azure-lighthouse

Guide Azure Lighthouse development across security, configuration, and deployment.

1|Updated Oct 1, 2025
One-click install
npx skills add https://github.com/diberry/microsoft-mcp-doc-generation --skill azure-lighthouse-diberry
Or copy as Structured Prompt for Agent
Please help me install this Agent Skill.
Skill: azure-lighthouse
Source: https://github.com/diberry/microsoft-mcp-doc-generation/tree/main/docs-generation/skills-source/azure-lighthouse
Command: npx skills add https://github.com/diberry/microsoft-mcp-doc-generation --skill azure-lighthouse-diberry

SYSTEM DOCUMENTATION & REQUIREMENTS

💡 This Skill includes references (resource) components.

What problem does it solve?

This Skill provides comprehensive guidance for managing Azure Lighthouse, enabling efficient multi-tenant enterprise setups, ISV SaaS patterns, and secure delegation of resources.

Core Features & Use Cases

  • Decision Making: Guidance on choosing Lighthouse vs. managed applications and designing offers.
  • Security: Best practices for RBAC, PIM, and securing cross-tenant access.
  • Configuration: Onboarding, delegation, policy deployment, and monitoring.
  • Integrations: Managing Arc, Sentinel, and Migrate projects across tenants.
  • Deployment: Publishing Managed Service offers to Azure Marketplace.

Quick Start

Use the azure-lighthouse skill to find information on deploying Azure Policy across tenants with Lighthouse.

Frequently Asked Questions about azure-lighthouse

High-intent search queries and answers about installing and using this skill.

FAQPage Schema
How do I deploy Azure Policy across tenants with Azure Lighthouse?

To deploy Azure Policy across tenants with Azure Lighthouse, use the skill's configuration guidance for onboarding delegations and policy deployment to enforce compliance securely across managed customer tenants.

What is the difference between Azure Lighthouse and Azure managed applications?

Azure Lighthouse provides cross-tenant resource delegation for ongoing management, while managed applications deploy resources into customer subscriptions. The skill offers decision-making guidance to choose the right ISV SaaS pattern for your scenario.

How do I secure cross-tenant access when managing multiple Azure customers?

Secure cross-tenant access in Azure Lighthouse by implementing RBAC roles, Privileged Identity Management (PIM), and least-privilege delegation. The skill provides best practices for restricting and auditing cross-tenant management permissions.

Can I manage Azure Arc, Sentinel, and Migrate projects across tenants using Lighthouse?

Yes, Azure Lighthouse supports managing Azure Arc, Sentinel, and Migrate projects across tenants. The skill provides integration guidance for configuring these services within a delegated multi-tenant management hierarchy.

Do I need network access to use the azure-lighthouse skill?

Yes, you need network access to use the azure-lighthouse skill. It optionally uses mcp_microsoftdocs or fetch_webpage tools to retrieve the latest official Microsoft documentation for building and debugging Lighthouse applications.

How do I publish a Managed Service offer to the Azure Marketplace?

Publish a Managed Service offer to the Azure Marketplace by following the skill's deployment guidance for packaging your multi-tenant solution and configuring the offer listing for customer onboarding via Azure Lighthouse.