microsoft-foundry / microsoft-foundry/foundry-samples
What is happening when capabilityHost is being created.
Nobody has claimed this yet.
- Dominant language
- Bicep
- Stars
- 445
- Forks
- 494
- Avg merge
- 11h 35m
- Merged PRs (30d)
- 38
Description
Hi!
I’m having an issues with capabilityHost creation. In last 4 weeks I’ve got only ONE successful deployment of whole setup (bicep). I will not lie if I will say I’ve tried dozens of times with different configurations / with purges / deletes (both terraform and bicep).
I’m deploying BYOVnet scenario.
No matter what - all the time it fails. Funny thing is that One successful run was unsuccessful 2days prior this run - without any code changes. It worked once. Then I’ve destroyed whole setup (purged resources as well), and to ensure errors are gone.. I’ve redeployed same setup „from scratch”.. well.. errors came back 😂 no code changes…
Since then: 0 successful runs anymore.
I’m loosing a hope. I also have support ticket - but there’s no real help.. I’m being asked to try „one more time vanilla templates”… I don’t want to comment that..
I want - for whole community - a transparency: what is happening under the hood in Azure with capHost creation. What actions are being initiated; to where; from where; what are the possible IPs to whitelist; how these actions possibly are authenticating to resources; is there any Network Security Groups config that have to be taken into consideration (we are having also central firewall - is there anything there to be set? Some additional Policies?)
If someone is able to put some high-level bullet points / actions that azure does under the hood to enable capabilityHost - I think that will be big help to whole community.
Errors „500 internal server error” could also be extended to give some hints..
Contributor guide
First steps
- Read the whole issue, then the project's contributing guide.
- Comment on the issue to say you are picking it up — it saves two people doing the same work.
- Fork the repository and make your change on a branch.
- Open a pull request that references the issue number.
Research direction
Start with the BYOVnet deployment and the vanilla Bicep templates mentioned in the issue, then review the available support-ticket findings. Done means documenting the capabilityHost creation actions, network and authentication considerations, required allowlists or policies, and useful context for 500 errors.
Written by the indexing model from the issue text.
Assessment
- Tech stack
- azure, terraform
- Domain
- cloud, documentation, infrastructure, networking
- Issue type
- Documentation
- Difficulty
- 5/5
- Estimated time
- Over a week
- Activity status
- Stale
- Clarity
- Needs clarification
- Newbie friendliness
- 25/100