> azure-attestation

Expert knowledge for Azure Attestation development including troubleshooting, best practices, security, configuration, and deployment. Use when building, debugging, or optimizing Azure Attestation applications. Not for Azure Confidential Computing (use azure-confidential-computing), Azure Virtual Enclaves (use azure-virtual-enclaves), Azure Key Vault (use azure-key-vault), Azure Dedicated HSM (use azure-dedicated-hsm).

fetch
$curl "https://skillshub.wtf/MicrosoftDocs/Agent-Skills/azure-attestation?format=md"
SKILL.mdazure-attestation

Azure Attestation Skill

This skill provides expert guidance for Azure Attestation. Covers troubleshooting, best practices, security, configuration, and deployment. It combines local quick-reference content with remote documentation fetching capabilities.

How to Use This Skill

IMPORTANT for Agent: Use the Category Index below to locate relevant sections. For categories with line ranges (e.g., L35-L120), use read_file with the specified lines. For categories with file links (e.g., [security.md](security.md)), use read_file on the linked reference file

IMPORTANT for Agent: If metadata.generated_at is more than 3 months old, suggest the user pull the latest version from the repository. If mcp_microsoftdocs tools are not available, suggest the user install it: Installation Guide

This skill requires network access to fetch documentation content:

  • Preferred: Use mcp_microsoftdocs:microsoft_docs_fetch with query string from=learn-agent-skill. Returns Markdown.
  • Fallback: Use fetch_webpage with query string from=learn-agent-skill&accept=text/markdown. Returns Markdown.

Category Index

CategoryLinesDescription
TroubleshootingL33-L37Diagnosing and resolving common Azure Attestation failures, including policy/quote validation errors, configuration issues, and troubleshooting attestation responses and tokens.
Best PracticesL38-L46Guidance on validating attestation tokens, writing secure attestation policies, and configuring/enforcing SGX and TPM attestation baselines using sample policies.
SecurityL47-L52Using Azure Policy to govern attestation providers, and securing Azure Attestation with private endpoints, firewalls, managed identities, and access control settings
ConfigurationL53-L69Configuring Azure Attestation policies (grammar, versions, claim rules), policy signer certs, and monitoring/logging via Azure Monitor, CLI, PowerShell, and log schema.
DeploymentL70-L73How to create and configure a private endpoint for Azure Attestation using PowerShell, including network setup and secure access to attestation resources.

Troubleshooting

TopicURL
Troubleshoot common Azure Attestation errors and issueshttps://learn.microsoft.com/en-us/azure/attestation/troubleshoot-guide

Best Practices

TopicURL
Interpret and validate Azure Attestation tokens with exampleshttps://learn.microsoft.com/en-us/azure/attestation/attestation-token-examples
Author secure and correct Azure Attestation policieshttps://learn.microsoft.com/en-us/azure/attestation/author-sign-policy
Configure custom TCB baseline enforcement for SGX attestationhttps://learn.microsoft.com/en-us/azure/attestation/custom-tcb-baseline-enforcement
Use sample SGX attestation policies in Azurehttps://learn.microsoft.com/en-us/azure/attestation/policy-examples
Use sample TPM attestation policies in Azurehttps://learn.microsoft.com/en-us/azure/attestation/tpm-attestation-sample-policies

Security

TopicURL
Apply built-in Azure Policy definitions for Attestationhttps://learn.microsoft.com/en-us/azure/attestation/policy-reference
Secure Azure Attestation with network and identity controlshttps://learn.microsoft.com/en-us/azure/attestation/secure-attestation

Configuration

TopicURL
Use Azure Attestation claim rule functions and operatorshttps://learn.microsoft.com/en-us/azure/attestation/claim-rule-functions
Use Azure Attestation claim rule grammar in policieshttps://learn.microsoft.com/en-us/azure/attestation/claim-rule-grammar
Understand Azure Attestation claim sets and categorieshttps://learn.microsoft.com/en-us/azure/attestation/claim-sets
Enable diagnostic logging for Azure Attestationhttps://learn.microsoft.com/en-us/azure/attestation/enable-logging
Reference for Azure Attestation monitoring and log schemahttps://learn.microsoft.com/en-us/azure/attestation/logs-data-reference
Monitor Azure Attestation with Azure Monitorhttps://learn.microsoft.com/en-us/azure/attestation/monitor-logs
Configure Azure Attestation policy signer certificateshttps://learn.microsoft.com/en-us/azure/attestation/policy-signer-examples
Configure Azure Attestation policy language version 1.0https://learn.microsoft.com/en-us/azure/attestation/policy-version-1-0
Configure Azure Attestation policy language version 1.1https://learn.microsoft.com/en-us/azure/attestation/policy-version-1-1
Configure Azure Attestation policy language version 1.2https://learn.microsoft.com/en-us/azure/attestation/policy-version-1-2
Set up Azure Attestation using Azure CLIhttps://learn.microsoft.com/en-us/azure/attestation/quickstart-azure-cli
Configure Azure Attestation provider with PowerShellhttps://learn.microsoft.com/en-us/azure/attestation/quickstart-powershell
Understand and use Azure Attestation log datahttps://learn.microsoft.com/en-us/azure/attestation/view-logs

Deployment

TopicURL
Create Azure Attestation private endpoint with PowerShellhttps://learn.microsoft.com/en-us/azure/attestation/private-endpoint-powershell

> related_skills --same-repo

> azure-well-architected

Expert guidance for designing, assessing, and optimizing Azure workloads using Azure Well Architected. Covers design review checklists, recommendations, design principles, tradeoffs, service guides, workload patterns, and assessment questions. Use when architecting new solutions, reviewing existing workloads, or applying Well-Architected principles.

> azure-web-pubsub

Expert knowledge for Azure Web PubSub development including troubleshooting, best practices, decision making, architecture & design patterns, limits & quotas, security, configuration, integrations & coding patterns, and deployment. Use when building, debugging, or optimizing Azure Web PubSub applications. Not for Azure SignalR Service (use azure-signalr-service), Azure Event Hubs (use azure-event-hubs), Azure Service Bus (use azure-service-bus), Azure Relay (use azure-relay).

> azure-web-application-firewall

Expert knowledge for Azure Web Application Firewall development including troubleshooting, best practices, decision making, architecture & design patterns, limits & quotas, security, configuration, integrations & coding patterns, and deployment. Use when building, debugging, or optimizing Azure Web Application Firewall applications. Not for Azure Application Gateway (use azure-application-gateway), Azure Front Door (use azure-front-door), Azure Firewall (use azure-firewall), Azure DDos Protectio

> azure-vpn-gateway

Expert knowledge for Azure VPN Gateway development including troubleshooting, best practices, decision making, architecture & design patterns, limits & quotas, security, configuration, integrations & coding patterns, and deployment. Use when building, debugging, or optimizing Azure VPN Gateway applications. Not for Azure Virtual Network (use azure-virtual-network), Azure Virtual WAN (use azure-virtual-wan), Azure ExpressRoute (use azure-expressroute), Azure Application Gateway (use azure-applica

┌ stats

installs/wk0
░░░░░░░░░░
github stars425
██████████
first seenMar 17, 2026
└────────────

┌ repo

MicrosoftDocs/Agent-Skills
by MicrosoftDocs
└────────────

┌ tags

└────────────