All skills
microsoft avatar

/azure-diagnostics

@ae5e585
by microsoftmicrosoft/skills3.1k stars
351

Debug Azure production issues on Azure using AppLens, Azure Monitor, resource health, and safe triage. WHEN: debug production issues, troubleshoot app service, app service high CPU, app service deployment failure, troubleshoot container apps, troubleshoot functions, troubleshoot AKS, VM RDP, Linux SSH, VM black screen, can't connect to VM, reset VM password, NSG or firewall blocking, kubectl cannot connect, kube-system/CoreDNS failures, pod pending, crashloop, node not ready, upgrade failures, analyze logs, KQL, insights, image pull failures, cold start issues, health probe failures, resource health, root cause of errors, troubleshoot event hubs, troubleshoot service bus, messaging SDK error, AMQP connection failure, message lock lost, service bus dead letter.

Use this Skill: https://skilld.dev/gh/microsoft/skills/azure-diagnostics

This session only. Nothing lands on disk.

troubleshootingcomputereferencesfirewall-blocking.md

≈594 tokens on demand. Your agent reads this file only when SKILL.md points to it.

Firewall Blocking Connectivity

Use when NSG/platform rules allow traffic but the guest OS firewall blocks RDP/SSH.

Symptoms -> Solutions

Symptom OS Action Docs
Windows Firewall blocks RDP Windows Enable Remote Desktop firewall group Guest firewall
BlockInboundAlways or bad policy Windows Reset to blockinbound,allowoutbound Firewall rule
third-party AV/firewall Windows Stop for test, then reconfigure Guest firewall
iptables/nftables blocks SSH Linux Insert allow rule or remove blocking chain SSH overview
firewalld blocks SSH Linux Open SSH service in active zone SSH overview
UFW blocks SSH Linux ufw allow 22/tcp or disable temporarily SSH overview
no guest access Any Use Serial Console or offline repair Offline firewall / Linux repair

Quick Commands

Commands use VM agent/extensions. Run Pre-Flight Safety Checks first.

# Windows
az vm user reset-remote-desktop --name <vm> -g <rg>
az vm run-command invoke --name <vm> -g <rg> --command-id RunPowerShellScript \
  --scripts "netsh advfirewall firewall set rule group='Remote Desktop' new enable=yes"

# Linux
az vm run-command invoke --name <vm> -g <rg> --command-id RunShellScript \
  --scripts "iptables -L -n; iptables -I INPUT -p tcp --dport 22 -j ACCEPT"
az vm run-command invoke --name <vm> -g <rg> --command-id RunShellScript \
  --scripts "firewall-cmd --add-service=ssh --permanent && firewall-cmd --reload"
az vm run-command invoke --name <vm> -g <rg> --command-id RunShellScript \
  --scripts "ufw status; ufw allow 22/tcp"

Source: SKILL.md on GitHub

1 warning15d4 checks · Risk SAFE
  • Gen Agent Trust Hub15d

    This skill is designed for Azure diagnostics and troubleshooting, providing a comprehensive set of guides and scripts that utilize standard tools like the Azure CLI and kubectl. It includes some security considerations, such as the ingestion of logs which provides a surface for indirect prompt injection, and the use of privileged debug pods for advanced diagnostics. These are used within the skill's intended functionality and are accompanied by appropriate guidance for user approval.

  • Socket15d

    No alerts

  • Snyk15d

    Risk: LOW · No issues

  • Runlayer7mo

    4/4 files flagged

Signed by skilld at ae5e585. This ties the file your Agent reads to that commit on GitHub. It does not review the instructions.

Last checked against GitHub yesterday.

Activeupdated last month
metadata
{
  "author": "Microsoft",
  "version": "1.2.6"
}

README badge

README badge for microsoft/skills/azure-diagnostics