azure Azure Updates ·

Public Preview: Network Egress Controls for Microsoft Foundry Hosted Agents

securityazurepreviewengineer
feature announcement

Microsoft Foundry now offers network egress controls for hosted agents, available in public preview. This new capability allows customers to define ordered rules based on destination host and FQDN wildcards to allow, deny, transform headers, or rewrite destinations for outbound connections. The controls enhance security and compliance by enforcing policies within the Foundry-managed agent sandbox, eliminating the need for separate network appliances. It supports audit and enforce modes, with all egress decisions logged to Application Insights, although the preview is not covered by production SLAs.

Features (1)
  • Control Outbound Network Egress for Hosted Agents

    Customers can now define ordered rules based on destination host, including FQDN with wildcards, to allow, deny, transform, or rewrite outbound requests. These rules are enforced within the agent's Responsible AI policy inside the Foundry-managed agent sandbox, removing the need for external network appliances. Two modes, audit and enforce, are available, and all egress decisions are emitted to Application Insights.

Read the original announcement →

https://azure.microsoft.com/updates?id=571821

Related releases