last sync: 2023-Dec-04 18:38:36 UTC

Azure Policy definition

Configure Azure Defender for DNS to be enabled

Source Azure Portal
Display name Configure Azure Defender for DNS to be enabled
Id 2370a3c1-4a25-4283-a91a-c9c1a145fb2f
Version 1.0.2
Details on versioning
Category Security Center
Microsoft Learn
Description Azure Defender for DNS provides an additional layer of protection for your cloud resources by continuously monitoring all DNS queries from your Azure resources. Azure Defender alerts you about suspicious activity at the DNS layer. Learn more about the capabilities of Azure Defender for DNS at https://aka.ms/defender-for-dns . Enabling this Azure Defender plan results in charges. Learn about the pricing details per region on Security Center's pricing page: https://aka.ms/pricing-security-center .
Mode All
Type BuiltIn
Preview False
Deprecated False
Effect Default
DeployIfNotExists
Allowed
DeployIfNotExists, Disabled
RBAC role(s)
Role Name Role Id
Security Admin fb1c8493-542b-48eb-b624-b4c8fea62acd
Rule aliases THEN-ExistenceCondition (1)
Alias Namespace ResourceType DefaultPath Modifiable
Microsoft.Security/pricings/pricingTier Microsoft.Security pricings properties.pricingTier false
Rule resource types IF (1)
Microsoft.Resources/subscriptions
THEN-Deployment (1)
Microsoft.Security/pricings
Compliance Not a Compliance control
Initiatives usage
Initiative DisplayName Initiative Id Initiative Category State Type
Deploy Microsoft Defender for Cloud configuration Deploy-MDFC-Config Security Center GA ALZ
History
Date/Time (UTC ymd) (i) Change type Change detail
2023-05-01 17:41:52 change Patch (1.0.1 > 1.0.2)
2021-12-06 22:17:57 change Patch (1.0.0 > 1.0.1)
2021-07-30 15:17:20 add 2370a3c1-4a25-4283-a91a-c9c1a145fb2f
JSON compare
compare mode: version left: version right:
JSON
api-version=2021-06-01
EPAC