Learn about important Azure product updates, roadmap, and announcements. Subscribe to notifications to stay informed.RSS feed
Disabling public network access for Azure IoT Hub will disable access to built-in Azure Event Hub endpoint on September 30, 2020
When public network access to Azure IoT Hub is disabled, the built-in Azure Event Hub-compatible endpoint in IoT Hub may continue to be accessible via the public internet On September 30, 2020, this behavior will change, and public access to the built-in endpoint will be disabled when public network access is disabled for IoT Hub.
Firewall Manager is a security management service that provides central security policy and route management for cloud-based security perimeters.
New enhancements and updates were made to Azure Security Center in June 2020.
Immutable storage for Azure Data Lake Storage is now in preview. Set time-based policies or legal holds on data so that the data becomes non-erasable and non-modifiable.
Custom DNS, DNS Proxy, and FQDN filtering in network rules are now in preview. IP Groups and IP Groups in Firewall policy are now generally available.
Target availability: Q3 2020
Azure Cosmos DB will start enforcing transport layer security (TLS) 1.2 on July 29, 2020.
Target availability: Q2 2020
To support new features in Azure Automation, like Azure Private Links, the automation URLs have been updated. Instead of region-specific URLs, there are now account-specific URLs.
Azure Web Application Firewall for Azure Front Door now has a match details field in the logs to provide insights on why a request triggered a Web Application Firewall rule.
Azure Government customers can now use private AKS clusters for additional security.
The preview of data encryption for Azure Database for PostgreSQL—single server is now available. Data encryption with customer-managed keys for Azure Database for PostgreSQL—single server enables you to bring your own key (BYOK) for data protection at rest.
We’re excited to announce the preview of data encryption for Azure Database for MySQL. Data encryption with customer-managed keys for Azure Database for MySQL enables you to bring your own key (BYOK) for data protection at rest.
For the Hyperscale service tier in Azure SQL Database, TDE with bring your own key (BYOK) support is now available in preview. TDE with BYOK gives customers full and granular control over usage and management of the database encryption key (also known as TDE protector) and enables central management of keys in Azure Key Vault.
Enforce a minimal TLS version at the server level that applies to Azure Database for MariaDB using the new TLS version setting.
Enforce a minimal TLS version at the server level that applies to Azure Database for PostgreSQL using the new TLS version setting.
Enforce a minimal transport layer security (TLS) version at the server level that applies to Azure Database for MySQL using the new TLS version setting.
A security vulnerability has been identified in Moby engine components in Azure IoT Edge. (Windows versions aren’t affected.) Get details and follow instructions to fix the issue in Moby engine version 3.0.12 or later.
Find out if you are impacted by an identified CNI vulnerability in older AKS clusters and take mitigation steps to address it.
A new bring your own key (BYOK) method to import keys securely from on-premises HSMs into Azure Key Vault is now generally available. This BYOK method can be used to import keys from any supported on-premises HSM.
Two new key features are now available in Azure Firewall—forced tunneling and SQL FQDN filtering. Additionally, we’re increasing the limit for multiple public IP addresses from 100 to 250 for both DNAT and SNAT.
Enforce a minimal TLS version at the server level that applies to Azure SQL Databases and Azure Synapse Analytics workspaces hosted on the server using the new TLS version setting.
Azure at Build
Read the Azure blog for the latest news.Blog
Tell us what you think of Azure and what you want to see in the future.Provide feedback
Azure is available in more regions than any other cloud provider.Check product availability in your region