Status: IN
Security admin rules from Azure Virtual Network Manager are evaluated before NSG rules; "Always allow" and "Deny" admin rules bypass NSG evaluation entirely.
Source: entries/2026/03/10/vnet-nsg.md
JSON