{
    "api_version": "1",
    "kind": "dse_post",
    "self": "https://update.dsesecurity.com/api/v1/posts/dse-20260909-074-approve-proximity-group-removal-before-preview-regional-to-zonal-vm-migration/",
    "item": {
        "id": "https://update.dsesecurity.com/updates/dse-20260909-074-approve-proximity-group-removal-before-preview-regional-to-zonal-vm-migration/",
        "slug": "dse-20260909-074-approve-proximity-group-removal-before-preview-regional-to-zonal-vm-migration",
        "url": "https://update.dsesecurity.com/updates/dse-20260909-074-approve-proximity-group-removal-before-preview-regional-to-zonal-vm-migration/",
        "alternate_urls": {
            "markdown": "https://update.dsesecurity.com/updates/dse-20260909-074-approve-proximity-group-removal-before-preview-regional-to-zonal-vm-migration.md",
            "json": "https://update.dsesecurity.com/api/v1/posts/dse-20260909-074-approve-proximity-group-removal-before-preview-regional-to-zonal-vm-migration/"
        },
        "title": "Approve proximity-group removal before preview regional-to-zonal VM migration",
        "summary": "What placement constraint must change when a regional VM in a proximity placement group moves to a zone?",
        "format": {
            "slug": "guide",
            "name": "Guide"
        },
        "priority": {
            "slug": "info",
            "name": "Information"
        },
        "featured": false,
        "image": {
            "theme": "continuity-recovery",
            "label": "Continuity & recovery",
            "alt": "Paired infrastructure paths converging on a stable recovered service.",
            "card_url": "https://update.dsesecurity.com/assets/editorial/continuity-recovery-card.webp?v=1.8.20",
            "hero_url": "https://update.dsesecurity.com/assets/editorial/continuity-recovery-hero.webp?v=1.8.20",
            "social_url": "https://update.dsesecurity.com/assets/editorial/continuity-recovery-social-v2.jpg?v=1.8.20",
            "width": 2400,
            "height": 1350
        },
        "topics": [
            {
                "slug": "business-continuity",
                "name": "Business Continuity",
                "url": "https://update.dsesecurity.com/topic/business-continuity/"
            },
            {
                "slug": "it",
                "name": "IT",
                "url": "https://update.dsesecurity.com/topic/it/"
            }
        ],
        "author": {
            "name": "DSE Security Editorial Team",
            "url": "https://update.dsesecurity.com/#editorial-team",
            "type": "Organization"
        },
        "publisher": {
            "name": "Detection Systems & Engineering",
            "url": "https://dsesecurity.com/"
        },
        "published_at": "2026-09-10T00:30:42+00:00",
        "modified_at": "2026-09-10T00:35:07+00:00",
        "reviewed_on": "2026-09-09",
        "reading_minutes": 2,
        "word_count": 252,
        "potentially_affected": "Teams evaluating the public-preview in-place regional-to-zonal migration of an Azure VM associated with a proximity placement group.",
        "dse_recommendation": "Approve the loss of the proximity-placement-group association and the one-way zone transition before deallocating the VM.",
        "primary_source": {
            "name": "Migrate a regional virtual machine to an availability zone - Azure Virtual Machines | Microsoft Learn",
            "url": "https://learn.microsoft.com/en-us/azure/virtual-machines/migrate-to-availability-zone",
            "published_on": null,
            "authority": "Microsoft Learn"
        },
        "publishing_principles": "https://update.dsesecurity.com/updates/dse-updates-editorial-methodology/",
        "usage_info": "https://update.dsesecurity.com/usage/",
        "copyright_notice": "Copyright © 2026 Detection Systems & Engineering. All rights reserved.",
        "content_html": "<h2>Source facts</h2>\n<p>Microsoft&#8217;s in-place regional-to-zonal VM migration is a public preview and is not available in the Azure portal. It requires deallocation and cannot return the VM to regional placement. A VM in a proximity placement group must remove that association during zone assignment. Availability-set VMs are outside this procedure; Basic public IPs, Basic Load Balancer configurations, and unmanaged disks are also unsupported until converted to the documented alternatives. <a href=\"https://learn.microsoft.com/en-us/azure/virtual-machines/migrate-to-availability-zone\" target=\"_blank\" rel=\"noopener noreferrer\">Microsoft Learn</a>.</p>\n<h2>Applicability</h2>\n<p>Review one regional VM against the preview registration, permissions, tool versions, and target-zone size requirements. Identify which application dependencies motivated its current proximity placement. Keep this in-place preview distinct from a Resource Mover workflow that creates replacement resources.</p>\n<h2>DSE recommendation</h2>\n<p>Approve the loss of the proximity-placement-group association and the one-way zone transition before deallocating the VM. Ask the application owner to define acceptable behavior after the placement change. Record the intended zone and the prerequisites that must already be satisfied. Plan recovery around an approved alternative rather than promising to reverse the zone property back to regional placement.</p>\n<h2>Verification</h2>\n<p>After the authorized zone assignment and start, inspect the VM&#8217;s zone and proximity-group association. Confirm that the observed location matches the approved decision and test communication with the application&#8217;s dependent services. Compare latency-sensitive workflows with their acceptance criteria. Preserve the before-and-after placement record and unresolved differences; a successful property update alone does not establish that removing the original placement constraint was acceptable for the workload.</p>\n<h2>Official references</h2>\n<p><a href=\"https://learn.microsoft.com/en-us/azure/virtual-machines/migrate-to-availability-zone\" target=\"_blank\" rel=\"noopener noreferrer\">Microsoft Learn: Migrate a regional virtual machine to an availability zone</a>. Source reviewed September 9, 2026.</p>",
        "content_text": "Source facts\nMicrosoft’s in-place regional-to-zonal VM migration is a public preview and is not available in the Azure portal. It requires deallocation and cannot return the VM to regional placement. A VM in a proximity placement group must remove that association during zone assignment. Availability-set VMs are outside this procedure; Basic public IPs, Basic Load Balancer configurations, and unmanaged disks are also unsupported until converted to the documented alternatives. Microsoft Learn.\nApplicability\nReview one regional VM against the preview registration, permissions, tool versions, and target-zone size requirements. Identify which application dependencies motivated its current proximity placement. Keep this in-place preview distinct from a Resource Mover workflow that creates replacement resources.\nDSE recommendation\nApprove the loss of the proximity-placement-group association and the one-way zone transition before deallocating the VM. Ask the application owner to define acceptable behavior after the placement change. Record the intended zone and the prerequisites that must already be satisfied. Plan recovery around an approved alternative rather than promising to reverse the zone property back to regional placement.\nVerification\nAfter the authorized zone assignment and start, inspect the VM’s zone and proximity-group association. Confirm that the observed location matches the approved decision and test communication with the application’s dependent services. Compare latency-sensitive workflows with their acceptance criteria. Preserve the before-and-after placement record and unresolved differences; a successful property update alone does not establish that removing the original placement constraint was acceptable for the workload.\nOfficial references\nMicrosoft Learn: Migrate a regional virtual machine to an availability zone. Source reviewed September 9, 2026.",
        "content_markdown": "## Source facts\n\nMicrosoft’s in-place regional-to-zonal VM migration is a public preview and is not available in the Azure portal. It requires deallocation and cannot return the VM to regional placement. A VM in a proximity placement group must remove that association during zone assignment. Availability-set VMs are outside this procedure; Basic public IPs, Basic Load Balancer configurations, and unmanaged disks are also unsupported until converted to the documented alternatives. [Microsoft Learn](https://learn.microsoft.com/en-us/azure/virtual-machines/migrate-to-availability-zone).\n\n## Applicability\n\nReview one regional VM against the preview registration, permissions, tool versions, and target-zone size requirements. Identify which application dependencies motivated its current proximity placement. Keep this in-place preview distinct from a Resource Mover workflow that creates replacement resources.\n\n## DSE recommendation\n\nApprove the loss of the proximity-placement-group association and the one-way zone transition before deallocating the VM. Ask the application owner to define acceptable behavior after the placement change. Record the intended zone and the prerequisites that must already be satisfied. Plan recovery around an approved alternative rather than promising to reverse the zone property back to regional placement.\n\n## Verification\n\nAfter the authorized zone assignment and start, inspect the VM’s zone and proximity-group association. Confirm that the observed location matches the approved decision and test communication with the application’s dependent services. Compare latency-sensitive workflows with their acceptance criteria. Preserve the before-and-after placement record and unresolved differences; a successful property update alone does not establish that removing the original placement constraint was acceptable for the workload.\n\n## Official references\n\n[Microsoft Learn: Migrate a regional virtual machine to an availability zone](https://learn.microsoft.com/en-us/azure/virtual-machines/migrate-to-availability-zone). Source reviewed September 9, 2026."
    },
    "json_ld": {
        "@context": "https://schema.org",
        "@graph": [
            {
                "@type": "Organization",
                "@id": "https://dsesecurity.com/#organization",
                "name": "Detection Systems & Engineering",
                "alternateName": "DSE Security",
                "url": "https://dsesecurity.com/",
                "logo": {
                    "@type": "ImageObject",
                    "url": "https://update.dsesecurity.com/assets/dse-logo-20260812.png?v=1.8.20"
                }
            },
            {
                "@type": "Organization",
                "@id": "https://update.dsesecurity.com/#editorial-team",
                "name": "DSE Security Editorial Team",
                "url": "https://update.dsesecurity.com/",
                "parentOrganization": {
                    "@id": "https://dsesecurity.com/#organization"
                }
            },
            {
                "@type": "WebSite",
                "@id": "https://update.dsesecurity.com/#website",
                "name": "DSE Updates",
                "alternateName": "DSE Security Knowledge Hub",
                "url": "https://update.dsesecurity.com/",
                "inLanguage": "en-US",
                "publisher": {
                    "@id": "https://dsesecurity.com/#organization"
                },
                "potentialAction": {
                    "@type": "SearchAction",
                    "target": {
                        "@type": "EntryPoint",
                        "urlTemplate": "https://update.dsesecurity.com/?q={search_term_string}"
                    },
                    "query-input": "required name=search_term_string"
                }
            },
            {
                "@type": "WebPage",
                "@id": "https://update.dsesecurity.com/updates/dse-20260909-074-approve-proximity-group-removal-before-preview-regional-to-zonal-vm-migration/",
                "url": "https://update.dsesecurity.com/updates/dse-20260909-074-approve-proximity-group-removal-before-preview-regional-to-zonal-vm-migration/",
                "isPartOf": {
                    "@id": "https://update.dsesecurity.com/#website"
                },
                "lastReviewed": "2026-09-09"
            },
            {
                "@type": "BreadcrumbList",
                "@id": "https://update.dsesecurity.com/updates/dse-20260909-074-approve-proximity-group-removal-before-preview-regional-to-zonal-vm-migration/#breadcrumbs",
                "itemListElement": [
                    {
                        "@type": "ListItem",
                        "position": 1,
                        "name": "DSE Updates",
                        "item": "https://update.dsesecurity.com/"
                    },
                    {
                        "@type": "ListItem",
                        "position": 2,
                        "name": "Approve proximity-group removal before preview regional-to-zonal VM migration",
                        "item": "https://update.dsesecurity.com/updates/dse-20260909-074-approve-proximity-group-removal-before-preview-regional-to-zonal-vm-migration/"
                    }
                ]
            },
            {
                "@type": [
                    "Article",
                    "TechArticle"
                ],
                "@id": "https://update.dsesecurity.com/updates/dse-20260909-074-approve-proximity-group-removal-before-preview-regional-to-zonal-vm-migration/#article",
                "identifier": "https://update.dsesecurity.com/updates/dse-20260909-074-approve-proximity-group-removal-before-preview-regional-to-zonal-vm-migration/",
                "url": "https://update.dsesecurity.com/updates/dse-20260909-074-approve-proximity-group-removal-before-preview-regional-to-zonal-vm-migration/",
                "headline": "Approve proximity-group removal before preview regional-to-zonal VM migration",
                "description": "What placement constraint must change when a regional VM in a proximity placement group moves to a zone?",
                "abstract": "What placement constraint must change when a regional VM in a proximity placement group moves to a zone?",
                "articleBody": "Source facts\nMicrosoft’s in-place regional-to-zonal VM migration is a public preview and is not available in the Azure portal. It requires deallocation and cannot return the VM to regional placement. A VM in a proximity placement group must remove that association during zone assignment. Availability-set VMs are outside this procedure; Basic public IPs, Basic Load Balancer configurations, and unmanaged disks are also unsupported until converted to the documented alternatives. Microsoft Learn.\nApplicability\nReview one regional VM against the preview registration, permissions, tool versions, and target-zone size requirements. Identify which application dependencies motivated its current proximity placement. Keep this in-place preview distinct from a Resource Mover workflow that creates replacement resources.\nDSE recommendation\nApprove the loss of the proximity-placement-group association and the one-way zone transition before deallocating the VM. Ask the application owner to define acceptable behavior after the placement change. Record the intended zone and the prerequisites that must already be satisfied. Plan recovery around an approved alternative rather than promising to reverse the zone property back to regional placement.\nVerification\nAfter the authorized zone assignment and start, inspect the VM’s zone and proximity-group association. Confirm that the observed location matches the approved decision and test communication with the application’s dependent services. Compare latency-sensitive workflows with their acceptance criteria. Preserve the before-and-after placement record and unresolved differences; a successful property update alone does not establish that removing the original placement constraint was acceptable for the workload.\nOfficial references\nMicrosoft Learn: Migrate a regional virtual machine to an availability zone. Source reviewed September 9, 2026.",
                "datePublished": "2026-09-10T00:30:42+00:00",
                "dateModified": "2026-09-10T00:35:07+00:00",
                "mainEntityOfPage": {
                    "@id": "https://update.dsesecurity.com/updates/dse-20260909-074-approve-proximity-group-removal-before-preview-regional-to-zonal-vm-migration/"
                },
                "inLanguage": "en-US",
                "isAccessibleForFree": true,
                "author": {
                    "@type": "Organization",
                    "name": "DSE Security Editorial Team",
                    "url": "https://update.dsesecurity.com/#editorial-team"
                },
                "publisher": {
                    "@id": "https://dsesecurity.com/#organization"
                },
                "image": {
                    "@type": "ImageObject",
                    "@id": "https://update.dsesecurity.com/updates/dse-20260909-074-approve-proximity-group-removal-before-preview-regional-to-zonal-vm-migration/#primaryimage",
                    "url": "https://update.dsesecurity.com/assets/editorial/continuity-recovery-social-v2.jpg?v=1.8.20",
                    "contentUrl": "https://update.dsesecurity.com/assets/editorial/continuity-recovery-social-v2.jpg?v=1.8.20",
                    "width": 1200,
                    "height": 630,
                    "caption": "Approve proximity-group removal before preview regional-to-zonal VM migration"
                },
                "articleSection": [
                    "Business Continuity",
                    "IT"
                ],
                "keywords": [
                    "Business Continuity",
                    "IT",
                    "Guide",
                    "Information priority"
                ],
                "genre": "Guide",
                "about": [
                    {
                        "@type": "Thing",
                        "name": "Business Continuity",
                        "url": "https://update.dsesecurity.com/topic/business-continuity/"
                    },
                    {
                        "@type": "Thing",
                        "name": "IT",
                        "url": "https://update.dsesecurity.com/topic/it/"
                    }
                ],
                "wordCount": 252,
                "timeRequired": "PT2M",
                "publishingPrinciples": "https://update.dsesecurity.com/updates/dse-updates-editorial-methodology/",
                "usageInfo": "https://update.dsesecurity.com/usage/",
                "copyrightHolder": {
                    "@id": "https://dsesecurity.com/#organization"
                },
                "copyrightNotice": "Copyright © 2026 Detection Systems & Engineering. All rights reserved.",
                "citation": {
                    "@type": "CreativeWork",
                    "name": "Migrate a regional virtual machine to an availability zone - Azure Virtual Machines | Microsoft Learn",
                    "url": "https://learn.microsoft.com/en-us/azure/virtual-machines/migrate-to-availability-zone"
                }
            }
        ]
    }
}