> azure-attestation

Expert knowledge for Azure Attestation development including troubleshooting, best practices, security, configuration, and deployment. Use when validating attestation tokens, authoring SGX/TPM policies, configuring policy signers, or securing endpoints, and other Azure Attestation related development tasks. Not for Azure Confidential Computing (use azure-confidential-computing), Azure Virtual Enclaves (use azure-virtual-enclaves), Azure Key Vault (use azure-key-vault), Azure Security (use azure-

fetch
$curl "https://skillshub.wtf/MicrosoftDocs/Agent-Skills/azure-attestation?format=md"
SKILL.mdazure-attestation

Azure Attestation Skill

This skill provides expert guidance for Azure Attestation. Covers troubleshooting, best practices, security, configuration, and deployment. It combines local quick-reference content with remote documentation fetching capabilities.

How to Use This Skill

IMPORTANT for Agent: Use the Category Index below to locate relevant sections. For categories with line ranges (e.g., L35-L120), use read_file with the specified lines. For categories with file links (e.g., [security.md](security.md)), use read_file on the linked reference file

IMPORTANT for Agent: If metadata.generated_at is more than 3 months old, suggest the user pull the latest version from the repository. If mcp_microsoftdocs tools are not available, suggest the user install it: Installation Guide

This skill requires network access to fetch documentation content:

  • Preferred: Use mcp_microsoftdocs:microsoft_docs_fetch with query string from=learn-agent-skill. Returns Markdown.
  • Fallback: Use fetch_webpage with query string from=learn-agent-skill&accept=text/markdown. Returns Markdown.

Category Index

CategoryLinesDescription
TroubleshootingL33-L37Diagnosing and resolving common Azure Attestation failures, including policy/quote validation errors, configuration issues, and troubleshooting attestation responses and tokens.
Best PracticesL38-L46Guidance on validating attestation tokens, writing secure attestation policies, and configuring/enforcing SGX and TPM attestation baselines using sample policies.
SecurityL47-L52Using Azure Policy to govern attestation providers, and securing Azure Attestation with private endpoints, firewalls, managed identities, and access control settings
ConfigurationL53-L69Configuring Azure Attestation policies (grammar, versions, claim rules), policy signer certs, and monitoring/logging via Azure Monitor, CLI, PowerShell, and log schema.
DeploymentL70-L73How to create and configure a private endpoint for Azure Attestation using PowerShell, including network setup and secure access to attestation resources.

Troubleshooting

TopicURL
Troubleshoot common Azure Attestation errors and issueshttps://learn.microsoft.com/en-us/azure/attestation/troubleshoot-guide

Best Practices

TopicURL
Interpret and validate Azure Attestation tokens with exampleshttps://learn.microsoft.com/en-us/azure/attestation/attestation-token-examples
Author secure and correct Azure Attestation policieshttps://learn.microsoft.com/en-us/azure/attestation/author-sign-policy
Configure custom TCB baseline enforcement for SGX attestationhttps://learn.microsoft.com/en-us/azure/attestation/custom-tcb-baseline-enforcement
Use sample SGX attestation policies in Azurehttps://learn.microsoft.com/en-us/azure/attestation/policy-examples
Use sample TPM attestation policies in Azurehttps://learn.microsoft.com/en-us/azure/attestation/tpm-attestation-sample-policies

Security

TopicURL
Apply built-in Azure Policy definitions for Attestationhttps://learn.microsoft.com/en-us/azure/attestation/policy-reference
Secure Azure Attestation with network and identity controlshttps://learn.microsoft.com/en-us/azure/attestation/secure-attestation

Configuration

TopicURL
Use Azure Attestation claim rule functions and operatorshttps://learn.microsoft.com/en-us/azure/attestation/claim-rule-functions
Use Azure Attestation claim rule grammar in policieshttps://learn.microsoft.com/en-us/azure/attestation/claim-rule-grammar
Understand Azure Attestation claim sets and categorieshttps://learn.microsoft.com/en-us/azure/attestation/claim-sets
Enable diagnostic logging for Azure Attestationhttps://learn.microsoft.com/en-us/azure/attestation/enable-logging
Reference for Azure Attestation monitoring and log schemahttps://learn.microsoft.com/en-us/azure/attestation/logs-data-reference
Monitor Azure Attestation with Azure Monitorhttps://learn.microsoft.com/en-us/azure/attestation/monitor-logs
Configure Azure Attestation policy signer certificateshttps://learn.microsoft.com/en-us/azure/attestation/policy-signer-examples
Configure Azure Attestation policy language version 1.0https://learn.microsoft.com/en-us/azure/attestation/policy-version-1-0
Configure Azure Attestation policy language version 1.1https://learn.microsoft.com/en-us/azure/attestation/policy-version-1-1
Configure Azure Attestation policy language version 1.2https://learn.microsoft.com/en-us/azure/attestation/policy-version-1-2
Set up Azure Attestation using Azure CLIhttps://learn.microsoft.com/en-us/azure/attestation/quickstart-azure-cli
Configure Azure Attestation provider with PowerShellhttps://learn.microsoft.com/en-us/azure/attestation/quickstart-powershell
Understand and use Azure Attestation log datahttps://learn.microsoft.com/en-us/azure/attestation/view-logs

Deployment

TopicURL
Create Azure Attestation private endpoint with PowerShellhttps://learn.microsoft.com/en-us/azure/attestation/private-endpoint-powershell

> related_skills --same-repo

> microsoft-foundry

Expert knowledge for Microsoft Foundry (aka Azure AI Foundry) development including troubleshooting, best practices, decision making, architecture & design patterns, limits & quotas, security, configuration, integrations & coding patterns, and deployment. Use when building Foundry agents with Azure OpenAI, vector search/RAG, Sora video, realtime audio, or MCP/LangChain APIs, and other Microsoft Foundry related development tasks. Not for Microsoft Foundry Classic (use microsoft-foundry-classic),

> microsoft-foundry-tools

Expert knowledge for Microsoft Foundry Tools (aka Azure AI services, Azure Cognitive Services) development including best practices, decision making, architecture & design patterns, limits & quotas, security, configuration, integrations & coding patterns, and deployment. Use when using Content Understanding analyzers, Content Moderator APIs, Foundry containers, VNet/Key Vault security, or Entra auth, and other Microsoft Foundry Tools related development tasks. Not for Microsoft Foundry (use micr

> microsoft-foundry-local

Expert knowledge for Microsoft Foundry Local (aka Azure AI Foundry Local) development including troubleshooting, best practices, decision making, configuration, and integrations & coding patterns. Use when using Foundry Local CLI, chat/transcription APIs, tools, OpenAI/LangChain clients, or upgrading legacy SDKs, and other Microsoft Foundry Local related development tasks. Not for Microsoft Foundry (use microsoft-foundry), Microsoft Foundry Classic (use microsoft-foundry-classic), Microsoft Foun

> microsoft-foundry-classic

Expert knowledge for Microsoft Foundry Classic (aka Azure AI Foundry classic) development including troubleshooting, best practices, decision making, architecture & design patterns, limits & quotas, security, configuration, integrations & coding patterns, and deployment. Use when building Foundry agents with RAG, tools, evaluators, Azure OpenAI, VNet/Private Link, or CI/CD deployments, and other Microsoft Foundry Classic related development tasks. Not for Microsoft Foundry (use microsoft-foundry

┌ stats

installs/wk0
░░░░░░░░░░
github stars525
██████████
first seenMar 17, 2026
└────────────

┌ repo

MicrosoftDocs/Agent-Skills
by MicrosoftDocs
└────────────

┌ tags

└────────────