Catalog
MicrosoftDocs/azure-confidential-ledger

MicrosoftDocs

azure-confidential-ledger

Expert knowledge for Azure Confidential Ledger development including troubleshooting, decision making, security, integrations & coding patterns, and deployment. Use when configuring Entra ID auth, MST payloads, Cosmos DB/Blob integrations, ACL Explorer, or ARM/Terraform deployment, and other Azure Confidential Ledger related development tasks. Not for Azure Confidential Computing (use azure-confidential-computing), Azure Virtual Enclaves (use azure-virtual-enclaves), Azure Key Vault (use azure-key-vault), Azure Database for PostgreSQL (use azure-database-postgresql).

globalRequires network access. Uses mcp_microsoftdocs:microsoft_docs_fetch or fetch_webpage to retrieve documentation.
generated_at:2026-06-21
generator:docs2skills/1.0.0
New~1.6k
v1.0Saved Jun 26, 2026

Azure Confidential Ledger Skill

This skill provides expert guidance for Azure Confidential Ledger. Covers troubleshooting, decision making, security, integrations & coding patterns, and deployment. It combines local quick-reference content with remote documentation fetching capabilities.

How to Use This Skill

IMPORTANT for Agent: Use the Category Index below to locate relevant sections. For categories with line ranges (e.g., L35-L120), use read_file with the specified lines. For categories with file links (e.g., [security.md](security.md)), use read_file on the linked reference file

IMPORTANT for Agent: If metadata.generated_at is more than 3 months old, suggest the user pull the latest version from the repository. If mcp_microsoftdocs tools are not available, suggest the user install it: Installation Guide

This skill requires network access to fetch documentation content:

  • Preferred: Use mcp_microsoftdocs:microsoft_docs_fetch with query string from=learn-agent-skill. Returns Markdown.
  • Fallback: Use fetch_webpage with query string from=learn-agent-skill&accept=text/markdown. Returns Markdown.

Category Index

Category Lines Description
Troubleshooting L33-L38 Diagnosing and resolving Microsoft Signing Transparency (MST) ledger verification issues, plus steps to verify ledger integrity and inspect individual ledger entries.
Decision Making L39-L44 Choosing between ACL Explorer tools for viewing/querying ledgers, and guidance on migrating applications and data from Managed CCF to Azure Confidential Ledger
Security L45-L57 Securing Confidential Ledger: Entra ID setup, app registration, auth (tokens/certs), RBAC and roles, node attestation/quote verification, and security best practices.
Integrations & Coding Patterns L58-L67 Patterns and examples for integrating ACL with Blob Storage, Power Automate, Cosmos DB, organizing ledger data, designing MST payloads/claims, and writing JavaScript user-defined functions.
Deployment L68-L72 How to deploy and provision Azure Confidential Ledger instances using ARM templates or Terraform, including required parameters and configuration steps.

Troubleshooting

Topic URL
Troubleshoot Microsoft’s Signing Transparency Ledger verification issues https://learn.microsoft.com/en-us/azure/confidential-ledger/microsoft-signing-transparency-troubleshoot
Verify MST ledger integrity and inspect entries https://learn.microsoft.com/en-us/azure/confidential-ledger/microsoft-signing-transparency-verify-signatures

Decision Making

Topic URL
Choose between Azure Confidential Ledger Explorer tools https://learn.microsoft.com/en-us/azure/confidential-ledger/ledger-explorer-concepts
Migrate from Managed CCF to Azure Confidential Ledger https://learn.microsoft.com/en-us/azure/confidential-ledger/managed-confidential-consortium-framework-migration

Security

Topic URL
Authenticate and attest Azure Confidential Ledger nodes securely https://learn.microsoft.com/en-us/azure/confidential-ledger/authenticate-ledger-nodes
Configure Microsoft Entra authentication for Azure confidential ledger https://learn.microsoft.com/en-us/azure/confidential-ledger/authentication-azure-ad
Create and configure client certificates for Confidential Ledger https://learn.microsoft.com/en-us/azure/confidential-ledger/create-client-certificate
Manage Entra token-based users and roles in Confidential Ledger https://learn.microsoft.com/en-us/azure/confidential-ledger/manage-azure-ad-token-based-users
Manage certificate-based users and roles in Confidential Ledger https://learn.microsoft.com/en-us/azure/confidential-ledger/manage-certificate-based-users
Register Confidential Ledger applications in Microsoft Entra ID https://learn.microsoft.com/en-us/azure/confidential-ledger/register-application
Apply security best practices to Confidential Computing Ledger https://learn.microsoft.com/en-us/azure/confidential-ledger/secure-confidential-ledger
Implement advanced UDFs with RBAC in Confidential Ledger https://learn.microsoft.com/en-us/azure/confidential-ledger/user-defined-endpoints
Verify node quotes and establish trust in Confidential Ledger https://learn.microsoft.com/en-us/azure/confidential-ledger/verify-node-quotes

Integrations & Coding Patterns

Topic URL
Integrate Blob Storage digests with Azure Confidential Ledger https://learn.microsoft.com/en-us/azure/confidential-ledger/create-blob-managed-app
Integrate Azure confidential ledger with Power Automate and Cosmos DB https://learn.microsoft.com/en-us/azure/confidential-ledger/create-power-automate-workflow
Organize and access data in Azure confidential ledger https://learn.microsoft.com/en-us/azure/confidential-ledger/data-organization
Design MST payloads, claims, and auditing workflows https://learn.microsoft.com/en-us/azure/confidential-ledger/microsoft-signing-transparency-usage
Run user-defined functions in Azure Confidential Ledger https://learn.microsoft.com/en-us/azure/confidential-ledger/server-side-programming
Create simple JavaScript UDFs in Confidential Ledger https://learn.microsoft.com/en-us/azure/confidential-ledger/user-defined-functions

Deployment

Topic URL
Deploy Azure Confidential Ledger via ARM template https://learn.microsoft.com/en-us/azure/confidential-ledger/quickstart-template
Provision Azure Confidential Ledger using Terraform https://learn.microsoft.com/en-us/azure/confidential-ledger/quickstart-terraform
Files1
1 files · 18.2 KB

Select a file to preview

Overall Score

79/100

Grade

B

Good

Safety

82

Quality

78

Clarity

82

Completeness

72

Summary

This skill provides structured guidance for Azure Confidential Ledger development, covering troubleshooting, security, integrations, and deployment. It functions as a reference index that directs agents to fetch documentation from Microsoft Learn using specialized tools, with clear category organization and scoped network access.

Detected Capabilities

network requestdocumentation fetchingremote content retrieval

Trigger Keywords

Phrases that MCP clients use to match this skill to user intent.

confidential ledger authmst payload designledger migrationacl security setupconfidential ledger deploymententra id ledgerledger troubleshooting

Risk Signals

INFO

Network access to learn.microsoft.com for documentation fetching

Skill description, 'Preferred' and 'Fallback' tool sections

Referenced Domains

External domains referenced in skill content, detected by static analysis.

github.comlearn.microsoft.com

Use Cases

  • Configure Entra ID authentication for Confidential Ledger applications
  • Troubleshoot Microsoft Signing Transparency (MST) ledger verification failures
  • Design and deploy MST payloads with auditing workflows
  • Integrate Confidential Ledger with Blob Storage, Cosmos DB, or Power Automate
  • Set up RBAC and certificate-based authentication in Confidential Ledger
  • Deploy Confidential Ledger instances using ARM templates or Terraform
  • Migrate applications from Managed CCF to Azure Confidential Ledger

Quality Notes

  • Excellent category-driven index structure (Troubleshooting, Decision Making, Security, Integrations & Coding Patterns, Deployment) with URL references to authoritative Microsoft Learn documentation
  • Clear instructions for agents on tool usage preferences (mcp_microsoftdocs:microsoft_docs_fetch with fallback to fetch_webpage)
  • Helpful metadata check for outdated content (3-month staleness warning)
  • Strong scope boundaries: explicitly excludes related services (Azure Confidential Computing, Virtual Enclaves, Key Vault, PostgreSQL) to prevent agent confusion
  • Reference table structure is scannable and well-organized with topic descriptions
  • Implicit versioning via metadata.generated_at aids content currency tracking
  • Well-scoped network access: documentation fetching only, no write operations or credential handling
  • No supporting reference files (security.md, etc.) referenced in instructions, but this is acceptable as the skill delegates to remote documentation
Model: claude-haiku-4-5-20251001Analyzed: Jun 26, 2026

Reviews

Add this skill to your library to leave a review.

No reviews yet

Be the first to share your experience.

Add MicrosoftDocs/azure-confidential-ledger to your library

Command Palette

Search for a command to run...