이전 명칭은 Azure AI Services 또는 Azure Cognitive Services였으며, Microsoft Foundry 플랫폼 내의 사전 구축된 AI 기능을 통합한 컬렉션입니다
Hello KANGSEOP Jung,
Welcome to Microsoft Q&A .Thank you for reaching out to us.
The current issue appears during the Agent-to-Toolbox MCP discovery process, where the Agent attempts to enumerate the tools exposed by the Toolbox MCP endpoint and receives an HTTP 403 Forbidden response.
Troubleshooting HTTP 403 Forbidden during Toolbox discovery
Because the failure occurs while enumerating tools, the following validation steps are suggested in priority order.
- Validating the Toolbox preview header Toolbox MCP endpoint requests require the following preview feature header:
Foundry-Features: Toolboxes=V1PreviewSince the error occurs during tool discovery, confirming whether this header is included in requests sent through the Agent-to-MCP path should be the first investigation step. If the request reaches the Toolbox endpoint without the required header, the discovery operation may be rejected - Validating Azure AI Foundry project permissions and RBAC Please review whether:
- The developer identity has appropriate permissions to manage Toolbox resources within the Azure AI Foundry project.
- The Project Managed Identity used by the Agent has permission to access and use Toolbox resources at runtime.
- Any downstream Azure resources used by Toolbox tools grant the necessary permissions to the runtime identity.
- Validating authentication and project connections Please confirm:
- Microsoft Entra ID authentication is configured successfully.
- The configured audience is
https://ai.azure.com - Any project connections used by Toolbox tools exist within the same Azure AI Foundry project.
- The runtime identity is authorized to use those connections.
- Reviewing networking and access restrictions If networking controls are configured, validate:
- Private endpoint configuration.
- Firewall rules.
- Selected network access settings.
- IP allowlists.
- The Agent runtime and the Toolbox MCP endpoint.
- The Toolbox and any dependent services used by its tools.
- Validating Toolbox configuration When adding multiple tools to a Toolbox:
- Provide clear descriptions for each tool.
- Confirm connection-based tools reference valid project connections.
- If multiple instances of the same tool type are configured, verify whether unique tool names are required by the Toolbox configuration.
Regarding if preview status contribute to this scenario - Toolbox functionality is currently available as a preview capability and may have additional requirements or limitations compared to generally available features.However, the information available does not indicate that Toolbox usage with Agents is unsupported.
Please check if the following steps help-
- Test the Toolbox MCP endpoint directly outside the Agent flow using:
- A valid Microsoft Entra token.
- The required header:Foundry-Features: Toolboxes=V1Preview
- Confirming whether the behavior occurs:
- Only in Agent Playground.
- Or also through SDK/API-based invocation.
- Reviewing permissions for:
- Developer identity.
- Agent Project Managed Identity.
- Validate project connections and downstream resource permissions.
- Review:
- Firewall settings.
- Virtual Network configuration.
- Private endpoint configuration.
The following references might be helpful , please check them out
- Connect to MCP Server Endpoints for agents - Microsoft Foundry | Microsoft Learn
- How to configure network isolation for Microsoft Foundry - Microsoft Foundry | Microsoft Learn
- What are tools in Foundry Agent Service (classic) - Microsoft Foundry (classic) portal | Microsoft Learn
- Role-based access control for Microsoft Foundry - Microsoft Foundry | Microsoft Learn
- How to configure network isolation for Microsoft Foundry - Microsoft Foundry | Microsoft Learn
Thank you
Please "Accept" the answer with an "Upvote" if the response was helpful. This will be benefitting other community members who face the same issue.