Claude Code on Azure AI Foundry
Learn about configuring Claude Code through Azure AI Foundry, including setup, configuration, and troubleshooting.
Prerequisites
Before configuring Claude Code with Azure AI Foundry, ensure you have:
- An Azure subscription with access to Azure AI Foundry
- RBAC permissions to create Azure AI Foundry resources and deployments
- Azure CLI installed and configured (optional - only needed if you don’t have another mechanism for getting credentials)
Setup
1. Provision Azure AI Foundry resource
First, create a Claude resource in Azure:
- Navigate to the Azure AI Foundry portal
- Create a new resource, noting your resource name
- Create deployments for the Claude models:
- Claude Opus
- Claude Sonnet
- Claude Haiku
2. Configure Azure credentials
Claude Code supports two authentication methods for Azure AI Foundry. Choose the method that best fits your security requirements.
Option A: API key authentication
- Navigate to your resource in the Azure AI Foundry portal
- Go to the Endpoints and keys section
- Copy API Key
- Set the environment variable:
export ANTHROPIC_FOUNDRY_API_KEY=your-azure-api-key
Option B: Microsoft Entra ID authentication
When ANTHROPIC_FOUNDRY_API_KEY is not set, Claude Code automatically uses the Azure SDK default credential chain.
This supports a variety of methods for authenticating local and remote workloads.
On local environments, you commonly may use the Azure CLI:
az login
When using AI Foundry, the /login and /logout commands are disabled since authentication is handled through Azure credentials.
3. Configure Claude Code
Set the following environment variables to enable Azure AI Foundry. Note that your deployments' names are set as the model identifiers in Claude Code (may be optional if using suggested deployment names).
# Enable Azure AI Foundry integration
export CLAUDE_CODE_USE_FOUNDRY=1
# Azure resource name (replace {resource} with your resource name)
export ANTHROPIC_FOUNDRY_RESOURCE={resource}
# Or provide the full base URL:
# export ANTHROPIC_FOUNDRY_BASE_URL=https://{resource}.services.ai.azure.com
# Set models to your resource's deployment names
export ANTHROPIC_DEFAULT_SONNET_MODEL='claude-sonnet-4-5'
export ANTHROPIC_DEFAULT_HAIKU_MODEL='claude-haiku-4-5'
export ANTHROPIC_DEFAULT_OPUS_MODEL='claude-opus-4-1'
For more details on model configuration options, see Model configuration.
Azure RBAC configuration
The Azure AI User and Cognitive Services User default roles include all required permissions for invoking Claude models.
For more restrictive permissions, create a custom role with the following:
{
"permissions": [
{
"dataActions": [
"Microsoft.CognitiveServices/accounts/providers/*"
]
}
]
}
For details, see Azure AI Foundry RBAC documentation.
Troubleshooting
If you receive an error "Failed to get token from azureADTokenProvider: ChainedTokenCredential authentication failed":
- Configure Entra ID on the environment, or set
ANTHROPIC_FOUNDRY_API_KEY.