Azure Dedicated HSM Skill

SkillCloud & infra

Expert knowledge for Azure Dedicated HSM development including troubleshooting, decision making, architecture & design patterns, security, and deployment. Use when sizing HSM clusters, configuring ExpressRoute IP SKUs, securing VNets, or planning HSM retirement/migration, and other Azure Dedicated HSM related development tasks. Not for Azure Cloud Hsm (use azure-cloud-hsm), Azure Key Vault (use azure-key-vault), Azure Payment Hsm (use azure-payment-hsm).

Available today. Use it from your connected AI after setup.

Connect ahel once, and every AI you use reads what you have installed.

Then ask your AI: use the Azure Dedicated HSM Skill skill

What this skill tells your AI

The instructions your AI receives, as published by microsoftdocs/agent-skills in skills/azure-dedicated-hsm/SKILL.md and read by ahel’s review.

This skill provides expert guidance for Azure Dedicated HSM. Covers troubleshooting, decision making, architecture & design patterns, security, and deployment. It combines local quick-reference content with remote documentation fetching capabilities.

How to Use This Skill

IMPORTANT for Agent: Use the Category Index below to locate relevant sections. For categories with line ranges (e.g., L35-L120), use read_file with the specified lines. For categories with file links (e.g., [security.md](security.md)), use read_file on the linked reference file

IMPORTANT for Agent: If metadata.generated_at is more than 3 months old, suggest the user pull the latest version from the repository. If mcp_microsoftdocs tools are not available, suggest the user install it: Installation Guide

This skill requires network access to fetch documentation content:

  • Preferred: Use mcp_microsoftdocs:microsoft_docs_fetch with query string from=learn-agent-skill. Returns Markdown.
  • Fallback: Use fetch_webpage with query string from=learn-agent-skill&accept=text/markdown. Returns Markdown.

Category Index

CategoryLinesDescription
TroubleshootingL33-L38Diagnosing and fixing Azure Dedicated HSM deployment, configuration, usage, and support issues, including common errors and steps to resolve failed or misconfigured HSM instances.
Decision MakingL39-L44Guidance on Dedicated HSM retirement, choosing successors (Managed/Cloud HSM), and planning/migrating ExpressRoute IPs and HSM workloads to new SKUs or services.
Architecture & Design PatternsL45-L51Guidance on designing Dedicated HSM deployments: sizing and topology, high availability and failover patterns, and secure networking (VNet, subnets, routing, and connectivity).
SecurityL52-L57Physical security controls for Dedicated HSM devices and recommended security configurations, policies, and operational best practices for protecting keys and access.
DeploymentL58-L61Guidance for migrating the ExpressRoute gateway IP SKU used with Azure Dedicated HSM, including steps, prerequisites, and configuration considerations.

Troubleshooting

TopicURL
Resolve common Azure Dedicated HSM usage and support questionshttps://learn.microsoft.com/en-us/azure/dedicated-hsm/faq
Troubleshoot Azure Dedicated HSM deployment and configuration issueshttps://learn.microsoft.com/en-us/azure/dedicated-hsm/troubleshoot

Decision Making

TopicURL
Plan migration from Azure Dedicated HSM to Managed or Cloud HSMhttps://learn.microsoft.com/en-us/azure/dedicated-hsm/migration-guide
Understand Azure Dedicated HSM retirement and successorshttps://learn.microsoft.com/en-us/azure/dedicated-hsm/overview

Architecture & Design Patterns

TopicURL
Design deployment architecture for Azure Dedicated HSMhttps://learn.microsoft.com/en-us/azure/dedicated-hsm/deployment-architecture
Design high availability for Azure Dedicated HSMhttps://learn.microsoft.com/en-us/azure/dedicated-hsm/high-availability
Plan networking architecture for Azure Dedicated HSMhttps://learn.microsoft.com/en-us/azure/dedicated-hsm/networking

Security

TopicURL
Understand physical security of Azure Dedicated HSM deviceshttps://learn.microsoft.com/en-us/azure/dedicated-hsm/physical-security
Apply security best practices for Azure Dedicated HSMhttps://learn.microsoft.com/en-us/azure/dedicated-hsm/secure-dedicated-hsm

Deployment

TopicURL
Migrate Dedicated HSM ExpressRoute gateway IP SKUhttps://learn.microsoft.com/en-us/azure/dedicated-hsm/migration-basic-standard

Signals

GitHub stars
742
Forks
120
Last commit
Sep 2026

ahel review

  • S4info
    community integration — published by microsoftdocs, not azure

Automated review, not a security audit. Ruleset v1.

Advanced
Catalog kind
skill
Gateway key
azure-dedicated-hsm
Source
github.com/microsoftdocs/agent-skills