microsoft-foundry / microsoft-foundry/foundry-samples

What is happening when capabilityHost is being created.

Open
#265 1 comment 1 reaction 0 assignees View on GitHub

Nobody has claimed this yet.

Dominant language
Bicep
Stars
445
Forks
494
Avg merge
11h 35m
Merged PRs (30d)
38

Description

Hi!

I’m having an issues with capabilityHost creation. In last 4 weeks I’ve got only ONE successful deployment of whole setup (bicep). I will not lie if I will say I’ve tried dozens of times with different configurations / with purges / deletes (both terraform and bicep).

I’m deploying BYOVnet scenario.

No matter what - all the time it fails. Funny thing is that One successful run was unsuccessful 2days prior this run - without any code changes. It worked once. Then I’ve destroyed whole setup (purged resources as well), and to ensure errors are gone.. I’ve redeployed same setup „from scratch”.. well.. errors came back 😂 no code changes…

Since then: 0 successful runs anymore.

I’m loosing a hope. I also have support ticket - but there’s no real help.. I’m being asked to try „one more time vanilla templates”… I don’t want to comment that..

I want - for whole community - a transparency: what is happening under the hood in Azure with capHost creation. What actions are being initiated; to where; from where; what are the possible IPs to whitelist; how these actions possibly are authenticating to resources; is there any Network Security Groups config that have to be taken into consideration (we are having also central firewall - is there anything there to be set? Some additional Policies?)

If someone is able to put some high-level bullet points / actions that azure does under the hood to enable capabilityHost - I think that will be big help to whole community.

Errors „500 internal server error” could also be extended to give some hints..

Contributor guide

Open the contributing guide

First steps

  1. Read the whole issue, then the project's contributing guide.
  2. Comment on the issue to say you are picking it up — it saves two people doing the same work.
  3. Fork the repository and make your change on a branch.
  4. Open a pull request that references the issue number.

Research direction

Start with the BYOVnet deployment and the vanilla Bicep templates mentioned in the issue, then review the available support-ticket findings. Done means documenting the capabilityHost creation actions, network and authentication considerations, required allowlists or policies, and useful context for 500 errors.

Written by the indexing model from the issue text.

Assessment

Tech stack
azure, terraform
Domain
cloud, documentation, infrastructure, networking
Issue type
Documentation
Difficulty
5/5
Estimated time
Over a week
Activity status
Stale
Clarity
Needs clarification
Newbie friendliness
25/100

Get new issues in your inbox

A short digest of beginner-friendly GitHub issues.