Official agent skill

Azure Network Watcher

by MicrosoftDocs in MicrosoftDocs/Agent-Skills

Expert knowledge for Azure Network Watcher development including troubleshooting, decision making, limits & quotas, security, configuration, and integrations & coding patterns.

OfficialCC-BY-4.0Auto-check passedDevOps & Cloud

Install Azure Network Watcher

skills CLI
$ npx skills add MicrosoftDocs/Agent-Skills --skill azure-network-watcher -a claude-code

Project install by default; add -g for ~/.claude/skills/.

GitHub CLI
$ gh skill install MicrosoftDocs/Agent-Skills azure-network-watcher --agent claude-code

Project scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).

Manual copy
$ git clone --depth 1 https://github.com/MicrosoftDocs/Agent-Skills.git skills-src && mkdir -p .claude/skills && cp -r skills-src/skills/azure-network-watcher .claude/skills/azure-network-watcher && rm -rf skills-src

Use ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.

Claude Code skills documentation · loads skills from .claude/skills/

Facts

Skill name
azure-network-watcher
GitHub stars
775
Token cost
~2.1k tokens
SKILL.md length
593 words
Files
1
Skills in repo
149
Repo updated
First seen
Licence
CC-BY-4.0

At a glance

Expert knowledge for Azure Network Watcher development including troubleshooting, decision making, limits & quotas, security, configuration, and integrations & coding patterns.

  • Configuring VNet/NSG flow logs
  • SKILL.md covers How to Use This Skill and Category Index
  • Instructions only: no scripts, shell commands, URLs or credentials in SKILL.md
  • Traffic Analytics

What it does

Azure Network Watcher is an agent skill from MicrosoftDocs/Agent-Skills, published by the product's own GitHub organization. Expert knowledge for Azure Network Watcher development including troubleshooting, decision making, limits & quotas, security, configuration, and integrations & coding patterns. Use when configuring VNet/NSG flow logs, Traffic Analytics, packet capture, Connection Monitor migration, or VPN monitoring, and other Azure Network Watcher related development tasks. Not for Azure Monitor (use azure-monitor), Azure Virtual Network (use azure-virtual-network), Azure Networking (use azure-networking), Azure Firewall (use…

Its SKILL.md is about 2.1k tokens, which your agent loads only when the skill is triggered. It is a single SKILL.md file with no bundled scripts. Compatibility notes: Requires network access. Uses mcpmicrosoftdocs:microsoftdocsfetch or fetchwebpage to retrieve documentation.

It sits in DevOps & Cloud. It works with Microsoft Azure and Azure Monitor. The repository describes itself as: Curated Agent Skills for Microsoft & Azure – giving AI coding assistants structured, real-time expertise from Microsoft Learn docs. The licence is CC-BY-4.0.

When your agent uses it

  • Configuring VNet/NSG flow logs
  • Traffic Analytics
  • Connection Monitor migration
  • Other Azure Network Watcher related development tasks

Example prompts

  • “/azure-network-watcher”

Requirements

  • Compatibility (from SKILL.md): Requires network access. Uses mcp_microsoftdocs:microsoft_docs_fetch or fetch_webpage to retrieve documentation.

What it can do on your machine

Read from SKILL.md and the folder at commit ba74e8f. It shows what the files ask for, not the result of running them.

  • Tool permissions

    Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.

    From allowed-tools in the SKILL.md frontmatter.

  • Runs code

    No scripts in the folder and no shell commands in SKILL.md.

    From the folder's file list and the shell code blocks in SKILL.md.

  • Network

    Links to these hosts (documentation or services it may open):

    • learn.microsoft.com
    • github.com

    From URLs in SKILL.md, links to its own repository left out.

  • Credentials

    Names no API keys, tokens, secrets or passwords.

    From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.

  • Compatibility

    Requires network access. Uses mcp_microsoftdocs:microsoft_docs_fetch or fetch_webpage to retrieve documentation.

    From compatibility in the SKILL.md frontmatter.

Context cost

Azure Network Watcher loads about 2.1k tokens when it runs. Until then it costs about 139 tokens; SKILL.md has 593 words of instructions outside code blocks.

Always · name and description, kept in context so the agent knows when to use it
~139
When it runs · the whole SKILL.md, loaded when a task matches
~2.1k

Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.

Safety

Auto-check passed

The automated check found no risky patterns in SKILL.md.

Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); files beside SKILL.md are not scanned.

SKILL.md

The full file from MicrosoftDocs/Agent-Skills at commit ba74e8f, republished under its CC-BY-4.0 licence (© MicrosoftDocs). 593 words, ~2,059 tokens.

Download SKILL.mdSave it as .claude/skills/azure-network-watcher/SKILL.md (or your agent's skills folder).
name
azure-network-watcher
description
Expert knowledge for Azure Network Watcher development including troubleshooting, decision making, limits & quotas, security, configuration, and integrations & coding patterns. Use when configuring VNet/NSG flow logs, Traffic Analytics, packet capture, Connection Monitor migration, or VPN monitoring, and other Azure Network Watcher related development tasks. Not for Azure Monitor (use azure-monitor), Azure Virtual Network (use azure-virtual-network), Azure Networking (use azure-networking), Azure Firewall (use azure-firewall).
compatibility
Requires network access. Uses mcp_microsoftdocs:microsoft_docs_fetch or fetch_webpage to retrieve documentation.
metadata.generated_at
2026-10-04
metadata.generator
docs2skills/1.0.0

Azure Network Watcher Skill

This skill provides expert guidance for Azure Network Watcher. Covers troubleshooting, decision making, limits & quotas, security, configuration, and integrations & coding patterns. It combines local quick-reference content with remote documentation fetching capabilities.

How to Use This Skill

IMPORTANT for Agent: Use the Category Index below to locate relevant sections. For categories with line ranges (e.g., L35-L120), use read_file with the specified lines. For categories with file links (e.g., [security.md](security.md)), use read_file on the linked reference file

IMPORTANT for Agent: If metadata.generated_at is more than 3 months old, suggest the user pull the latest version from the repository. If mcp_microsoftdocs tools are not available, suggest the user install it: Installation Guide

This skill requires network access to fetch documentation content:

  • Preferred: Use mcp_microsoftdocs:microsoft_docs_fetch with query string from=learn-agent-skill. Returns Markdown.
  • Fallback: Use fetch_webpage with query string from=learn-agent-skill&accept=text/markdown. Returns Markdown.

Category Index

CategoryLinesDescription
TroubleshootingL34-L44Diagnosing and fixing outbound connectivity, NSG/admin rule issues, and VPN gateway/on-prem VPN problems, plus automating VPN monitoring with Azure Network Watcher.
Decision MakingL45-L51Guidance for migrating network monitoring: moving from classic Connection Monitor and Network Performance Monitor tests, and switching NSG flow logs to VNet flow logs.
Limits & QuotasL52-L56How to configure and run Network Watcher packet capture, storage and filtering options, and the key limits/quotas (size, duration, concurrency) that apply to captures
SecurityL57-L65Securing Network Watcher: RBAC and least-privilege setup, Zero Trust segmentation with Traffic Analytics, investigating security issues, and protecting VNet flow logs with managed identities.
ConfigurationL66-L81Configuring and managing Network Watcher agents and VNet/NSG flow logs, including schemas, filtering, Traffic Analytics, AKS monitoring, and deployment via ARM, Bicep, and Azure Policy
Integrations & Coding PatternsL82-L87Using Network Watcher programmatically: triggering packet captures from Functions alerts, querying Traffic Analytics with KQL, and provisioning VNet flow logs via Terraform.
Troubleshooting
TopicURL
Diagnose outbound connection issues with Network Watcherhttps://learn.microsoft.com/en-us/azure/network-watcher/connection-troubleshoot-manage
Troubleshoot NSG and admin rules with NSG diagnosticshttps://learn.microsoft.com/en-us/azure/network-watcher/diagnose-network-security-rules
Resolve common Azure Network Watcher issueshttps://learn.microsoft.com/en-us/azure/network-watcher/frequently-asked-questions
Diagnose on-premises VPN connectivity to Azure with Network Watcherhttps://learn.microsoft.com/en-us/azure/network-watcher/network-watcher-diagnose-on-premises-connectivity
Automate VPN connectivity monitoring with Azure Automation and Network Watcherhttps://learn.microsoft.com/en-us/azure/network-watcher/network-watcher-monitor-with-azure-automation
Troubleshoot VPN gateways and connections with Azure CLIhttps://learn.microsoft.com/en-us/azure/network-watcher/vpn-troubleshoot-cli
Troubleshoot VPN gateways and connections with PowerShellhttps://learn.microsoft.com/en-us/azure/network-watcher/vpn-troubleshoot-powershell
Show full SKILL.md (227 more words)Show less
Decision Making
Limits & Quotas
TopicURL
Use Network Watcher packet capture and understand its limitshttps://learn.microsoft.com/en-us/azure/network-watcher/packet-capture-overview
Security
TopicURL
Configure RBAC permissions for Azure Network Watcherhttps://learn.microsoft.com/en-us/azure/network-watcher/rbac-permissions
Secure Azure Network Watcher deployment and data accesshttps://learn.microsoft.com/en-us/azure/network-watcher/secure-network-watcher
Investigate network security issues with Traffic Analytics promptshttps://learn.microsoft.com/en-us/azure/network-watcher/traffic-analytics-insights
Apply Zero Trust segmentation using Traffic Analyticshttps://learn.microsoft.com/en-us/azure/network-watcher/traffic-analytics-zero-trust
Secure VNet flow logs with managed identitieshttps://learn.microsoft.com/en-us/azure/network-watcher/vnet-flow-logs-managed-identity
Configuration
TopicURL
Install and manage Azure Monitor Agent on Arc servershttps://learn.microsoft.com/en-us/azure/network-watcher/connection-monitor-install-azure-monitor-agent
Understand Connection Monitor Log Analytics data schemashttps://learn.microsoft.com/en-us/azure/network-watcher/connection-monitor-schema
Configure and manage Network Watcher Agent VM extensionhttps://learn.microsoft.com/en-us/azure/network-watcher/network-watcher-agent-manage
Configure and manage Azure NSG flow logshttps://learn.microsoft.com/en-us/azure/network-watcher/nsg-flow-logs-manage
Govern Traffic Analytics with Azure Policyhttps://learn.microsoft.com/en-us/azure/network-watcher/traffic-analytics-policy-portal
Understand Traffic Analytics schema and aggregationhttps://learn.microsoft.com/en-us/azure/network-watcher/traffic-analytics-schema
Configure AKS traffic monitoring with VNet flow logshttps://learn.microsoft.com/en-us/azure/network-watcher/vnet-flow-logs-aks-scenarios
Deploy Network Watcher flow logs with Bicephttps://learn.microsoft.com/en-us/azure/network-watcher/vnet-flow-logs-bicep
Configure filtering for Azure VNet flow logshttps://learn.microsoft.com/en-us/azure/network-watcher/vnet-flow-logs-filtering
Configure and manage Azure virtual network flow logshttps://learn.microsoft.com/en-us/azure/network-watcher/vnet-flow-logs-manage
Enforce VNet flow logs with Azure Policyhttps://learn.microsoft.com/en-us/azure/network-watcher/vnet-flow-logs-policy
Deploy Network Watcher flow logs via ARM templatehttps://learn.microsoft.com/en-us/azure/network-watcher/vnet-flow-logs-template
Integrations & Coding Patterns
TopicURL
Trigger Network Watcher packet captures from Azure Functions alertshttps://learn.microsoft.com/en-us/azure/network-watcher/packet-capture-alert-triggered
Analyze Traffic Analytics data with KQL querieshttps://learn.microsoft.com/en-us/azure/network-watcher/traffic-analytics-queries
Provision Azure VNet flow logs with Terraformhttps://learn.microsoft.com/en-us/azure/network-watcher/vnet-flow-logs-terraform

© MicrosoftDocs, CC-BY-4.0. Rendered from Markdown: HTML in the file is shown as text, images as links, and headings moved down two levels. Raw file

Files

Just SKILL.md in skills/azure-network-watcher of MicrosoftDocs/Agent-Skills.

Open the folder on GitHubat commit ba74e8f

Compare with similar skills

Azure Network Watcher next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.

Azure Network Watcher compared with similar skills
SkillStarsUsed inTokensAuto-checkLicenceRepo updated
Azure Network Watcher this skillMicrosoftDocs/Agent-Skills775—~2.1kAutomated safety check: PassCC-BY-4.0
Azure Diagnosticsmicrosoft/GitHub-Copilot-for-Azure2551 repos~1.6kAutomated safety check: PassMIT
Azure Monitor Ingestion Javamicrosoft/skills3.1k6 repos~2kAutomated safety check: PassMIT
Azure Monitor Ingestion Pymicrosoft/skills3.1k6 repos~2kAutomated safety check: PassMIT
Azure Monitor Opentelemetry Exporter Javamicrosoft/skills3.1k6 repos~2.2kAutomated safety check: PassMIT
Azure Monitor Opentelemetry Exporter Pymicrosoft/skills3.1k6 repos~2.3kAutomated safety check: PassMIT

Similar skills

  • Azure Diagnostics

    microsoft/GitHub-Copilot-for-Azure

    Official

    Debug Azure production issues on Azure using AppLens, Azure Monitor, resource health, and safe triage.

    255 GitHub starsUsed in 1 repo~1.6k tokens
    DevOps & CloudAuto-check passed
  • Official

    Azure Monitor Ingestion SDK for Java. An agent skill from microsoft/skills.

    3.1k GitHub starsUsed in 6 repos~2k tokens
    DevOps & CloudAuto-check passed
  • Official

    Azure Monitor Ingestion SDK for Python. An agent skill from microsoft/skills.

    3.1k GitHub starsUsed in 6 repos~2k tokens
    DevOps & CloudAuto-check passed
  • Azure Monitor OpenTelemetry Exporter for Java. An agent skill from microsoft/skills.

    3.1k GitHub starsUsed in 6 repos~2.2k tokens
    DevOps & CloudAuto-check passed
  • Official

    Azure Monitor OpenTelemetry Exporter for Python. An agent skill from microsoft/skills.

    3.1k GitHub starsUsed in 6 repos~2.3k tokens
    DevOps & CloudAuto-check passed
  • Official

    Azure Monitor OpenTelemetry Distro for Python. An agent skill from microsoft/skills.

    3.1k GitHub starsUsed in 6 repos~2k tokens
    DevOps & CloudAuto-check passed

More from MicrosoftDocs/Agent-Skills

All 149 skills in this repo
  • Azure Personalizer

    MicrosoftDocs/Agent-Skills

    Official

    Expert knowledge for Azure AI Personalizer development including troubleshooting, decision making, security, configuration, and integrations & coding patterns.

    775 GitHub starsUsed in 1 repo~1.1k tokens
    Auto-check passed
  • Azure Architecture Advisor

    MicrosoftDocs/Agent-Skills

    Official

    Guides Azure solution design by category, from reference architectures and design patterns to technology choices and migrations, fetching current Microsoft Learn pages over the network.

    775 GitHub stars~15k tokensUpdated yesterday
    Auto-check passed
  • Azure Advisor Guidance

    MicrosoftDocs/Agent-Skills

    Official

    Reference guidance for Azure Advisor work: recommendations, alerts and digests, workbooks, RBAC access and sovereign-cloud limits, fetched from Microsoft Learn.

    775 GitHub stars~1.7k tokensUpdated yesterday
    Auto-check passed
  • Azure AI Vision Reference

    MicrosoftDocs/Agent-Skills

    Official

    Looks up Microsoft Learn guidance for Azure AI Vision: Image Analysis, Read OCR containers, smart-crop thumbnails, background removal and video frame analysis, plus limits and deployment.

    775 GitHub stars~1.6k tokensUpdated yesterday
    Auto-check passed
  • Azure Analysis Services

    MicrosoftDocs/Agent-Skills

    Official

    Expert knowledge for Azure Analysis Services development including troubleshooting.

    775 GitHub stars~608 tokensUpdated yesterday
    Auto-check passed
  • Azure Anomaly Detector

    MicrosoftDocs/Agent-Skills

    Official

    Expert knowledge for Azure AI Anomaly Detector development including troubleshooting, best practices, limits & quotas, configuration, and deployment.

    775 GitHub stars~1.1k tokensUpdated yesterday
    Auto-check passed

Categories

Questions about Azure Network Watcher

What does Azure Network Watcher do?

Expert knowledge for Azure Network Watcher development including troubleshooting, decision making, limits & quotas, security, configuration, and integrations & coding patterns. Azure Network Watcher is an agent skill from MicrosoftDocs/Agent-Skills, published by the product's own GitHub organization. Expert knowledge for Azure Network Watcher development including troubleshooting, decision making, limits & quotas, security, configuration, and integrations & coding patterns.

When should I use Azure Network Watcher?

Azure Network Watcher fits situations like: configuring VNet/NSG flow logs; traffic Analytics; connection Monitor migration; other Azure Network Watcher related development tasks.

How do I install Azure Network Watcher in Claude Code?

Run `npx skills add MicrosoftDocs/Agent-Skills --skill azure-network-watcher -a claude-code`. Or copy the skill folder (skills/azure-network-watcher in MicrosoftDocs/Agent-Skills) into .claude/skills/azure-network-watcher in your project. Claude Code loads it when a task matches its description.

How do I install Azure Network Watcher in Codex?

Run `npx skills add MicrosoftDocs/Agent-Skills --skill azure-network-watcher -a codex`. Or copy the skill folder (skills/azure-network-watcher in MicrosoftDocs/Agent-Skills) into .agents/skills/azure-network-watcher in your project. Codex loads it when a task matches its description.

Can I use Azure Network Watcher in Cursor, Gemini CLI or GitHub Copilot?

Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add MicrosoftDocs/Agent-Skills --skill azure-network-watcher -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/azure-network-watcher, .gemini/skills/azure-network-watcher, .github/skills/azure-network-watcher and .opencode/skills/azure-network-watcher in your project.

What does Azure Network Watcher need to run?

SKILL.md names no scripts, command-line tools or credentials: Azure Network Watcher is instructions for the agent only. Compatibility (from SKILL.md): Requires network access. Uses mcp_microsoftdocs:microsoft_docs_fetch or fetch_webpage to retrieve documentation..

Does Azure Network Watcher access the network?

SKILL.md names 2 domains. As links in the text: learn.microsoft.com and github.com. This is read from the text; nothing was executed.

Is Azure Network Watcher safe to install?

Our automated static check of SKILL.md found no risky patterns, such as piping downloads into a shell, reading credential files or hidden Unicode. It is not a guarantee. Review the folder before installing.

What licence does Azure Network Watcher use?

Azure Network Watcher is published under the CC-BY-4.0 licence (the repository's licence). It allows redistribution, so the full SKILL.md is shown on this page.

How many tokens does Azure Network Watcher use?

About 2.1k tokens (SKILL.md is roughly 8.2k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full.

What are the alternatives to Azure Network Watcher?

Skills that share tags, products or a category with Azure Network Watcher: Azure Diagnostics (microsoft/GitHub-Copilot-for-Azure, 255 stars), Azure Monitor Ingestion Java (microsoft/skills, 3.1k stars), Azure Monitor Ingestion Py (microsoft/skills, 3.1k stars) and Azure Monitor Opentelemetry Exporter Java (microsoft/skills, 3.1k stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.

Who maintains Azure Network Watcher?

MicrosoftDocs (a GitHub organization, an official publisher) maintains it in MicrosoftDocs/Agent-Skills, which has 775 GitHub stars. The repository holds 149 skills in this directory. The repository was last updated on October 5, 2026.

Source: MicrosoftDocs/Agent-Skills on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.