last sync: 2023-Dec-05 19:46:27 UTC

Azure Policy definition

Application Insights components should block non-Azure Active Directory based ingestion.

Source Azure Portal
Display name Application Insights components should block non-Azure Active Directory based ingestion.
Id 199d5677-e4d9-4264-9465-efe1839c06bd
Version 1.0.0
Details on versioning
Category Monitoring
Microsoft Learn
Description Enforcing log ingestion to require Azure Active Directory authentication prevents unauthenticated logs from an attacker which could lead to incorrect status, false alerts, and incorrect logs stored in the system.
Mode Indexed
Type BuiltIn
Preview False
Deprecated False
Effect Default
Deny, Audit, Disabled
RBAC role(s) none
Rule aliases IF (1)
Alias Namespace ResourceType DefaultPath Modifiable
Microsoft.Insights/components/DisableLocalAuth microsoft.insights components properties.DisableLocalAuth false
Rule resource types IF (1)
The following 1 compliance controls are associated with this Policy definition 'Application Insights components should block non-Azure Active Directory based ingestion.' (199d5677-e4d9-4264-9465-efe1839c06bd)
Control Domain Control Name MetadataId Category Title Owner Requirements Description Info Policy#
RBI_CSF_Banks_v2016 6.4 RBI_CSF_Banks_v2016_6.4 Application Security Life Cycle (Aslc) Application Security Life Cycle (Aslc)-6.4 n/a Besides business functionalities, security requirements relating to system access control, authentication, transaction authorization, data integrity, system activity logging, audit trail, session management, security event tracking and exception handling are required to be clearly specified at the initial and ongoing stages of system development/acquisition/implementation. 13
Initiatives usage
Initiative DisplayName Initiative Id Initiative Category State Type
[Preview]: Reserve Bank of India - IT Framework for Banks d0d5578d-cc08-2b22-31e3-f525374f235a Regulatory Compliance Preview BuiltIn
Date/Time (UTC ymd) (i) Change type Change detail
2021-06-22 14:29:30 add 199d5677-e4d9-4264-9465-efe1839c06bd
JSON compare n/a