skillZs
★ LIVE SKILL TAGS ★
>>> LIVE SKILLS INDEX <<<
* OPEN SOURCE *
NO LOGIN, NO TRACKING
※ REAL INSTALL DATA ※
← back to all skills
microsoftdocs/agent-skills160 installs

azure-bastion

Expert knowledge for Azure Bastion development including best practices, decision making, architecture & design patterns, limits & quotas, security, configuration, and integrations & coding patterns. Use when configuring Bastion for AKS private clusters, VM scale sets, Entra ID auth, hub/spoke VNets, or IP-based cross-VNet access, and other Azure Bastion related development tasks. Not for Azure Virtual Network (use azure-virtual-network), Azure Virtual Network Manager (use azure-virtual-network-manager), Azure VPN Gateway (use azure-vpn-gateway), Azure Firewall (use azure-firewall).

How do I install this agent skill?

npx skills add https://github.com/microsoftdocs/agent-skills --skill azure-bastion
view source ↗

Is this agent skill safe to install?

  • Gen Agent Trust Hubpass

    This skill is a documentation resource for Azure Bastion that provides architectural guidance and security best practices. It fetches content from official Microsoft documentation sites and references tools from the official MicrosoftDocs repository. No malicious patterns or security risks were identified.

  • Socketpass

    No alerts

  • Snykpass

    Risk: LOW · No issues

  • ZeroLeakspass

    Score: 93/100 · 2 sections analyzed

What does this agent skill do?

Azure Bastion Skill

This skill provides expert guidance for Azure Bastion. Covers best practices, decision making, architecture & design patterns, limits & quotas, security, configuration, and integrations & coding patterns. It combines local quick-reference content with remote documentation fetching capabilities.

How to Use This Skill

IMPORTANT for Agent: Use the Category Index below to locate relevant sections. For categories with line ranges (e.g., L35-L120), use read_file with the specified lines. For categories with file links (e.g., [security.md](security.md)), use read_file on the linked reference file

IMPORTANT for Agent: If metadata.generated_at is more than 3 months old, suggest the user pull the latest version from the repository. If mcp_microsoftdocs tools are not available, suggest the user install it: Installation Guide

This skill requires network access to fetch documentation content:

  • Preferred: Use mcp_microsoftdocs:microsoft_docs_fetch with query string from=learn-agent-skill. Returns Markdown.
  • Fallback: Use fetch_webpage with query string from=learn-agent-skill&accept=text/markdown. Returns Markdown.

Category Index

CategoryLinesDescription
Best PracticesL35-L39Guidance on reducing Azure Bastion costs through sizing, scaling, and usage patterns while maintaining secure remote access and compliance best practices.
Decision MakingL40-L46Guidance on choosing and upgrading Bastion SKU tiers and using IP-based Bastion connections across VNets, subscriptions, and environments.
Architecture & Design PatternsL47-L53Architectural options and patterns for Azure Bastion: hub/spoke and peered VNets, private-only deployments, network/topology design, and deployment guidance for secure remote access.
Limits & QuotasL54-L58Configuring Azure Bastion host scaling limits, including max concurrent RDP/SSH sessions, connection thresholds, and how to adjust or plan capacity for different SKUs.
SecurityL59-L65Configuring secure Azure Bastion access: Entra ID auth setup, NSG rule hardening, and applying security benchmark best practices for Bastion deployments.
ConfigurationL66-L77Configuring Bastion settings, Kerberos, monitoring/diagnostics, metrics/logs, native client access, session monitoring/recording, and shareable links for secure remote access.
Integrations & Coding PatternsL78-L85Using Bastion with AKS private clusters, VM scale sets, and native Windows/Linux clients, including RDP/SSH setup and file transfer workflows through Bastion.

Best Practices

TopicURL
Optimize Azure Bastion costs without reducing securityhttps://learn.microsoft.com/en-us/azure/bastion/cost-optimization

Decision Making

TopicURL
Select the appropriate Azure Bastion SKU tierhttps://learn.microsoft.com/en-us/azure/bastion/bastion-sku-comparison
Use Azure Bastion IP-based connections across environmentshttps://learn.microsoft.com/en-us/azure/bastion/connect-ip-address
View and upgrade Azure Bastion SKU tiers safelyhttps://learn.microsoft.com/en-us/azure/bastion/upgrade-sku

Architecture & Design Patterns

TopicURL
Understand Azure Bastion deployment architectureshttps://learn.microsoft.com/en-us/azure/bastion/design-architecture
Design and deploy private-only Azure Bastionhttps://learn.microsoft.com/en-us/azure/bastion/private-only-deployment
Use Azure Bastion with VNet peering architectureshttps://learn.microsoft.com/en-us/azure/bastion/vnet-peering

Limits & Quotas

TopicURL
Configure Azure Bastion host scaling limitshttps://learn.microsoft.com/en-us/azure/bastion/configure-host-scaling

Security

TopicURL
Configure Entra ID authentication for Azure Bastionhttps://learn.microsoft.com/en-us/azure/bastion/bastion-entra-id-authentication
Configure Azure Bastion NSG rules for secure accesshttps://learn.microsoft.com/en-us/azure/bastion/bastion-nsg
Secure Azure Bastion deployments using benchmark guidancehttps://learn.microsoft.com/en-us/azure/bastion/secure-bastion

Configuration

TopicURL
Understand and manage Azure Bastion configuration settingshttps://learn.microsoft.com/en-us/azure/bastion/configuration-settings
Configure Kerberos authentication for Azure Bastionhttps://learn.microsoft.com/en-us/azure/bastion/kerberos-authentication-portal
Configure monitoring and diagnostics for Azure Bastionhttps://learn.microsoft.com/en-us/azure/bastion/monitor-bastion
Reference Azure Bastion monitoring metrics and logshttps://learn.microsoft.com/en-us/azure/bastion/monitor-bastion-reference
Configure Azure Bastion for native client accesshttps://learn.microsoft.com/en-us/azure/bastion/native-client
Monitor and manage active Azure Bastion sessionshttps://learn.microsoft.com/en-us/azure/bastion/session-monitoring
Configure and use Azure Bastion session recordinghttps://learn.microsoft.com/en-us/azure/bastion/session-recording
Create and manage Azure Bastion shareable linkshttps://learn.microsoft.com/en-us/azure/bastion/shareable-link

Integrations & Coding Patterns

TopicURL
Connect to AKS private clusters via Azure Bastionhttps://learn.microsoft.com/en-us/azure/bastion/bastion-connect-to-aks-private-cluster
Connect to VM scale sets using Azure Bastionhttps://learn.microsoft.com/en-us/azure/bastion/bastion-connect-vm-scale-set
Connect from Linux native clients through Azure Bastionhttps://learn.microsoft.com/en-us/azure/bastion/connect-vm-native-client-linux
Connect from Windows native clients through Azure Bastionhttps://learn.microsoft.com/en-us/azure/bastion/connect-vm-native-client-windows
Transfer files via Azure Bastion native clientshttps://learn.microsoft.com/en-us/azure/bastion/vm-upload-download-native

Add the canonical catalog link to the repository README so users can inspect current installs and available audits. The publishing guide covers the complete discovery path.

<a href="https://skillzs.dev/skills/microsoftdocs/agent-skills/azure-bastion">View azure-bastion on skillZs</a>