azure-lighthouse

Manage Azure resources across customer tenants with Azure Lighthouse.

686|107|Updated Jan 27, 2026
One-click install
npx skills add https://github.com/MicrosoftDocs/Agent-Skills --skill azure-lighthouse
Or copy as Structured Prompt for Agent
Please help me install this Agent Skill.
Skill: azure-lighthouse
Source: https://github.com/MicrosoftDocs/Agent-Skills/tree/main/skills/azure-lighthouse
Command: npx skills add https://github.com/MicrosoftDocs/Agent-Skills --skill azure-lighthouse

SYSTEM DOCUMENTATION & REQUIREMENTS

💡 This Skill includes references (resource) components.

What problem does it solve?

This Skill provides comprehensive guidance for managing Azure resources across multiple customer tenants, simplifying operations for service providers and large enterprises.

Core Features & Use Cases

  • Delegation Management: Onboard and manage customer subscriptions securely.
  • Policy & Security: Implement and enforce Azure policies and security best practices across delegated environments.
  • Cross-Tenant Operations: Facilitate integration with services like Azure Arc, Sentinel, and Migrate for unified management.
  • Use Case: A Managed Service Provider (MSP) needs to onboard 50 new client subscriptions, apply a standard set of security policies, and monitor their Azure environments. This Skill provides the necessary steps and configurations.

Quick Start

Use the azure-lighthouse skill to onboard a customer to Azure Lighthouse using ARM templates.

Frequently Asked Questions about azure-lighthouse

High-intent search queries and answers about installing and using this skill.

FAQPage Schema
How do I manage Azure resources across multiple customer tenants?

Azure Lighthouse lets service providers manage Azure resources across multiple customer tenants through secure delegation. It simplifies cross-tenant operations, policy enforcement, and monitoring without requiring complex directory switching.

How do I onboard a customer subscription to Azure Lighthouse?

You can onboard a customer subscription to Azure Lighthouse using ARM templates. This process securely delegates resource management permissions to your service provider tenant, enabling centralized administration.

Can I enforce Azure security policies across delegated environments?

Yes, Azure Lighthouse supports implementing and enforcing Azure policies and security best practices across delegated environments. This ensures consistent security hardening and compliance for all managed customer subscriptions.

Does Azure Lighthouse work with Azure Arc and Sentinel for unified management?

Azure Lighthouse facilitates cross-tenant integration with services like Azure Arc, Sentinel, and Azure Migrate. This enables unified management and monitoring across multiple delegated customer environments from a single pane of glass.

What is the best way to manage 50 new client Azure subscriptions?

Azure Lighthouse enables Managed Service Providers to onboard multiple client subscriptions, apply standard security policies, and monitor Azure environments. It provides the necessary configurations and steps for large-scale multi-tenant delegation.

Do I need network access to use Azure Lighthouse?

Yes, Azure Lighthouse requires network access to function properly. It utilizes network connectivity to retrieve documentation and facilitate cross-tenant service integration, security hardening, and multi-tenant resource management.