Enable addon

Author: a | 2025-04-25

★★★★☆ (4.8 / 2797 reviews)

decode

az aks enable-addons: Enable Kubernetes addons. Core GA az aks enable-addons (aks-preview extension) Enable Kubernetes addons. Extension GA az aks get-credentials: Get access

windows repair 4.13.0

Enable or Disable Addon Domain

Application Gateway. Use with ingress-azure addon. Resource Id of an existing Subnet used to deploy the Application Gateway. Use with ingress-azure addon. Specify the namespace, which AGIC should watch. This could be a single string value, or a comma-separated list of namespaces. --data-collection-settings Path to JSON file containing data collection settings for Monitoring addon. --enable-high-log-scale-mode Enable High Log Scale Mode for Container Logs. Accepted values: false, true--enable-msi-auth-for-monitoring Enable Managed Identity Auth for Monitoring addon. Accepted values: false, true Enable secret rotation. Use with azure-keyvault-secrets-provider addon. Enable SGX quote helper for confcom addon. Enable syslog data collection for Monitoring addon. Accepted values: false, true Do not wait for the long-running operation to finish. Set interval of rotation poll. Use with azure-keyvault-secrets-provider addon. Name of an existing subnet to use with the virtual-node add-on. The resource ID of an existing Log Analytics Workspace to use for storing monitoring data. Global Parameters Increase logging verbosity to show all debug logs. Show this help message and exit. Only show errors, suppressing warnings. Output format. Accepted values: json, jsonc, none, table, tsv, yaml, yamlc Name or ID of subscription. You can configure the default subscription using az account set -s NAME_OR_ID. Increase logging verbosity. Use --debug for full debug logs. az aks enable-addons (aks-preview extension) Enable Kubernetes addons. These addons are available:http_application_routing - configure ingress with automatic public DNS name creation.monitoring - turn on Log Analytics monitoring. Uses the Log Analytics Default Workspace if it exists, else creates one. Specify "--workspace-resource-id" to use an existing workspace.If monitoring addon is enabled --no-wait argument will have no effectvirtual-node - enable AKS Virtual Node. Requires --subnet-name to provide the name of an existing subnet for the Virtual Node to use.azure-policy - enable Azure policy. The Azure Policy add-on for AKS enables at-scale enforcements and safeguards on your clusters in a centralized, consistent manner.Learn more at aka.ms/aks/policy.ingress-appgw - enable Application Gateway Ingress Controller addon (PREVIEW).open-service-mesh - enable Open Service Mesh addon (PREVIEW).gitops - enable GitOps (PREVIEW).azure-keyvault-secrets-provider - enable Azure Keyvault Secrets Provider addon.web_application_routing - enable Web Application Routing addon (PREVIEW). Specify "--dns-zone-resource-id" to configure DNS. az aks enable-addons --addons --name --resource-group [--aks-custom-headers] [--ampls-resource-id] [--appgw-id] [--appgw-name] [--appgw-subnet-cidr] [--appgw-subnet-id] [--appgw-watch-namespace] [--data-collection-settings] [--dns-zone-resource-ids] [--enable-high-log-scale-mode {false, true}] [--enable-msi-auth-for-monitoring {false, true}] [--enable-secret-rotation] [--enable-sgxquotehelper] [--enable-syslog {false, true}] [--no-wait] [--rotation-poll-interval] [--subnet-name] [--workspace-resource-id] Examples Enable Kubernetes addons. (autogenerated) az aks enable-addons --addons virtual-node --name MyManagedCluster --resource-group MyResourceGroup --subnet-name VirtualNodeSubnet Enable ingress-appgw addon with subnet prefix. az aks enable-addons --name MyManagedCluster --resource-group MyResourceGroup --addons ingress-appgw --appgw-subnet-cidr 10.2.0.0/16 --appgw-name gateway Enable open-service-mesh addon. az aks enable-addons --name MyManagedCluster --resource-group MyResourceGroup --addons open-service-mesh Required Parameters Enable the Kubernetes addons in a comma-separated list. Name of the managed cluster. Name of resource group. You can configure the default group using az

partition editor

NVDA Addon Not Working? Enable Incompatible NVDA Addons

Log Analytics monitoring. Uses the Log Analytics Default Workspace if it exists, else creates one. Specify "--workspace-resource-id" to use an existing workspace. If monitoring addon is enabled --no-wait argument will have no effectvirtual-node : enable AKS Virtual Node. Requires --aci-subnet-name to provide the name of an existing subnet for the Virtual Node to use. aci-subnet-name must be in the same vnet which is specified by --vnet-subnet-id (required as well).azure-policy : enable Azure policy. The Azure Policy add-on for AKS enables at-scale enforcements and safeguards on your clusters in a centralized, consistent manner. Required if enabling deployment safeguards. Learn more at aka.ms/aks/policy.ingress-appgw : enable Application Gateway Ingress Controller addon (PREVIEW).confcom : enable confcom addon, this will enable SGX device plugin by default(PREVIEW).open-service-mesh : enable Open Service Mesh addon (PREVIEW).gitops : enable GitOps (PREVIEW).azure-keyvault-secrets-provider : enable Azure Keyvault Secrets Provider addon.web_application_routing : enable Web Application Routing addon (PREVIEW). Specify "--dns-zone-resource-id" to configure DNS. Enable Azure Hybrid User Benefits (AHUB) for Windows VMs. --enable-ai-toolchain-operator Enable AI toolchain operator to the cluster. --enable-apiserver-vnet-integration Enable integration of user vnet with control plane apiserver pods. Enable Application Routing addon. --enable-asm --enable-azure-service-mesh Enable Azure Service Mesh. --enable-azure-container-storage Enable azure container storage and define storage pool type. Accepted values: azureDisk, elasticSan, ephemeralDisk--enable-azure-keyvault-kms Enable Azure KeyVault Key Management Service. --enable-azure-monitor-app-monitoring Enable Azure Monitor Application Monitoring. --enable-azure-monitor-metrics Enable Azure Monitor Metrics Profile. Enable Azure RBAC to control authorization checks on cluster. Enable AzureBlob CSI Driver. --enable-cluster-autoscaler Enable cluster autoscaler, default value is false. If specified, please make sure the kubernetes version is larger than 1.10.6. Enable exporting Kubernetes Namespace and Deployment details to the Cost Analysis views in the Azure portal. For more information see aka.ms/aks/docs/cost-analysis. Enable Custom CA Trust on agent node pool. Enable Microsoft Defender security profile. --enable-encryption-at-host Enable EncryptionAtHost on agent node pool. Use FIPS-enabled OS on agent nodes. --enable-high-log-scale-mode Enable High Log Scale Mode for Container Logs. Accepted values: false, true Enable ImageCleaner Service. Enable ImageIntegrity Service. --enable-imds-restriction Enable IMDS restriction in the cluster. Non-hostNetwork Pods will not be able to access IMDS. Enable KEDA workload auto-scaler. --enable-managed-identity Using managed identity to manage cluster resource group. You can explicitly specify "--service-principal" and "--client-secret" to disable managed identity, otherwise it will be enabled. --enable-msi-auth-for-monitoring Send monitoring data to Log Analytics using the cluster's assigned identity (instead of the Log Analytics Workspace's shared key). Accepted values: false, true Enable VMSS node public IP. (PREVIEW) Enable pod identity addon. --enable-pod-identity-with-kubenet (PREVIEW) Enable pod identity addon for cluster using Kubnet network plugin. Enable secret rotation. Use with azure-keyvault-secrets-provider addon. Enable Secure Boot on all node pools in the cluster. Must use VMSS agent pool type. Enable SGX quote helper for confcom addon. --enable-static-egress-gateway Enable Static Egress Gateway addon to the

- Error when trying to enable addons - blender-addons - Blender

Configure --defaults group=. Optional Parameters Send custom headers. When specified, format should be Key1=Value1,Key2=Value2. Resource ID of Azure Monitor Private Link scope for Monitoring Addon. Resource Id of an existing Application Gateway to use with AGIC. Use with ingress-azure addon. Name of the application gateway to create/use in the node resource group. Use with ingress-azure addon. Subnet CIDR to use for a new subnet created to deploy the Application Gateway. Use with ingress-azure addon. Resource Id of an existing Subnet used to deploy the Application Gateway. Use with ingress-azure addon. Specify the namespace, which AGIC should watch. This could be a single string value, or a comma-separated list of namespaces. Use with ingress-azure addon. --data-collection-settings Path to JSON file containing data collection settings for Monitoring addon. A comma separated list of resource IDs of the DNS zone resource to use with the web_application_routing addon. --enable-high-log-scale-mode Enable High Log Scale Mode for Container Logs. Accepted values: false, true--enable-msi-auth-for-monitoring Send monitoring data to Log Analytics using the cluster's assigned identity (instead of the Log Analytics Workspace's shared key). Accepted values: false, true Enable secret rotation. Use with azure-keyvault-secrets-provider addon. Enable SGX quote helper for confcom addon. Enable syslog data collection for Monitoring addon. Accepted values: false, true Do not wait for the long-running operation to finish. Set interval of rotation poll. Use with azure-keyvault-secrets-provider addon. The subnet name for the virtual node to use. The resource ID of an existing Log Analytics Workspace to use for storing monitoring data. Global Parameters Increase logging verbosity to show all debug logs. Show this help message and exit. Only show errors, suppressing warnings. Output format. Accepted values: json, jsonc, none, table, tsv, yaml, yamlc Name or ID of subscription. You can configure the default subscription using az account set -s NAME_OR_ID. Increase logging verbosity. Use --debug for full debug logs. az aks get-credentials Get access credentials for a managed Kubernetes cluster. By default, the credentials are merged into the .kube/config file so kubectl can use them. See -f parameter for details. az aks get-credentials --name --resource-group [--admin] [--context] [--file] [--format] [--overwrite-existing] [--public-fqdn] Examples Get access credentials for a managed Kubernetes cluster. (autogenerated) az aks get-credentials --name MyManagedCluster --resource-group MyResourceGroup Required Parameters Name of the managed cluster. Name of resource group. You can configure the default group using az configure --defaults group=. Optional Parameters Get cluster administrator credentials. Default: cluster user credentials. On clusters with Azure Active Directory integration, this bypasses normal Azure AD authentication and can be used if you're permanently blocked by not having access to a valid Azure AD group with access to your cluster. Requires 'Azure Kubernetes Service Cluster Admin' role. If specified, overwrite the default context name. The --admin parameter takes. az aks enable-addons: Enable Kubernetes addons. Core GA az aks enable-addons (aks-preview extension) Enable Kubernetes addons. Extension GA az aks get-credentials: Get access

Enabling the Renamer Addon - Nocturnal Souls

Created by the addon for this AKS cluster. Disable Azure RBAC to control authorization checks on cluster. Disable AzureBlob CSI Driver. --disable-cluster-autoscaler -d Disable cluster autoscaler. Disable exporting Kubernetes Namespace and Deployment details to the Cost Analysis views in the Azure portal. Disable defender profile. Disable AzureDisk CSI Driver. Disable AzureFile CSI Driver. Disable forceUpgrade cluster upgrade settings override. Disable ImageCleaner Service. --disable-image-integrity Disable ImageIntegrity Service. --disable-imds-restriction Disable IMDS restriction in the cluster. All Pods in the cluster will be able to access IMDS. Disable KEDA workload auto-scaler. (Preview) If set to true, getting static credential will be disabled for this cluster. (PREVIEW) Disable Pod Identity addon for cluster. --disable-pod-security-policy--disable-private-cluster Disable private cluster for apiserver vnet integration cluster. Disable public fqdn feature for private cluster. --disable-secret-rotation Disable secret rotation. Use with azure-keyvault-secrets-provider addon. --disable-snapshot-controller Disable CSI Snapshot Controller. --disable-static-egress-gateway Disable Static Egress Gateway addon to the cluster. Disable vertical pod autoscaler for cluster. --disable-workload-identity (PREVIEW) Disable Workload Identity addon for cluster. Specify AzureDisk CSI Driver version. Enable managed AAD feature for cluster. Enable advanced network functionalities on a cluster. Enabling this will incur additional costs. For non-cilium clusters, acns security will be disabled by default until further notice. --enable-addon-autoscaling Enable addon autoscaling for cluster. Enable Azure Hybrid User Benefits (AHUB) feature for cluster. --enable-ai-toolchain-operator Enable AI toolchain operator to the cluster. --enable-apiserver-vnet-integration Enable integration of user vnet with control plane apiserver pods. --enable-azure-container-storage Enable azure container storage and define storage pool type. Accepted values: azureDisk, elasticSan, ephemeralDisk--enable-azure-keyvault-kms Enable Azure KeyVault Key Management Service. --enable-azure-monitor-app-monitoring Enable Azure Monitor Application Monitoring. --enable-azure-monitor-metrics Enable Azure Monitor Metrics Profile. Enable Azure RBAC to control authorization checks on cluster. Enable AzureBlob CSI Driver. --enable-cluster-autoscaler -e Enable cluster autoscaler. Enable exporting Kubernetes Namespace and Deployment details to the Cost Analysis views in the Azure portal. For more information see aka.ms/aks/docs/cost-analysis. Enable Microsoft Defender security profile. Enable AzureDisk CSI Driver. Enable AzureFile CSI Driver. Enable forceUpgrade cluster upgrade settings override. Enable ImageCleaner Service. Enable ImageIntegrity Service. --enable-imds-restriction Enable IMDS restriction in the cluster. Non-hostNetwork Pods will not be able to access IMDS. Enable KEDA workload auto-scaler. (Preview) If set to true, will enable getting static credential for this cluster. --enable-managed-identity Update current cluster to managed identity to manage cluster resource group. (PREVIEW) Enable Pod Identity addon for cluster. --enable-pod-identity-with-kubenet (PREVIEW) Enable pod identity addon for cluster using Kubnet network plugin. Enable private cluster for apiserver vnet integration cluster. Enable public fqdn feature for private cluster. Enable secret rotation. Use with azure-keyvault-secrets-provider addon. --enable-snapshot-controller Enable Snapshot Controller. --enable-static-egress-gateway Enable Static Egress Gateway addon to the cluster. Enable vertical pod autoscaler for cluster. Enable Windows gmsa on cluster. --enable-windows-recording-rules Enable Windows Recording Rules when enabling the Azure Monitor Metrics

Enable Copy - Microsoft Edge Addons

Skip to main contentSkip to in-page navigation This browser is no longer supported. Upgrade to Microsoft Edge to take advantage of the latest features, security updates, and technical support. -->az aks Reference NoteThis command group has commands that are defined in both Azure CLI and at least one extension. Install each extension to benefit from its extended capabilities. Learn more about extensions. Manage Azure Kubernetes Services. Commands Name Description Type Status az aks addon Commands to manage and view single addon conditions. Extension GA az aks addon disable Disable an enabled Kubernetes addon in a cluster. Extension GA az aks addon enable Enable a Kubernetes addon. Extension GA az aks addon list List status of all Kubernetes addons in given cluster. Extension GA az aks addon list-available List available Kubernetes addons. Extension GA az aks addon show Show status and configuration for an enabled Kubernetes addon in a given cluster. Extension GA az aks addon update Update an already enabled Kubernetes addon. Extension GA az aks app Commands to manage AKS app. Extension Preview az aks app up Deploy to AKS via GitHub actions. Extension Preview az aks approuting Commands to manage App Routing addon. Core and Extension GA az aks approuting disable Disable App Routing addon. Core GA az aks approuting disable (aks-preview extension) Disable App Routing addon. Extension GA az aks approuting enable Enable App Routing. Core GA az aks approuting enable (aks-preview extension) Enable App Routing. Extension GA az aks approuting update Update App Routing addon. Core GA az aks approuting update (aks-preview extension) Update App Routing addon. Extension GA az aks approuting zone Commands to manage App Routing DNS Zones. Core and Extension GA az aks approuting zone add Add DNS Zone(s) to App Routing. Core GA az aks approuting zone add (aks-preview extension) Add DNS Zone(s) to App Routing. Extension GA az aks approuting zone delete Delete DNS Zone(s) from App Routing. Core GA az aks approuting zone delete (aks-preview extension) Delete DNS Zone(s) from App Routing. Extension GA az aks approuting zone list List DNS Zone IDs in App Routing. Core GA az aks approuting zone list (aks-preview extension) List DNS Zone IDs in App Routing. Extension GA az aks approuting zone update Replace DNS Zone(s) in App Routing. Core GA az aks approuting zone update (aks-preview extension) Replace DNS Zone(s) in App Routing. Extension GA az aks browse Show the dashboard for a Kubernetes cluster in a web browser. Core GA az aks browse (aks-preview extension) Show the dashboard for a Kubernetes cluster in a web browser. Extension GA az aks check-acr Validate an ACR is accessible from an AKS cluster. Core GA az aks check-network Commands to troubleshoot network connectivity in managed

Read the Docs Addons enabled by default

The managed cluster and resource group names. An IP address assigned to the Kubernetes DNS service. This address must be within the Kubernetes service address range specified by "--service-cidr". For example, 10.0.0.10. The name of the Edge Zone. Enable managed AAD feature for cluster. Enable advanced network functionalities on a cluster. Enabling this will incur additional costs. For non-cilium clusters, acns security will be disabled by default until further notice. Enable the Kubernetes addons in a comma-separated list. These addons are available:- http_application_routing : configure ingress with automatic public DNS name creation.- monitoring : turn on Log Analytics monitoring. Uses the Log Analytics Default Workspace if it exists, else creates one.Specify "--workspace-resource-id" to use an existing workspace.Specify "--enable-msi-auth-for-monitoring" to use Managed Identity Auth.Specify "--enable-syslog" to enable syslog data collection from nodes. Note MSI must be enabledSpecify "--data-collection-settings" to configure data collection settingsSpecify "--ampls-resource-id" for private link. Note MSI must be enabled.Specify "--enable-high-log-scale-mode" to enable high log scale mode for container logs. Note MSI must be enabled.If monitoring addon is enabled --no-wait argument will have no effect- azure-policy : enable Azure policy. The Azure Policy add-on for AKS enables at-scale enforcements and safeguards on your clusters in a centralized, consistent manner.Learn more at aka.ms/aks/policy.- virtual-node : enable AKS Virtual Node.Requires --aci-subnet-name to provide the name of an existing subnet for the Virtual Node to use.aci-subnet-name must be in the same vnet which is specified by --vnet-subnet-id (required as well).- confcom : enable confcom addon, this will enable SGX device plugin by default.- open-service-mesh : enable Open Service Mesh addon.- azure-keyvault-secrets-provider : enable Azure Keyvault Secrets Provider addon. Enable Azure Hybrid User Benefits (AHUB) for Windows VMs. Enable Application Routing addon. --enable-asm --enable-azure-service-mesh Enable Azure Service Mesh addon. --enable-azure-container-storage Enable azure container storage and define storage pool type. Accepted values: azureDisk, elasticSan, ephemeralDisk--enable-azure-keyvault-kms Enable Azure KeyVault Key Management Service. --enable-azure-monitor-metrics Enable a kubernetes cluster with the Azure Monitor managed service for Prometheus integration. Enable Azure RBAC to control authorization checks on cluster. Enable AzureBlob CSI Driver. --enable-cluster-autoscaler Enable cluster autoscaler, default value is false. If specified, please make sure the kubernetes version is larger than 1.10.6. Enable exporting Kubernetes Namespace and Deployment details to the Cost Analysis views in the Azure portal. For more information see aka.ms/aks/docs/cost-analysis. Enable Microsoft Defender security profile. --enable-encryption-at-host Enable EncryptionAtHost, default value is false. Use FIPS-enabled OS on agent nodes. --enable-high-log-scale-mode Enable High Log Scale Mode for Container Logs. Accepted values: false, true Enable ImageCleaner Service. Enable KEDA workload auto-scaler. --enable-managed-identity Using a system assigned managed identity to manage cluster resource group. You can explicitly specify "--service-principal" and "--client-secret" to disable managed identity, otherwise it will be enabled. --enable-msi-auth-for-monitoring Enable Managed Identity Auth for Monitoring addon. Accepted. az aks enable-addons: Enable Kubernetes addons. Core GA az aks enable-addons (aks-preview extension) Enable Kubernetes addons. Extension GA az aks get-credentials: Get access Enable an addon, for example, metrics-server: minikube addons enable metrics-server The output is similar to: The 'metrics-server' addon is enabled View the Pod and

Comments

User1335

Application Gateway. Use with ingress-azure addon. Resource Id of an existing Subnet used to deploy the Application Gateway. Use with ingress-azure addon. Specify the namespace, which AGIC should watch. This could be a single string value, or a comma-separated list of namespaces. --data-collection-settings Path to JSON file containing data collection settings for Monitoring addon. --enable-high-log-scale-mode Enable High Log Scale Mode for Container Logs. Accepted values: false, true--enable-msi-auth-for-monitoring Enable Managed Identity Auth for Monitoring addon. Accepted values: false, true Enable secret rotation. Use with azure-keyvault-secrets-provider addon. Enable SGX quote helper for confcom addon. Enable syslog data collection for Monitoring addon. Accepted values: false, true Do not wait for the long-running operation to finish. Set interval of rotation poll. Use with azure-keyvault-secrets-provider addon. Name of an existing subnet to use with the virtual-node add-on. The resource ID of an existing Log Analytics Workspace to use for storing monitoring data. Global Parameters Increase logging verbosity to show all debug logs. Show this help message and exit. Only show errors, suppressing warnings. Output format. Accepted values: json, jsonc, none, table, tsv, yaml, yamlc Name or ID of subscription. You can configure the default subscription using az account set -s NAME_OR_ID. Increase logging verbosity. Use --debug for full debug logs. az aks enable-addons (aks-preview extension) Enable Kubernetes addons. These addons are available:http_application_routing - configure ingress with automatic public DNS name creation.monitoring - turn on Log Analytics monitoring. Uses the Log Analytics Default Workspace if it exists, else creates one. Specify "--workspace-resource-id" to use an existing workspace.If monitoring addon is enabled --no-wait argument will have no effectvirtual-node - enable AKS Virtual Node. Requires --subnet-name to provide the name of an existing subnet for the Virtual Node to use.azure-policy - enable Azure policy. The Azure Policy add-on for AKS enables at-scale enforcements and safeguards on your clusters in a centralized, consistent manner.Learn more at aka.ms/aks/policy.ingress-appgw - enable Application Gateway Ingress Controller addon (PREVIEW).open-service-mesh - enable Open Service Mesh addon (PREVIEW).gitops - enable GitOps (PREVIEW).azure-keyvault-secrets-provider - enable Azure Keyvault Secrets Provider addon.web_application_routing - enable Web Application Routing addon (PREVIEW). Specify "--dns-zone-resource-id" to configure DNS. az aks enable-addons --addons --name --resource-group [--aks-custom-headers] [--ampls-resource-id] [--appgw-id] [--appgw-name] [--appgw-subnet-cidr] [--appgw-subnet-id] [--appgw-watch-namespace] [--data-collection-settings] [--dns-zone-resource-ids] [--enable-high-log-scale-mode {false, true}] [--enable-msi-auth-for-monitoring {false, true}] [--enable-secret-rotation] [--enable-sgxquotehelper] [--enable-syslog {false, true}] [--no-wait] [--rotation-poll-interval] [--subnet-name] [--workspace-resource-id] Examples Enable Kubernetes addons. (autogenerated) az aks enable-addons --addons virtual-node --name MyManagedCluster --resource-group MyResourceGroup --subnet-name VirtualNodeSubnet Enable ingress-appgw addon with subnet prefix. az aks enable-addons --name MyManagedCluster --resource-group MyResourceGroup --addons ingress-appgw --appgw-subnet-cidr 10.2.0.0/16 --appgw-name gateway Enable open-service-mesh addon. az aks enable-addons --name MyManagedCluster --resource-group MyResourceGroup --addons open-service-mesh Required Parameters Enable the Kubernetes addons in a comma-separated list. Name of the managed cluster. Name of resource group. You can configure the default group using az

2025-04-25
User9995

Log Analytics monitoring. Uses the Log Analytics Default Workspace if it exists, else creates one. Specify "--workspace-resource-id" to use an existing workspace. If monitoring addon is enabled --no-wait argument will have no effectvirtual-node : enable AKS Virtual Node. Requires --aci-subnet-name to provide the name of an existing subnet for the Virtual Node to use. aci-subnet-name must be in the same vnet which is specified by --vnet-subnet-id (required as well).azure-policy : enable Azure policy. The Azure Policy add-on for AKS enables at-scale enforcements and safeguards on your clusters in a centralized, consistent manner. Required if enabling deployment safeguards. Learn more at aka.ms/aks/policy.ingress-appgw : enable Application Gateway Ingress Controller addon (PREVIEW).confcom : enable confcom addon, this will enable SGX device plugin by default(PREVIEW).open-service-mesh : enable Open Service Mesh addon (PREVIEW).gitops : enable GitOps (PREVIEW).azure-keyvault-secrets-provider : enable Azure Keyvault Secrets Provider addon.web_application_routing : enable Web Application Routing addon (PREVIEW). Specify "--dns-zone-resource-id" to configure DNS. Enable Azure Hybrid User Benefits (AHUB) for Windows VMs. --enable-ai-toolchain-operator Enable AI toolchain operator to the cluster. --enable-apiserver-vnet-integration Enable integration of user vnet with control plane apiserver pods. Enable Application Routing addon. --enable-asm --enable-azure-service-mesh Enable Azure Service Mesh. --enable-azure-container-storage Enable azure container storage and define storage pool type. Accepted values: azureDisk, elasticSan, ephemeralDisk--enable-azure-keyvault-kms Enable Azure KeyVault Key Management Service. --enable-azure-monitor-app-monitoring Enable Azure Monitor Application Monitoring. --enable-azure-monitor-metrics Enable Azure Monitor Metrics Profile. Enable Azure RBAC to control authorization checks on cluster. Enable AzureBlob CSI Driver. --enable-cluster-autoscaler Enable cluster autoscaler, default value is false. If specified, please make sure the kubernetes version is larger than 1.10.6. Enable exporting Kubernetes Namespace and Deployment details to the Cost Analysis views in the Azure portal. For more information see aka.ms/aks/docs/cost-analysis. Enable Custom CA Trust on agent node pool. Enable Microsoft Defender security profile. --enable-encryption-at-host Enable EncryptionAtHost on agent node pool. Use FIPS-enabled OS on agent nodes. --enable-high-log-scale-mode Enable High Log Scale Mode for Container Logs. Accepted values: false, true Enable ImageCleaner Service. Enable ImageIntegrity Service. --enable-imds-restriction Enable IMDS restriction in the cluster. Non-hostNetwork Pods will not be able to access IMDS. Enable KEDA workload auto-scaler. --enable-managed-identity Using managed identity to manage cluster resource group. You can explicitly specify "--service-principal" and "--client-secret" to disable managed identity, otherwise it will be enabled. --enable-msi-auth-for-monitoring Send monitoring data to Log Analytics using the cluster's assigned identity (instead of the Log Analytics Workspace's shared key). Accepted values: false, true Enable VMSS node public IP. (PREVIEW) Enable pod identity addon. --enable-pod-identity-with-kubenet (PREVIEW) Enable pod identity addon for cluster using Kubnet network plugin. Enable secret rotation. Use with azure-keyvault-secrets-provider addon. Enable Secure Boot on all node pools in the cluster. Must use VMSS agent pool type. Enable SGX quote helper for confcom addon. --enable-static-egress-gateway Enable Static Egress Gateway addon to the

2025-04-04
User6841

Created by the addon for this AKS cluster. Disable Azure RBAC to control authorization checks on cluster. Disable AzureBlob CSI Driver. --disable-cluster-autoscaler -d Disable cluster autoscaler. Disable exporting Kubernetes Namespace and Deployment details to the Cost Analysis views in the Azure portal. Disable defender profile. Disable AzureDisk CSI Driver. Disable AzureFile CSI Driver. Disable forceUpgrade cluster upgrade settings override. Disable ImageCleaner Service. --disable-image-integrity Disable ImageIntegrity Service. --disable-imds-restriction Disable IMDS restriction in the cluster. All Pods in the cluster will be able to access IMDS. Disable KEDA workload auto-scaler. (Preview) If set to true, getting static credential will be disabled for this cluster. (PREVIEW) Disable Pod Identity addon for cluster. --disable-pod-security-policy--disable-private-cluster Disable private cluster for apiserver vnet integration cluster. Disable public fqdn feature for private cluster. --disable-secret-rotation Disable secret rotation. Use with azure-keyvault-secrets-provider addon. --disable-snapshot-controller Disable CSI Snapshot Controller. --disable-static-egress-gateway Disable Static Egress Gateway addon to the cluster. Disable vertical pod autoscaler for cluster. --disable-workload-identity (PREVIEW) Disable Workload Identity addon for cluster. Specify AzureDisk CSI Driver version. Enable managed AAD feature for cluster. Enable advanced network functionalities on a cluster. Enabling this will incur additional costs. For non-cilium clusters, acns security will be disabled by default until further notice. --enable-addon-autoscaling Enable addon autoscaling for cluster. Enable Azure Hybrid User Benefits (AHUB) feature for cluster. --enable-ai-toolchain-operator Enable AI toolchain operator to the cluster. --enable-apiserver-vnet-integration Enable integration of user vnet with control plane apiserver pods. --enable-azure-container-storage Enable azure container storage and define storage pool type. Accepted values: azureDisk, elasticSan, ephemeralDisk--enable-azure-keyvault-kms Enable Azure KeyVault Key Management Service. --enable-azure-monitor-app-monitoring Enable Azure Monitor Application Monitoring. --enable-azure-monitor-metrics Enable Azure Monitor Metrics Profile. Enable Azure RBAC to control authorization checks on cluster. Enable AzureBlob CSI Driver. --enable-cluster-autoscaler -e Enable cluster autoscaler. Enable exporting Kubernetes Namespace and Deployment details to the Cost Analysis views in the Azure portal. For more information see aka.ms/aks/docs/cost-analysis. Enable Microsoft Defender security profile. Enable AzureDisk CSI Driver. Enable AzureFile CSI Driver. Enable forceUpgrade cluster upgrade settings override. Enable ImageCleaner Service. Enable ImageIntegrity Service. --enable-imds-restriction Enable IMDS restriction in the cluster. Non-hostNetwork Pods will not be able to access IMDS. Enable KEDA workload auto-scaler. (Preview) If set to true, will enable getting static credential for this cluster. --enable-managed-identity Update current cluster to managed identity to manage cluster resource group. (PREVIEW) Enable Pod Identity addon for cluster. --enable-pod-identity-with-kubenet (PREVIEW) Enable pod identity addon for cluster using Kubnet network plugin. Enable private cluster for apiserver vnet integration cluster. Enable public fqdn feature for private cluster. Enable secret rotation. Use with azure-keyvault-secrets-provider addon. --enable-snapshot-controller Enable Snapshot Controller. --enable-static-egress-gateway Enable Static Egress Gateway addon to the cluster. Enable vertical pod autoscaler for cluster. Enable Windows gmsa on cluster. --enable-windows-recording-rules Enable Windows Recording Rules when enabling the Azure Monitor Metrics

2025-04-08
User6382

Skip to main contentSkip to in-page navigation This browser is no longer supported. Upgrade to Microsoft Edge to take advantage of the latest features, security updates, and technical support. -->az aks Reference NoteThis command group has commands that are defined in both Azure CLI and at least one extension. Install each extension to benefit from its extended capabilities. Learn more about extensions. Manage Azure Kubernetes Services. Commands Name Description Type Status az aks addon Commands to manage and view single addon conditions. Extension GA az aks addon disable Disable an enabled Kubernetes addon in a cluster. Extension GA az aks addon enable Enable a Kubernetes addon. Extension GA az aks addon list List status of all Kubernetes addons in given cluster. Extension GA az aks addon list-available List available Kubernetes addons. Extension GA az aks addon show Show status and configuration for an enabled Kubernetes addon in a given cluster. Extension GA az aks addon update Update an already enabled Kubernetes addon. Extension GA az aks app Commands to manage AKS app. Extension Preview az aks app up Deploy to AKS via GitHub actions. Extension Preview az aks approuting Commands to manage App Routing addon. Core and Extension GA az aks approuting disable Disable App Routing addon. Core GA az aks approuting disable (aks-preview extension) Disable App Routing addon. Extension GA az aks approuting enable Enable App Routing. Core GA az aks approuting enable (aks-preview extension) Enable App Routing. Extension GA az aks approuting update Update App Routing addon. Core GA az aks approuting update (aks-preview extension) Update App Routing addon. Extension GA az aks approuting zone Commands to manage App Routing DNS Zones. Core and Extension GA az aks approuting zone add Add DNS Zone(s) to App Routing. Core GA az aks approuting zone add (aks-preview extension) Add DNS Zone(s) to App Routing. Extension GA az aks approuting zone delete Delete DNS Zone(s) from App Routing. Core GA az aks approuting zone delete (aks-preview extension) Delete DNS Zone(s) from App Routing. Extension GA az aks approuting zone list List DNS Zone IDs in App Routing. Core GA az aks approuting zone list (aks-preview extension) List DNS Zone IDs in App Routing. Extension GA az aks approuting zone update Replace DNS Zone(s) in App Routing. Core GA az aks approuting zone update (aks-preview extension) Replace DNS Zone(s) in App Routing. Extension GA az aks browse Show the dashboard for a Kubernetes cluster in a web browser. Core GA az aks browse (aks-preview extension) Show the dashboard for a Kubernetes cluster in a web browser. Extension GA az aks check-acr Validate an ACR is accessible from an AKS cluster. Core GA az aks check-network Commands to troubleshoot network connectivity in managed

2025-04-01

Add Comment