{
    "api_version": "1",
    "kind": "dse_post",
    "self": "https://update.dsesecurity.com/api/v1/posts/dse-20260909-032-reconcile-physical-zones-before-using-a-shared-capacity-reservation/",
    "item": {
        "id": "https://update.dsesecurity.com/updates/dse-20260909-032-reconcile-physical-zones-before-using-a-shared-capacity-reservation/",
        "slug": "dse-20260909-032-reconcile-physical-zones-before-using-a-shared-capacity-reservation",
        "url": "https://update.dsesecurity.com/updates/dse-20260909-032-reconcile-physical-zones-before-using-a-shared-capacity-reservation/",
        "alternate_urls": {
            "markdown": "https://update.dsesecurity.com/updates/dse-20260909-032-reconcile-physical-zones-before-using-a-shared-capacity-reservation.md",
            "json": "https://update.dsesecurity.com/api/v1/posts/dse-20260909-032-reconcile-physical-zones-before-using-a-shared-capacity-reservation/"
        },
        "title": "Reconcile physical zones before using a shared capacity reservation",
        "summary": "Why can matching zone numbers in two subscriptions still select different physical locations for shared reserved capacity?",
        "format": {
            "slug": "guide",
            "name": "Guide"
        },
        "priority": {
            "slug": "info",
            "name": "Information"
        },
        "featured": false,
        "image": {
            "theme": "network-infrastructure",
            "label": "Networks & infrastructure",
            "alt": "Resilient network core with engineered blue and gold data paths.",
            "card_url": "https://update.dsesecurity.com/assets/editorial/network-infrastructure-card.webp?v=1.8.20",
            "hero_url": "https://update.dsesecurity.com/assets/editorial/network-infrastructure-hero.webp?v=1.8.20",
            "social_url": "https://update.dsesecurity.com/assets/editorial/network-infrastructure-social-v2.jpg?v=1.8.20",
            "width": 2400,
            "height": 1350
        },
        "topics": [
            {
                "slug": "it",
                "name": "IT",
                "url": "https://update.dsesecurity.com/topic/it/"
            },
            {
                "slug": "networks-infrastructure",
                "name": "Networks & Infrastructure",
                "url": "https://update.dsesecurity.com/topic/networks-infrastructure/"
            }
        ],
        "author": {
            "name": "DSE Security Editorial Team",
            "url": "https://update.dsesecurity.com/#editorial-team",
            "type": "Organization"
        },
        "publisher": {
            "name": "Detection Systems & Engineering",
            "url": "https://dsesecurity.com/"
        },
        "published_at": "2026-09-10T00:31:24+00:00",
        "modified_at": "2026-09-10T00:32:00+00:00",
        "reviewed_on": "2026-09-09",
        "reading_minutes": 2,
        "word_count": 236,
        "potentially_affected": "Teams evaluating preview sharing of zonal Azure capacity reservation groups across subscriptions.",
        "dse_recommendation": "Build a provider-to-consumer zone mapping for the selected shared reservation before approving a deployment.",
        "primary_source": {
            "name": "Share a Capacity Reservation Group in Azure - Azure Virtual Machines | Microsoft Learn",
            "url": "https://learn.microsoft.com/en-us/azure/virtual-machines/capacity-reservation-group-share",
            "published_on": null,
            "authority": "Microsoft Learn"
        },
        "publishing_principles": "https://update.dsesecurity.com/updates/dse-updates-editorial-methodology/",
        "usage_info": "https://update.dsesecurity.com/usage/",
        "copyright_notice": "Copyright © 2026 Detection Systems & Engineering. All rights reserved.",
        "content_html": "<h2>Source facts</h2>\n<p>Sharing Azure capacity reservation groups across subscriptions is preview. Availability-zone numbers are logical labels with subscription-specific physical mappings, so equal labels need not identify the same location. Microsoft requires zone remapping when deploying through a shared zonal reservation group. The provider and consumer subscriptions each need their own applicable quota. <a href=\"https://learn.microsoft.com/en-us/azure/virtual-machines/capacity-reservation-group-share\" target=\"_blank\" rel=\"noopener noreferrer\">Microsoft Learn</a>.</p>\n<h2>Applicability</h2>\n<p>Scope the review to a named provider subscription, consumer subscription, region, and shared reservation. Record both subscriptions&#8217; actual zone mappings rather than transplanting the documentation&#8217;s illustrative zone numbers. Check the documented sharing permissions and preview limitations before planning an operational trial.</p>\n<h2>DSE recommendation</h2>\n<p>Build a provider-to-consumer zone mapping for the selected shared reservation before approving a deployment. Have both subscription owners review the physical location behind the requested consumer zone and the reservation&#8217;s provider-side label. Include independent quota checks in that review. Keep the mapping with the deployment parameters so a later operator does not replace it with an apparently simpler same-number choice.</p>\n<h2>Verification</h2>\n<p>In an approved preview trial, compare the requested zone, resolved physical mapping, reservation identifier, and resulting VM placement. Ask a second operator to reconstruct the mapping from the retained evidence. Investigate a mismatch before changing unrelated VM settings or requesting more capacity. Record the two subscription identifiers explicitly; a successful deployment from one consumer is not the acceptance result for another consumer&#8217;s mapping.</p>\n<h2>Official references</h2>\n<p><a href=\"https://learn.microsoft.com/en-us/azure/virtual-machines/capacity-reservation-group-share\" target=\"_blank\" rel=\"noopener noreferrer\">Microsoft Learn: Share a Capacity Reservation Group in Azure</a>. Source reviewed September 9, 2026.</p>",
        "content_text": "Source facts\nSharing Azure capacity reservation groups across subscriptions is preview. Availability-zone numbers are logical labels with subscription-specific physical mappings, so equal labels need not identify the same location. Microsoft requires zone remapping when deploying through a shared zonal reservation group. The provider and consumer subscriptions each need their own applicable quota. Microsoft Learn.\nApplicability\nScope the review to a named provider subscription, consumer subscription, region, and shared reservation. Record both subscriptions’ actual zone mappings rather than transplanting the documentation’s illustrative zone numbers. Check the documented sharing permissions and preview limitations before planning an operational trial.\nDSE recommendation\nBuild a provider-to-consumer zone mapping for the selected shared reservation before approving a deployment. Have both subscription owners review the physical location behind the requested consumer zone and the reservation’s provider-side label. Include independent quota checks in that review. Keep the mapping with the deployment parameters so a later operator does not replace it with an apparently simpler same-number choice.\nVerification\nIn an approved preview trial, compare the requested zone, resolved physical mapping, reservation identifier, and resulting VM placement. Ask a second operator to reconstruct the mapping from the retained evidence. Investigate a mismatch before changing unrelated VM settings or requesting more capacity. Record the two subscription identifiers explicitly; a successful deployment from one consumer is not the acceptance result for another consumer’s mapping.\nOfficial references\nMicrosoft Learn: Share a Capacity Reservation Group in Azure. Source reviewed September 9, 2026.",
        "content_markdown": "## Source facts\n\nSharing Azure capacity reservation groups across subscriptions is preview. Availability-zone numbers are logical labels with subscription-specific physical mappings, so equal labels need not identify the same location. Microsoft requires zone remapping when deploying through a shared zonal reservation group. The provider and consumer subscriptions each need their own applicable quota. [Microsoft Learn](https://learn.microsoft.com/en-us/azure/virtual-machines/capacity-reservation-group-share).\n\n## Applicability\n\nScope the review to a named provider subscription, consumer subscription, region, and shared reservation. Record both subscriptions’ actual zone mappings rather than transplanting the documentation’s illustrative zone numbers. Check the documented sharing permissions and preview limitations before planning an operational trial.\n\n## DSE recommendation\n\nBuild a provider-to-consumer zone mapping for the selected shared reservation before approving a deployment. Have both subscription owners review the physical location behind the requested consumer zone and the reservation’s provider-side label. Include independent quota checks in that review. Keep the mapping with the deployment parameters so a later operator does not replace it with an apparently simpler same-number choice.\n\n## Verification\n\nIn an approved preview trial, compare the requested zone, resolved physical mapping, reservation identifier, and resulting VM placement. Ask a second operator to reconstruct the mapping from the retained evidence. Investigate a mismatch before changing unrelated VM settings or requesting more capacity. Record the two subscription identifiers explicitly; a successful deployment from one consumer is not the acceptance result for another consumer’s mapping.\n\n## Official references\n\n[Microsoft Learn: Share a Capacity Reservation Group in Azure](https://learn.microsoft.com/en-us/azure/virtual-machines/capacity-reservation-group-share). Source reviewed September 9, 2026."
    },
    "json_ld": {
        "@context": "https://schema.org",
        "@graph": [
            {
                "@type": "Organization",
                "@id": "https://dsesecurity.com/#organization",
                "name": "Detection Systems & Engineering",
                "alternateName": "DSE Security",
                "url": "https://dsesecurity.com/",
                "logo": {
                    "@type": "ImageObject",
                    "url": "https://update.dsesecurity.com/assets/dse-logo-20260812.png?v=1.8.20"
                }
            },
            {
                "@type": "Organization",
                "@id": "https://update.dsesecurity.com/#editorial-team",
                "name": "DSE Security Editorial Team",
                "url": "https://update.dsesecurity.com/",
                "parentOrganization": {
                    "@id": "https://dsesecurity.com/#organization"
                }
            },
            {
                "@type": "WebSite",
                "@id": "https://update.dsesecurity.com/#website",
                "name": "DSE Updates",
                "alternateName": "DSE Security Knowledge Hub",
                "url": "https://update.dsesecurity.com/",
                "inLanguage": "en-US",
                "publisher": {
                    "@id": "https://dsesecurity.com/#organization"
                },
                "potentialAction": {
                    "@type": "SearchAction",
                    "target": {
                        "@type": "EntryPoint",
                        "urlTemplate": "https://update.dsesecurity.com/?q={search_term_string}"
                    },
                    "query-input": "required name=search_term_string"
                }
            },
            {
                "@type": "WebPage",
                "@id": "https://update.dsesecurity.com/updates/dse-20260909-032-reconcile-physical-zones-before-using-a-shared-capacity-reservation/",
                "url": "https://update.dsesecurity.com/updates/dse-20260909-032-reconcile-physical-zones-before-using-a-shared-capacity-reservation/",
                "isPartOf": {
                    "@id": "https://update.dsesecurity.com/#website"
                },
                "lastReviewed": "2026-09-09"
            },
            {
                "@type": "BreadcrumbList",
                "@id": "https://update.dsesecurity.com/updates/dse-20260909-032-reconcile-physical-zones-before-using-a-shared-capacity-reservation/#breadcrumbs",
                "itemListElement": [
                    {
                        "@type": "ListItem",
                        "position": 1,
                        "name": "DSE Updates",
                        "item": "https://update.dsesecurity.com/"
                    },
                    {
                        "@type": "ListItem",
                        "position": 2,
                        "name": "Reconcile physical zones before using a shared capacity reservation",
                        "item": "https://update.dsesecurity.com/updates/dse-20260909-032-reconcile-physical-zones-before-using-a-shared-capacity-reservation/"
                    }
                ]
            },
            {
                "@type": [
                    "Article",
                    "TechArticle"
                ],
                "@id": "https://update.dsesecurity.com/updates/dse-20260909-032-reconcile-physical-zones-before-using-a-shared-capacity-reservation/#article",
                "identifier": "https://update.dsesecurity.com/updates/dse-20260909-032-reconcile-physical-zones-before-using-a-shared-capacity-reservation/",
                "url": "https://update.dsesecurity.com/updates/dse-20260909-032-reconcile-physical-zones-before-using-a-shared-capacity-reservation/",
                "headline": "Reconcile physical zones before using a shared capacity reservation",
                "description": "Why can matching zone numbers in two subscriptions still select different physical locations for shared reserved capacity?",
                "abstract": "Why can matching zone numbers in two subscriptions still select different physical locations for shared reserved capacity?",
                "articleBody": "Source facts\nSharing Azure capacity reservation groups across subscriptions is preview. Availability-zone numbers are logical labels with subscription-specific physical mappings, so equal labels need not identify the same location. Microsoft requires zone remapping when deploying through a shared zonal reservation group. The provider and consumer subscriptions each need their own applicable quota. Microsoft Learn.\nApplicability\nScope the review to a named provider subscription, consumer subscription, region, and shared reservation. Record both subscriptions’ actual zone mappings rather than transplanting the documentation’s illustrative zone numbers. Check the documented sharing permissions and preview limitations before planning an operational trial.\nDSE recommendation\nBuild a provider-to-consumer zone mapping for the selected shared reservation before approving a deployment. Have both subscription owners review the physical location behind the requested consumer zone and the reservation’s provider-side label. Include independent quota checks in that review. Keep the mapping with the deployment parameters so a later operator does not replace it with an apparently simpler same-number choice.\nVerification\nIn an approved preview trial, compare the requested zone, resolved physical mapping, reservation identifier, and resulting VM placement. Ask a second operator to reconstruct the mapping from the retained evidence. Investigate a mismatch before changing unrelated VM settings or requesting more capacity. Record the two subscription identifiers explicitly; a successful deployment from one consumer is not the acceptance result for another consumer’s mapping.\nOfficial references\nMicrosoft Learn: Share a Capacity Reservation Group in Azure. Source reviewed September 9, 2026.",
                "datePublished": "2026-09-10T00:31:24+00:00",
                "dateModified": "2026-09-10T00:32:00+00:00",
                "mainEntityOfPage": {
                    "@id": "https://update.dsesecurity.com/updates/dse-20260909-032-reconcile-physical-zones-before-using-a-shared-capacity-reservation/"
                },
                "inLanguage": "en-US",
                "isAccessibleForFree": true,
                "author": {
                    "@type": "Organization",
                    "name": "DSE Security Editorial Team",
                    "url": "https://update.dsesecurity.com/#editorial-team"
                },
                "publisher": {
                    "@id": "https://dsesecurity.com/#organization"
                },
                "image": {
                    "@type": "ImageObject",
                    "@id": "https://update.dsesecurity.com/updates/dse-20260909-032-reconcile-physical-zones-before-using-a-shared-capacity-reservation/#primaryimage",
                    "url": "https://update.dsesecurity.com/assets/editorial/network-infrastructure-social-v2.jpg?v=1.8.20",
                    "contentUrl": "https://update.dsesecurity.com/assets/editorial/network-infrastructure-social-v2.jpg?v=1.8.20",
                    "width": 1200,
                    "height": 630,
                    "caption": "Reconcile physical zones before using a shared capacity reservation"
                },
                "articleSection": [
                    "IT",
                    "Networks & Infrastructure"
                ],
                "keywords": [
                    "IT",
                    "Networks & Infrastructure",
                    "Guide",
                    "Information priority"
                ],
                "genre": "Guide",
                "about": [
                    {
                        "@type": "Thing",
                        "name": "IT",
                        "url": "https://update.dsesecurity.com/topic/it/"
                    },
                    {
                        "@type": "Thing",
                        "name": "Networks & Infrastructure",
                        "url": "https://update.dsesecurity.com/topic/networks-infrastructure/"
                    }
                ],
                "wordCount": 236,
                "timeRequired": "PT2M",
                "publishingPrinciples": "https://update.dsesecurity.com/updates/dse-updates-editorial-methodology/",
                "usageInfo": "https://update.dsesecurity.com/usage/",
                "copyrightHolder": {
                    "@id": "https://dsesecurity.com/#organization"
                },
                "copyrightNotice": "Copyright © 2026 Detection Systems & Engineering. All rights reserved.",
                "citation": {
                    "@type": "CreativeWork",
                    "name": "Share a Capacity Reservation Group in Azure - Azure Virtual Machines | Microsoft Learn",
                    "url": "https://learn.microsoft.com/en-us/azure/virtual-machines/capacity-reservation-group-share"
                }
            }
        ]
    }
}