last sync: 2023-Jun-09 17:46:13 UTC

Azure Policy definition

Configure network security groups to use specific workspace, storage account and flowlog retention policy for traffic analytics

Name Configure network security groups to use specific workspace, storage account and flowlog retention policy for traffic analytics
Azure Portal
Id 5e1cd26a-5090-4fdb-9d6a-84a90335e22d
Version 1.2.0
details on versioning
Category Network
Microsoft docs
Description If it already has traffic analytics enabled, then policy will overwrite its existing settings with the ones provided during policy creation. Traffic analytics is a cloud-based solution that provides visibility into user and application activity in cloud networks.
Mode Indexed
Type BuiltIn
Preview FALSE
Deprecated FALSE
Effect Default
DeployIfNotExists
Allowed
DeployIfNotExists, Disabled
RBAC
Role(s)
Role Name Role Id
Contributor b24988ac-6180-42a0-ab88-20f7382dd24c
Rule
Aliases
THEN-ExistenceCondition (7)
Alias Namespace ResourceType DefaultPath Modifiable
Microsoft.Network/networkWatchers/flowLogs/enabled Microsoft.Network networkWatchers/flowLogs properties.enabled false
Microsoft.Network/networkWatchers/flowLogs/flowAnalyticsConfiguration.networkWatcherFlowAnalyticsConfiguration.enabled Microsoft.Network networkWatchers/flowLogs properties.flowAnalyticsConfiguration.networkWatcherFlowAnalyticsConfiguration.enabled false
Microsoft.Network/networkWatchers/flowLogs/flowAnalyticsConfiguration.networkWatcherFlowAnalyticsConfiguration.trafficAnalyticsInterval Microsoft.Network networkWatchers/flowLogs properties.flowAnalyticsConfiguration.networkWatcherFlowAnalyticsConfiguration.trafficAnalyticsInterval false
Microsoft.Network/networkWatchers/flowLogs/flowAnalyticsConfiguration.networkWatcherFlowAnalyticsConfiguration.workspaceId Microsoft.Network networkWatchers/flowLogs properties.flowAnalyticsConfiguration.networkWatcherFlowAnalyticsConfiguration.workspaceId false
Microsoft.Network/networkWatchers/flowLogs/retentionPolicy.days Microsoft.Network networkWatchers/flowLogs properties.retentionPolicy.days true
Microsoft.Network/networkWatchers/flowLogs/retentionPolicy.enabled Microsoft.Network networkWatchers/flowLogs properties.retentionPolicy.enabled false
Microsoft.Network/networkWatchers/flowLogs/storageId Microsoft.Network networkWatchers/flowLogs properties.storageId false
Rule
ResourceTypes
IF (1)
Microsoft.Network/networkSecurityGroups
THEN-Deployment (2)
Microsoft.Network/networkWatchers/flowLogs
Microsoft.Resources/deployments
Compliance Not a Compliance control
History
Date/Time (UTC ymd) (i) Change type Change detail
2023-01-27 18:40:07 change Minor (1.1.0 > 1.2.0)
2022-09-19 17:41:40 change Minor (1.0.1 > 1.1.0)
2021-12-10 17:29:56 change Patch (1.0.0 > 1.0.1) *changes on text case sensitivity are not tracked
2021-05-18 14:34:48 add 5e1cd26a-5090-4fdb-9d6a-84a90335e22d
Initiatives
usage
none
JSON