HomeVideos

Azure Update 16th April 2026

Now Playing

Azure Update 16th April 2026

Transcript

205 segments

0:00

Hi everyone, welcome to this week's

0:02

Azure weekly update slightly early cuz

0:04

I'm traveling. I don't think I'll get

0:06

the opportunity to do it tomorrow. So,

0:08

hey, 16th of April. Uh we're not going

0:10

to have the chapters linked here because

0:12

hey, uh logistically that's challenging.

0:15

But new videos this week, I dived into

0:18

the new ability

0:21

to integrate the SFTP capability of

0:23

storage with Entra ID. So, no longer

0:26

have these local accounts at the storage

0:28

account level. Instead, this now works

0:31

with that centralized identity. So, it's

0:34

going to be a lot more manageable. I can

0:35

audit it. I can leverage things like

0:37

conditional access, MFA, etc.

0:40

And then this question has come up a

0:41

number of times, um is AI

0:44

being trained on my data, my

0:47

interactions in the Microsoft ecosystem?

0:49

So, I wanted to kind of just touch on

0:51

that super quickly. I'll provide the

0:52

links to the documentation, but

0:53

basically, if you're logged in with a

0:55

work or school identity, the answer is

0:57

no. If it's a personal identity, then

0:59

the default is yes for Copilot, but you

1:01

can opt out of it if you want.

1:04

So, on to what's new on the compute

1:06

side.

1:07

So, the standard V2 NAT Gateway is now

1:11

available as outbound for AKS workloads.

1:13

So, the big deal with the NAT Gateway V2

1:16

is it added support for zone redundancy,

1:19

IPv6, 100 gigabits per second of

1:21

throughput. And so, now I can leverage

1:24

that as the outbound connectivity when

1:27

you're using AKS in both a managed or

1:30

sort of bring your own VNet.

1:33

And the Azure Monitor

1:35

OpenTelemetry support now works for AKS

1:38

workloads. So, OpenTelemetry is

1:39

fantastic cuz it provides a standard way

1:42

that workloads can emit traces and logs

1:45

and metrics over the OpenTelemetry

1:48

protocol, OTLP.

1:51

So, if I have Azure Monitor at Insights

1:53

with the OTLP

1:57

ingestion capability, well, I can bring

1:59

in the data now from AKS workloads. Now,

2:03

to get that capability in AKS, you

2:05

either deploy the instrumentation from

2:07

the Azure Monitor OpenTelemetry

2:09

distribution,

2:10

or if it has it already, it's already

2:12

wired up, I can just use the auto

2:14

configuration capability

2:17

to get those signals sent in.

2:20

Um Azure Bastion now supports managed

2:22

identity for the storage of those

2:25

graphical sessions recording. Remember,

2:27

Azure Bastion is that managed jump box

2:30

experience.

2:31

And I can also record both RDP and SSH

2:35

sessions.

2:37

So, it puts that in a storage account.

2:38

Now, historically, I've had to use a

2:40

shared access signature token for that

2:43

access, but now I can use a managed

2:45

identity for the access to the storage

2:47

account. And that can be both a

2:48

system-assigned or a user-assigned

2:50

managed identity.

2:53

Um Azure Site Recovery now supports

2:55

virtual machines. They're going to be a

2:57

Gen2 that have an NVMe controller. So,

2:59

it's just expanding where I can now

3:01

leverage Azure um Site Recovery.

3:05

And Azure Batch, they've announced this

3:06

before, but the HBv2, the HC, and the NP

3:10

SKUs

3:11

are being retired. So, by the end of May

3:13

2027, you need to have moved to a newer

3:15

version of those SKUs, um or they're no

3:18

longer going to work for Azure Batch

3:20

pools.

3:22

On the storage side,

3:24

so Azure Files, remember Azure Files

3:26

supports both SMB and NFS,

3:29

where I can now have the granular

3:32

encryption in transit. So, what are my

3:34

requirements for encryption on the wire?

3:36

So, now at an SMB or NFS level, for

3:39

example, there's a require encryption in

3:42

transit for NFS setting, so I can

3:45

independently set the different

3:46

protocols based on my requirements.

3:49

Uh Azure Storage Mover is now in the Gov

3:51

Cloud. That's useful for moving at large

3:53

scale um file share content into Azure

3:58

Files.

3:59

Azure File Sync is now available in new

4:01

regions. So, if I want to synchronize

4:04

between Windows file shares uh with each

4:07

other,

4:08

but also via, so it goes via the cloud

4:10

endpoint to an Azure file share. Well,

4:12

that Azure File Sync service is now

4:14

available in new regions. So, Belgium

4:16

Central, Malaysia West, and Indonesia

4:19

Central. So, that's going to help if you

4:20

have certain regulatory requirements

4:22

where I need to make sure it stays

4:23

within a certain geography.

4:25

Smart tiering for storage has gone GA.

4:28

So, we already had like life cycle

4:29

management, we already have sort of the

4:31

actions we can define. Smart tiering

4:33

just follows those minimum times you

4:35

have to keep uh data in a tier to avoid

4:38

sort of early deletion rules, and we'll

4:41

just move it for you.

4:43

So,

4:44

for both blob and Data Lake, so I've

4:46

been able to hierarchical namespace, it

4:49

will move data between hot, cool, and

4:51

cold based on the usage pattern. So, if

4:55

it's not accessed for 30 days in hot,

4:57

it'll move it to cool. If it's not moved

4:59

for 90 days in cool, it'll move it to

5:01

cold. It's not going to move it to

5:02

archive. Remember, archive is offline.

5:04

If you access it, it's going to put it

5:05

back in hot and restart that whole

5:08

tiering cycle.

5:11

There's being introduced a minimum

5:13

billable object size for both cool,

5:16

cold, and archive. So, if an object is

5:20

smaller than 128

5:22

kibibytes, KiB,

5:25

it will get billed at 128.

5:28

That's going to take go into effect from

5:31

July 1st, 2026 for new storage accounts,

5:34

and July 1st, 2027 for existing storage

5:37

accounts. Hot tier has no minimum size,

5:39

but they are introducing that minimum

5:41

billable size um for those

5:44

cool, cold, and archive.

5:47

And I can now encrypt Premium SSD V2 and

5:51

Ultra Disk using a cross-tenant

5:53

customer-managed key. So, hey, the key

5:55

I'm using with those disk encryption

5:57

sets can live in a key vault in a

5:59

subscription under a different tenant

6:02

from the disks. It's really useful in

6:04

like those SaaS scenarios where you're

6:05

providing a solution for your customers

6:07

and the customer wants to maintain the

6:10

ownership and the control of the key,

6:14

well, you can now uh leverage that.

6:17

On the database side, so Event Grid

6:21

can now support ingestion of events from

6:24

Stripe. So, Stripe is widely used for

6:26

payments. So, there's lots of related

6:28

events. So, yes, there's a payment, but

6:29

there's a dispute, there's a refund.

6:31

There's a whole bunch of different types

6:32

of events that can happen. Well, I can

6:34

now ingest those directly into Event

6:36

Grid. Remember, Event Grid is fantastic

6:38

because rather than some end service

6:40

having to hammer poll, "Hey, do you have

6:42

something? Do you have something?"

6:43

Event Grid receives the event and will

6:46

then trigger whatever technology I want.

6:50

So, typically it's services like Azure

6:51

Functions. It could be a Logic App, a

6:53

webhook, an Event Hub, a Service Bus.

6:56

There's other things I can do, but Event

6:58

Grid can now act as that service to work

7:01

off of those.

7:02

Um Azure Managed Grafana basic SKU is

7:04

being retired um end of March 2027.

7:08

Basically, move to the standard SKU.

7:10

It's got better reliability, better

7:11

feature set. Uh if you don't move off of

7:14

that by the retirement date, it will

7:16

just be deleted.

7:18

And finally, miscellaneous.

7:20

Um the MIA image to efficient model.

7:24

There's too many Fs in that. I realize

7:25

that now. Um has been

7:28

uh released. This follows on from the

7:30

recent um

7:32

image 2 version that was just released.

7:35

So, this is our text-to-image model, and

7:38

this is basically a much faster, much

7:40

cheaper option. It's four times more

7:42

efficient. It's 41% lower priced. So,

7:45

now you get that flexibility. And that

7:48

was it. Sorry about the

7:50

constrained recording area today. I hope

7:52

that's useful. As always, till next

7:53

video. Take care.

Interactive Summary

The Azure weekly update for April 16th highlights several key enhancements across compute, storage, and AI services. Major updates include Entra ID integration for SFTP storage, clarifications on AI data privacy regarding Copilot, and the general availability of Smart Tiering for blob and Data Lake storage. Additionally, the video covers networking improvements for AKS, managed identity support for Azure Bastion recordings, and the release of a significantly more efficient text-to-image model.

Suggested questions

5 ready-made prompts