and -EnableBgp.

New-AzVirtualNetworkGatewayNatRule

Cmdlet in Az.Network that adds a NAT rule to a VPN gateway to cope with overlapping address spaces. IPsec/IKE parameters are not part of it.

New-AzVirtualNetworkGatewayPolicyGroup

Cmdlet in Az.Network that defines a point-to-site policy group, or user group, keyed on identity or certificate attributes.

New-AzVpnClientIpsecPolicy

Cmdlet in Az.Network producing a custom IPsec policy for point-to-site VPN clients. It is set on the gateway, not on a site-to-site connection.

New-AzWebApp

Cmdlet in Az.Websites for creating a web app. Supplying -SourceWebApp makes it a clone of an existing app.

New-MgInvitation

Invites a B2B guest, or resets redemption, by calling the invitations API from Microsoft Graph PowerShell; a common pattern loops it across the rows of a CSV.

New-MgUser

Cmdlet in Microsoft Graph PowerShell for creating internal member users; it never creates guests.

Next hop

For a destination you specify, returns the route table in use along with the next hop's type and IP. Only routing is checked.

Next hop type

Describes what a route forwards to. Options are Internet, Virtual network, Virtual network gateway, Virtual appliance (the private IP of an NVA or firewall) and None.

Next-token prediction

Step in a transformer where a probability distribution across the vocabulary is calculated, one token is chosen and added, and the process loops to generate the output.

NFS (Network File System)

Network File System, a file-sharing protocol from the Unix world, available on Azure Files, Azure NetApp Files and Blob Storage (as NFSv3).

NGINX

Open-source reverse proxy and web server underpinning the Ingress NGINX controller for AKS, which lacks Azure WAF. Upstream maintenance stopped in March 2026 and Gateway API succeeds it.

NIC (network interface card)

Network interface card, the network interface of a VM; NSGs can be associated with it.

NIST SP 800-53

Catalogue of security controls (Revision 5) from the US National Institute of Standards and Technology, offered in Defender for Cloud as a built-in regulatory standard.

NLP (natural language processing)

Natural language processing, workloads that make sense of text already written, for example detecting sentiment, extracting key phrases and entities, or classifying it.

No-code deployment

Azure Machine Learning itself supplies the scoring script and environment, so an MLflow model can go to a batch or online endpoint with neither written by you.

Node pool

AKS nodes grouped by a common OS and VM size. Applications run in user pools, while system pools carry CoreDNS and similar system pods; each pool has its own cluster autoscaler settings.

Non-applicable observations

Table in Defender EASM to which CVEs and other observations are moved once flagged as non-applicable, which drops them from dashboard counts; the change can be undone.

nonComplianceMessages (non-compliance messages)

Property on a policy assignment containing custom text shown on denial or non-compliance. It holds a default message and, for initiatives, messages aimed at individual policies via policyDefinitionReferenceId.

noneRouteTable (None route table)

Route table built into every Virtual WAN hub. A connection that propagates to it effectively propagates its routes to no table.

Normalized images (normalized_images)

Node of the enrichment tree (/document/normalized_images/*) containing images resized and rotated during document cracking. OCR, Image Analysis and file projections accept no other image input.

NoSQL (Cosmos DB API)

Document-oriented Cosmos DB API: data is JSON and queries use a dialect resembling SQL.

Not allowed resource types

Built-in Deny policy that prevents the resource types you list from being deployed by any route, including ARM templates.

NotActions

List in a role definition whose entries are removed from Actions, such as Microsoft.Authorization/* in the Contributor pattern. It is not a deny, so a different role can still grant those operations.

Notary Project

Set of cross-industry specifications and tools for signing OCI artifacts and verifying signatures. Azure Container Registry uses it in place of Docker Content Trust.

Notary v1

The signing approach underlying Docker Content Trust; Azure Container Registry has replaced it with Notary Project signing.

Notation

Command-line tool from the Notary Project for signing container images and verifying their signatures, drawing on certificates held in Azure Key Vault via a plug-in.

Notification Hubs

Azure service that pushes notifications to mobile devices. It is not intended for messages passed between services.

NPS (Network Policy Server)

Network Policy Server, the RADIUS server role in Windows Server. It often authenticates point-to-site VPN users against AD DS and hosts the NPS extension for Entra MFA.

NS controls (network security controls)

Within the Microsoft cloud security benchmark, the domain for network security, including NS-9 (connect privately), NS-8 (detect and disable insecure protocols) and NS-2 (secure cloud services using network controls).

NS record

Name-server record in DNS that delegates a zone; one is generated automatically at each zone's apex.

NSG (network security group)

Network security group, a set of stateful allow and deny rules that can be attached to a subnet or a NIC.

NSG diagnostic logging (NSG resource logs)

Turned on via a diagnostic setting attached to the NSG, it emits two categories, NetworkSecurityGroupRuleCounter and NetworkSecurityGroupEvent. NSG flow logs are a different feature.

NSG diagnostics

Tests a simulated flow against each applicable Virtual Network Manager security admin rule and NSG rule, then gives allow or deny with the deciding rule. Scale sets and ICMP are supported.

NSG flow logs

Records over time of traffic that NSGs allowed or denied. New ones have been blocked since 30 June 2025, VNet flow logs replace them, and they retire entirely on 30 September 2027.

NTANetAnalytics

Table in Log Analytics that receives Traffic Analytics output for virtual network flow logs, superseding AzureNetworkAnalytics_CL. Its field names carry no type suffix, for example FlowType.

NTFS (NT File System)

NT File System, the Windows file system; Azure Files honours its ACLs.

NTLM (NT LAN Manager)

NT LAN Manager, an older Windows challenge-response protocol available through Microsoft Entra Domain Services. Mounting Azure Files over SMB with a key relies on NTLMv2, so permitting Kerberos alone breaks such mounts.

Number matching

Feature of Authenticator push notifications requiring users to enter the number displayed on the sign-in screen. It is now mandatory for every push notification.

NVA (network virtual appliance)

Network virtual appliance, a VM from a third party acting as a firewall, router or other network device.

NVA in the hub (integrated NVA)

A partner appliance, whether SD-WAN, NGFW or both, placed straight into a Virtual WAN hub where it runs BGP with the hub router. Each hub can hold only one.

O

o-series

Reasoning models from OpenAI, namely o1, o3 and o4-mini, that think longer to tackle science, coding and maths problems. Azure has deprecated all of them, with retirement on 19 November 2026 and GPT-5.6 models as successors.

OATH token (OATH TOTP)

Generates time-based one-time codes, either in hardware or in an authenticator app. Since it is used with a password as a second factor, it does not count as passwordless.

OAuth 2.0

Standard authorisation protocol through which the Microsoft identity platform hands apps access tokens. In the client credentials flow, an app exchanges its client ID and client secret for a token.

Object detection

Vision technique that, for every instance of an object, gives back a label, a confidence score and bounding-box coordinates, making it possible to find and count several objects or classes in an image.

Object projection

Projection in a knowledge store that writes each complete enriched JSON document to a Blob container (configured with storageContainer and source), typically for data science use.

Object replication

Keeps a destination container in another storage account, in any region, asynchronously in step with a source container's block blobs. It works with GPv2 and premium block blob accounts, requiring versioning on both sides and change feed at the source.

Ocp-Apim-Subscription-Key (Foundry Tools)

Carries the key when calling a Foundry Tools resource such as Translator or Language. For Azure OpenAI REST calls, the key goes in api-key rather than this header.

Ocp-Apim-Subscription-Region

Header on Translator requests that names the region of the resource. It must be sent with multi-service or regional keys but may be omitted for a global Translator resource.

OCR (optical character recognition)

Optical character recognition. It reads handwritten or printed text from documents and images, making it available for analysis, something Azure Language cannot do with scanned images by itself.

OCR skill (OcrSkill)

Azure AI Search built-in skill that relies on Azure Vision Read to pull printed and handwritten text out of /document/normalized_images/*. The indexer must have imageAction configured.

OData filter (\$filter)

Query parameter in Azure AI Search that applies exact-match filters to filterable fields, written in OData syntax.

Office 365

See Microsoft 365.

OLAP (online analytical processing)

Online analytical processing, models built for aggregating data and slicing it in different ways; Azure Analysis Services is one example.

OLTP (online transaction processing)

Online transaction processing, workloads dominated by large numbers of small reads and writes, as handled by Azure SQL Database Hyperscale for instance.

On-behalf-of authentication (OBO)

Security Copilot relies on this OAuth flow so that a plugin never exceeds what the signed-in user may see. As a result, users need data roles too, Microsoft Sentinel Reader for example.

On-demand compliance scan

An Azure Policy evaluation you trigger yourself through the CLI, PowerShell or REST; the portal cannot start one.

On-premises data gateway

Connector that lets Power BI, Logic Apps and Power Apps reach data held on-premises. Azure Data Factory does not use it.

On-Premises Extended-Network Gateway

In Azure Extended Network, the VM appliance on the local side, running Windows Server 2019 or 2022 and connected to two subnets: one routable, the other the subnet being extended.

OneLake shortcut

A pointer in Microsoft Fabric that surfaces external data inside OneLake without making a copy.

Online deployment

The resources behind an online endpoint, namely model, environment, scoring script, instance type and instance count. One endpoint may contain several, for example blue and green.

Online endpoint (real-time endpoint)

HTTPS endpoint serving synchronous, low-latency predictions one request at a time, able to place multiple deployments behind a single scoring URI. It can be managed or Kubernetes-based.

Online endpoint autoscale

Azure Monitor rules on an online deployment that scale instance count up or down on a schedule or by metrics like CPU and request latency. It resolves timeouts that only show up under load.

OpenAI graders (Azure OpenAI graders)

Evaluators of four kinds, string check, text similarity, score model and label model, available both in Foundry evaluations and in the GitHub Action for evaluation.

OpenAPI tool (OpenApiTool)

With an OpenAPI 3 spec describing an external REST API, an agent can call that API through this tool. API-key authentication means declaring an apiKey scheme in securitySchemes and binding a project connection that stores the key.

OpenID Connect

Sits on top of OAuth 2.0 to handle user sign-in. It also underpins workload identity federation, through which GitHub Actions gets Azure tokens without keeping any secret.

OpenTelemetry (OTel)

Vendor-neutral standard for logs, metrics and traces. Application Insights in Azure Monitor and Foundry tracing both build on it, GenAI semantic conventions included.

OpenVPN (OpenVPN (SSL))

Only this point-to-site tunnel type can use Microsoft Entra ID authentication. It is TLS-based, runs on TCP 443 and has clients for Android, iOS, Linux, macOS and Windows.

OpenVPN Connect

OpenVPN client from a third party, in 2.x and 3.x versions, that can be used for certificate-authenticated OpenVPN point-to-site but cannot handle Microsoft Entra ID authentication.

Operation-Location

When Document Intelligence or Content Understanding handles a call asynchronously (202 Accepted for analyse, 201 for an analyser PUT), this header returns a URL to poll until Succeeded appears.

Operation-Location header

Asynchronous calls such as batch document translation or Read 3.2 (ReadAsync) return this header. Poll the operation ID inside it, using GetReadResultAsync for instance, until the result shows succeeded.

Operational backup

Blob protection in Azure Backup that brings a uniform retention policy to many storage accounts.

Opinion mining (aspect-based sentiment analysis)

Option within sentiment analysis that ties sentiment to particular targets, or aspects, in the text along with the assessments made of them.

Optional claims

Additional claims, such as ipaddr, included in tokens by configuring them on the Token configuration blade of an app registration or in optionalClaims within the manifest.

Origin

Host behind Front Door that serves the content, such as an App Service app, storage, a load balancer or any custom host given by FQDN. An App Service app counts as one origin regardless of its worker count.

Origin group

Collection of Front Door origins that share health probe and load-balancing settings (latency, priority and weight). Choosing an origin by path is never done at this level.

OS (operating system)

Operating system, which you manage yourself on IaaS VMs. PaaS offerings like App Service do not expose it.

OS disk

Each VM has one; it is a managed disk with the operating system on it (C: under Windows) and is kept when the VM is resized or redeployed.

OTEL_SERVICE_NAME

Environment variable in OpenTelemetry that fills the service.name resource attribute, which becomes the cloud role name and distinguishes services sending to the same Application Insights resource.

Out-of-Order Events

Stream Analytics metric for events that arrive in a different order from their event time. The event ordering policy either drops them or adjusts their timestamps.

Outbound endpoint

Endpoint of DNS Private Resolver, placed in a dedicated subnet, that forwards queries outside Azure as a forwarding ruleset directs. Having no listening IP, it cannot serve as a rule's destination.

Outbound rules

With a Standard Load Balancer, these define explicit outbound SNAT so backend pool VMs reach out via the frontend public IPs.

Output Events

Counts what a Stream Analytics job has emitted: the number of events delivered to its outputs.

Output field mappings (outputFieldMappings)

Skills create nodes in the enriched document; this indexer setting routes them into index fields. It runs after the skillset, and enriched content is only indexed when mapped here.

output_text

Shortcut property on a Responses API result containing the text the model generated.

outputType (Content Safety) (FourSeverityLevels, EightSeverityLevels)

Field in a Content Safety text analysis request choosing the severity scale: 0, 2, 4 or 6 with FourSeverityLevels (the default), or 0 through 7 with EightSeverityLevels. Image analysis always uses four levels.

OVA (Open Virtual Appliance)

Open Virtual Appliance, a VM packaged as a single file; the Azure Migrate appliance for VMware is shipped this way, for example.

OVF (Open Virtualization Format)

Short for Open Virtualization Format. VM templates are packaged to this open standard; one use is deploying Site Recovery appliances onto VMware vSphere.

OWASP (Open Web Application Security Project)

Short for Open Web Application Security Project. WAF rule sets are designed to block the critical web application risks this group lists in its OWASP Top 10.

OWASP Top 10 dashboard

Highlights which assets in Defender EASM are vulnerable to the top web application risks named by OWASP, such as injection or broken access control.

Owner

Built-in Azure role with full management of every resource plus the right to give others access.

P

P1 / P2

See Entra ID P1.

P2SDiagnosticLog

Resource log on a VPN Gateway recording connection and authentication events for point-to-site clients.

PaaS (platform as a service)

Platform as a service, managed offerings such as Azure SQL Database and App Service in which the provider looks after the infrastructure and operating system.

Packet capture

Network Watcher feature that records a VM's traffic, filtered by 5-tuple and bounded by a time limit (18,000 seconds, or 5 hours, by default). It depends on the Network Watcher Agent extension.

Page blob

Used to store VM disks (VHDs), this blob type is made of 512-byte pages, allows random reads and writes and grows up to 8 TiB. Cool and Archive tiers do not apply to it.

Paired region

A region linked with another in the same geography so updates are rolled out in sequence and recovery is prioritised. It is the typical disaster recovery target, though pairing does not trigger failover automatically.

Parallel indexing

Runs several indexers at once, one per partition of the content (a container or virtual folder), each with a dedicated data source but sharing one skillset and target index. Concurrency is capped at about one indexer job per search unit.

Parameters (ARM template)

Section of an ARM template whose values are given or overridden at deploy time, through a parameter file or inline. Variables cannot change this way; changing them means editing the template.

Parent firewall policy (base policy)

Base Azure Firewall policy inherited by child policies. NAT rules do not flow down, network and application rule collections from the parent always override the child's, and firewalls in any region can use it.

Parquet

Columnar file format, open source and aimed at analytics. Event Hubs Capture cannot produce it natively.

Partner solutions (Azure Native Integrations)

Lets a diagnostic setting stream logs via Azure Native Integrations to external monitoring tools such as Elastic or Datadog.

Partner-built agent

Agent for Security Copilot obtained from a partner in the Security Store. Should it need permissions on Microsoft product data, setup by an owner or contributor can only finish after a Global Administrator approves them.

Pass-through Authentication (PTA)

Sign-in option in Microsoft Entra Connect where agents running on-premises, using outbound port 443 only, check passwords against AD. No password hashes are kept in the cloud.

Password hash sync

Sign-in option in Microsoft Entra Connect that copies password hashes to the cloud, so Microsoft Entra ID itself handles authentication and lockout.

Password-based SSO

Single sign-on for apps that do not integrate with any identity provider: Microsoft Entra ID holds the credentials and My Apps types them in.

Passwordless phone sign-in

Mode of Microsoft Authenticator, switched on for a target group in the Authentication methods policy, that lets users sign in with no password.

Past messages included (conversation history)

Playground control deciding how much earlier conversation travels with each request. A larger number adds context at the cost of extra tokens.

Path-based routing

See URL path-based routing.

PBS (Portable Batch System)

Portable Batch System. Azure CycleCloud can run this HPC job scheduler, in its PBS Pro form.

PCI DSS (Payment Card Industry Data Security Standard)

Payment Card Industry Data Security Standard, which governs how cardholder data is protected. Defender for Cloud includes it in its regulatory compliance dashboard.

Peering location

Where, physically, an ExpressRoute circuit meets the Microsoft edge. Circuits cannot be pinned to availability zones, so stacking several at one location adds no zone resilience.

Peering Service

Optimised internet routing between an ISP and Microsoft. It neither assigns private IPs to PaaS resources nor makes access to them private.

PEM

Text certificate format encoded in Base64. Key Vault accepts it for import, but App Service does not, so it must first be converted to PFX.

Per-site WAF policy

WAF policy attached to a specific HTTP listener on Application Gateway, taking precedence over the gateway's global policy for that site alone.

Per-user MFA (legacy per-user multifactor authentication)

Older MFA model with per-user states of Disabled, Enabled or Enforced, administered outside Conditional Access. Conditional Access can demand MFA regardless of these states.

Perf

Performance counters collected from machines, LogicalDisk Free Megabytes for example, land in this Log Analytics table, which log search alerts can query.

Performance (routing)

Routing method in Traffic Manager that directs users to whichever endpoint offers the lowest latency.

Performance Monitor (perfmon)

Built into Windows, perfmon uses Data Collector Sets to log event traces and performance counters. It cannot look inside network packets.

Performance tier (Standard / Premium)

Choice made when a storage account is created and not changeable afterwards: Standard (HDD-based GPv2) or Premium (SSD) for latency and throughput. To cut costs for cold data, change the access tier instead.

Performance-based assessment

Rather than copying on-premises allocations, this Azure Migrate assessment uses recorded CPU, RAM, IOPS and throughput data to recommend disk types and Azure VM sizes.

Permanent delete

Option in Blob Storage for purging blobs and versions that are in a soft-deleted state.

Personal access token (GitHub) (PAT)

Token for authenticating against GitHub's own APIs. Workflows should not use it to sign in to Azure; the Azure Login action with OpenID Connect is the right approach.

PF_DISABLE_TRACING

Environment variable governing tracing in prompt flow, which is disabled unless changed. Setting it to false reveals the Trace tab, showing duration and token cost for each node.

PFS group (Perfect Forward Secrecy group)

Perfect Forward Secrecy group, the Diffie-Hellman group applied in IPsec Quick Mode (Phase 2). A frequent reason for tunnels failing on policy mismatch is PFS being on at one end only.

PFX (PKCS #12)

PKCS #12 file, protected by a password, bundling a certificate with its private key and chain. App Service accepts no other format for private certificate uploads, and it is used to install client certificates for certificate-based point-to-site VPN.

pgAudit

Extension for PostgreSQL that produces audit logs in Azure Database for PostgreSQL. Unlike Defender plan alerts, any alerting on its output has to be set up separately.

Phi models (Phi-4, Phi-4-mini)

Microsoft's line of small language models suited to narrow, inexpensive tasks, including Phi-4-mini-instruct, Phi-4-multimodal-instruct and Phi-4-reasoning. The newer Phi-4 models supersede Phi-3.

Phi-3-mini (Phi-3-mini-128k-instruct)

Small language model from Microsoft supporting a context of up to 128k tokens, with a 4k version as well. It has been retired and Phi-4-mini-instruct succeeds it.

Phishing Triage Agent

Security Copilot agent within the Defender portal that sorts phishing alerts reported by users. Setting it up, pausing or removing it requires Security Administrator.

PHS (password hash synchronization)

See Password hash sync.

PII detection (personally identifiable information detection)

Prebuilt Azure Language capability that finds entities such as Person, PhoneNumber, Email and Address and gives back the text with them masked. It is not a tool for moderating harmful content.

PII guardrail (personal data filter)

In Foundry, a guardrail that finds personal data such as phone numbers, emails or names in a model's response and, per category, blocks, redacts or annotates it.

PIM

See Privileged Identity Management.

PIM activation

How a user with an eligible PIM assignment gets the role active for a limited time. The person asking can never be the one who approves it.

PIM alerts

Security warnings raised by PIM, for example about roles assigned outside PIM or privileged accounts that may be stale (by default, no password change for 90 days).

PIM role settings

Configured role by role in PIM: how long activation may last, whether MFA, a justification, ticket information or approval is required, how long assignments last, and who is notified.

PKI (public key infrastructure)

Public key infrastructure, the certificate authorities and procedures that issue certificates. Certificate-based authentication cannot work without it.

Placement group

Scale set grouping that acts as an implicit availability set (five fault domains, five update domains) and is capped at 100 VMs. Setting singlePlacementGroup to false allows as many as 1,000.

Platform metrics

Numeric metrics that all Azure resources produce automatically every minute, needing no setup and costing nothing. Counters from the guest OS are excluded and require an agent.

Playbook

Response automation for Microsoft Sentinel built as a Logic Apps workflow, triggered manually or by an automation rule to do things like block IPs, open tickets or assign incidents. Launching one directly from an analytics rule is retired.

Pod CIDR

With kubenet networking, AKS carves a /24 out of this address range for the pods on every node; unless changed, the range is 10.244.0.0/16.

Point-in-time restore

Lets you wind block blobs in a general-purpose v2 account back to how they were at an earlier moment. Before it works, soft delete, blob versioning and the change feed all have to be on.

Point-to-site VPN (P2S)

Connection type in which single client machines, rather than whole sites, tunnel into an Azure virtual network gateway. App Service gateway-required VNet integration relies on it too.

Policy assignment

What makes a policy definition or initiative take effect: it targets a management group, subscription or resource group, supplies parameter values, exclusions, an enforcement mode and non-compliance messages, and starts a compliance scan.

Policy definition

A JSON rule expressing a compliance condition as if/then logic with an effect, plus parameters and metadata. Nothing happens until it is assigned, and the category it carries is purely metadata.

Policy exclusions (Policy)

Scopes listed in notScopes that carve parts out of a policy assignment so they are not evaluated. Exclusions can only shrink the assigned scope, never widen it.

Policy-based traffic selectors (UsePolicyBasedTrafficSelectors)

Per-connection option allowing a route-based VPN gateway to work with policy-based devices on-premises. You must also define a custom IPsec/IKE policy, and IKEv2 support on the device is mandatory.

Policy-based VPN

Rather than routing any-to-any, this kind of VPN matches fixed prefix pairs as static traffic selectors. Because BGP, point-to-site and transit are unsupported, route-based gateways connect to such devices by enabling policy-based traffic selectors.

PolyBase

Way of loading data into Azure Synapse Analytics by querying external tables. The COPY statement is the faster alternative.

POP (point of presence)

A point at the edge of Microsoft's global network through which traffic enters or exits it.

POSIX (Portable Operating System Interface)

Family of Unix standards; Azure Data Lake Storage Gen2 bases its access control list permission model on it.

POSIX-style ACLs

In Azure Data Lake Storage Gen2, permissions on folders and files that are set separately for the owner, the owning group and everyone else.

PostgreSQL (Cosmos DB API, Citus)

Short for Azure Cosmos DB for PostgreSQL, a Citus-based distributed relational service that scales writes out horizontally. New projects are steered away from it towards Azure Database for PostgreSQL elastic clusters.

Power BI

Microsoft's analytics and reporting service. It reaches data held on-premises through the on-premises data gateway.

Power Fx

Low-code formula language, similar to Excel, used in Foundry workflows. Each variable takes a Local. or System. scope prefix; IsBlank checks a value, IsEmpty checks a table and Upper() converts text to capitals.

PPG

See Proximity placement group.

Prebuilt analyzer

Any Content Understanding analyzer supplied ready to use, for example prebuilt-read, prebuilt-layout, prebuilt-invoice, prebuilt-audioSearch or prebuilt-callCenter. Additional fields can be added to customise one.

prebuilt-audio

Base Content Understanding analyzer for audio. Before any fields are extracted, it produces a WebVTT transcript with speakers separated by diarization.

prebuilt-audioSearch

Ready-made audio analyzer in Content Understanding whose output is a transcript separated by speaker together with a single-paragraph summary of the conversation.

prebuilt-callCenter

Ready-made analyzer in Content Understanding for post-call analysis. It returns a role-labelled transcript of the call together with its summary, sentiment, topics and categories and the companies and people mentioned.

prebuilt-document

Base analyzer in Content Understanding for forms, Office files and PDFs, scanned ones included. The OCR and layout analyzers are built on top of it.

prebuilt-documentFieldSchema

Utility analyzer in Content Understanding that looks at a document and suggests a field schema for it.

prebuilt-documentSearch

Retrieval-oriented Content Understanding analyzer that uses generative models to turn a document into Markdown paragraphs, tables and figure descriptions, plus a summary.

prebuilt-image

Base analyzer in Content Understanding for still images. PDFs are rejected and must go to a document analyzer instead.

prebuilt-invoice

Content Understanding analyzer specialised for invoices: it returns their fields, line items among them, in structured form.

prebuilt-layout

Extraction analyzer in Content Understanding that layers layout detection (sections, paragraphs, tables, figures) on top of OCR. It does not need a language model.

prebuilt-read

Extraction analyzer in Content Understanding that performs OCR on words, paragraphs, formulas and barcodes but ignores layout. Running it synchronously is available only in preview.

prebuilt-video

Base video analyzer in Content Understanding. It extracts the transcript, shots and keyframes, and can split the footage into scenes.

Premium (Functions plan)

Hosting plan for Azure Functions that keeps instances pre-warmed to avoid cold starts and supports VNet integration. Executions time out after 30 minutes by default, which host.json can extend.

Premium Azure Files

File shares on FileStorage accounts backed by SSDs, giving latency in single-digit milliseconds for transaction-heavy work. Only LRS and ZRS are offered, so geo-redundancy is unavailable.

Premium page blob (Premium StorageV2)

Storage account flavour (kind StorageV2, SKU Premium_LRS) that holds page blobs exclusively. It supports LRS only, has no access tiers and cannot be converted to ZRS.

Premium SSD

Managed disk type on solid-state storage aimed at production and IO-heavy work, such as SQL Server data and log files. For example, a P50 gives 7,500 IOPS and a P60 gives 16,000.

Premium SSD ZRS

Variant of Premium SSD that writes synchronously to three availability zones so the disk survives the loss of a datacentre. Ultra Disk and Premium SSD v2 do not offer it.

Presence penalty (presence_penalty)

Setting between -2.0 and 2.0 applied at inference that penalises tokens which have already appeared at all. Raising it above zero encourages the model to move on to new topics.

Prevention mode

Web application firewall setting in which requests that match a custom or managed rule are both logged and blocked.

Primary Refresh Token (PRT)

Microsoft Entra registered and joined devices hold this token, which gives users seamless single sign-on to apps integrated with Entra.

Priority (routing)

Routing method in Traffic Manager for active/passive failover: traffic goes to whichever healthy endpoint has the highest priority.

Privacy and security principle

Responsible AI principle requiring that business and personal data be protected through notice, consent and limited access. Handling unusual inputs belongs instead to reliability and safety.

Private Application Gateway deployment (private-only frontend)

An Application Gateway v2 whose only frontend is a private IP, with no public IP resource attached. Without a public frontend, the NSG no longer has to allow GatewayManager traffic in or Internet traffic out.

Private cluster (AKS private cluster)

AKS cluster in which the API server gets a private IP only. Turning it on for an existing cluster means rebuilding it; private DNS and network connectivity are required, and Microsoft-hosted DevOps agents cannot connect.

Private DNS zone

A zone in Azure DNS for private records (A records, for example), linked to VNets. Because only 168.63.129.16 resolves it, clients on-premises must go through a DNS forwarder or Azure DNS Private Resolver.

Private DNS Zone Contributor

Built-in Azure role that can manage private DNS zones yet has no rights over virtual networks. Linking a zone to a VNet therefore also requires virtualNetworks/join/action granted on that network.

Private DNS zone group (DNS zone group)

Child resource of a private endpoint that associates it with as many as five private DNS zones, so its A records are created, updated and removed automatically.

Private endpoint

A network interface in your subnet whose private IP leads, through Private Link, to a single instance of a service. Peered VNets and on-premises networks (via ExpressRoute or VPN) can use it, after which public access can be switched off.

Private endpoint connection

Kept on the target resource, this record tracks a private endpoint's approval state: Pending, Approved, Rejected or Disconnected. Requests from someone without permission on the resource (another tenant, say) wait as Pending for the owner's approval.

Private endpoint DNS zone (privatelink zone)

Each service has its own private DNS zone where private endpoints register, for example privatelink.blob.core.windows.net (Blob), privatelink.database.windows.net (SQL), privatelink.documents.azure.com (Cosmos DB) or privatelink.azurewebsites.net (App Service).

Private endpoint network policies (PrivateEndpointNetworkPolicies)

Subnet property that is Disabled by default and can be set to NetworkSecurityGroupEnabled, RouteTableEnabled or Enabled. NSGs and UDRs only affect private endpoint traffic once it is on; delegating the subnet does not achieve this.

Private peering (Azure private peering)

The ExpressRoute routing domain for reaching Azure VNets from on-premises networks over private addressing. Unless IPsec or MACsec is layered on, the traffic travels unencrypted.

Private subnet

Subnet in which default outbound access is off. Internet access for its VMs must come from a public IP, a NAT gateway or Standard Load Balancer outbound rules.

privatelink.vaultcore.azure.net

Zone used by Key Vault private endpoints. Unless it exists and is linked to the VNet, a lookup of the vault name returns the public IP rather than the private one.

Privileged Authentication Administrator

Role in Microsoft Entra able to manage authentication methods, such as issuing a Temporary Access Pass, for every user, Global Administrators included.

Privileged Identity Management (PIM)

Capability in Microsoft Entra ID P2 that activates privileged roles just in time and for limited periods, with approval, justification and an audit trail.

Privileged Role Administrator

Entra role whose holders can consent for the whole organisation to any permission, Graph application permissions included. It also looks after PIM, administrative units, role-assignable groups and the assignment of Entra roles.

Professional voice fine-tuning (custom neural voice Pro)

Azure Speech feature with limited access, created in Speech Studio or the Foundry portal, that builds a bespoke brand voice from the recordings and consent statement of a consenting voice talent.

Project connection (Foundry connection, connected resource)

In a Foundry project, a shared record of how to reach an outside resource such as Bing, Storage or Azure AI Search: its endpoint and an API key or keyless Entra ID authentication. Apps and agents cite it by connection ID.

Projection group

A single entry in a knowledge store's projections array that groups related table, object and file projections. Several projections within one entry still count as just one group.

Prompt agent

Foundry agent defined declaratively as a model, instructions and a set of tools; Foundry hosts and runs it, so there is no code or container to look after.

Prompt engineering

The practice of writing prompts, system messages and examples that guide what a model produces, leaving its weights untouched.

Prompt flow

Tool in Foundry and Azure Machine Learning for assembling LLM applications as graphs of nodes (LLM, prompt and Python tools), with variants and evaluation. Microsoft Agent Framework is replacing it as it is retired.

Prompt Shields

Guardrail available in Azure AI Content Safety and Foundry for catching adversarial input. It covers jailbreaks in user prompts as well as document attacks buried in third-party content like tool responses.

Prompt Shields for documents (document attack, indirect attack, XPIA)

Prompt Shields check that defends against indirect (cross-prompt) injection by scanning third-party material, such as emails, grounding data, OCR text or tool output, for planted instructions.

Prompt Shields for user prompts (user prompt attack, jailbreak)

The Prompt Shields check for direct attacks within the user's input, such as attempts to change rules, role-play personas, mocked-up conversations and encoding tricks. Documents and images are not scanned.

PromptAgentDefinition

Object in the Foundry SDK describing a prompt agent's model, instructions and tools (a memory search tool, for instance); you pass it to agents.create_version.

Prompty (.prompty)

A file format, open and from Microsoft, that captures an LLM prompt as a template beneath front matter specifying the model and its parameters, so prompts can live under version control in Git.

Propagation

Setting on a Virtual WAN hub connection naming which route tables or labels receive the connection's prefixes.

Protected material detection

Azure AI Content Safety check, English only, that compares what a model writes with known protected content: copyrighted lyrics, recipes, articles and chosen web text, plus code taken from public GitHub repositories.

Protected material evaluator (ProtectedMaterialEvaluator)

Evaluator in the risk and safety family that flags copyrighted or similarly protected text, for instance articles, recipes or song lyrics, appearing in what a model returns.

Protocol settings (Azure Files) (SMB security settings)

Security options for Azure Files SMB shares that limit which SMB versions (say, only 3.1.1), authentication methods (Kerberos, NTLMv2), channel encryption and Kerberos ticket encryption are accepted.

Provider status (ServiceProviderProvisioningState)

State of an ExpressRoute circuit as reported by the connectivity provider: Not provisioned, Provisioning or Provisioned. Peering can be set up only once it reads Provisioned.

Provisioned throughput (PTU, provisioned throughput units)

Deployment option that reserves model capacity for you in provisioned throughput units (PTUs) to give predictable latency and throughput. The capacity is charged by the hour regardless of usage.

Provisioned-managed Utilization (Provisioned Utilization)

Metric in Azure OpenAI giving the share of a provisioned deployment's capacity currently consumed. Once it passes 100%, requests get 429 responses.

Proximity placement group

Logical container that places Azure compute resources physically near one another to cut latency. A scale set or VM can join one only if it is in the same region.

PRT

See Primary Refresh Token.

PTR record

DNS record used for reverse lookups, resolving an IP address back to a name. Private DNS zone autoregistration does not create these.

Public access level (anonymous read access)

Setting on a blob container that permits anonymous reads without authentication. It governs anonymous reading alone and has no effect on authorised access.

Public DNS zone

Hosts a domain's internet-facing records in Azure DNS. It answers authoritatively only after the registrar delegates to the zone's four Azure name servers via NS records; autoregistration of VMs is not supported.

Public IP address

Resource in Azure for an IPv4 or IPv6 address routable on the internet, attached to a NIC, firewall, gateway, load balancer or Bastion host. Allocation, zone support and default security depend on its SKU.

Public IP address prefix (public IP prefix)

A block of contiguous Standard static public IPs held in reserve, by default as large as /28, from which a NAT gateway or load balancer outbound rule can draw extra addresses.

Public IP prefix

See Public IP address prefix.

Public IP SKU upgrade

One-way, in-place move of a public IP from Basic to Standard that retains the address. The Basic IP must be static and detached from every resource first, and then reattached once upgraded.

Public load balancer

Load balancer handling internet-facing traffic at Layer 4 through a public frontend IP. With the Standard SKU, its public IPs must be Standard SKU too.

Public network access

Setting on resources such as storage accounts or Azure Machine Learning workspaces that controls just the public endpoint: open to all networks, limited to selected ones, or off. Turning it off leaves private endpoints working.

Publish-AzVMDscConfiguration

Cmdlet in Az.Compute that bundles a DSC script and puts it into Blob storage, ready for Set-AzVMDscExtension. It does not itself configure any VM.

Pull request (PR)

In Azure Repos or GitHub, a proposal to merge one branch into another, at which point reviewers and branch policies or protection rules come into play.

Purchase reservations

Portal blade where you can see how much a reservation would save before buying it. Azure Advisor, by contrast, suggests reservations from historical usage.

Purge protection

Once switched on, this Key Vault option cannot be turned off; it prevents the vault or its objects being permanently deleted until the soft-delete retention period has elapsed, and needs soft delete enabled.

Push API (push model)

Approach in which your own code sends JSON documents into a search index, from any source, in batches of at most 1,000 documents or 16 MB. Useful where no indexer supports the source, though skillsets cannot run.

Q

QAEvaluator

All-in-one evaluator returning F1, similarity, fluency, coherence, relevance and groundedness scores together. You must pass in context and a ground truth for it to run.

Queue Storage

Service in Azure Storage offering basic message queues. Each message can be up to 64 KB, ordering is not guaranteed and AzCopy has no support for them.

R

RA-GRS (read-access geo-redundant storage)

Geo-redundant storage with an extra read-only endpoint in the secondary region that can be read from without a failover.

RADIUS

See RADIUS authentication.

RADIUS authentication (Remote Authentication Dial-In User Service)

Way of authenticating point-to-site VPN users where the gateway passes credentials on to a RADIUS server, NPS for example, which validates them against on-premises AD DS.

RAG (retrieval augmented generation)

Technique for answering from private or recent information: relevant content is fetched from your own data, typically a search index, and inserted into the prompt as grounding so the model can respond with citations.

Randomized encryption

Always Encrypted option where encrypting the same value gives new ciphertext every time. It is stronger than deterministic encryption, but the column can no longer be searched, grouped, joined or indexed.

Rate limiting (WAF)

A kind of custom WAF rule that blocks or throttles any client going over a set number of requests, and can be combined with conditions such as geo-match. Managed rule sets offer nothing equivalent.

rate-limit-by-key

Policy in API Management that limits call rates per key, such as a subscription or client IP, and answers excess calls with 429. Callers are not authenticated by it.

RBAC (role-based access control)

Short for role-based access control: Azure role assignments, inherited downward through scopes, that decide who may perform which actions on resources. Resource location and size are outside its control.

RC4-HMAC

An older encryption type for Kerberos tickets. Azure Files lets you permit or block it, next to AES-256, in its SMB security settings.

RDMA (remote direct memory access)

Short for remote direct memory access: the lowest-latency networking in Azure, running over InfiniBand on HPC VM sizes whose names include an "r".

RDP (Remote Desktop Protocol)

Remote Desktop Protocol, which Windows uses for remote sessions over port 3389; through Azure Bastion it travels inside TLS on 443 instead.

Read (OCR) (Read API)

OCR engine in Azure Vision returning handwritten and printed text along with its position and confidence. Text-heavy documents are better handled by Content Understanding or Document Intelligence.

Read model (prebuilt-read)

OCR model in Document Intelligence (prebuilt-read) limited to extracting handwritten and printed text, lines, words and languages. It underpins the other models and suits scans that are mostly text.

Read scale-out

On Premium or Business Critical tiers of Azure SQL, sends read-only connections to a readable secondary replica; there is no load balancing.

Reader

Built-in Azure role for viewing resources only: it cannot modify or use them, for example by joining or associating them, and gives no keys or data access.

Reader and Data Access

Storage role allowing a user to see storage accounts and retrieve their access keys (listKeys and ListAccountSas) so data can be read with Shared Key. Regenerating keys is not permitted.

readFileBackupSemantics (Microsoft.Storage/storageAccounts/fileServices/readFileBackupSemantics/action)

Data action in Azure Files required by callers using OAuth over REST, paired with writeFileBackupSemantics for writing. It is included only in the SMB Admin roles and the Storage File Data Privileged roles.

ReadOnly (ReadOnly lock)

Lock level for resources preventing modification and deletion; placed on the source or destination resource group or subscription, it also prevents moves.

Real User Measurements (RUM)

Traffic Manager option where a JavaScript snippet in client pages measures latency to Azure regions and feeds the results into the latency table, which only Performance routing consults.

Real-time transcription

Speech to text mode that converts streamed audio, from a microphone or file, into text as it is recognised, with interim results along the way. Typical uses are voice input and live captioning.

Reasoning model

Kind of model, for instance the o-series or GPT-5 series, that produces hidden reasoning tokens before its answer. Temperature, top_p and penalty parameters are unsupported, and max_completion_tokens sets output length.

Receipt model (prebuilt-receipt)

Ready-made Document Intelligence model, prebuilt-receipt, for sales receipts; it returns fields like the merchant's name, date of the transaction, tax and the total.

recognize_once() (recognize_once_async())

Single-shot recognition call on the Speech SDK's SpeechRecognizer. It returns one utterance, stopping at silence or a time limit of around 15 to 30 seconds, which makes it good for short commands.

Recovery plans

Azure Site Recovery capability for automating failover, covering the grouping and sequence of machines and any scripts.

Recovery point (restore point)

Point-in-time copy of backed-up data. One exists only where a backup actually ran, and it counts once even if several retention tiers apply to it.

Recovery Services vault

Where Azure Backup and Site Recovery keep their data; it offers soft delete, immutability and multi-user authorisation, but is the wrong choice for cheaply archiving files you already have.

Redeploy

VM operation that relocates the machine to another host in Azure, keeping its OS disk, data disks and configuration while wiping whatever is on the temporary disk.

Redirect URI (reply URL)

Address to which Microsoft Entra ID returns tokens once a user has signed in, set in the Authentication settings of the app registration.

Redundancy conversion (live migration)

Changing a storage account's redundancy, LRS to ZRS for example, without downtime, started by the customer or by support in regions that allow it. Accounts on general-purpose v1 need upgrading beforehand.

Reference data (model monitoring) (baseline)

Baseline that a model monitoring signal compares against: either training or validation data, or recent production data. For data drift, training data is the recommended choice.

reference()

Function in ARM templates that fetches a resource's runtime state and implies a dependency on it. It cannot be used to supply a resource ID to dependsOn.

Reflection (self-critique)

Pattern in which, before replying, a draft is checked against its sources by the model or an evaluator, gaps are noted and the draft is revised.

regenerateKey (az cognitiveservices account keys regenerate)

Management operation resetting just one named key, Key1 or Key2, on a Foundry Tools account so that clients can switch to the other key and rotation causes no downtime. Key Vault is not updated by it.

Regional endpoint (Foundry Tools)

Endpoint shared by everyone in a region, for example eastus.api.cognitive.microsoft.com. Keys work with it, but Microsoft Entra ID authentication requires a custom subdomain instead.

Regional service tag

Adding a region suffix to a service tag, as in Storage.WestUS or Sql.EastUS, limits it to that region; the plain tag includes every region of the cloud.

Regional VNet integration

From the Basic tier up, App Service can send outbound traffic into a VNet by way of a subnet delegated to Microsoft.Web/serverFarms. Reaching the app privately from inside, though, calls for a private endpoint.

Regional WAF policy (Regional WAF (Application Gateway))

Kind of WAF policy used with Application Gateway, created in the same region as the gateway and applied to the whole gateway, a listener or a path. You can create it before the gateway.

Registered model (model asset)

A versioned model asset in Azure Machine Learning, typed as custom_model, mlflow_model or triton_model, with tags and lineage to the producing job. Registering under the same name again increments the version automatically.

Registration virtual network

VNet whose link to a private DNS zone has autoregistration turned on. A single zone may have many such VNets, yet each VNet registers in just one zone, with any further links limited to resolution.

Regression

Predictive, rather than generative, supervised learning technique that outputs a number, for example rentals or revenue.

Regulatory compliance dashboard

Page in Microsoft Defender for Cloud showing how resources measure up against standards like PCI DSS and ISO 27001. It is purely a report and enforces nothing.

Regulatory compliance standard

Defender for Cloud lets you add built-in frameworks, ISO 27001, CIS, NIST SP 800-53 or AWS Foundational Security Best Practices among them. Each is applied as an assignment of a policy initiative, so Owner or Resource Policy Contributor rights are needed.

Relevance evaluator (RelevanceEvaluator)

Evaluator for RAG output that judges, from the query and response alone, how directly and accurately the answer deals with what the user asked.

Reliability and safety principle

Responsible AI principle requiring AI to behave as designed under varied conditions, cope safely with missing or unusual input and withstand manipulation.

Remediation task

Brings existing non-compliant resources into line under a Modify or DeployIfNotExists policy assignment, acting through the managed identity of that assignment.

RemoteAddr

Match variable in WAF rules representing the client's original IP, generally read from X-Forwarded-For, and paired with the IPMatch or GeoMatch operators.

Replace existing (restore option) (replace disks)

Way of restoring an Azure VM by swapping its OS and data disks for those in the recovery point. Settings such as VM size survive, but anything written since the backup is lost.

Report-only (report-only mode)

Conditional Access state in which a policy is evaluated and its outcome logged, but not enforced.

Reports Reader

Entra role able to read audit and sign-in reports. Because the administrator SSPR policy does not cover it, those holding it are subject to the ordinary user SSPR policy.

Request (HTTP) trigger

Trigger in Logic Apps that fires when an HTTP request or webhook call arrives.

Request Latency (RequestLatency (P50, P90, P95, P99))

Metric in Azure Monitor for online endpoints giving response time in milliseconds, with percentile breakdowns from P50 to P99.

Request routing rule

Decides where traffic arriving on an Application Gateway listener goes. A basic rule forwards it to one backend pool with set backend settings; a path-based rule picks the pool from a URL path map.

RequestHeader (match variable)

Match variable for WAF custom rules that examines a particular request header by name, such as X-Azure-FDID.

RequestResponse log

Log category on Azure OpenAI resources that records each request with its latency and status code. Administrative operations go to Audit logs, and detailed inference traces to Trace logs.

Requests Per Minute (RequestsPerMinute)

Metric in Azure Monitor counting, per minute, the requests reaching an online endpoint or deployment. When it climbs in step with latency, the deployment is saturating.

Require app protection policy

Grant in Conditional Access that is met only when an Intune app protection policy applies to the client app. If the policy uses Require one of the selected controls, this grant can be satisfied in place of MFA.

Require approved client app

Conditional Access grant that only lets approved client apps in, meaning those that support modern authentication and are Intune-aware. It is commonly offered as an alternative to MFA by choosing Require one of the selected controls.

Require device to be marked as compliant

Conditional Access grant control that only lets in devices Intune deems compliant. Note it is a grant control rather than a condition; device platform is a condition.

Requires Investigation (Defender EASM asset state)

State in Defender EASM, assigned on the basis of Microsoft's confidence scores, marking an asset whose categorisation needs a person to review it.

Reset a connection (connection reset)

Resets and restores a single VPN gateway connection, leaving the gateway itself running. It is the gentlest thing to try first when only one tunnel has failed.

Reset a VPN gateway

Reboots the gateway's instances and reapplies its configuration, so all tunnels drop for a short time. Routes on point-to-site clients are not refreshed by it.

Reset redemption status

Sends a fresh invitation to a guest, for instance when their sign-in email has changed, while preserving their object ID, group memberships and app assignments. Their UPN stays the same.

Resource Graph

Azure service for running fast KQL queries across subscriptions to explore and inventory resources, including their change history. Grouping resources and assigning or deploying policy are beyond it.

Resource group (RG)

Container for Azure resources. Its location holds only metadata and cannot be changed afterwards, and one resource group cannot sit inside another.

Resource Guard

Keeps, in a resource of its own, the permissions demanded by multi-user authorisation before sensitive backup vault operations can go ahead; putting it in another subscription or tenant is recommended.

Resource locks

Locks, at ReadOnly or CanNotDelete level, that stop management-plane changes. They place no limits on where resources go or how large they are, and data-plane work such as blob reads and writes carries on regardless.

Resource logs

Platform logs, specific to each resource, describing operations within it. Nothing is gathered or kept until a diagnostic setting sends them to a destination.

Resource owner password (grant)

Legacy OAuth grant, abbreviated ROPC, where the application itself gathers the user's password and submits it.

Resource Policy Contributor

Role able to author and assign policy and initiative definitions, which is needed, for instance, to add a standard in Defender for Cloud. Contributor cannot do this because it lacks policyDefinitions/write.

Resource provider

Service offering Azure resource types within a namespace, for example Microsoft.Network or Microsoft.Compute. Role actions take the form namespace/resourceType/operation.

Resource selectors

Property on a policy assignment that limits evaluation to particular resource types or locations, such as just VMs located in East US.

Resource-specific tables

Mode for a diagnostic setting's destination in which every log category gets a dedicated table, such as AZFWNetworkRule for Azure Firewall, rather than everything landing in AzureDiagnostics.

resourceId()

Function in ARM templates returning the unique identifier of a resource. If no subscription or resource group is passed, it assumes the resource group targeted by the deployment.

ResponderOnly

Mode for a VPN connection where Azure's gateway only responds to the peer and never starts the tunnel itself. It does not give compatibility with policy-based devices.

Response compaction (responses.compact)

Operation in the Responses API that condenses the context of a lengthy conversation into compaction items, leaving room in the context window for further turns.

Response Completeness evaluator

Evaluator in preview for RAG scenarios: it asks whether the answer contains the essential facts from the ground truth, so it measures recall, complementing groundedness, which measures precision.

Responses API

API in Foundry and Azure OpenAI that accepts an input array of messages and content items, for instance input_text and input_image, and produces output items; response.output_text holds the text.

Responsible AI (RAI)

A way of building, evaluating and deploying AI so that it is safe, ethical and trustworthy, carrying on after release through monitoring in production.

Responsible AI dashboard (RAI dashboard)

Interface in Azure Machine Learning that brings together error analysis, fairness, interpretability, data analysis and counterfactual and causal analysis, helping you debug and assess a model ahead of deployment.

REST (representational state transfer)

Short for representational state transfer, the style of HTTP API that Azure services expose.

Restrict access to Microsoft Entra administration portal

Entra user setting that simply hides admin centre pages from users who are not administrators. It provides no security, as PowerShell, Microsoft Graph and other tools remain usable.

ResultReason

Enumeration on Speech SDK results. Success is RecognizedSpeech or TranslatedSpeech, NoMatch means no speech was recognised, RecognizingSpeech and TranslatingSpeech flag interim results, and Canceled indicates an error.

retry-after-ms

Header returned by Azure OpenAI with a 429 response, stating how long to wait before trying again. Where it is missing, fall back to exponential backoff with jitter.

Rewrite rules (Application Gateway header and URL rewrite)

Application Gateway v2 rules for changing URLs and request or response headers. Redirects, and 4xx or 5xx responses produced by the gateway itself, are unaffected.

Rewrite set

A named bundle of rewrite rules on Application Gateway v2. Its rules can insert, alter or strip headers on requests and responses and rewrite the query string and URL path, but the backend is chosen elsewhere.

RHEL (Red Hat Enterprise Linux)

Red Hat Enterprise Linux: a Linux distribution eligible for Azure Hybrid Benefit licensing, which Ubuntu is not.

Risk and safety evaluators

Foundry's safety-focused evaluators, which score outputs for things like hate and unfairness, violence, sexual and self-harm content, protected material, indirect attacks, prohibited actions and leaked sensitive data. Scoring is all they do; nothing is blocked.

Risk prioritization (Defender for Cloud) (risk level)

Part of Defender CSPM that weighs attack paths, lateral movement, data sensitivity and internet exposure to label each recommendation's risk as Critical, High, Medium or Low. Without that plan, the label says Not evaluated.

RMSE (root mean squared error)

Root mean squared error, a regression metric: take the differences between predicted and actual values, square them, average them and take the square root. Smaller values are better.

Robocopy

File-copy utility for Windows over SMB, used to move data onto an Azure file share that has been mounted. It cannot authenticate with a SAS or work with blob containers.

Role assignment conditions

See Azure ABAC.

Role Based Access Control Administrator

Role able to add and remove role assignments (roleAssignments/write) but not to manage resources. Along with Owner and User Access Administrator, it is one of the roles that can assign roles.

Role definition Actions

In a role definition, the list of control-plane operations that are permitted, for example Microsoft.Storage/storageAccounts/read. Wildcards like * may be used.

Role-assignable group

Entra group, requiring Entra ID P1, that can be given directory roles because it was created with isAssignableToRole = true. Membership must be assigned, groups cannot nest, and the flag cannot be set afterwards.

roleDefinitionIds

Array within the details of a Modify or DeployIfNotExists policy definition giving the full IDs of roles the assignment's managed identity requires for remediation. Only the portal grants them automatically.

Route (Front Door)

In Azure Front Door Standard and Premium, ties a set of domains, protocols and path patterns to one origin group. When matching, an exact path beats any wildcard, and longer wildcards beat shorter ones.

Route filter

Resource applied to ExpressRoute Microsoft peering that permits selected BGP community values, so prefixes are advertised only for the services you choose.

Route table

Resource containing user-defined routes and attached to subnets, shaping traffic that leaves them. Attaching one to GatewaySubnet steers traffic coming in over VPN.

Route table label (label)

Name for a set of route tables in Virtual WAN hubs, used when choosing where routes propagate; Default, for instance, covers the defaultRouteTable of every hub.

Route-based VPN

Type of VPN gateway that relies on routing tables and any-to-any traffic selectors. Point-to-site, BGP and gateway transit all need it, and it is the only type you can create in the portal.

RouteDiagnosticLog

Resource log of VPN Gateway that captures changes to static routes along with BGP events, learned routes among them.

Routing configuration (Virtual Network Manager)

Kind of configuration in Azure Virtual Network Manager: its rule collections produce user-defined routes, specifying next hops, for the members of a network group. It changes where traffic goes without filtering ports.

Routing intent (routing policies)

With this Virtual WAN feature, a hub forces private traffic, internet traffic or both through a security solution inside it (Azure Firewall, an NGFW NVA or a SaaS offering). Branch-to-branch and hub-to-hub traffic is then inspected without hand-built route tables.

Routing preference

Decides whether internet clients reach a storage account's public endpoint over Microsoft's network, the default, or via internet routing. The choice affects the network path and egress charges, not access rights.

RPM (requests per minute)

Limit on the requests per minute a model deployment accepts, set from its tokens-per-minute quota and checked in short windows of 1 or 10 seconds; sudden bursts can therefore get 429 errors under the per-minute figure.

RPO (recovery point objective)

Recovery point objective: how much data, expressed as time, you can afford to lose. In a VM backup policy the smallest achievable RPO is the backup frequency.

RRAS (Routing and Remote Access Service)

Routing and Remote Access Service, the Windows Server Remote Access role providing routing and VPN. Routing between subnets that overlap is beyond it.

RSA (Rivest–Shamir–Adleman)

Public-key encryption algorithm. For storage customer-managed keys, RSA and RSA-HSM keys of 2048, 3072 or 4096 bits are accepted; a SQL TDE protector cannot use 4096 bits.

RSS (Receive Side Scaling)

Receive Side Scaling, a technique in the host's network stack for distributing network processing over several CPUs; its latency is higher than RDMA's.

RTO (recovery time objective)

Recovery time objective, meaning how long you can tolerate a service being down before it is restored. Failing over with Site Recovery typically takes minutes; a restore from backup takes hours.

RTT (round-trip time)

Short for round-trip time. Connection Monitor reports this latency measure as a minimum, an average and a maximum.

RU (request unit, RUs)

Request unit, the measure in which Azure Cosmos DB throughput is expressed. Analytical queries through Synapse Link use none of the transactional store's RUs.

Rule 920300 (Request Missing an Accept Header)

Protocol-enforcement rule in the OWASP CRS triggered by requests lacking an Accept header, which get a 403 in Prevention mode. Exclusions cannot help with an absent header, so either send the header or disable the rule.

Rule collection

A set of security admin rules, aimed at one or more network groups, held inside a security admin configuration of Azure Virtual Network Manager.

Rule collection group

Top-level container in an Azure Firewall policy for rule collections. Priorities order the groups and collections of the same type, yet DNAT rules are always processed before network rules, and network before application rules.

Rule processing order (Azure Firewall)

Azure Firewall checks traffic in a fixed sequence. If enabled, threat intelligence filtering acts first; DNAT rules follow, then network and then application rules, after which the infrastructure rule collection applies and anything left is denied by default.

Rule set (Front Door Rules Engine)

Azure Front Door's rules engine, which runs after the WAF and can redirect, rewrite URLs, change headers and override caching or routing. Rate limiting is not among its actions.

Rule set (Front Door)

Rules in Azure Front Door Standard or Premium that run once a route has matched; they can change requests and responses or send traffic to a different origin group.

Rules engine

See Rule set (Front Door).

Runbook

An Azure Automation job script, in PowerShell, Python or graphical form, executed in an Azure sandbox or on a Hybrid Runbook Worker; a typical example resizes a VM at scheduled times.

runs:/ URI

MLflow URI of the form runs:/<run-id>/<path> that points to a model stored in a run's default artifact location, allowing it to be registered with lineage. The equivalent Azure ML form is azureml://jobs/<job>/outputs/artifacts/paths/<path>.

S

S0 pricing tier (Foundry Tools) (standard tier)

Name of the standard paid tier for Foundry, Azure OpenAI and most Foundry Tools. Exceptions: Computer Vision calls its standard tier S1, and Document Intelligence offers nothing beyond F0 and S0.

S2S VPN (site-to-site VPN)

Site-to-site VPN: an internet-based IPsec/IKE tunnel linking an on-premises VPN device with the VPN gateway of a VNet. It needs a local network gateway plus a connection and costs less than ExpressRoute.

SA lifetime (security association lifetime)

Rekeying threshold for an IPsec security association, given in seconds or KB of data and configured through a custom IPsec policy. Azure does not let you change the IKE Main Mode SA, which stays at 28,800 seconds.

Safety system message

A system message that spells out boundaries and how to refuse in order to reduce harm. It is just one layer in a safety approach rather than a full control on its own.

Safety system mitigation layer

Layer of generative AI mitigation provided by the platform, made up of guardrails such as content filters plus abuse monitoring, which classifies harmful prompts and completions and blocks them.

SAML (Security Assertion Markup Language)

Security Assertion Markup Language: a federation protocol for single sign-on, which non-gallery apps added as enterprise applications commonly use.

SAML token encryption

Feature that encrypts the SAML assertion using the public certificate of the application. You configure it on the enterprise application; the app registration has no such setting.

Sample Labeling tool (Form Recognizer sample labeling tool)

Legacy and now retired tool once used to label training data for Form Recognizer v2.1. Document Intelligence Studio and the Foundry portal took over its role.

SAP HANA

In-memory database from SAP; on Azure it can run on BareMetal Infrastructure as SAP HANA Large Instances.

SAS

See Shared access signature.

SAS expiration policy (sasPolicy)

Storage account policy defining a recommended maximum validity period for SAS tokens; any SAS issued for longer is logged or, optionally, blocked.

Scale Out

Autoscale for App Service, available from Standard tier, that adds instances when demand rises and removes them when it falls, making it a good fit for unpredictable load.

Scale unit (gateway scale unit)

Capacity unit for Virtual WAN gateways, configured independently for each gateway type: a site-to-site VPN unit gives 500 Mbps, while an ExpressRoute unit gives 2 Gbps.

Scale Up

Picking a bigger or smaller instance size, or another pricing tier, for an App Service plan by hand.

Schedule trigger

Trigger in Data Factory that starts pipeline runs repeatedly according to a schedule.

SCIM (System for Cross-domain Identity Management)

Short for System for Cross-domain Identity Management, a standard for user provisioning. API-driven inbound provisioning in Microsoft Entra accepts its bulk requests.

SCM (Kudu)

Also known as Kudu: the management site and API behind each App Service app, which can be reached on a per-instance basis.

Scoring script (score.py)

Script for a deployment, usually score.py: init() loads the model as the container starts and run() handles scoring for each request. MLflow models do not require one.

Scoring URI

The one URL that clients use to call an endpoint; it does not change even as the deployments behind it are swapped.

SCU (Security Compute Unit)

Security Compute Unit, the measure of Security Copilot capacity. Units are either provisioned and charged hourly or used as overage, and each is tied to one workspace without sharing.

SD-WAN (software-defined WAN)

Software-defined WAN. A vendor's overlay connects branches over more than one transport and chooses paths centrally; in Virtual WAN, the tunnels end on an SD-WAN NVA inside the hub instead of Microsoft's own VPN or ExpressRoute gateways.

SD-WAN NVA

NVA deployed inside a Virtual WAN hub as integrated connectivity. Branch CPE devices build their vendor SD-WAN tunnels to it, and it peers with the hub router over BGP to share routes.

SDK (software development kit)

Software development kit: client libraries, for example the Key Vault SDK or Speech SDK, that let code use a service without calling its REST API directly.

Seamless SSO (Microsoft Entra seamless single sign-on)

Entra feature that silently signs in domain-joined devices on the corporate network when using pass-through authentication or password hash sync, though not AD FS. No inbound ports are needed, but autologon.microsoftazuread-sso.com must be in the Local intranet zone.

Search analyzer (analyzer, indexAnalyzer, searchAnalyzer)

Component in Azure AI Search that breaks searchable string fields into tokens; it may be standard Lucene, language-specific, built-in or custom. It affects tokenisation rather than meaning.

Search data source (data source)

Connection object in Azure AI Search pointing an indexer at its content, which must be a supported source: Blob, ADLS Gen2, Table Storage, Cosmos DB, Azure SQL, SQL Managed Instance or SQL Server on Azure VMs. One indexer, one data source.

Search Index Data Contributor

Role on the Azure AI Search data plane that can upload and change documents in indexes, replacing admin keys with keyless access to data.

Search Index Data Reader

Data-plane role in Azure AI Search limited to search, lookups, suggestions and autocomplete. It can be assigned for the whole service or a single index and replaces query keys with keyless access.

Search job

Long-running KQL query in a Log Analytics workspace, restricted to one table, that can look through analytics, data lake or archived data and copies as many as 100 million results into a dedicated table.

Search unit (SU)

Unit for billing and capacity in Azure AI Search, calculated as replicas multiplied by partitions. Roughly one indexer job can run per search unit.

search.in

Function in OData filters that tests a field against a list of values separated by commas, for example group_ids/any(g:search.in(g, 'g1, g2')). It performs better than stringing together eq and or clauses.

Secret (Key Vault)

Object in Key Vault storing an arbitrary string value, for instance a password, API key or connection string.

Secret attributes (nbf / exp / enabled)

Properties of a Key Vault secret: Enabled, NotBefore (nbf, when it becomes active) and Expires (exp). Disabled secrets cannot be read, whereas nbf and exp are only advisory for secrets.

SecretNearExpiry (Microsoft.KeyVault.SecretNearExpiry)

Event that Key Vault publishes to Event Grid 30 days ahead of a secret's expiry. Since secrets lack a built-in rotation policy, a Logic App or function typically reacts to it to rotate them.

Secure Inputs and Secure Outputs

Settings on a Logic Apps action that obscure what goes in or comes out when viewing run history. They do nothing to limit who may call the trigger.

Secure transfer required (supportsHttpsTrafficOnly)

When set on a storage account, requests over unencrypted HTTP or unencrypted SMB are refused. It only enforces encryption in transit and places no network restrictions.

Secured virtual hub

What you get once Azure Firewall Manager places Azure Firewall, or a SECaaS partner, inside a Virtual WAN hub. Putting a NAT gateway, WAF or Front Door in front is not enough to count.

Security Admin

Built-in Azure role whose holders manage security policy, alerts and recommendations in Microsoft Defender for Cloud. Role assignment and the creation of general policy definitions fall outside what it allows.

Security admin configuration

In Azure Virtual Network Manager, the container for one or more collections of security admin rules. Each region accepts just one deployed configuration, so extra rules belong in new rule collections, not further configurations.

Security admin rule

A rule from Azure Virtual Network Manager that takes effect ahead of NSG rules. Its action is Deny (blocks whatever NSGs say), Always allow (bypasses NSGs) or Allow (hands traffic on for NSG evaluation).

Security Administrator

Role in Microsoft Entra ID that looks after security settings and security reports. Holders cannot alter the self-service password reset policy or decide who may invite guests.

Security Copilot agent

An AI agent, configured by a Security Copilot owner or contributor, that carries out Copilot workflows when its trigger fires, acting under the identity it has been given.

Security Copilot Contributor (Copilot contributor)

A role defined within Security Copilot itself rather than in Entra. It lets people start sessions and configure agents, but on its own it gives no access to security data.

Security Copilot custom plugin settings

Settings an owner uses to decide who may add and manage custom plugins, either just for their own use (user scope) or for the whole workspace or organisation, embedded experiences included (tenant scope).

Security Copilot embedded experience

Security Copilot surfaced within another product, for example the Microsoft Defender portal. There is no workspace picker here, unlike the standalone portal; the tenant's designated workspace is always used.

Security Copilot Owner (Copilot owner)

Role within Security Copilot, separate from Entra roles, covering settings, plugins, role assignments and capacity, yet giving no access to security data. Global Administrators and Security Administrators receive it automatically.

Security Copilot plugin (plugin)

Lets Security Copilot reach a data source, whether Microsoft, third-party or custom. Users still need their own permissions on that source for it to return anything.

Security Copilot standalone experience

Security Copilot used through its own portal, securitycopilot.microsoft.com, where each user chooses which workspace to work in.

Security Copilot workspace

A container tied to one tenant that determines the data storage location, the SCU capacity consumed and which people hold owner or contributor access in Security Copilot.

Security defaults

A no-cost set of baseline protections applied across the whole tenant: everyone must register for MFA and legacy authentication is blocked. It cannot be targeted at particular groups.

Security Events via Legacy Agent

An old Microsoft Sentinel connector, since retired, that relied on MMA (the Log Analytics agent) to bring in Windows security events. Its successor is Windows Security Events via AMA.

Security group

Kind of Entra group used to grant resource access. Its members, added by assignment or by dynamic rules, may be users, devices or service principals.

Security Operator

Entra role for handling security incidents and alerts. Granting admin consent is not among its permissions.

Security partner provider (SECaaS)

A third-party SECaaS offering, such as Zscaler, that Azure Firewall Manager deploys into a Virtual WAN hub to filter traffic bound for the internet. It connects via the hub's VPN gateway and turns the hub into a secured hub.

Security policies (Defender for Cloud)

The page in Defender for Cloud environment settings for assigning standards (MCSB, regulatory or custom) to an Azure subscription, AWS account or GCP project. Only initiatives can be added there, never individual policy definitions.

Security policy (Front Door)

In Front Door Standard or Premium, the resource that links a WAF policy to domains, or alternatively to routes or the whole profile.

Security Posture dashboard

Dashboard in Defender EASM that reports on open ports, CVE exposure, SSL certificate setup, hosting and networking, and how domains are administered.

Security questions

Authentication method usable only for SSPR; answering several questions still counts as a single method. Administrators are barred from it, and it is due to be retired in March 2027.

Security Reader

A read-only role that exists both in Microsoft Entra and as an Azure built-in role, letting holders see Defender for Cloud and other security information. It gives no Microsoft Sentinel workspace access and cannot assign roles.

Security recommendations (Defender for Cloud)

Guidance from Defender for Cloud on fixing a resource that has failed a control in an assigned standard, MCSB by default. Every recommendation tackles one issue on its own.

Security rule priority (NSG)

A value between 100 and 4096 that sets the order of NSG rules for a given direction. Lower numbers are checked first and evaluation halts on the first match, so an allow exception needs a smaller number than the deny it overrides.

Security Store (Microsoft Security Store)

A Microsoft marketplace where organisations find, purchase and deploy security agents and solutions, from Microsoft and partners, for Sentinel and Security Copilot.

Security trimming (security filter)

A search technique in which user or group IDs are kept in a filterable field, for example group_ids, and every query applies a search.in filter limited to the caller's groups.

SecurityAlert

Table in Log Analytics where Sentinel stores alerts raised by connected Microsoft security products, for example Entra ID Protection and Defender for Cloud.

SecurityDetection

Security table in Log Analytics that is filled with detections from Microsoft Defender for Cloud.

SecurityEvent

Table in Log Analytics containing Windows Security event log entries, gathered by Defender for Cloud or Microsoft Sentinel.

securitySchemes (OpenAPI) (apiKey security scheme)

Part of an OpenAPI specification that, when set to type apiKey, located in header and named to match the connection key (alongside a security section), makes an OpenAPI tool add the key. Leave it out and no header goes, so the API answers 401.

Selected Networks and Private Endpoints

A Foundry Tools resource networking option that changes the default action to Deny, letting in only the private endpoints, IP ranges and virtual network rules that are listed.

Selection mark

Whether a radio button or checkbox is selected or unselected, as extracted by Document Intelligence custom and layout models.

Self-hosted IR (self-hosted integration runtime, formerly Data Management Gateway)

Integration runtime for Data Factory that you install on a machine of your own so it can reach sources on-premises or in private networks; it makes outbound HTTPS connections.

Self-review

An access-review choice in which every member, guests included, confirms for themselves whether they still require access.

Self-service application access

Setting on an enterprise application that lets users ask for access through My Apps; once approved, they are placed into a group you specify.

Self-supervised learning

An approach in which labels come from the data itself, for instance predicting the next token. Foundation models are pretrained this way, in contrast to supervised learning, which relies on labelled data.

Semantic Kernel (Semantic Kernel Agent Framework)

Microsoft's earlier SDK for coordinating models, agents and plugins; Microsoft Agent Framework has now taken its place.

Semantic ranker (semantic ranking)

Feature of Azure AI Search that uses Bing-derived language models to re-order the leading BM25 or hybrid results, optionally adding answers and captions. Relevance improves with no change to embeddings.

Semantic segmentation

A computer vision method that assigns a class to each pixel, yielding a mask of an object's precise outline rather than just a bounding box.

Sensitive feature (sensitive attribute)

An attribute, for example race, gender or age, used to define the groups across which fairness is assessed and mitigated.

Sensitive information type

Classifier based on patterns, such as credit card numbers, that policies and labels rely on to spot sensitive content. You can also define custom ones.

Sensitivity labels (Microsoft Purview sensitivity labels)

Purview's way of classifying, and if needed encrypting, content in Office apps and services. They take over from the classic labels of AIP.

Sentiment analysis

Feature of Azure Language that labels each sentence and the whole document as positive, negative, neutral or mixed, with confidence scores.

Server IP firewall rules

Rules on an Azure SQL logical server that permit ranges of public source IPs. Private VNet addresses never match them; those require a virtual network rule.

Server Manager

Console in Windows Server used to manage server roles and features.

Server trust group

A set of SQL Managed Instances that trust each other so distributed transactions can span them.

Server variables

Variables in Application Gateway, for example client_ip, client_port, host and add_x_forwarded_for_proxy, that rewrite conditions and actions can reference.

Server-level auditing

An auditing policy set on the Azure SQL logical server that applies to every database on it. Turning on database-level auditing adds destinations instead of overriding the server policy.

Server-side encryption (SSE)

Encryption at rest that Azure Storage always applies to managed disks, with keys managed by the platform or the customer. Caches and temp disks are excluded, and a VHD you download is unencrypted.

Serverless (SQL)

Compute tier for single Azure SQL databases that scales automatically, pauses when idle and charges by the second. It is offered in General Purpose and Hyperscale, not Business Critical, and reserved capacity does not apply.

Serverless API deployment (standard deployment)

You call the model as an API while Microsoft hosts it on shared infrastructure, paying per token or by PTU. This Foundry option, with types like Global Standard, Standard and Provisioned, covers Foundry Models sold by Azure, Azure OpenAI included.

Serverless compute

Azure Machine Learning compute provided on demand whenever a job names no compute target. No cluster needs creating or managing, and jobs do not wait in a queue behind one another.

Serverless SQL pool

Pool in Synapse for querying the Cosmos DB analytical store and data lake files where they sit. Delta can be read, but writing Delta or streaming is not possible.

Service Bus

Azure's enterprise messaging service, offering topics and queues, transactions, dead-lettering and session-based ordering.

Service Bus topic

Service Bus entity for publish-subscribe, where each subscription filters for the messages it cares about. Available in Premium and Standard tiers but not Basic.

Service chaining

Using UDRs across peerings to send spoke traffic via a gateway or NVA in the hub. It handles traffic between spokes and suits policy-based gateways that cannot provide gateway transit.

Service CIDR

Range used internally for Kubernetes ClusterIP addresses (10.0.0.0/16 by default in AKS), with cluster DNS on the .10 address. Nothing outside the cluster can reach it.

Service Connector

An Azure service that makes it easier to set up authentication and connections between applications and the services they depend on.

Service endpoint

Sends a subnet's traffic to an Azure service's public endpoint across the Microsoft backbone, identifying the subnet as the source. It is free, uses no subnet IP addresses and cannot be used from on-premises networks.

Service endpoint policies

Applied to a subnet's service endpoint to restrict outbound traffic to particular Azure resources, such as specific storage accounts. General availability covers Azure Storage only.

Service key (s-key)

The GUID identifying an ExpressRoute circuit, which you pass to the connectivity provider. It is not a secret, and charges begin as soon as it is issued.

Service Map

A now-retired Azure Monitor feature that mapped servers, their processes and dependencies using data from the Dependency agent.

Service plans

Each licence bundles several apps and services; these are those components, and an admin can switch any of them on or off for a given assignment.

Service principal

The tenant-local instance of a managed identity or app registration, which users and Azure or directory roles are assigned to. Those from app registrations authenticate with a stored certificate or secret that needs rotating and can be copied, which suits code running outside Azure.

Service SAS

Delegates access to just one storage service, a container for instance, using a signature made with the account key. Disabling Shared Key breaks it; it may refer to a stored access policy.

Service tag

A set of IP prefixes for an Azure service, kept up to date by Microsoft (such as AzureKeyVault or Storage, with optional regional variants), that can be used as the source or destination in NSG rules.

Session controls

Conditional Access controls, for example app-enforced restrictions and sign-in frequency, that constrain a session. They do not enforce MFA.

Session persistence

How Load Balancer distributes traffic: None, the default 5-tuple hash; Client IP, a 2-tuple affinity; or Client IP and Protocol, a 3-tuple affinity.

Set (secret permission)

Secret permission in Key Vault for writing secrets; some older material refers to it as Create.

Set-AzAks

See Set-AzAksCluster.

Set-AzAksCluster

Creates or modifies an AKS cluster from PowerShell (Az.Aks). Node autoscaling is switched on with -EnableNodeAutoScaling, bounded by -NodeMinCount and -NodeMaxCount.

Set-AzApplicationGateway

After editing an application gateway object locally, this Az.Network cmdlet saves those edits to Azure.

Set-AzApplicationGatewayFirewallPolicy

Cmdlet in Az.Network for saving edits to an Application Gateway WAF policy, whether to custom rules, managed rules or policy settings.

Set-AzApplicationGatewayIPConfiguration

Cmdlet in Az.Network that alters the gateway IP configuration, meaning its subnet, on the gateway object held in memory. Set-AzApplicationGateway then commits the change.

Set-AzContext

Cmdlet in Az.Accounts that chooses the subscription, and tenant, used by subsequent Az cmdlets.

Set-AzFirewallPolicy

Cmdlet in Az.Network used to update an Azure Firewall policy.

Set-AzPolicyAssignment

PowerShell cmdlet in Az for changing a policy assignment that already exists, such as its identity or display name. Creating a new assignment uses New-AzPolicyAssignment.

Set-AzPolicyDefinition

PowerShell cmdlet in Az for changing an existing policy definition. Assigning it is a separate step.

Set-AzResourceGroup

PowerShell cmdlet in Az that can alter only the tags on a resource group; renaming the group is not possible with it.

Set-AzureRmStorageAccount

Old AzureRM cmdlet, no longer supported, for altering a storage account's settings; use Set-AzStorageAccount now.

Set-AzureRmVMDiskEncryptionExtension

See Set-AzVMDiskEncryptionExtension.

Set-AzVirtualNetworkGateway

Changes properties of the VPN gateway itself, for example RADIUS, protocols, the client IPsec policy or the P2S address pool, using Az.Network. For a connection's IPsec policy you need a different cmdlet.

Set-AzVirtualNetworkGatewayConnection

Cmdlet in Az.Network for modifying a gateway connection that already exists, for instance to apply -IpsecPolicies or turn on policy-based traffic selectors.

Set-AzVirtualNetworkGatewayDefaultSite

On a route-based VPN gateway, this Az.Network cmdlet nominates which local network gateway forced-tunnelled traffic goes to, taking -VirtualNetworkGateway and -GatewayDefaultSite.

Set-AzVirtualNetworkSubnetConfig

Cmdlet in Az.Network that changes how a subnet is configured within a virtual network object.

Set-AzVM

Cmdlet in Az.Compute that can redeploy or reapply a VM, flag it as generalised, or simulate an eviction of a Spot VM.

Set-AzVMDiskEncryptionExtension

Turns on Azure Disk Encryption for a virtual machine from Az PowerShell. Its key vault has to be in the VM's own subscription and region.

set-backend-service

Policy in API Management that sends a request on to another backend entity or back-end URL. It deals with routing, not authentication.

set-header

Policy in API Management that adds a header, or deletes one when exists-action="delete" is set.

Set-MpPreference

PowerShell cmdlet for setting Microsoft Defender Antivirus preferences on scans, updates and exclusions. Using it to switch off real-time protection is not a supported method of running alongside third-party antivirus.

Severity threshold

For each harm category, the content filter level (medium by default) from which content gets blocked. The strictest option is blocking at low for both input and output.

SFTP (SSH File Transfer Protocol)

SSH-based file transfer protocol on TCP port 22. Because it is not HTTP, Application Gateway is not suitable for it.

Shaper skill (ShaperSkill)

Takes enrichment nodes that already exist and builds them into one complex object; this utility skill commonly feeds table projections in a knowledge store.

Shared access signature (SAS)

A signed token that delegates storage access for a limited time. It is a signature rather than a role assignment, and it does not apply to SMB.

Shared Key (account access key)

For storage, signing requests with one of two 512-bit account keys; this bypasses RBAC and opens every service fully unless Shared Key is disabled. In VPN Gateway the term means the pre-shared secret entered on the peer device and on an S2S or VNet-to-VNet connection.

SharePoint Advanced Management (SAM)

An add-on for SharePoint governance, bundled with Microsoft 365 Copilot, that helps detect and cut oversharing via site access reviews, restricted content discovery, restricted access control and data access governance reports.

SIEM (security information and event management)

A platform that gathers and correlates security logs to detect threats and raise alerts. In Azure the cloud SIEM is Microsoft Sentinel, which runs on a Log Analytics workspace.

Sign-in frequency

Session control in Conditional Access that makes users authenticate again once a configured period has passed.

Sign-in risk policy

A risk-based policy in ID Protection (Entra ID P2) that responds, for example by demanding MFA, to the likelihood that someone other than the owner is signing in. It does not turn on any authentication methods.

SigninLogs

Table in Log Analytics containing Microsoft Entra sign-in records, delivered via a diagnostic setting.

Similarity evaluator (SimilarityEvaluator)

Evaluator that rates how textually close a response is to the expected answer, so ground truth must be supplied.

Site Recovery

See Azure Site Recovery.

Skillset

Azure AI Search object, reusable across indexers, that defines which built-in or custom skills run during enrichment, optionally with knowledge store projections and a resource for billing.

SKU (stock keeping unit)

The size or tier of a service, for example a VM size or the Premium tier of ACR.

SLA (service level agreement)

A commitment to a level of uptime, such as 99.99% for VMs spread over availability zones, 99.95% for an availability set and 99.9% for one VM.

SLM (small language model)

Smaller than an LLM, with roughly under 10 billion parameters but a similar kind of architecture. Running it costs less and is quicker, at the price of narrower capability.

Slurm

A scheduler for HPC jobs, one of those that Azure CycleCloud can run.

Smart lockout

Locks out brute-force attempts against Microsoft Entra ID and comes with all editions. On-premises accounts are left unlocked where password hash sync is in place.

SMB (Server Message Block)

Protocol for Windows file shares, used by Azure Files and supporting authentication based on identity.

SMB Multichannel

A feature of Azure Files letting an SMB 3.1.1 client use multiple connections to one share to raise IOPS and throughput. Only premium shares (SSD, FileStorage) support it.

SMS and voice call verification

Methods that use a phone, either texting a one-time code or ringing the user. They work as a second MFA factor, and SMS can also be used for sign-in, but neither is passwordless or resistant to phishing.

SMTP (Simple Mail Transfer Protocol)

Mail is transferred with this protocol, which listens on TCP 25.

SMTP connector (Simple Mail Transfer Protocol)

Connector for Logic Apps that sends email via an SMTP server you run yourself.

Snapshot Debugger

Captures a snapshot whenever an exception is thrown, pinpointing the line of code; part of Application Insights.

SNAT (source network address translation)

Translating the source address of a flow. Azure Firewall does this automatically to its public IP for outbound internet traffic, and NAT gateway supplies SNAT ports for outbound connections.

SNAT port exhaustion

Failures of outbound connections that occur once a source has no SNAT ports left for new flows to one destination. With NAT gateway, adding public IPs or a prefix resolves it.

SNAT ports

Outbound SNAT relies on these ephemeral ports. About 64,000 come with each public frontend IP and are shared among all backend pool members, so adding frontend IPs or a prefix is the only way to get more.

SOA record (start of authority record)

The start of authority record that Azure DNS creates and maintains automatically at each zone's apex; its host is fixed. No change at the registrar is needed for it.

SocketAddr

Match variable in Front Door WAF representing the source IP as seen by the WAF, which is the proxy's address when a client sits behind one. Geo-filtering and rate limiting use it.

Soft delete

Retains deleted backups or data so they can be recovered during a retention period.

Span

One operation inside a trace, such as a single LLM call or prompt flow node, carrying attributes plus start and end times. Nested spans reveal the order of calls.

speak_text_async()

Method of SpeechSynthesizer that synthesises plain text without blocking, returning a future that resolves to a SpeechSynthesisResult. For SSML input, speak_ssml_async() is used.

Speaker recognition (voice biometrics)

Capability of Azure Speech that verifies or identifies a speaker based on their voice. It is a Limited Access feature and differs from speech recognition, which transcribes the words spoken.

Speaker role detection

Audio feature in Content Understanding that assigns diarised speakers in call-centre recordings to roles, for example customer and agent.

Speech captioning (captioning)

Generating captions with timestamps, as SRT or WebVTT, from live or recorded audio using speech to text; profanity can be filtered.

Speech profanity filter (profanity option)

Setting in speech to text that decides whether profanity in captions and transcripts is masked (the default), removed or left as is (raw).

Speech recognition (speech to text, STT)

Turning spoken audio into text, for example call transcripts or captions.

Speech SDK

The Azure Speech client library, installed in Python as azure-cognitiveservices-speech and imported as speechsdk, providing SpeechSynthesizer, SpeechRecognizer, SpeechConfig and classes for audio configuration.

Speech Studio

A web portal offering no-code Azure Speech tools, including batch speech to text, audio content creation, custom voice and custom speech.

Speech synthesis (text to speech, TTS)

Turning text into spoken audio that sounds natural, for example to read messages out loud.

Speech to text (speech recognition)

Capability of Azure Speech that turns spoken audio into text for voice commands, captions and transcripts of calls or meetings. Identifying the speaker is not part of it.

Speech translation

Takes speech as it is spoken and renders it, in real time, as text or synthesised audio in one target language or more; an Azure Speech capability.

SpeechRecognizer

The Speech SDK class used for speech to text. It is created from a SpeechConfig plus an AudioConfig (stream, WAV file or microphone) and returns transcriptions either once or continuously.

SpeechSynthesizer

The Speech SDK class used for text to speech, offering SpeakTextAsync and SpeakSsmlAsync. Created from a SpeechConfig plus an AudioOutputConfig, it sends audio to a stream, file or speaker.

SpeechTranslationConfig

Configuration object in the Speech SDK for translating speech: SpeechRecognitionLanguage defines the source locale, and each target language code is added through AddTargetLanguage.

Split transformation

Sends a portion of a table's incoming data to another table or tier during ingestion. You define it in a data collection rule, or via Sentinel table management.

Split-horizon DNS (split-brain DNS)

Having a private and a public Azure DNS zone with an identical name. Linked VNets resolve against the private zone while internet clients see the public one, and private records can never be resolved from the internet.

Spot Priority Mix

Lets a Flexible-orchestration scale set keep a guaranteed baseline of standard-priority VMs while a chosen share of extra capacity comes from Spot.

Spot VMs

Cut-price VMs that can be evicted, intended for work that tolerates interruption. Dedicated hosts cannot use them, and since 31 March 2026 Azure Machine Learning clusters asking for low-priority nodes receive Spot VMs.

Spotlighting

Encodes document content in base64 so the model gives it less trust than system or user prompts. This Prompt Shields option is in preview, off unless enabled, limited to Chat Completions and costs extra tokens.

Sql (service tag)

Represents the outbound IP ranges used by Azure SQL Database and Azure Synapse Analytics. Individual servers are not singled out, and SQL Managed Instance is excluded.

SQL Agent

The job scheduler for SQL Server, offered on SQL Server on VMs and SQL Managed Instance but not on Azure SQL Database.

SQL analytics endpoint

Read-only SQL access in Fabric to the data in a lakehouse. Power BI using DirectQuery through it performs more slowly than Direct Lake.

SQL Data Warehouse

See Dedicated SQL pool.

SQL Database reserved capacity

A vCore reservation for Azure SQL lasting one or three years. The discount applies to compute alone, not to storage, licensing or DTU-based databases.

SQL FQDN filtering

Allowing named SQL servers, for example sqldb1.database.windows.net, in Azure Firewall application rules. Azure SQL has to use the Proxy connection policy over port 1433 for this to be supported.

SQL Health Check

An older on-premises assessment service for SQL Server; it is not a threat detection tool for Azure SQL.

SQL IaaS Agent

See Automated Backup.

SQL injection

Smuggling SQL into the input an application accepts. NSGs cannot detect it; WAF managed rule sets, such as those on Application Gateway, stop it at the web tier, and Microsoft Defender for SQL alerts on it.

SQL Managed Instance auditing

On Azure SQL Managed Instance, a single SQL Server Audit server audit spans every database. Targets are Blob storage as .xel files (TO URL), or Log Analytics or Event Hubs (TO EXTERNAL_MONITOR).

SQL Security Manager

Built-in role for managing security policies such as threat detection and auditing on SQL servers and databases. Access to Key Vault keys is not included.

SQL Server Audit

A SQL Server capability for tracking what happens on the server and in its databases. Events land in a file or the Windows Application or Security log, ready for an agent to collect.

SQL Server Authentication (SQL authentication)

Signing in with a password and SQL login name held in the server. MFA cannot be enforced with it.

SQL Server Contributor

Built-in role that can manage databases and logical servers, including setting the Microsoft Entra admin. Switching Microsoft Entra-only authentication on or off is beyond it, though Contributor or SQL Security Manager can do so.

SQL Server enabled by Azure Arc

A SQL Server running outside Azure and connected via Azure Arc. Unlike Azure SQL Database, Microsoft Entra authentication for it (SQL Server 2022) requires an app registration plus a certificate held in Key Vault.

SQL Server on Azure VMs

SQL Server delivered as IaaS, giving full control of the operating system, with high availability from failover cluster instances or Always On availability groups.

SQL vulnerability assessment

A Defender for SQL scan that checks databases for misconfigurations; once the plan is enabled you can set up recurring scans and who receives reports. It is distinct from threat-detection alerts.

SR-IOV (single-root I/O virtualisation)

See Accelerated Networking.

SRV record

DNS record locating a service, such as the domain controller entries that AD DS clients rely on. Azure-provided DNS cannot serve the SRV records AD needs.

SSD (solid-state drive)

Flash-based solid-state storage that underpins Premium disks and storage.

SSH (Secure Shell)

Protocol for remote sessions, chiefly on Linux, using TCP port 22.

SSIS (SQL Server Integration Services)

Integration Services for SQL Server; Azure runs its ETL packages on the Azure-SSIS integration runtime.

SSISDB

The catalogue database for SSIS, which the Azure-SSIS integration runtime hosts in SQL Managed Instance or Azure SQL Database.

SSL (Secure Sockets Layer)

The forerunner of TLS, whose name is still applied to TLS. Terminating TLS at a load balancer is called SSL offload, and VPN Gateway's SSTP (SSL) and OpenVPN (SSL) P2S tunnels run TLS over TCP 443.

SSL profile

Settings on an Application Gateway v2 listener that hold a listener-specific SSL policy and client authentication, meaning the trusted client CA chain used for mutual TLS.

SSMA (SQL Server Migration Assistant)

SQL Server Migration Assistant, a tool for migrating sources other than SQL Server, including Access, SAP ASE, MySQL, DB2 and Oracle.

SSML (Speech Synthesis Markup Language)

Markup based on XML that controls how text to speech sounds, including pronunciation, pauses, volume, rate, pitch and voice. It is submitted with speak_ssml_async().

SSML emphasis element (emphasis)

Element in SSML that increases or reduces stress on words (strong, moderate, none or reduced). Only a small number of neural voices support it.

SSML prosody element (prosody)

Element in SSML for changing the volume, rate, range, contour and pitch of synthesised speech.

SSML voice effect (eq_car, eq_telecomhp8k)

An optional attribute on the SSML voice element that tunes audio for where it will be played, such as eq_telecomhp8k for 8 kHz telephone lines or eq_car for cars and other enclosed vehicles.

SSML voice element (voice name)

Element in SSML that chooses, through its name attribute, which voice speaks the text inside it. Accent follows the voice's locale, so any two en-US voices sound alike in accent.

SSMS (SQL Server Management Studio)

SQL Server Management Studio, a tool for administering SQL Server, used for tasks such as building a target schema.

SSO (single sign-on)

Signing in once to gain access to multiple applications.

SSPR (self-service password reset)

Allows users to unlock or reset their own passwords with methods they have registered. It can apply to All users, None, or Selected (a single group, with nesting supported).

SSTP (Secure Socket Tunneling Protocol)

A Microsoft P2S tunnel type based on TLS, for Windows clients alone, capped at 128 connections and authenticating by RADIUS or certificate but not Entra ID. It is being retired in favour of OpenVPN or IKEv2: no new enablement after 31 August 2026, and connections cease on 31 March 2027.

Standard deployment type (Standard)

A Foundry deployment type billed per token that keeps processing of prompts and responses inside the Azure geography of the resource, meeting data residency needs at lower volumes.

Standard deployment type (regional)

Deployment type charged per token in which prompts and responses are processed inside the resource's Azure geography, making it the choice when data has to remain in a single geography.

Standard general-purpose v2 (StorageV2, GPv2)

A Standard storage account covering every storage service, with access tiers and all redundancy options available.

Standard Load Balancer

See Azure Load Balancer.

Standard SKU public IP

Public IP that is always static and may be zone-redundant, zonal or IPv6. It blocks inbound traffic until an NSG permits it, and Bastion, Azure Firewall, VPN gateways and Standard Load Balancer all require it.

Standard SSD

Managed disk with a ceiling of 6,000 IOPS, sitting below Premium SSD in performance.

Standard tier (App Service)

The lowest-cost App Service tier to include deployment slots, app cloning and rule-based autoscale to as many as 10 instances.

Standard V2 (Standard_v2)

The Application Gateway tiers: Standard_v2 supports rewrites but lacks WAF, WAF_v2 adds a WAF, and Basic offers neither URL rewrite nor WAF. Only WAF_v2 can have a WAF policy attached.

Standard_v2

See Standard V2.

StandardV2 NAT gateway (NAT Gateway V2)

A zone-redundant SKU of NAT gateway offering flow logs, IPv6 and greater throughput. It needs StandardV2 public IPs or prefixes, and a Standard gateway cannot be upgraded to it.

StandardV2 public IP

A zone-redundant SKU for public IPs and prefixes that works only with a StandardV2 NAT gateway, which in turn cannot take Standard public IPs.

Start-AzApplicationGateway

Cmdlet in Az.Network for starting an application gateway that has been stopped.

Start-AzPolicyComplianceScan

Cmdlet in Az.PolicyInsights that kicks off a policy compliance evaluation on demand. Nothing is remediated; it only evaluates.

Start-AzPolicyRemediation

Creates a remediation task for an assignment whose effect is Modify or DeployIfNotExists (Az.PolicyInsights). Pass -ResourceDiscoveryMode ReEvaluateCompliance to rescan before remediating.

start_continuous_recognition()

Suits long audio with many utterances: this SpeechRecognizer method raises recognizing, recognized and canceled events with results, carrying on until you call stop_continuous_recognition().

start_keyword_recognition() (keyword recognition)

Method of SpeechRecognizer that uses a keyword model to listen on the device for a wake word, after which audio starts streaming to the service. It is not meant for general transcription.

start_trace

Called from the prompt flow SDK, it sends traces to a local trace server and UI, unless export has been configured. By itself it will not capture traces into a Foundry project.

State (parameter)

A parameter in OAuth that carries custom data through the authorisation flow and back, as with the "Support state parameter" option in APIM.

Static allocation

The IP address, public or private, stays assigned until its resource is deleted. Standard public IPs can only be static, and upgrading a Basic public IP first requires switching it to static.

Static route (Virtual WAN)

A route placed in a Virtual WAN hub route table or on a virtual network connection, with its next hop set to an NVA IP, Azure Firewall or a connection. It is how indirect spokes behind an NVA are reached.

Stop sequence (stop)

One of up to four strings that make the model halt generation; the sequence itself is not included in the output.

Stop-AzApplicationGateway

Cmdlet in Az.Network for stopping an application gateway, which must be done before it can move to a different subnet.

Stopped (deallocated)

The state of a VM stopped through Azure, freeing its host and ending compute charges, which a shutdown from the guest OS does not do. Its cores continue to count towards the vCPU quota.

Storage (service tag)

Service tag for the outbound IP ranges of Azure Storage, representing the service as a whole rather than any one account.

Storage account

The top-level resource in Azure Storage, giving a unique namespace for table, queue, file and blob data. Location, performance and kind are set when it is created and cannot change.

Storage Account Contributor

Manages storage accounts at the management plane, yet because listKeys is among its permissions it can reach every piece of data via Shared Key. For data access, that is broader than least privilege.

Storage Account Encryption Scope Contributor

Role in Azure Storage restricted to managing encryption scopes, with no access to data or keys.

Storage Account Key Operator Service Role

Can list and regenerate a storage account's keys; since those keys work with Shared Key, holders can effectively reach all of the account's data.

Storage Blob Data Contributor

Data-plane built-in role that can read, write and delete blobs and containers. Paired with Reader, it is the least privilege needed to upload through the portal.

Storage Blob Data Owner

Data-plane built-in role granting full control of blob data and containers, including setting blob index tags and POSIX ACLs.

Storage Blob Data Reader

Data-plane built-in role that can list and read blobs and containers.

Storage Blob Delegator

A built-in role whose sole permission, at account scope or higher, is obtaining a user delegation key (generateUserDelegationKey) for signing a user delegation SAS. It gives no access to blob data.

Storage File Data Privileged Contributor

Over OAuth and REST, holders can read, write, delete and change ACLs on any Azure Files data, with NTFS ACLs ignored; writeFileBackupSemantics is part of it.

Storage File Data Privileged Reader

Reads any Azure Files data over OAuth and REST, ignoring NTFS ACLs, via readFileBackupSemantics. A managed identity that only needs to read Azure Files through REST should get this role.

Storage File Data SMB Share Contributor

Built-in role at share level allowing files and directories to be read, written and deleted over SMB. NTFS permissions underneath are still enforced.

Storage File Data SMB Share Reader

Built-in role at share level allowing files and directories to be read over SMB. It can be given to managed identities, service principals, groups and users, but not to computer accounts.

Storage firewall

Restricts a storage account's public endpoint through IP, VNet, resource instance and trusted-service rules. When no rule exists, the endpoint is reachable from any network.

Storage network rule exceptions (networkAcls bypass)

When a storage account's firewall defaults to Deny, these Bypass values (AzureServices, Logging, Metrics, or None) decide whether trusted Azure services and logging or metrics traffic still get in.

Storage Sync Service

The top-level Azure resource for Azure File Sync, where servers are registered and sync groups live.

Stored access policy

A policy on a container that limits, and allows revocation of, every service SAS pointing to it. It grants no access itself, a container can hold at most five, and user delegation SAS cannot use it.

Streaming (stream=true)

Sending model output piece by piece as server-sent events. Only the delivery changes; the answer's content, completeness and cost stay the same.

Streaming units

The unit by which compute for Azure Stream Analytics jobs is scaled.

Stretch Database

A SQL Server feature, discontinued in July 2024, that shifted cold rows into Azure.

Structured outputs (response_format, text.format)

Makes model output conform to a provided JSON Schema (json_schema with strict true), configured through text.format in Responses or response_format in Chat Completions. It governs format, not tool calls.

styledegree

An attribute of mstts:express-as that controls how intense a speaking style is, from 0.01 to 2; the default is 1, and 2 doubles it.

Subnet

A segment of a VNet's address space from which resources receive private IPs. Azure holds back five addresses per subnet (the first four and the last), leaving 251 usable in a /24 and three in a /29, the smallest IPv4 subnet.

Subnet (Traffic Manager routing)

A Traffic Manager routing method that maps ranges of client source IPs to particular endpoints, answering each query with one endpoint.

Subnet delegation

Hands a subnet over to one Azure service; App Service VNet integration, for instance, uses Microsoft.Web/serverFarms. VMs or other resources must not already be in it.

SUCCESSFUL_DATABASE_AUTHENTICATION_GROUP

Audit action group at database level that logs successful database logins; it belongs to the recommended set for Azure SQL auditing.

SUCCESSFUL_LOGIN_GROUP

Audit action group at SQL Server level that logs successful logins to the instance. It is not among the groups recommended for Azure SQL Database.

Suggester

Construct in an Azure AI Search index naming the sourceFields used for suggestions and autocomplete. An index can have only one, and its source fields need a language or the standard analyser.

Summarization

Feature of Azure Language that summarises documents, conversations or text either extractively, picking key sentences, or abstractively, with new wording.

Supervised learning

Training a model on examples whose correct output is labelled so it learns to predict that output; regression and classification are typical cases.

SUSE

Azure Hybrid Benefit can apply to licences for this Linux distribution.

SYN Count

Metric for Standard Load Balancer that counts TCP SYN packets, in other words attempted connections.

Synapse pipelines

Pipelines within Azure Synapse that are equivalent to those in Data Factory.

Synapse workspace (Azure Synapse Analytics)

Azure Synapse Analytics workspace that brings together pipelines, Spark pools and SQL pools. When it uses a managed VNet, data stores can be reached only via managed private endpoints.

Synonym map

An Azure AI Search resource at service level containing rules in Solr format; assigned to searchable string fields, it expands equivalent terms when queries run.

Synthetic evaluation dataset (data generation service)

A versioned dataset produced by the Foundry data generation service (preview), containing multi-turn simulation seeds or single-turn Q&A pairs derived from a prompt, reference file or agent definition. It serves as a baseline before launch and for regression.

Syslog

Table in Log Analytics holding syslog messages from Linux.

Syslog via AMA

Brings syslog from Linux machines into the Syslog table for Microsoft Sentinel, using AMA plus a DCR that chooses facilities and minimum log levels. Windows machines are out of scope.

System Center Service Manager (SCSM)

An on-premises System Center product handling ITSM incidents, problems and changes. Azure alerts can open work items in it by way of ITSMC.

System message (system prompt, metaprompt)

Sent ahead of everything else in a chat request, it gives high-priority instructions and context covering role, rules, tone, format and boundaries. Compliance is not guaranteed, only steered; in chat and fine-tuning data it is the system turn.

System route

A default route Azure creates automatically for each subnet, such as traffic within the VNet or 0.0.0.0/0 to the Internet. UDRs override them.

System state

Windows Server's OS configuration, covering things like the registry, boot files and Active Directory. MARS is able to back it up, but a restore needs Windows Server Backup.

System-assigned managed identity

An identity tied to a single resource, created and removed alongside it, so ten VMs would have ten identities. Azure Policy remediation is able to use one.

T

T-SQL (Transact-SQL)

The dialect of SQL that Microsoft uses for Azure SQL and SQL Server. Azure Monitor logs are queried with KQL instead.

Table projection

A knowledge store projection that writes rows to Azure Table Storage, linked through generated keys (source, generatedKeyName, tableName). It works well for analysis in Power BI.

Table storage

Low-cost key-value tables indexed solely on RowKey and PartitionKey, limited to a single write region and entities of 1 MB.

Tag Contributor

Lets holders manage tags (Microsoft.Resources/tags/*) and nothing more, making it far narrower than Contributor.

Tags

Metadata in name-value pairs used to group resources and report costs across resource groups; Azure Policy can enforce or inherit them.

Target sub-resource

Decides which storage service a private endpoint reaches (blob, file, queue, table, web or dfs). Each type needs only one endpoint for all its containers or shares, though ADLS Gen2 requires separate blob and dfs endpoints.

targetScope

Setting in Bicep that defines what scope a file deploys to: tenant, managementGroup, subscription or resourceGroup (the default).

Task completion evaluator

Judges whether an agent finished what it was asked to do, end to end; currently a preview agent evaluator.

taskSlotsPerNode

Setting on an Azure Batch pool that lets each node run multiple tasks at once.

TCO

See Total Cost of Ownership calculator.

TCP (Transmission Control Protocol)

A transport protocol that is connection-oriented.

TCP Proxy V2 (EnableProxyProtocol)

When enabled on a Private Link service, this inserts a proxy protocol v2 header so the backend can see the consumer's source IP and the private endpoint's LinkID. Connection capacity is unchanged.

TDE

See Transparent Data Encryption.

TDE protector

The key that encrypts (wraps) the TDE data encryption key: an asymmetric RSA key the customer manages and keeps in Key Vault or Managed HSM.

Temperature

A randomness control for inference, set between 0 and 2. Settings near 0.2 make responses focused and close to deterministic, whereas higher settings make them more creative.

Template Analyzer

Bicep and ARM templates are checked by this infrastructure-as-code scanner, which ships with Microsoft Security DevOps and bundles PSRule. Checkov or Terrascan cover Terraform, CloudFormation and Kubernetes files.

Template Specs

Azure resources that hold versioned ARM templates. Alongside deployment stacks, they are the successor to Azure Blueprints.

Temporary Access Pass (TAP)

A Microsoft Entra ID passcode valid for a limited time, used to onboard users or recover accounts. Its value can be viewed only when it is first created.

Temporary disk

Local, non-managed storage on the VM's host, by default drive D: on Windows, intended for scratch data and page files. Redeployment, deallocation or maintenance can wipe what it holds.

Tenant (P2S)

In a point-to-site gateway using Entra ID authentication, the field that takes https://login.microsoftonline.com/{TenantID} in Azure public cloud. A graph.microsoft.com address is never correct here.

Tenant Restrictions

A capability of Microsoft Entra that governs the tenants users are permitted to sign in to and reach.

Tenant Root Group

The top-level management group in every tenant. Assigning a policy or role at this level affects all subscriptions.

Test failover (disaster recovery drill)

A Site Recovery rehearsal that spins up VMs in an isolated network while replication carries on. Each VM is placed in whichever target subnet shares its source subnet's name, failing that the alphabetically first one.

Test group

In Connection Monitor, a bundle of sources, destinations and test configurations using TCP, ICMP or HTTP. Test groups live in a monitor, with one monitor per source region.

Text Analytics

See Azure Language in Foundry Tools.

Text Merge skill (MergeSkill)

A utility skill whose output, merged_content, combines document content with OCR text or image captions. Chunking is not something it does.

Text Split skill (SplitSkill)

A free utility skill that divides text into pages or sentences, optionally overlapping, to create chunks ready for embedding. Vectorisation happens elsewhere.

Text to speech (speech synthesis)

Speech synthesis in Azure Speech: text becomes natural-sounding audio using standard or custom neural voices, adjustable through SSML. Speech recognition works in the reverse direction.

Text Translation skill (TextTranslationSkill)

A built-in skill that calls Translator to translate text. Leaving out defaultFromLanguageCode lets the source language be detected automatically.

text-embedding-ada-002 (ada-002)

An embedding model in Azure OpenAI that accepts up to 8,192 input tokens and outputs only 1,536-dimension vectors, never generated text.

TextBlocklistMatch (blocklists_match)

Returned in blocklists_match, this Content Safety result type reports a blocklist hit: the blocklist's name, the item ID and the text that matched.

TextCategoriesAnalysis (categories_analysis)

Each item in the categories_analysis list from analyze_text is one of these Content Safety results, pairing a single harm category with its severity.

TextTranslationClient (Azure.AI.Translation.Text)

The client in the Translator text SDK, built from an AzureKeyCredential plus a region. Call TranslateAsync to get TranslatedTextItem results or GetSupportedLanguagesAsync for the language list.

textType (Translator) (textType=html)

A parameter of the Translate operation. The default, plain, handles tags as ordinary text; html keeps well-formed markup intact and respects class=notranslate.

Threat intelligence

See Threat intelligence-based filtering.

Threat intelligence-based filtering

Available in Azure Firewall Standard and Premium, this uses Microsoft's threat intelligence feed to alert on or block traffic involving known malicious domains and IP addresses.

ThresholdOptimizer (fairlearn.postprocessing)

A post-processing algorithm in Fairlearn that sets separate thresholds per group on an already-trained binary classifier, targeting equalized odds or demographic parity with no retraining.

Time Series Insights

A now-retired Azure service for analysing IoT time-series data; Azure Data Explorer replaces it.

Time to first token (TTFT)

How long it takes, after a prompt is sent, for the first generated token to come back; Azure Monitor calls it Time to Response. Bigger prompts increase it.

Time-based retention (WORM) policy

An immutability policy for blobs: for the configured retention period, data stays readable but cannot be changed or deleted.

Time-series forecasting (forecasting)

A machine learning workload, not a generative or NLP one, that uses historical time-stamped data to predict future values like demand or sales.

Timer trigger

A trigger that starts an Azure Function according to a schedule.

TLS (Transport Layer Security)

Transport Layer Security, the encryption protocol for traffic like HTTPS and Bastion sessions over port 443. On a storage account, minimumTlsVersion fixes the oldest accepted version without opening any network access.

TLS inspection

With an intermediate CA certificate held in Key Vault, Azure Firewall Premium can decrypt outbound and east-west TLS traffic, inspect it and encrypt it again.

TLS termination (SSL offload)

Ending TLS at a gateway, for example Application Gateway, so traffic reaches backends as plain HTTP, or is encrypted again when end-to-end TLS is required.

Token

The unit of text an LLM works with, which may be a word, part of a word or punctuation. Billing, limits and context windows are all counted in these units.

Token configuration

The blade in an app registration where optional claims like groups and email are added to issued tokens. App roles are configured separately.

Tokenization

At the start of a transformer's pipeline, input text is cut into tokens and every token is given its ID from the vocabulary; this step is tokenization.

Tokens per second (token generation rate)

How fast a model deployment generates output. Time Between Tokens is the inverse measure and increases when the deployment is busy.

Tool call accuracy evaluator

An evaluator for agents that checks tool selection and parameter correctness, and whether the agent avoided unnecessary repeat calls.

tool_choice

Governs tool calling in a request: auto, the default, leaves the decision to the model; required forces at least one call; none blocks calls; naming a specific tool forces that one.

tool_resources (ToolResources)

The field on an agent or conversation holding the data tools need, for example files for code interpreter or vector store IDs for file search. Tool definitions belong in tools instead.

Top P (nucleus sampling)

Also known as nucleus sampling, this inference parameter restricts token selection to the most probable share of the distribution; 0.1 keeps the top 10%. It shapes diversity, not length, and should be tuned instead of temperature, not with it.

Top-k

The count of nearest-neighbour results (k) returned by a vector query. Microsoft recommends a k of 50 when using semantic ranker, so it has the most input to work with.

top_p (Top P, nucleus sampling)

Also known as nucleus sampling, this inference parameter restricts token selection to the most probable share of the distribution; 0.1 keeps the top 10%. It shapes diversity, not length, and should be tuned instead of temperature, not with it.

Topology

A Network Watcher view diagramming the resources in a VNet and how they relate. Traffic and packets are not shown.

Total Cost of Ownership calculator (TCO)

Before a migration, this Microsoft tool estimates what running existing on-premises workloads in Azure would cost compared with keeping them where they are.

Total retention

In Microsoft Sentinel, the combined analytics and data lake retention period, which can reach 12 years. Keeping data beyond the two-year analytics limit is only possible this way.

total_tokens (usage)

The usage field that sums prompt_tokens and completion_tokens, for example 37 + 86 = 123. Billing applies to both kinds of token.

TPM (tokens per minute)

Tokens per minute, the measure for Azure OpenAI quota and deployment rate limits. Going over it produces an HTTP 429 response.

Tracing (Foundry)

Request-level observability in Foundry that must be switched on first. Each request becomes an OpenTelemetry trace in the connected Application Insights resource, showing latency, token usage, tool calls, inputs and outputs.

Trade-off chart

A leaderboard chart placing models against two metrics, for example estimated cost versus quality, so you can see which ones balance both well.

Traffic Analytics

Using NSG or VNet flow logs, this Network Watcher feature reveals traffic patterns and top talkers. Rule evaluation is outside its scope.

Traffic Manager

A global traffic router working purely through DNS, with methods such as priority, weighted, performance and geographic, for any protocol. HTTP traffic never passes through it and it caches no content.

Traffic Manager Contributor

A built-in role whose permissions cover only managing Traffic Manager profiles; turning on Traffic Analytics is beyond it.

Traffic mirroring (shadow testing)

For Azure Machine Learning online endpoints, a way to send a copy of up to 50% of live requests to a test deployment. Clients still get answers only from the live deployment.

Traffic selector

Which local and remote prefix pairs may travel through an IPsec tunnel. A route-based gateway offers any-to-any, whereas a policy-based device expects each pair listed.

Training cutoff

The point in time beyond which a model knows nothing. Grounding with RAG at request time, not retraining, is how recent events are covered.

Transactional replication

A SQL Server replication method that supports Azure SQL Database as a subscriber, so databases can be migrated with very little downtime.

Transformer

The neural network design underlying GPT and most other LLMs. Text is tokenised and embedded, attention is applied across the context, and the next token is predicted.

TranslationRecognizer

A class in the Speech SDK that turns speech into translated text, and optionally synthesised audio, in chosen target languages. A successful result has ResultReason.TranslatedSpeech.

Translator custom endpoint (custom domain endpoint)

Once Translator has network restrictions, requests must go to the resource's own endpoint, <name>.cognitiveservices.azure.com/translator; the global and geography endpoints such as api-nam are rejected.

Translator detect operation (/detect)

A Translator operation that identifies the language of some text, returning its code and a confidence score, without performing a translation.

Translator geography endpoints (api-nam, api-apc, api-eur)

Text translation endpoints (Americas, Europe, Asia Pacific) that guarantee processing stays within one geography, whereas the global endpoint may fail over to locations outside it.

Translator languages operation (/languages, GetSupportedLanguages)

Lists the languages Translator supports across its translation, transliteration and dictionary scopes; calling it requires no authentication.

Translator translate operation (/translate)

The core Translator text operation. It can target several languages at once by repeating to=, detects the source automatically if from is left out, and accepts textType and toScript.

Transliteration (/transliterate, toScript)

Rendering text in a different script, such as Thai into Latn. The /transliterate operation alters only the script, whereas adding toScript to /translate returns a transliterated form of the translated text.

Transparency note

Documentation from Microsoft setting out what an AI feature can do, where it falls short and how it should be used. The Sentiment Analysis note, for instance, cautions against automatically deciding staff bonuses from sentiment scores.

Transparency principle

The responsible AI principle that people should be told when AI is involved, understand its capabilities and limits, and see how it arrived at a result, for example why a loan was refused.

Transparent Data Encryption (TDE)

At-rest encryption of database files and nothing more; any user able to query the database still reads the data in plaintext.

Transparent proxy

The default way Azure Firewall handles application rules: UDRs steer client traffic through it, so clients need no proxy configuration. It does not act as a reverse proxy for incoming web traffic.

Trusted launch

A free security type for Generation 2 Azure VMs on supported sizes, providing Secure Boot, a vTPM and boot integrity monitoring. Hardware memory encryption is what confidential VMs add beyond it.

Trusted launch Secure Boot

Within trusted launch, the protection that blocks any boot loader, kernel or kernel driver lacking a valid signature, so unsigned images won't start. Guest attestation needs it enabled together with vTPM.

Trusted Microsoft services (Allow trusted Microsoft services to bypass this firewall)

An exception in the Key Vault firewall that lets approved services, among them Azure Backup, Azure Disk Encryption and Resource Manager template deployment, access the vault regardless of network.

Trusted root certificate

How Application Gateway v2 trusts a backend: the .cer root CA certificate for the backend's certificate is added in backend settings. Certificates issued by well-known CAs don't require it.

Tunnel type

The point-to-site gateway choice of OpenVPN, IKEv2, SSTP or a mix, which has to suit the client software. Only OpenVPN connections can use Microsoft Entra ID authentication.

TunnelDiagnosticLog

A resource log on VPN Gateway recording past tunnel connections and disconnections, handy for pinning down when an outage happened before digging into IKEDiagnosticLog.

TXT record

A DNS record containing free-form text, commonly used to prove ownership of a domain.

U

U-SQL

The language used to write queries for Azure Data Lake Analytics, which has been retired.

UDP (User Datagram Protocol)

A transport protocol that sends data without establishing a connection.

UDR (user-defined route)

A static entry in a route table that takes precedence over Azure system routes, for instance sending traffic to a virtual appliance or virtual network gateway as next hop. BGP routes are learned dynamically; these are not.

Ultra Disk

The fastest managed disk type in Azure, frequently offering more IOPS than a typical SQL Server workload needs.

Ultra Performance (UltraPerformance)

An ExpressRoute gateway SKU, not zone-redundant, that supports FastPath. Its greater throughput does not make failure detection any quicker.

UNC path (Universal Naming Convention)

The Universal Naming Convention form of a Windows share address. Mapping an Azure Files share as a drive over SMB (TCP 445) uses \\<account>.file.core.windows.net\<share>.

Unfamiliar sign-in location (unfamiliar sign-in properties)

A sign-in risk detection in ID Protection raised when the location, IP address or device has not previously been seen for that user.

union()

Given several arrays or objects, this ARM template function returns one combined result in which any repeated value appears just once.

Universal with MFA (Microsoft Entra MFA)

An authentication choice in SSMS for interactive Microsoft Entra sign-in that supports multifactor authentication.

Unlimited data plan (UnlimitedData)

Under this ExpressRoute billing option, the monthly charge covers all inbound and outbound data. ExpressRoute Local can only use this plan.

Unmanaged disks

An older approach, now retired in favour of managed disks, where VM disks were VHD page blobs kept in a storage account you owned.

UNMASK

Granting this SQL permission lets a user see real values that dynamic data masking would otherwise hide.

Update domain (UD)

During planned maintenance, VMs in the same one of these groups reboot together, and only one group is rebooted at a time. Availability sets default to 5 and allow up to 20.

Update Management

See Azure Update Manager.

Update-AzAksNodePool

Changes the settings of an existing AKS node pool from PowerShell (Az.Aks); turning on autoscaling, for instance, takes -EnableAutoScaling alongside -MinCount and -MaxCount.

UPN (user principal name)

User principal name, the user@domain sign-in name of a user. Only domain suffixes verified in the tenant can be used.

uri_file (AssetTypes.URI_FILE)

An input type for jobs and data assets that references one file, whatever its format.

uri_folder (AssetTypes.URI_FOLDER)

When a job or data asset must reference many files, this type points at their folder or container; the compute then mounts or downloads them.

URL (uniform resource locator)

The web address of a resource, on which URL-based routing relies.

URL filtering

With Azure Firewall Premium, application rules can filter on the complete URL path rather than just the FQDN as in Standard. Network rules don't offer it.

URL path-based routing

An Application Gateway rule type that chooses the backend pool from the request's URL path, such as /videos/* versus /images/*.

Usage + quotas

Shows how many network resources are deployed compared with subscription and regional limits. It reports limits only and captures no traffic data.

Usage analytics

Application Insights tooling for understanding behaviour: who the users are, their sessions, retention, funnels and the flows they follow.

Usage location (UsageLocation)

A user attribute that exists only in the cloud (AD sync doesn't supply it) and is required before a licence can be assigned directly. Group-based licensing once required it too, but now defaults to the tenant's location.

Use Azure Private IP Address

Setting this on a VPN connection makes the gateway's private IP the tunnel endpoint, which is how IPsec runs over ExpressRoute private peering. Compatibility between route-based gateways and policy-based devices is a separate matter it doesn't solve.

Use remote gateways

A peering option set on the spoke so its traffic uses the hub's gateway. It concerns gateway transit only and has no effect on VM-to-VM traffic over the peering.

User Access Administrator

Granted Microsoft.Authorization/* actions, this Azure role handles role assignments and management locks, yet it can't write tags or manage any other resources. For creating or removing locks, no less-privileged role suffices.

User Administrator

A Microsoft Entra role able to create and manage users and every kind of group, assign licences, and reset passwords for limited administrators.

User delegation SAS

The most secure kind of SAS, signed using Microsoft Entra credentials, so it still works when Shared Key is disabled. Valid for up to 7 days, it covers Blob (ADLS Gen2 included), Queue, Table and Azure Files over REST, but not stored access policies.

User experience mitigation layer

In generative AI, the layer of mitigations built into the interface: UI design, telling users AI is involved, prompting them to review and edit, and limiting inputs and outputs to curb misuse and overreliance.

User message (user prompt)

The chat role for whatever the end user supplies, such as a question or an image, in contrast to the persistent instructions held in the system message.

User prompt attack (jailbreak, direct attack)

Also called a jailbreak, this is a harmful prompt typed by the user to override the system message or safety training. Prompt Shields for user prompts flags it; instructions concealed in documents are a different threat it misses.

User response (alert state)

New, Acknowledged or Closed: the state someone sets on an alert after it fires. It is independent of the monitor condition and may be changed at any point.

User VPN (point-to-site in Virtual WAN)

Point-to-site connectivity in Virtual WAN, giving individual clients a gateway and configuration. It needs the Standard Virtual WAN tier and is not how branch offices connect.

User-assigned identity

See User-assigned managed identity.

User-assigned managed identity

A managed identity created as its own resource and attachable to many resources, meaning role assignments only need to be made once.

User.Read

Lets an app read the profile of whoever is signed in. This low-impact delegated Graph permission is included automatically in new app registrations, and microsoft-user-default-low typically allows users to consent to it.

User.ReadWrite.All

A Microsoft Graph permission granting read and write access to every user's profile. The app must already have a registration, meaning a service principal, before it can receive it.

user_impersonation

A delegated permission, found on APIs such as Azure Key Vault, through which an app acts as the signed-in user. For Key Vault, users can grant it themselves because admin consent isn't required.

Users can register applications

A tenant-wide setting found at Entra ID > Users > User settings. When it is No, app registration (and so service principal creation) is limited to admins and roles like Application Developer.

V

validate-azure-ad-token

An inbound API Management policy built specifically for Microsoft Entra tokens, checking the JWT's tenant, client application IDs, audiences and claims; a specialised option instead of validate-jwt.

validate-jwt

Before API Management passes a request on to the back end, this policy confirms the JWT has the expected issuer, audience and claims.

Variables (ARM template)

A section of an ARM template for values set within the template itself and retrieved using variables('name'). Deployments cannot override them, and they have no effect unless some resource uses them.

Vaulted backup

With this Azure Backup tier, a daily or weekly schedule copies data off-site into the vault, where it can be held for as long as 10 years. Restoring blobs from it is possible only into another storage account.

vCore model

For Azure SQL, buying compute by picking vCores, memory and storage individually; reserved capacity and Azure Hybrid Benefit both apply.

vCPU quota

Limits applied per subscription and region at two levels: overall regional vCPUs and vCPUs per VM family. Deployments must stay within both, and deallocated VMs count as well as allocated ones.

Vector store

What the file search tool in Agent Service looks through: a container of file content that has been chunked and embedded. Capacity is 10,000 files, with one allowed per agent and one per conversation.

Versioning (blob)

When enabled on Blob Storage, earlier versions of each blob are retained. Point-in-time restore depends on it, though it never purges data itself.

VertiPaq

The in-memory engine behind Power BI; Direct Lake pulls Delta and Parquet data into it.

VHD (virtual hard disk)

A disk image format for virtual hard disks; the Azure Migrate appliance for Hyper-V, for instance, is downloaded as one.

VIP (virtual IP)

The frontend address of a load balancer, also called its virtual IP. Its availability is tracked by the Data Path Availability metric.

Virtual hub (hub)

Inside a Virtual WAN, a VNet managed by Microsoft that contains the hub router plus the VPN, ExpressRoute and User VPN gateways. Typically there is one per region, but several hubs can share a region.

Virtual Kubelet

The open-source project on which AKS virtual nodes are built.

Virtual Machine Administrator Login

Grants the loginAsAdmin data action, meaning someone can log on to a VM with admin rights; managing the VM resource is not included in this Azure role.

Virtual Machine Contributor

An Azure role that can manage virtual machines while having no rights over the networks or storage they attach to.

Virtual Machine User Login

With this Azure role, a person can log on to a VM with ordinary, non-admin rights, because it grants the login data action.

Virtual machines (VMs)

Infrastructure-as-a-service compute giving complete control of the operating system, making it a fit for lift-and-shift moves and for software relying on OS-level pieces like COM.

Virtual network connection (hub virtual network connection)

Connects a VNet to a Virtual WAN hub and carries its routing configuration: association, propagation and static routes. A connected VNet cannot have a virtual network gateway of its own.

Virtual network flow logs (VNet flow logs)

Replacing NSG flow logs, these Network Watcher logs are switched on at the VNet and capture traffic per flow rather than per packet, storing it in a storage account for Traffic Analytics to use.

Virtual network gateway

Lives in GatewaySubnet and comes in two types, ExpressRoute or VPN. Setting it as the next hop in a UDR routes traffic on-premises.

Virtual network peering (VNet peering)

Connects VNets privately with low latency across the Microsoft backbone, whether in different regions, subscriptions or tenants or not. Because it is non-transitive, spokes sharing a hub need direct peering, or UDRs through a hub firewall or NVA, to talk.

Virtual network rule (VNet rule)

A firewall rule on resources such as Storage or Foundry Tools that lets in one subnet, provided the subnet has the corresponding service endpoint. The rule matters only with a default action of Deny; enabling the endpoint by itself allows nothing.

Virtual nodes

Nodes in AKS that run on Azure Container Instances, so Linux pods get compute within seconds. Azure CNI networking is a prerequisite.

Virtual WAN

A networking service built around hubs that Microsoft manages. The Basic type handles only site-to-site VPN; Standard brings in ExpressRoute, point-to-site and full transit.

Virtual WAN Basic

A Virtual WAN whose hubs are Basic and so offer site-to-site VPN only, with ExpressRoute, User VPN and full transit all unavailable. It can move up to Standard, but never back down.

Virtual WAN Standard

Hubs in this Virtual WAN type can host NVAs or Azure Firewall, link to other hubs and pass any-to-any traffic, and they support User VPN and ExpressRoute too.

Virtual WAN static route

Sends chosen prefixes to a next hop like an NVA's IP address in a spoke, configured on a hub route table or a virtual network connection. Put it on the connection belonging to the VNet that hosts the NVA.

VirtualNetwork (service tag)

Represents not just the VNet's own address space but also any peered VNets and connected on-premises ranges, as a service tag.

Vision fine-tuning

Fine-tuning where the JSONL messages include images as URLs or base64. Only gpt-4o (2024-08-06) and gpt-4.1 (2025-04-14) support it, and images showing people, faces or CAPTCHAs are dropped.

Vision-enabled chat model (large multimodal model)

A chat model able to understand images included in the prompt, such as GPT-4o, GPT-4.1, the GPT-5 series and o-series models. An application layer cannot add this capability to a model that handles only text.

VM extensions

Lightweight apps that the Azure VM Agent runs after deployment to configure a running VM or install software on it; their resource type is Microsoft.Compute/virtualMachines/extensions.

VM insights

Monitors VM performance in Azure Monitor and offers a dependency Map, though Map and the Dependency agent are deprecated and retire on 30 June 2028. Change auditing and NSG rule evaluation are outside its remit.

VM scale set (VMSS)

A load-balanced set of VMs that can autoscale, running in either Flexible or Uniform orchestration mode.

VMAccess extension (VMAccess)

Used on Windows VMs to reset the built-in administrator's password or the Remote Desktop configuration. It requires write access to the VM or extension, which VM login roles do not have.

VMMQ (Virtual Machine Multi-Queue)

A host networking technique distributing a VM's network traffic over several queues; it is slower than RDMA.

VMProtectionAlerts

A virtual network's sole resource log category, part of the allLogs group. NetworkSecurityGroupEvent and NetworkSecurityGroupRuleCounter are NSG categories instead.

VMSnapshot extension (VM backup extension)

Installed automatically by Azure Backup the first time an Azure VM is backed up, this extension orchestrates file- or application-consistent snapshots so the MARS agent isn't needed.

VMSS Flexible

An orchestration mode for scale sets that permits different VM types and operating systems, spreading across zones and Spot Priority Mix. Update domains cannot be configured in it.

VMSS Uniform

An orchestration mode for scale sets where every VM follows a single model and is either Spot or regular throughout.

VNet (virtual network)

A private network belonging to a single subscription and region and covering all of that region's availability zones. A VM can only use a VNet located in the same region.

VNet injection (Foundry Agent Service) (BYO virtual network)

Fixed when the account is created, this places agent compute in your own subnet (delegated to Microsoft.App/environments, at least /27) so calls to private resources never leave your VNet.

VNet integration

See Regional VNet integration.

VNet peering (virtual network peering)

Connects VNets privately with low latency across the Microsoft backbone, whether in different regions, subscriptions or tenants or not. Because it is non-transitive, spokes sharing a hub need direct peering, or UDRs through a hub firewall or NVA, to talk.

VNet-to-VNet connection (Vnet2Vnet)

An IPsec/IKE link joining two Azure VPN gateways. Turning on BGP for it lets chained VNets and sites exchange their prefixes.

VNet-to-VNet VPN (VNet-to-VNet connection)

Links the VPN gateways of two VNets with an encrypted IPsec/IKE tunnel. Each VNet needs a gateway, and compared with VNet peering it is pricier and adds latency.

VNN (virtual network name)

The legacy listener type for SQL Server on Azure VMs, requiring an Azure Load Balancer; DNN has replaced it.

Voice Live API (Voice Live)

Real-time voice agents can be built on this fully managed, low-latency speech-to-speech service. One WebSocket brings together speech recognition, a generative model and text to speech, with optional avatars and function calling, and replies come back as audio rather than text alone.

Voice talent profile (voice talent)

Holds only the recorded consent statement of the voice talent in a professional voice project; it is checked against training audio to prove the same person is speaking. Training .zip files are uploaded elsewhere.

Voice-based prompt agent

A Foundry prompt agent, set up with a model, instructions, tools and audio settings, that users converse with through Voice Live, so you don't run voice orchestration yourself.

Voices list API

A GET request in the text to speech REST API returning standard voices with their locale, gender and styles; the path is /cognitiveservices/voices/list on the regional tts endpoint or /tts/cognitiveservices/voices/list on the resource endpoint. No speech is synthesised.

VPN (virtual private network)

Traffic sent through an encrypted tunnel across a public network, as in a site-to-site connection to a VPN gateway in an Azure GatewaySubnet.

VPN client profile configuration package (VPN client configuration package)

Generated as a zip from a gateway's point-to-site settings. Since Windows clients keep only the routes known when it was produced, any change to peering or topology means downloading and reinstalling it.

VPN configuration file

Needed when configuring the on-premises device; it comes from the VPN (Site to site) page of a hub and gives the gateway instance IPs, which address spaces are connected, and the connection settings.

VPN gateway

Terminates IPsec tunnels for site-to-site, point-to-site and VNet-to-VNet connections, as a VPN-type virtual network gateway in GatewaySubnet. It gets a Standard static public IP when created, and that IP can't be swapped.

VPN Gateway Basic SKU

A VPN gateway SKU meant only for development, limited to 10 site-to-site tunnels and 100 Mbps, without BGP, zone redundancy, ExpressRoute coexistence or OpenVPN/Entra ID point-to-site. No other SKU can use a /29 GatewaySubnet.

VPN gateway health probe

A healthy VPN gateway responds at https://<gateway public IP>:8081/healthprobe; in active-active mode the second instance uses port 8083.

VPN Gateway NAT (NAT rule)

Handles overlapping prefixes between on-premises networks and VNets on site-to-site connections by translating them with ingress and egress NAT rules on the VPN gateway.

VPN site

In Virtual WAN, the representation of an on-premises VPN device, covering its public IP, address space, links and optional BGP, which is connected to a hub's site-to-site VPN gateway.

VPN troubleshoot

Diagnoses a route-based VPN gateway or connection on demand from Network Watcher, storing logs in a storage account. Alerts aren't possible, and ExpressRoute isn't supported.

Vpnconfig.ovpn

The OpenVPN client profile found in the point-to-site package and loaded into OpenVPN Connect for certificate authentication. Entra ID point-to-site does not use it.

VpnGw1

The entry-level VPN gateway SKU above Basic, without zone redundancy, offering 30 site-to-site tunnels and BGP; it is the minimum for ExpressRoute coexistence and OpenVPN/Entra ID point-to-site. Non-AZ VpnGw1 to VpnGw5 could not be created after 1 November 2025 and retired on 30 September 2026, moving to VpnGw1AZ to VpnGw5AZ.

VpnGw1AZ

A Generation1 VPN gateway SKU with zone redundancy, 650 Mbps and as many as 30 site-to-site tunnels. Because AZ SKUs survive a zone failure without dropping tunnels, they are recommended for new gateways.

VpnGw2AZ

A VPN gateway SKU with zone redundancy, supporting 30 site-to-site tunnels at most and 1 to 1.25 Gbps. The AZ suffix indicates its instances are distributed over availability zones.

VpnGw3AZ

Among zone-redundant SKUs limited to 30 site-to-site tunnels, this is the top one, reaching 2.5 Gbps on Generation2.

VpnGw4AZ

A Generation2 zone-redundant VPN gateway SKU at 5 Gbps with as many as 100 site-to-site tunnels; the least expensive option when over 30 zone-redundant tunnels are needed.

VpnGw5AZ

A Generation2 zone-redundant VPN gateway SKU at 10 Gbps, supporting 100 site-to-site tunnels. Choose it for 31 to 100 tunnels when VpnGw4AZ's throughput falls short.

VRRP (Virtual Router Redundancy Protocol)

A protocol giving LAN gateways redundancy; Azure VNets don't use it for routing.

VSS (Volume Shadow Copy Service)

The Windows snapshot service that MARS relies on to take consistent copies. On its own it does not provide backups.

vTPM (virtual Trusted Platform Module)

A virtualised Trusted Platform Module within a VM. On confidential VMs, the OS disk keys are bound to it by confidential disk encryption.

VXLAN (Virtual Extensible LAN)

Encapsulation of layer 2 frames in UDP on port 4789. Gateway Load Balancer chains NVAs with it, and Azure Extended Network uses it to carry a stretched subnet between its pair of appliances.

W

WAC

See Windows Admin Center.

WAF

See Web Application Firewall.

WAF custom rules

WAF rules you define yourself, of match or rate-limit type, that are processed ahead of managed rules and can test conditions like geo-location, IP, headers or URI.

WAF exclusion (exclusion list)

Takes a named header, cookie or argument (matched by Equals, Starts with, Ends with or Contains) out of managed-rule inspection in a WAF. Client IPs can't be matched, and it won't help with a rule triggered by a missing header.

WAF policy

The resource containing a WAF's custom and managed rules, linked to an Application Gateway or a Front Door endpoint; it is never attached straight to Azure Firewall or a web app.

WAF V2 (WAF_v2)

Of the Application Gateway tiers, this one brings protection based on the OWASP Core Rule Set; Standard lacks any WAF, and the first-generation WAF tier reached retirement on 28 April 2026.

WAF_v2

See WAF V2.

WAImportExport (WAImportExport.exe)

Drives destined for Azure Import/Export are prepared with this command-line utility, which applies BitLocker encryption, copies the data across and generates a journal file.

WAN (wide area network)

A network connecting sites in different geographic locations; for Azure's hub-based service, refer to Virtual WAN.

WANdisco

A tool for migrating Hadoop data; it isn't intended for databases or VMs.

wasbs:// (Windows Azure Storage Blob (secure))

Addresses Blob Storage securely through its account.blob.core.windows.net endpoint. To reference all the blobs in a container, combine this URI scheme with uri_folder.

Watchlist

A reference list in Microsoft Sentinel, for example of IP ranges or VIP users, kept in the Watchlist table so queries and rules can look values up. It takes no action on incidents.

Web API

Receives tokens issued by Microsoft Entra, validates them and decides what callers may do based on their roles and scp claims. A web app making the calls acts purely as a client.

Web App for Containers

The App Service offering for running containers, with Easy Auth, autoscaling and continuous deployment from ACR built in.

Web Application Firewall (WAF)

Protection at layer 7 from OWASP Top 10 threats like XSS and SQL injection, available on Application Gateway or Front Door.

Web Application Proxy

A legacy Windows Server role for publishing applications via AD FS; Microsoft Entra application proxy is a different thing.

Web categories (Azure Firewall)

Destinations for Azure Firewall application rules such as social networking or gambling. Premium categorises using the full URL, Standard using only the FQDN.

Webhook

In an action group, an action that posts the alert payload to an HTTP endpoint; each subscription may make up to 1,500 such calls per minute.

WebJob

A job running in the background within an App Service app, sharing its plan. It does not serve as a central scheduler.

Website Contributor

Manages web apps but not the plans behind them, allowing Entra identities to publish with no need for deployment credentials.

WebVTT (Web Video Text Tracks)

A timed-text format using hh:mm:ss.fff timestamps and speaker tags, produced for Speech captions and for audio and video transcripts in Content Understanding.

weight (fine-tuning)

In multi-turn training data, an optional 0 or 1 value placed on assistant messages; a message marked 0 is not trained on.

Weighted (routing)

Distributes traffic among Traffic Manager endpoints in proportion to the weights assigned to them.

What If tool (What If)

Simulates a sign-in to reveal which Conditional Access policies, whether On or Report-only, would take effect.

Whisper

An OpenAI model that transcribes speech and can translate it into English, with files capped at 25 MB; it is offered through Azure Speech and Azure OpenAI. Azure OpenAI's whisper (001) model is due to retire on 15 December 2026.

WHOIS

A protocol for looking up domain registrations. Defender EASM takes the organisations and contacts it returns as discovery seeds and asset information.

Wildcard certificate

Issued for *.domain, this TLS certificate secures any first-level subdomain, so new host names on a listener are covered; the bare apex and multi-level subdomains are not.

Windows Admin Center (WAC)

Browser-based management for Windows Server. Besides registering servers with Azure, its extensions can configure Azure Extended Network, Azure Network Adapter and Azure Backup (using MARS).

Windows Azure Diagnostics extension (WAD)

Known in full as the Azure Diagnostics extension for Windows, this older extension wrote guest OS data to storage. AMA with DCRs took over after its retirement on 31 March 2026.

Windows certificate store

A key store local to Windows that can hold Always Encrypted column master keys. Since App Service managed identities cannot access it, Key Vault is used in that case.

Windows Event Forwarding (WEF)

Using subscriptions, this Windows capability sends event log entries from source machines to a collector server. CEF and syslog are not things it can receive.

Windows Firewall Events via AMA (Windows Firewall connector)

Replacing the legacy MMA-based connector, this Microsoft Sentinel connector uses AMA plus a DCR to collect Windows Defender Firewall events, reaching on-premises servers via Azure Arc.

Windows Forwarded Events

Brings events into the WindowsEvent table of Microsoft Sentinel from a Windows Event Collector running AMA, rather than from every VM individually or into SecurityEvent.

Windows Hello for Business (WHfB)

Sign-in for Windows that needs no password and resists phishing, provided the device has suitable hardware.

Windows Security Events connector (Security Events connector)

Brings Windows security events into the SecurityEvent table in Microsoft Sentinel. Onboarding servers to Defender for Cloud is not part of what it does.

Windows Security Events via AMA

Uses AMA and a DCR to send events from the Windows Security event log into Microsoft Sentinel's SecurityEvent table.

Windows Server 2022 Datacenter: Azure Edition (Azure Edition)

Runs only as a VM and is optimised for Azure, adding Hotpatch, SMB over QUIC and Extended Network. For the Azure appliance, the Extended Network wizard lists this edition alone.

Windows Server Backup

The Windows Server feature that applies a system state recovery from MARS to the server; restoring files and folders does not require it.

Windows Virtual Desktop

See Azure Virtual Desktop.

WinRM (Windows Remote Management)

Windows Remote Management, the protocol PowerShell remoting runs over. HTTPS uses TCP port 5986 and HTTP uses 5985.

Wire Data

A solution in Azure Monitor showing network connections between machines. NSG rule evaluation is not part of it.

WMI (Windows Management Instrumentation)

The interface for reading and modifying Windows system information, queried using WQL. Azure Monitor does not collect data through it.

Workbook (Azure Workbooks)

An interactive report in Azure Monitor that brings together text, metrics and logs.

Workday

An HR platform; gallery provisioning apps can provision its users into Microsoft Entra ID or AD.

Workload profiles environment

Container Apps' default environment type (v2), which supports Consumption and Dedicated workload profiles together with NAT Gateway and UDRs. A custom VNet needs a subnet delegated to Microsoft.App/environments, sized /27 or bigger.

WORM (write once, read many)

Write once, read many: a model of immutability for compliance data, allowing it to be read while preventing changes or deletion.

WQL (WMI Query Language)

The query language for WMI, resembling SQL. Azure Monitor does not rely on it to filter which events are collected.

wrapKey / unwrapKey

Operations in Key Vault for encrypting and decrypting one key with another. Together with get, they are the access-policy permissions required by the identity behind a CMK or TDE protector.

Write Accelerator

Available only on M-series VMs, this option for Premium SSD disks reduces write latency for database logs. Disks using it don't support ADE.

WS-Fed (WS-Federation)

WS-Federation, a protocol for federation that Microsoft Entra ID supports and which is used with partner identity providers not built on Entra.

X

X-Azure-FDID

Lets an origin accept requests from just one particular Front Door instance, since this HTTP header carries the ID of the Front Door profile.

X-Forwarded-For (XFF)

Lists the chain of client IP:port pairs in an HTTP header. Application Gateway appends the client's IP and port; a rewrite using client_ip or add_x_forwarded_for_proxy drops the port.

X-Forwarded-Host

An HTTP header holding the host name the client originally asked for. The client's port is not included.

XML (Extensible Markup Language)

A text-based format for data, used for instance in message bodies.

XPath (XML Path Language)

Expressions such as Security!*[System[(EventID=4648)]], placed in a DCR's xPathQueries, that decide which Windows events AMA gathers. Each portal box takes 20 at most, and a DCR is limited to 100.

XSS (cross-site scripting)

A web attack in which harmful scripts are injected into pages that other users then view; a WAF blocks it.

Z

Zero-shot prompting (zero-shot)

Giving a model only the instruction without any examples, for instance asking a chat model to sort text into categories named in the prompt.

Zonal

Placed in a single availability zone, as with a Standard NAT gateway. It continues to serve subnet resources located in other zones, but goes down if its own zone fails.

Zone transfer (AXFR/IXFR)

Replicating a DNS zone to secondary servers. Neither public nor private Azure DNS zones allow it, so an Azure zone can't be held in on-premises secondary or stub zones.

Zone-redundant

Distributed over every availability zone in a region, allowing it to withstand losing one zone; a StandardV2 NAT gateway is an example.

Zone-redundant gateway

A virtual network gateway on an AZ SKU, paired with a Standard zone-redundant public IP, with instances across availability zones. Zone resilience comes from this rather than from adding ExpressRoute circuits.

Zone-redundant plan

A Premium v2 or later App Service plan distributing a minimum of two instances (formerly three) over availability zones.

ZRS (zone-redundant storage)

Zone-redundant storage: data is written three times, each copy in a different availability zone of the same region, and nothing is replicated to a secondary region.

Zscaler

Through Azure Firewall Manager, this security partner provider can be deployed in a secured virtual hub.

ZZ (country code) (Unknown country/region)

The geo-match value used for IP addresses that haven't yet been assigned to a country. Adding it to negated geo rules prevents genuine users from being blocked.