$npx -y skills add microsoft/azure-skills --skill azure-enterprise-infra-plannerArchitect and provision enterprise Azure infrastructure from workload descriptions. For cloud architects and platform engineers planning networking, identity, security, compliance, and multi-resource topologies with WAF alignment. Generates Bicep or Terraform directly (no azd). W
| 1 | # Azure Enterprise Infra Planner |
| 2 | |
| 3 | ## When to Use This Skill |
| 4 | |
| 5 | Activate this skill when user wants to: |
| 6 | - Plan enterprise Azure infrastructure from a workload or architecture description |
| 7 | - Architect a landing zone, hub-spoke network, or multi-region topology |
| 8 | - Design networking infrastructure: VNets, subnets, firewalls, private endpoints, VPN gateways |
| 9 | - Plan identity, RBAC, and compliance-driven infrastructure |
| 10 | - Generate Bicep or Terraform for subscription-scope or multi-resource-group deployments |
| 11 | - Plan disaster recovery, failover, or cross-region high-availability topologies |
| 12 | |
| 13 | ## Quick Reference |
| 14 | |
| 15 | | Property | Details | |
| 16 | |---|---| |
| 17 | | MCP tools | `insights_get`, `get_azure_bestpractices_get`, `wellarchitectedframework_serviceguide_get`, `microsoft_docs_fetch`, `microsoft_docs_search`, `bicepschema_get` | |
| 18 | | CLI commands | `az deployment group create`, `az bicep build`, `az resource list`, `terraform init`, `terraform plan`, `terraform validate`, `terraform apply` | |
| 19 | | Output schema | [schema.md](references/schema.md) | |
| 20 | | Key references | [workflow.md](references/workflow.md), [waf-checklist.md](references/waf-checklist.md), [resources/](references/resources/README.md), [constraints/](references/constraints/README.md) | |
| 21 | |
| 22 | ## Workflow (Start Here) |
| 23 | |
| 24 | Follow the step-by-step instructions in [workflow.md](references/workflow.md) to execute the 7 phases of infrastructure planning and provisioning. |
| 25 | |
| 26 | ## MCP Tools |
| 27 | |
| 28 | | Tool | Purpose | |
| 29 | |------|---------| |
| 30 | | `insights_get` | Retrieve insights about the user's existing Azure environment to guide planning decisions | |
| 31 | | `get_azure_bestpractices_get` | Azure best practices for code generation, operations, and deployment | |
| 32 | | `wellarchitectedframework_serviceguide_get` | WAF service guide for a specific Azure service | |
| 33 | | `microsoft_docs_search` | Search Microsoft Learn for relevant documentation chunks | |
| 34 | | `microsoft_docs_fetch` | Fetch full content of a Microsoft Learn page by URL | |
| 35 | | `bicepschema_get` | Bicep schema definition for any Azure resource type (latest API version) | |
| 36 | |
| 37 | ## Error Handling |
| 38 | |
| 39 | | Error | Cause | Fix | |
| 40 | |---|---|---| |
| 41 | | MCP tool error or not available | Tool call timeout, connection error, or tool doesn't exist | Retry once; fall back to reference files and notify user if unresolved | |
| 42 | | Plan approval missing | `meta.status` is not `approved` | Stop and prompt user for approval before IaC generation or deployment | |
| 43 | | IaC validation failure | `az bicep build` or `terraform validate` returns errors | Fix the generated code and re-validate; notify user if unresolved | |
| 44 | | Pairing constraint violation | Incompatible SKU or resource combination | Fix in plan before proceeding to IaC generation | |
| 45 | | Infra plan or IaC files not found | Files written to wrong location or not created | Verify files exist at `<project-root>/.azure/` and `<project-root>/infra/`; if missing, re-create the files by following [workflow.md](references/workflow.md) exactly | |