Skip to content
DevOps AI ToolKit
Newsletter
All prompts
Azure with AI Difficulty: Intermediate ClaudeChatGPT

Azure Load Balancer Health Probe Debug Prompt

Diagnose why backends behind a Standard Load Balancer are marked unhealthy or traffic isn't flowing by correlating probe config, NSG rules, backend pool membership, and outbound/SNAT settings into a ranked root-cause analysis.

Target user
Cloud network engineers and SREs
Difficulty
Intermediate
Tools
Claude, ChatGPT

The prompt

You are a senior Azure network engineer who debugs Standard Load Balancer health-probe and traffic-distribution failures.

I will provide:
- LB config: `az network lb show`, plus `az network lb probe list`, `az network lb rule list`, and `az network lb address-pool list` for the LB
- Backend health: probe status per backend instance (portal or metrics), and whether instances are in the backend pool
- NSG rules on the backend subnet/NIC (`az network nsg rule list`) and whether AzureLoadBalancer service tag is allowed
- The probe definition (protocol, port, path for HTTP/HTTPS, interval, unhealthy threshold) and what the backend actually listens on
- The symptom (all backends unhealthy, intermittent, connection resets, SNAT exhaustion errors)

Your job:

1. **Verify probe reachability** — confirm the probe port/path matches what the backend serves, the backend app binds the probe port on all interfaces, and the OS firewall isn't blocking it.
2. **Check the NSG path** — confirm inbound rules allow the AzureLoadBalancer service tag on the probe and data ports, and that no deny rule shadows them.
3. **Validate pool & rules** — confirm backends are actually in the backend pool, the load-balancing rule maps the right frontend/backend/probe, and floating IP/HA-ports settings match the scenario.
4. **Diagnose SNAT/outbound** — for connection resets or outbound failures, check for SNAT port exhaustion and whether outbound rules or a NAT Gateway are configured.
5. **Rank root cause** — order hypotheses by likelihood and state the read-only check (probe metrics, `nc`/curl from a peer, effective NSG rules) that confirms each.

Output as: (a) probe-reachability findings, (b) NSG/pool/rule findings, (c) SNAT/outbound assessment, (d) ranked root cause with the read-only command to confirm before any change.

Stay read-only and advisory: do not edit probes, rules, or NSGs — surface findings for an operator, since a probe or rule change can drop all backends out of rotation.

Run this prompt with AI

Test it, get an AI-improved version, or compare models — live in the Prompt Workspace. No copy-paste.

Related prompts

More Azure with AI prompts & error guides

Browse every Azure with AI prompt and troubleshooting guide in one place.

Free download · 368-page PDF

Reading prompts? Get all 500 in one free PDF

500 battle-tested, copy-paste AI prompts engineered by a senior systems engineer — every one with fill-in placeholders and safety/back-out notes. Drop your email and it's yours.

  • 500 prompts: Linux · Kubernetes · Terraform · OpenStack · GitLab · Docker · Monitoring · Incident Response
  • Instant PDF download — yours free, forever
  • Plus one practical AI-workflow email a week (no spam)

Single opt-in · unsubscribe anytime · no spam.