Azure

Microsoft Azure is the cloud platform where enterprise IT goes to die slowly while spending millions. In regulated industries like banking, Azure isn't just a cloud provider—it's a compliance minefield wrapped in networking complexity. At scale (30,000+ resources across 40+ subscriptions), Azure reveals fundamental architectural assumptions that Microsoft's documentation conveniently ignores. Private endpoints break everything. ExpressRoute costs more than your annual car payment. And Azure Policy can't fix bad architecture decisions made three years ago. Real Azure administration means understanding hybrid cloud reality: on-premises Active Directory that won't die, VMware infrastructure that finance already paid for, and compliance requirements that assume you control the network. Microsoft's documentation shows you the simple path. Enterprise Azure forces you down the hard one—where every resource needs tags for cost allocation, every subscription needs governance policies, and every migration requires 55 questions answered before you touch Azure Migrate.

Stop Guessing at Azure Enterprise Architecture

Get Azure Integration Assessment Framework

All Azure Posts (119)

Building a Persistent Azure Operations Dashboard (AZQR + App Service + Storage)

December 17, 2025

Microsoft's Azure Quick Review (AZQR) consolidates Advisor, Defender for Cloud, Policy, and Cost Management into one dashboard - but only runs locally. Here's how to host it in Azure App Service for 24/7 team access, scheduled scans, and historical tracking. Complete with Dockerfile, deployment scripts, and Entra ID authentication. Part 3 of the Azure Operations Platform series.

Operational Intelligence: Using Azure Tags for Instant Answers (2025)

December 17, 2025

Azure tags evolved from preventing Azure Update Manager disasters to becoming our operational intelligence layer. The Type tag excludes appliances from automated patching while enabling instant answers to executive questions about on-prem footprint, vendor inventory, and migration progress. Policy enforcement in Deny mode, tag-based filtering workflows, and KQL queries that answer 'how many machines on-prem?' in 30 seconds instead of manual 3-day inventory projects.

Azure Migrate's 18-Month Data Deletion: The Enterprise Migration Timer Microsoft Calls 'Expected Behavior'

December 16, 2025

Azure Migrate appliances have an 18-month hard limit before mandatory re-registration that deletes all discovery data. Microsoft documents this as 'expected behavior' in the FAQ but provides no alerts, no data preservation, and no migration path. The certificate expires at 12 months with one 6-month extension available, then forces complete appliance reconfiguration with total data loss at month 18.

The Logic App That Monitors Every Expiring Certificate in Azure (And Accidentally Saved Our Migration)

December 16, 2025

Production Logic App that monitors app registration certificates and secrets via Microsoft Graph API. Handles pagination for 100+ apps, extracts owner information, sends HTML email alerts. Built for security compliance, caught Azure Migrate appliances expiring before production migration. Complete walkthrough with working code.