Skip to content

Commit 4ac5367

Browse files
authored
Merge pull request #308723 from MicrosoftDocs/repo_sync_working_branch
Confirm merge from repo_sync_working_branch to main to sync with https://github.com/MicrosoftDocs/azure-docs (branch main)
2 parents 0fc1c42 + 4a4c7e2 commit 4ac5367

3 files changed

Lines changed: 4 additions & 3 deletions

File tree

articles/frontdoor/front-door-wildcard-domain.md

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -43,7 +43,7 @@ For accepting HTTPS traffic on your wildcard domain, you must enable HTTPS on th
4343

4444
> [!NOTE]
4545
> * You can choose to use the same wildcard certificate from Azure Key Vault or from Azure Front Door managed certificates for subdomains.
46-
> * If you want to add a subdomain of the wildcard domain that’s already validated in the Azure Front Door Standard or Premium profile, the domain validation is automatically approved. This is applicable to Bring Your Own Certificate. Domain ownership is required for managed certficate for sub-domains.
46+
> * If you want to add a subdomain of the wildcard domain that’s already validated in the Azure Front Door Standard or Premium profile, the domain validation is automatically approved. This is applicable to Bring Your Own Certificate. Domain ownership is required for managed certificate for sub-domains.
4747
> * If a wildcard domain is validated and already added to one profile, a single-level subdomain can still be added to another profile as long as it is also validated.
4848
4949
## Define a subdomain explicitly

articles/frontdoor/standard-premium/how-to-enable-private-link-internal-load-balancer.md

Lines changed: 2 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -46,7 +46,7 @@ In this section, you map the Private Link service to a private endpoint created
4646
* **Name** - Enter a name to identify this origin.
4747
* **Origin type** - Select the **Custom** origin type.
4848
* **Host name** - The host name is used for SNI (SSL negotiation) and should match your server side certificate. |
49-
* **Origin host header** | The origin host header can be the private link private IP for the internal load balancer or a valid domain name.
49+
* **Origin host header** - The origin host header can be the private link private IP for the internal load balancer or a valid domain name. When a private link service is enabled, this field is used only for the HTTP request header.
5050
* **Certificate subject name validation** - Select the checkbox to enable certificate subject name validation. This validation checks the certificate subject name against the host name. If the certificate subject name doesn't match the host name, the connection is rejected. **This validation is required if private link is enabled.**
5151
* **HTTP port** - 80 (default)
5252
* **HTTPS port** 443 (default)
@@ -79,6 +79,7 @@ In this section, you map the Private Link service to a private endpoint created
7979
The following are common mistakes when configuring an origin with Azure Private Link enabled:
8080

8181
* Adding the origin with Azure Private Link enabled to an existing origin group that contains public origins. Azure Front Door doesn't allow mixing public and private origins in the same origin group.
82+
* Private Link changes how the **Host name** and the **Origin host header** fields operate. It doesn't change the NAT behavior of the flow to the private link service origin.
8283

8384
## Related content
8485

articles/vpn-gateway/whats-new.md

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -32,7 +32,7 @@ You can also find the latest VPN Gateway updates and subscribe to the RSS feed [
3232
3333
| Event | Customer impact| Anticipated timelines | Customer action/ prerequisites | Documentation | Announcement Links |
3434
|---|---|---|---|---|---|
35-
|Basic SKU public IP address migration - For all VPN SKU's except Basic SKU Gateway |- New [pricing changes](https://azure.microsoft.com/pricing/details/ip-addresses/).<br>- To qualify for successful migration, ensure you have the right IP address space and subnet size.<br>- Up to 10 minutes of downtime is expected during customer-controlled migration.<br>- Customers will have atleast ~3 months to migrate after the release of the migration tool.|- **Starting Aug 4, 2025**: Basic SKU public IP address-to-Standard SKU public IP address migration tool is in **public preview** for **active-passive** gateways in Public cloud. <br> - Tentative **GA** timeline for Public and National cloud support **End of Nov 2025** <br>- **Jan 2026**: Basic SKU public IP address-to-Standard SKU public IP address migration tool tentative **GA** timeline for **active-active** gateways.<br>- **From Aug 4, 2025 to End of Mar 2026**: Customer-controlled migration can be initiated after tool availability.<br>- **April 2026**: Basic SKU public IP addresses are deprecated. <br> - **Deprecation timeline of Basic IP for all VPN Gateways is moved to End of Mar 2026**|- Ensure you have the right IP address space and subnet size, check here.<br>- If your VPN gateway is using a Basic SKU public IP address, migrate it to a Standard SKU public IP address.<br> - If your VPN gateway is already using a Standard SKU public IP address, no action is required.|- [About Basic SKU Public IP address migration](basic-public-ip-migrate-about.md) <br> - [How to migrate Basic SKU public IP address to Standard](basic-public-ip-migrate-howto.md?tabs=portal)|[Basic SKU public IP address retirement](https://azure.microsoft.com/updates?id=upgrade-to-standard-sku-public-ip-addresses-in-azure-by-30-september-2025-basic-sku-will-be-retired) |
35+
|Basic SKU public IP address migration - For all VPN SKU's except Basic SKU Gateway |- New [pricing changes](https://azure.microsoft.com/pricing/details/ip-addresses/).<br>- To qualify for successful migration, ensure you have the right IP address space and subnet size.<br>- Up to 10 minutes of downtime is expected during customer-controlled migration.<br>- Customers will have at least ~3 months to migrate after the release of the migration tool.|- **Starting Aug 4, 2025**: Basic SKU public IP address-to-Standard SKU public IP address migration tool is in **public preview** for **active-passive** gateways in Public cloud. <br> - Tentative **GA** timeline for Public and National cloud support **End of Nov 2025** <br>- **Jan 2026**: Basic SKU public IP address-to-Standard SKU public IP address migration tool tentative **GA** timeline for **active-active** gateways.<br>- **From Aug 4, 2025 to End of Mar 2026**: Customer-controlled migration can be initiated after tool availability.<br>- **April 2026**: Basic SKU public IP addresses are deprecated. <br> - **Deprecation timeline of Basic IP for all VPN Gateways is moved to End of Mar 2026**|- Ensure you have the right IP address space and subnet size, check here.<br>- If your VPN gateway is using a Basic SKU public IP address, migrate it to a Standard SKU public IP address.<br> - If your VPN gateway is already using a Standard SKU public IP address, no action is required.|- [About Basic SKU Public IP address migration](basic-public-ip-migrate-about.md) <br> - [How to migrate Basic SKU public IP address to Standard](basic-public-ip-migrate-howto.md?tabs=portal)|[Basic SKU public IP address retirement](https://azure.microsoft.com/updates?id=upgrade-to-standard-sku-public-ip-addresses-in-azure-by-30-september-2025-basic-sku-will-be-retired) |
3636
|Basic SKU public IP address migration - For Basic SKU Gateway | - Your actual IP address will not change, and connectivity will not be interrupted. | An automated capability to remove the Basic public IP from your gateway will be available **Mid-February'2026** <br> - **Deprecation timeline of Basic IP for all VPN Gateways is moved to end of Mar 2026** | - Because Microsoft is retiring Basic public IP resources, we’re updating the Basic VPN Gateway construct. You’ll see the Basic public IP reference as an attribute on your virtual network gateway. <br> - Your actual IP address will not change, and connectivity will not be interrupted. <br> - If you have scripts, ARM templates, or monitoring solutions that reference the Basic public IP resource, update them to use the IP address property of the virtual network gateway instead. | Available when the migration details are released | [Basic SKU public IP address retirement](https://azure.microsoft.com/updates?id=upgrade-to-standard-sku-public-ip-addresses-in-azure-by-30-september-2025-basic-sku-will-be-retired) |
3737
|Non-AZ gateway SKU retirement |- New pricing for AZ gateway SKUs applied since Jan 2025.<br>- Non-AZ gateway SKUs will be migrated to AZ gateway SKUs with no downtime expected.<br>- Non-AZ gateway SKU creates to be blocked by May 2025. |- **Jan 2025**: New pricing for AZ gateway SKUs activated.<br> - **May 2025 to Sep 2026**: Non-AZ gateway SKU-to-AZ gateway SKU migration available.<br> - **Sep 2026**: Non-AZ gateway SKU retirement.|- If the VPN gateway is using a Basic public IP address SKU, migrate it to a Standard public IP address SKU. In case of Standard IP, you can upgrade the gateway SKU from portal |[VPN Gateway SKU consolidation and migration](gateway-sku-consolidation.md)| [Non-AZ gateway SKU retirement](https://azure.microsoft.com/updates?id=vpngw1-5-non-az-skus-will-be-retired-on-30-september-2026)|
3838
|Gateway SKU retirement: Standard and High Performance SKUs.|- New Standard/High Perf SKU gateway creations blocked Nov 2023.<br> - Standard/High Perf SKU gateways will be migrated to VpnGw1/VpnGw2 on non-AZ regions and to VpnGw1AZ/VpnAz2 on AZ regions.<br> - Up to 10 minutes of downtime is expected during customer-controlled migration.|- **May 2025 to Mar 2026**: Standard/HighPerf SKU migration.<br>- **Mar 2026**: Standard/HighPerf SKU retirement (extended from Sep 2025).| - Migrate your Basic IP address from portal when the experience is available by Nov 2025 |[Working with VPN Gateway legacy SKUs](vpn-gateway-about-skus-legacy.md)|[Standard and HighPerf gateway SKU retirement](https://azure.microsoft.com/updates?id=standard-and-highperformance-vpn-gateway-skus-will-be-retired-on-30-september-2025)|

0 commit comments

Comments
 (0)