[AKS] az aks nodepool update: Allow Windows2022 to Windows2025 upgrades - #34141
Open
janenotjung-hue wants to merge 1 commit into
Open
janenotjung-hue wants to merge 1 commit into
janenotjung-hue wants to merge 1 commit into
Conversation
Port the aks-preview Windows OS SKU update choices and Windows2025 create-time FIPS defaults into core CLI. Document explicit FIPS enablement for migration and cover the request behavior. Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Copilot-Session: 35c75d7c-9ed3-432d-9b78-0de1f30a3339
janenotjung-hue
requested review from
a team and
FumingZhang
as code owners
September 28, 2026 21:55
|
Azure Pipelines: There may be pipelines that require an authorized user to comment /azp run to run. |
microsoft-github-policy-service
Bot
requested review from
elvazhu521,
Julie Zhu (yanzhudd) and
Yong Zhang (yonzhan)
September 28, 2026 21:55
Contributor
There was a problem hiding this comment.
Copilot review overview
🟢 Approval recommended
The implementation matches the stated behavior and includes focused regression coverage.
Review effort: Balanced
Findings: None
What changed in this PR
Enables supported AKS Windows Server 2022-to-2025 node-pool upgrades while preserving FIPS behavior.
Changes:
- Adds Windows2022 and Windows2025 update choices.
- Defaults new Windows2025 pools to FIPS images.
- Adds help guidance and regression coverage.
| File | Description |
|---|---|
acs/_params.py |
Adds Windows update SKU choices. |
acs/agentpool_decorator.py |
Applies the Windows2025 FIPS default. |
acs/_help.py |
Documents upgrade and FIPS requirements. |
acs/tests/latest/test_validators.py |
Verifies update SKU choices. |
acs/tests/latest/test_agentpool_decorator.py |
Tests create and update FIPS behavior. |
💡 Add a code-review agent skill or configure MCP servers for context-aware, tailored reviews. Learn more in the docs.
Member
|
/azp run |
|
Azure Pipelines: Successfully started running 3 pipeline(s). |
Shun Lyu (sinmentis)
approved these changes
Sep 29, 2026
Collaborator
|
Please fix CI issues |
Member
|
/azp run |
FumingZhang
approved these changes
Sep 29, 2026
|
Azure Pipelines: Successfully started running 3 pipeline(s). |
Tim Wright (timmy-wright)
approved these changes
Sep 29, 2026
This branch has not been deployed
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
Related command
az aks nodepool update --os-skuaz aks nodepool add --os-sku Windows2025Description
Port the Windows Server upgrade support from azure-cli-extensions PR #10255 into the built-in AKS command module.
Windows2022andWindows2025foraz aks nodepool update --os-sku.aks-preview.--enable-fips-image; unrelated updates do not silently change FIPS.This reuses the existing agent-pool update API and SDK. It does not change cluster-creation OS SKU choices or add a new upgrade command.
Testing Guide
Local checks used the built-in CLI with no extensions installed:
azdev linter acs --min-severity mediumcompleted with exit code 0 and passed custom pylint rules. It also reported unrelatedrequire_wait_command_if_no_waitfindings for existing command groups.A live AKS migration was not run. To exercise it against a supported Windows2022 pool, use core CLI without
aks-preview:Confirm that the operation succeeds and returns
osSku: Windows2025andenableFips: true.History Notes
[AKS]
az aks nodepool update: Allow upgrading Windows2022 node pools to Windows2025 with--os-sku[AKS]
az aks nodepool add: Automatically enable FIPS images for Windows2025 node pools