An Azure service that provides serverless Kubernetes, an integrated continuous integration and continuous delivery experience, and enterprise-grade security and governance.
AKS konnectivity-agent tunnel instability causing intermittent 503s on admin operations
Cluster aks-asclepius-prod (resource group rg-aks, East US 2, K8s 1.35.1, private cluster with KMS etcd encryption) experiences persistent konnectivity tunnel failures. Symptoms: konnectivity-agent pods enter cannot connect once error loops, unable…
Azure Kubernetes Service
Azure Kubernetes Fleet Manager: L4 Load Balancing (MCS) Traffic Failing for Specific Member Cluster
I'm currently testing the Multi-cluster L4 load balancing using Azure Kubernetes Fleet Manager. While the setup is partially working, I'm encountering a connectivity issue with one of the member clusters. 1. Environment Setup Fleet Manager: Hub-cluster…
Azure Kubernetes Service
An Azure service that provides serverless Kubernetes, an integrated continuous integration and continuous delivery experience, and enterprise-grade security and governance.
Node restarted after being marked as NotReady
Posting this question again, as I was not allowed to comment under my already existing question. Our node was suddenly marked as NotReady, which then caused it to restart. It has been running with no issues over the past weeks, and no changes in its…
Azure Kubernetes Service
An Azure service that provides serverless Kubernetes, an integrated continuous integration and continuous delivery experience, and enterprise-grade security and governance.
Node restarted after being marked as NotReady
Our node was suddenly marked as NotReady, which then caused it to restart. It has been running with no issues over the past weeks, and no changes in its configuration are done. Our node is running on version v1.34.2 We have disabled the automatic OS…
Azure Kubernetes Service
An Azure service that provides serverless Kubernetes, an integrated continuous integration and continuous delivery experience, and enterprise-grade security and governance.
**Title:** Orphaned AzureKubernetesService serviceAssociationLink blocking subnet and VNet deletion after AKS cluster is gone
@AzureSupport Hi, I have an orphaned serviceAssociationLink on a subnet that is blocking deletion of the subnet, VNet, and resource group. The AKS cluster no longer exists but the SAL remains with "allowDelete": false — making it impossible to…
Azure Kubernetes Service
An Azure service that provides serverless Kubernetes, an integrated continuous integration and continuous delivery experience, and enterprise-grade security and governance.
AKS Node Auto Provisioning - NAP
Hello. We have an app deployed on AKS that is pre scaled on our peak business days. It would scale to hundreds of nodes on peak business days. There are multiple node pools for different services. Since NAP is GA, we decide to test it out. NAP is not an…
Azure Kubernetes Service
An Azure service that provides serverless Kubernetes, an integrated continuous integration and continuous delivery experience, and enterprise-grade security and governance.
Why discrepency in node pool IP ranges with azure cni in AKS
I am seeing details as below related to networking in AKS But i see node ips as below not from above CIDR range right? why? Please clarify
Azure Kubernetes Service
An Azure service that provides serverless Kubernetes, an integrated continuous integration and continuous delivery experience, and enterprise-grade security and governance.
Unable to Delete an AKS Cluster Due to Circular Dependencies
When deleting the cluster (present in East US region) I am getting this error: Network security group /subscriptions/.../providers/Microsoft.Network/networkSecurityGroups/NRMS-t5beisocfdtvwAKS-...-AKS-SUBNET cannot be deleted because it is in use by the…
Azure Kubernetes Service
An Azure service that provides serverless Kubernetes, an integrated continuous integration and continuous delivery experience, and enterprise-grade security and governance.
Orphaned AzureKubernetesService serviceAssociationLink on subnet after AKS deletion — cannot delete subnet or VNet
Title: Orphaned AzureKubernetesService serviceAssociationLink blocking subnet and VNet deletion after AKS cluster is gone Subscription ID: Problem: I am unable to delete a subnet or its parent VNet because of a stale…
Azure Kubernetes Service
An Azure service that provides serverless Kubernetes, an integrated continuous integration and continuous delivery experience, and enterprise-grade security and governance.
In-Place Migration Failed for an AKS Cluster
I am performing a migration of an existing AKS cluster from the kubenet network plugin to Azure CNI overlay, as the cluster uses Calico for network policy. Based on Microsoft guidance, the migration involves the following steps: Remove Calico Update…
Azure Kubernetes Service
An Azure service that provides serverless Kubernetes, an integrated continuous integration and continuous delivery experience, and enterprise-grade security and governance.
Way to test virtual nodes usage in AKS
I want to test virtual nodes usage , is there any that i can create that scenario in my own lab before takes to prod. if yes please suggest
Azure Kubernetes Service
An Azure service that provides serverless Kubernetes, an integrated continuous integration and continuous delivery experience, and enterprise-grade security and governance.
AKS Fails to provision E4as_v7 but will provision E4as_v6
"REDACTED cluster information" NodePool: Custom NodePool requesting Standard_E4as_v7 (4c/32GB), on-demand, capacity-type on-demand, zones 1/2/3 Behavior: Karpenter creates NodeClaims, Azure returns InsufficientCapacityError ("all requested…
Azure Kubernetes Service
An Azure service that provides serverless Kubernetes, an integrated continuous integration and continuous delivery experience, and enterprise-grade security and governance.
AKS Node Image Upgrade Failures
Hello Support Team, We are experiencing issues with node image upgrades across the Azure Kubernetes Service (AKS) clusters. On 24th March, the scheduled node image upgrades failed across all Kubernetes clusters. The logs show the following message:…
Azure Kubernetes Service
An Azure service that provides serverless Kubernetes, an integrated continuous integration and continuous delivery experience, and enterprise-grade security and governance.
network-plugin & settings for large AKS cluster?
I'm trying to create a large AKS cluster with 1k nodes. I'm running this command: az aks create --name myname --location mylocation --enable-managed-identity --nodepool-name default --resource-group myresourcegroup --node-vm-size Standard_B2s…
Azure Kubernetes Service
An Azure service that provides serverless Kubernetes, an integrated continuous integration and continuous delivery experience, and enterprise-grade security and governance.
AKS (Azure CNI) – Why are Pod and Node CIDR ranges different?
I created an AKS cluster using Azure CNI with the following commands: az network vnet create -g RG -n aks-vnet --address-prefix 10.10.0.0/16 az network vnet subnet create -g RG --vnet-name aks-vnet -n aks-node-subnet --address-prefixes 10.10.1.0/24 az…
Azure Kubernetes Service
An Azure service that provides serverless Kubernetes, an integrated continuous integration and continuous delivery experience, and enterprise-grade security and governance.
AKS Node OS Image Update caused production outage
AKS Node OS Image Update causes production outage – Eraser Controller issue & Maintenance Window too long Cluster: AAE | Region: Switzerland North | K8s Version: 1.32.10 Incident On 01.04.2026, the automatic Node OS Image Update caused a…
Azure Kubernetes Service
An Azure service that provides serverless Kubernetes, an integrated continuous integration and continuous delivery experience, and enterprise-grade security and governance.
What is the official maintenance and deprecation status of the mcr.microsoft.com/azure-oss-db-tools/pgbouncer-sidecar Docker image?
Hello Azure Database team, I am reaching out to inquire about the active development and support status of the officially published PgBouncer sidecar Docker image: mcr.microsoft.com/azure-oss-db-tools/pgbouncer-sidecar (available on Docker Hub as…
Azure Kubernetes Service
An Azure service that provides serverless Kubernetes, an integrated continuous integration and continuous delivery experience, and enterprise-grade security and governance.
Azure Kubernetes Service clusters should have Defender profile enabled
Azure Kubernetes Service clusters should have Defender profile enabled .we have already enabled the defender for containers and deployment sensors for the subscriptions. To remediate this recommendation. Apart from the quick fix option . Is there any way…
Azure Kubernetes Service
An Azure service that provides serverless Kubernetes, an integrated continuous integration and continuous delivery experience, and enterprise-grade security and governance.
AKS cluster stuck due to long-running operation not completing. az aks update hangs, nodepool stuck in Updating/Cancelled, VMSS looping.
AKS cluster stuck due to long-running operation not completing. az aks update hangs, nodepool stuck in Updating/Cancelled, VMSS looping. How to solve this ?. This is what has been suggested... "Request backend LRO cleanup and control plane…
Azure Kubernetes Service
An Azure service that provides serverless Kubernetes, an integrated continuous integration and continuous delivery experience, and enterprise-grade security and governance.
My application gateway is not exposing the service endpoints hosted on my private AKS cluster
Perhaps I am missing something in the listener and backend configuration, but not sure. I am not able to configure the endpoints, and the backend always results into 502 error.
Azure Kubernetes Service
An Azure service that provides serverless Kubernetes, an integrated continuous integration and continuous delivery experience, and enterprise-grade security and governance.