From 2e37f0a1522d8245de2ffa119635c64ff336dfeb Mon Sep 17 00:00:00 2001 From: Azure CLI Team Date: Tue, 29 Sep 2026 03:48:47 +0000 Subject: [PATCH 1/9] update azure-cli version to 2.91.0 --- src/azure-cli-core/HISTORY.rst | 5 + src/azure-cli-core/azure/cli/core/__init__.py | 2 +- .../azure/cli/core/commandIndex.latest.json | 2 +- .../azure/cli/core/helpIndex.latest.json | 2 +- src/azure-cli-core/setup.py | 2 +- src/azure-cli/HISTORY.rst | 93 +++++++++++++++++++ src/azure-cli/azure/cli/__main__.py | 2 +- src/azure-cli/requirements.py3.Darwin.txt | 4 +- src/azure-cli/requirements.py3.Linux.txt | 4 +- src/azure-cli/requirements.py3.windows.txt | 4 +- src/azure-cli/setup.py | 2 +- 11 files changed, 110 insertions(+), 12 deletions(-) diff --git a/src/azure-cli-core/HISTORY.rst b/src/azure-cli-core/HISTORY.rst index cc176828fba..c7150ba540d 100644 --- a/src/azure-cli-core/HISTORY.rst +++ b/src/azure-cli-core/HISTORY.rst @@ -3,6 +3,11 @@ Release History =============== +2.91.0 +++++++ +* Remove AzureGermanCloud from hard-coded cloud list (#34042) +* PREVIEW: Enable broker-based authentication on macOS (opt-in via `az config set enable_broker_on_mac=true`) (#33376) + 2.90.0 ++++++ * Minor fixes diff --git a/src/azure-cli-core/azure/cli/core/__init__.py b/src/azure-cli-core/azure/cli/core/__init__.py index 0cbf45b1c4e..cf15d83b182 100644 --- a/src/azure-cli-core/azure/cli/core/__init__.py +++ b/src/azure-cli-core/azure/cli/core/__init__.py @@ -4,7 +4,7 @@ # -------------------------------------------------------------------------------------------- # pylint: disable=line-too-long -__version__ = "2.90.0" +__version__ = "2.91.0" import os import sys diff --git a/src/azure-cli-core/azure/cli/core/commandIndex.latest.json b/src/azure-cli-core/azure/cli/core/commandIndex.latest.json index c820521efe5..90efbd49a19 100644 --- a/src/azure-cli-core/azure/cli/core/commandIndex.latest.json +++ b/src/azure-cli-core/azure/cli/core/commandIndex.latest.json @@ -1,5 +1,5 @@ { - "version": "2.90.0", + "version": "2.91.0", "cloudProfile": "latest", "commandIndex": { "account": [ diff --git a/src/azure-cli-core/azure/cli/core/helpIndex.latest.json b/src/azure-cli-core/azure/cli/core/helpIndex.latest.json index 7f5a38b852c..eae5046bb93 100644 --- a/src/azure-cli-core/azure/cli/core/helpIndex.latest.json +++ b/src/azure-cli-core/azure/cli/core/helpIndex.latest.json @@ -1,5 +1,5 @@ { - "version": "2.90.0", + "version": "2.91.0", "cloudProfile": "latest", "helpIndex": { "groups": { diff --git a/src/azure-cli-core/setup.py b/src/azure-cli-core/setup.py index 424301e4efe..5c1bc3668f7 100644 --- a/src/azure-cli-core/setup.py +++ b/src/azure-cli-core/setup.py @@ -8,7 +8,7 @@ from codecs import open from setuptools import setup, find_packages -VERSION = "2.90.0" +VERSION = "2.91.0" # If we have source, validate that our version numbers match # This should prevent uploading releases with mismatched versions. diff --git a/src/azure-cli/HISTORY.rst b/src/azure-cli/HISTORY.rst index c222025df06..1f849a71eb8 100644 --- a/src/azure-cli/HISTORY.rst +++ b/src/azure-cli/HISTORY.rst @@ -3,6 +3,99 @@ Release History =============== +2.91.0 +++++++ + +**ACR** + +* `az acr import`: Warn when a regional source endpoint falls back to the source registry's home region (#34032) +* `az acr create/encryption rotate-key`: Add managed HSM key guidance (#34118) +* `az acr connected-registry create`: Add user-assigned managed identity authentication options (#34106) +* `az acr connected-registry update`: Add one-way migration from SyncToken to managed identity authentication (#34106) +* `az acr connected-registry get-settings`: Return managed identity connection settings (#34106) +* `az acr connected-registry delete`: Skip sync-token cleanup for managed identity authentication (#34106) + +**AKS** + +* `az aks create/update`: Preserve the default managed outbound IPv4 count when only the IPv6 count is provided (#33886) +* `az aks nodepool add/update`: Add `--enable-managed-dranet` to enable Managed DRANET on a node pool. (#34003) +* `az aks update`: Fix bug where autoscale profile boolean values could be incorrectly serialized as strings (#34058) +* Fix #33541: `az aks install-cli`: Fall back to the kubelogin version file when the GitHub API rate limit is hit (#34075) +* Fix #34085: `az aks update`: Correct capitalization and punctuation in reconcile prompt (#34086) +* `az aks install-desktop`: Add AKS Desktop installation (#34100) +* `az aks create/update`: Add `--enable-azure-monitor-logs` to onboard Container Insights through the Azure Monitor profile using managed identity authentication (#34077) +* `az aks update`: Add `--disable-azure-monitor-logs` to offboard Container Insights (#34077) +* `az aks create/update`: Add `--syslog-port`, `--enable-prometheus-metrics-scraping` and `--disable-prometheus-metrics-scraping` to tune the Azure Monitor Container Insights configuration (#34077) +* `az aks create/update`: Add `--enable-opentelemetry-metrics`, `--disable-opentelemetry-metrics`, `--opentelemetry-metrics-port-http` and `--opentelemetry-metrics-port-grpc` for the OpenTelemetry metrics receiver (#34077) +* `az aks create/update`: Add `--enable-opentelemetry-logs-traces`, `--disable-opentelemetry-logs-traces`, `--opentelemetry-logs-traces-port-http` and `--opentelemetry-logs-traces-port-grpc` for the OpenTelemetry logs and traces receiver (#34077) +* `az aks create/update/enable-addons`: Deprecate `--enable-msi-auth-for-monitoring` in favor of `--enable-azure-monitor-logs` (#34077) + +**App Config** + +* `az appconfig kv/snapshot`: Add description support (#33840) + +**App Service** + +* `az functionapp flex-migration start/revert`: Add in-place CV1 to Flex Consumption upgrade and revert support (#33863) +* `az webapp troubleshoot config`: Provide application config evaluation summary (#33709) +* Prevent access restriction updates from dropping site config (#34050) +* `az webapp deploy`: Add `--deploymentTag` parameter to give friendly name to deployment (#34134) +* `az webapp deploy`: Add `--show-secure-build` to deploy and display the secure build summary afterward (#34130) +* `az webapp secure-build show`: Add `--rescan` to force fresh dependency analysis (#34130) +* `az webapp troubleshoot deployment`: Add command to diagnose the latest deployment (#34130) + +**ARM** + +* `az stack-whatif`: Resource changes with the type "NoEffect" are now colored gray and marked with a cross symbol instead of using the same appearance as the "NoChange" change type (#33858) + +**Backup** + +* `az backup restore restore-azurefileshare`: Add Azure File Share cross-region restore support (#33809) +* `az backup protection undelete`: Add Azure File Share soft-delete undelete support (#33809) +* `az backup vault update`: Add `--source-scan-state` to configure Microsoft Defender for Cloud Source Scan (#34076) +* `az backup item source-scan-configuration set`: Add support for enabling or disabling Source Scan for Azure VM backup items (#34076) +* `az backup restore files mount-rp`: Fetch ILR mount scripts via dedicated list action (#34073) +* `az backup container register`: Add managed identity support for Azure Files backup (#34109) +* `az backup container register`: Revert managed identity support for Azure Files backup (#34142) + +**Compute** + +* `az vm/vmss create/update`: Add new parameter `--wire-server-use-local-file-rules` to support use local file rules (#33894) +* `az vm/vmss create`: Add `SpotPlus` option in `--priority` parameter (#34030) +* `az vm/vmss`: Add new param `--processor-mode` to support processor mode (#33985) +* `az capacity reservation create`: Add new parameters `--schedule-profile-start` and `--minimum-commitment-days` to support future capacity reservation (#34031) +* `az vm/vmss list-versions`: Add new parameter `--expand` to support extension image release metadata (#34018) +* `az sig create/update`: Add new parameters `--soft-delete`, `--soft-delete-retention-period` and `--soft-delete-grace-period` to support soft-delete policy (#34107) +* `az sig image-version delete`: Add new parameter `--bypass-soft-delete` to support bypass-delete (#34107) +* `az sig image-version list-soft-deleted`: Add new command to support soft-delete recycle-bin listing (#34107) + +**MySQL** + +* `az mysql flexible-server upgrade`: Fix deserialization problem (#34027) +* Fix #32827: `az mysql`: Restore memory optimized tier terminology (#34019) + +**Network** + +* Fix #33981: `az network application-gateway`: Incorrect GET operation API version (#33999) +* `az network route-table route`: Support ECMP routing in route tables (#33493) +* `az network first-party-service-tag`: Add support for First Party Service Tags (#34081) +* `az network application-gateway ssl-profile add/update`: Expose `--auth-configuration` to support mTLS `verify-client-auth-mode=Passthrough|Strict` (#34090) +* `az network private-endpoint create/update`: Add `--billing-sku` to configure the private endpoint billing SKU (#33799) +* `az network asg address-prefix-set`: Add address prefix set commands (#34024) +* `az network vnet move-ip-configurations`: Add move IP configurations command (#34025) + +**PostgreSQL** + +* `az postgres flexible-server restore`: Add `--sku-name` and `--tier` arguments to allow changing compute during point-in-time restore (#33992) + +**Resource** + +* `az bicep`: Improve help text for Bicep output parameters to clarify output behavior (#32989) + +**Storage** + +* `az storage blob download-batch`: Ensure downloaded blobs stay within the destination directory (#34126) + 2.90.0 ++++++ diff --git a/src/azure-cli/azure/cli/__main__.py b/src/azure-cli/azure/cli/__main__.py index abad7ad6312..06dfee5f7f8 100644 --- a/src/azure-cli/azure/cli/__main__.py +++ b/src/azure-cli/azure/cli/__main__.py @@ -17,7 +17,7 @@ from knack.log import get_logger __author__ = "Microsoft Corporation " -__version__ = "2.90.0" +__version__ = "2.91.0" logger = get_logger(__name__) diff --git a/src/azure-cli/requirements.py3.Darwin.txt b/src/azure-cli/requirements.py3.Darwin.txt index a5445948f6f..ab8c676c17a 100644 --- a/src/azure-cli/requirements.py3.Darwin.txt +++ b/src/azure-cli/requirements.py3.Darwin.txt @@ -4,9 +4,9 @@ argcomplete==3.5.2 asn1crypto==0.24.0 azure-appconfiguration==1.10.0b1 azure-batch==15.0.0b1 -azure-cli-core==2.90.0 +azure-cli-core==2.91.0 azure-cli-telemetry==1.1.0 -azure-cli==2.90.0 +azure-cli==2.91.0 azure-common==1.1.22 azure-core==1.39.0 azure-cosmos==3.2.0 diff --git a/src/azure-cli/requirements.py3.Linux.txt b/src/azure-cli/requirements.py3.Linux.txt index e93c77be896..9c0d9958690 100644 --- a/src/azure-cli/requirements.py3.Linux.txt +++ b/src/azure-cli/requirements.py3.Linux.txt @@ -4,9 +4,9 @@ argcomplete==3.5.2 asn1crypto==0.24.0 azure-appconfiguration==1.10.0b1 azure-batch==15.0.0b1 -azure-cli-core==2.90.0 +azure-cli-core==2.91.0 azure-cli-telemetry==1.1.0 -azure-cli==2.90.0 +azure-cli==2.91.0 azure-common==1.1.22 azure-core==1.39.0 azure-cosmos==3.2.0 diff --git a/src/azure-cli/requirements.py3.windows.txt b/src/azure-cli/requirements.py3.windows.txt index 96ead004b4b..b600e67c8ce 100644 --- a/src/azure-cli/requirements.py3.windows.txt +++ b/src/azure-cli/requirements.py3.windows.txt @@ -4,9 +4,9 @@ argcomplete==3.5.2 asn1crypto==0.24.0 azure-appconfiguration==1.10.0b1 azure-batch==15.0.0b1 -azure-cli-core==2.90.0 +azure-cli-core==2.91.0 azure-cli-telemetry==1.1.0 -azure-cli==2.90.0 +azure-cli==2.91.0 azure-common==1.1.22 azure-core==1.39.0 azure-cosmos==3.2.0 diff --git a/src/azure-cli/setup.py b/src/azure-cli/setup.py index c99a7ce6814..e2c2fbf0297 100644 --- a/src/azure-cli/setup.py +++ b/src/azure-cli/setup.py @@ -17,7 +17,7 @@ logging.warning("Wheel is not available, disabling bdist_wheel hook") cmdclass = {} -VERSION = "2.90.0" +VERSION = "2.91.0" # If we have source, validate that our version numbers match # This should prevent uploading releases with mismatched versions. try: From abac467ef3d4a7494f301c6f6210a6330a9ecce2 Mon Sep 17 00:00:00 2001 From: Ethan Yang Date: Tue, 29 Sep 2026 14:02:45 +1000 Subject: [PATCH 2/9] Fix broker-based authentication config for macOS Updated the configuration setting for broker-based authentication on macOS. Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> --- src/azure-cli-core/HISTORY.rst | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/src/azure-cli-core/HISTORY.rst b/src/azure-cli-core/HISTORY.rst index c7150ba540d..2c3ff2431ee 100644 --- a/src/azure-cli-core/HISTORY.rst +++ b/src/azure-cli-core/HISTORY.rst @@ -6,7 +6,7 @@ Release History 2.91.0 ++++++ * Remove AzureGermanCloud from hard-coded cloud list (#34042) -* PREVIEW: Enable broker-based authentication on macOS (opt-in via `az config set enable_broker_on_mac=true`) (#33376) +* PREVIEW: Enable broker-based authentication on macOS (opt-in via `az config set core.enable_broker_on_mac=true`) (#33376) 2.90.0 ++++++ From e66604ee675abf9845b67bfe63866f1c9ad6eba9 Mon Sep 17 00:00:00 2001 From: Ethan Yang Date: Tue, 29 Sep 2026 14:14:32 +1000 Subject: [PATCH 3/9] Update src/azure-cli/HISTORY.rst Co-authored-by: Julie Zhu <105691024+yanzhudd@users.noreply.github.com> --- src/azure-cli/HISTORY.rst | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/src/azure-cli/HISTORY.rst b/src/azure-cli/HISTORY.rst index 1f849a71eb8..6f68292f8d4 100644 --- a/src/azure-cli/HISTORY.rst +++ b/src/azure-cli/HISTORY.rst @@ -32,7 +32,7 @@ Release History **App Config** -* `az appconfig kv/snapshot`: Add description support (#33840) +* `az appconfig kv/snapshot`: Add support for `--description` parameter (#33840) **App Service** From b986004aae52c0e6adb7be1f6a7b4eb767cd21d4 Mon Sep 17 00:00:00 2001 From: Ethan Yang Date: Tue, 29 Sep 2026 14:14:45 +1000 Subject: [PATCH 4/9] Update src/azure-cli/HISTORY.rst Co-authored-by: Julie Zhu <105691024+yanzhudd@users.noreply.github.com> --- src/azure-cli/HISTORY.rst | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/src/azure-cli/HISTORY.rst b/src/azure-cli/HISTORY.rst index 6f68292f8d4..10a4ac7a02a 100644 --- a/src/azure-cli/HISTORY.rst +++ b/src/azure-cli/HISTORY.rst @@ -46,7 +46,7 @@ Release History **ARM** -* `az stack-whatif`: Resource changes with the type "NoEffect" are now colored gray and marked with a cross symbol instead of using the same appearance as the "NoChange" change type (#33858) +* `az stack-whatif`: Render `NoEffect` changes in gray with a cross symbol (#33858) **Backup** From ddfa7a7c35504a08a828663cebc295dba7ce264e Mon Sep 17 00:00:00 2001 From: Ethan Yang Date: Tue, 29 Sep 2026 14:14:55 +1000 Subject: [PATCH 5/9] Update src/azure-cli/HISTORY.rst --- src/azure-cli/HISTORY.rst | 2 -- 1 file changed, 2 deletions(-) diff --git a/src/azure-cli/HISTORY.rst b/src/azure-cli/HISTORY.rst index 10a4ac7a02a..c582395261c 100644 --- a/src/azure-cli/HISTORY.rst +++ b/src/azure-cli/HISTORY.rst @@ -55,8 +55,6 @@ Release History * `az backup vault update`: Add `--source-scan-state` to configure Microsoft Defender for Cloud Source Scan (#34076) * `az backup item source-scan-configuration set`: Add support for enabling or disabling Source Scan for Azure VM backup items (#34076) * `az backup restore files mount-rp`: Fetch ILR mount scripts via dedicated list action (#34073) -* `az backup container register`: Add managed identity support for Azure Files backup (#34109) -* `az backup container register`: Revert managed identity support for Azure Files backup (#34142) **Compute** From 50c924c8622366ee95a46065b9f39659833651e1 Mon Sep 17 00:00:00 2001 From: Ethan Yang Date: Tue, 29 Sep 2026 14:15:18 +1000 Subject: [PATCH 6/9] Update src/azure-cli/HISTORY.rst Co-authored-by: Julie Zhu <105691024+yanzhudd@users.noreply.github.com> --- src/azure-cli/HISTORY.rst | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/src/azure-cli/HISTORY.rst b/src/azure-cli/HISTORY.rst index c582395261c..ae5ca528bf7 100644 --- a/src/azure-cli/HISTORY.rst +++ b/src/azure-cli/HISTORY.rst @@ -60,7 +60,7 @@ Release History * `az vm/vmss create/update`: Add new parameter `--wire-server-use-local-file-rules` to support use local file rules (#33894) * `az vm/vmss create`: Add `SpotPlus` option in `--priority` parameter (#34030) -* `az vm/vmss`: Add new param `--processor-mode` to support processor mode (#33985) +* `az vm/vmss`: Add new parameter `--processor-mode` to support processor mode (#33985) * `az capacity reservation create`: Add new parameters `--schedule-profile-start` and `--minimum-commitment-days` to support future capacity reservation (#34031) * `az vm/vmss list-versions`: Add new parameter `--expand` to support extension image release metadata (#34018) * `az sig create/update`: Add new parameters `--soft-delete`, `--soft-delete-retention-period` and `--soft-delete-grace-period` to support soft-delete policy (#34107) From d4deb4998b4605b2e8b5d3c08320454a0f1fcf73 Mon Sep 17 00:00:00 2001 From: Ethan Yang Date: Tue, 29 Sep 2026 14:15:33 +1000 Subject: [PATCH 7/9] Update src/azure-cli/HISTORY.rst --- src/azure-cli/HISTORY.rst | 1 - 1 file changed, 1 deletion(-) diff --git a/src/azure-cli/HISTORY.rst b/src/azure-cli/HISTORY.rst index ae5ca528bf7..719fef88e30 100644 --- a/src/azure-cli/HISTORY.rst +++ b/src/azure-cli/HISTORY.rst @@ -74,7 +74,6 @@ Release History **Network** -* Fix #33981: `az network application-gateway`: Incorrect GET operation API version (#33999) * `az network route-table route`: Support ECMP routing in route tables (#33493) * `az network first-party-service-tag`: Add support for First Party Service Tags (#34081) * `az network application-gateway ssl-profile add/update`: Expose `--auth-configuration` to support mTLS `verify-client-auth-mode=Passthrough|Strict` (#34090) From 32f4b1d1bcf59ffad6e4a28bdf3bad283e2f7b94 Mon Sep 17 00:00:00 2001 From: Ethan Yang Date: Tue, 29 Sep 2026 14:15:47 +1000 Subject: [PATCH 8/9] Update src/azure-cli/HISTORY.rst --- src/azure-cli/HISTORY.rst | 3 ++- 1 file changed, 2 insertions(+), 1 deletion(-) diff --git a/src/azure-cli/HISTORY.rst b/src/azure-cli/HISTORY.rst index 719fef88e30..4b763a48f35 100644 --- a/src/azure-cli/HISTORY.rst +++ b/src/azure-cli/HISTORY.rst @@ -38,7 +38,8 @@ Release History * `az functionapp flex-migration start/revert`: Add in-place CV1 to Flex Consumption upgrade and revert support (#33863) * `az webapp troubleshoot config`: Provide application config evaluation summary (#33709) -* Prevent access restriction updates from dropping site config (#34050) +* `az webapp config access-restriction +`: Prevent access restriction updates from dropping site config (#34050) * `az webapp deploy`: Add `--deploymentTag` parameter to give friendly name to deployment (#34134) * `az webapp deploy`: Add `--show-secure-build` to deploy and display the secure build summary afterward (#34130) * `az webapp secure-build show`: Add `--rescan` to force fresh dependency analysis (#34130) From 40195310c73bf955922370ec6473a5558c12640f Mon Sep 17 00:00:00 2001 From: Yash <55773468+notyashhh@users.noreply.github.com> Date: Tue, 29 Sep 2026 14:23:22 +1000 Subject: [PATCH 9/9] Update HISTORY.rst with recent Azure CLI changes Updated HISTORY.rst to reflect changes in Azure CLI commands, including new parameters for soft-delete support and removal of preview status for Key Vault. --- src/azure-cli/HISTORY.rst | 4 ++++ 1 file changed, 4 insertions(+) diff --git a/src/azure-cli/HISTORY.rst b/src/azure-cli/HISTORY.rst index 4b763a48f35..47e64c36723 100644 --- a/src/azure-cli/HISTORY.rst +++ b/src/azure-cli/HISTORY.rst @@ -68,6 +68,10 @@ Release History * `az sig image-version delete`: Add new parameter `--bypass-soft-delete` to support bypass-delete (#34107) * `az sig image-version list-soft-deleted`: Add new command to support soft-delete recycle-bin listing (#34107) +**Key Vault** + +* `az keyvault ekm-connection`: Remove preview status (#34095) + **MySQL** * `az mysql flexible-server upgrade`: Fix deserialization problem (#34027)