last sync: 2024-Oct-10 19:12:06 UTC

Log Analytics workspaces should block log ingestion and querying from public networks

Azure BuiltIn Policy definition

Source Azure Portal
Display name Log Analytics workspaces should block log ingestion and querying from public networks
Id 6c53d030-cc64-46f0-906d-2bc061cd1334
Version 1.1.0
Details on versioning
Versioning Versions supported for Versioning: 1
1.1.0
Built-in Versioning [Preview]
Category Monitoring
Microsoft Learn
Description Improve workspace security by blocking log ingestion and querying from public networks. Only private-link connected networks will be able to ingest and query logs on this workspace. Learn more at https://aka.ms/AzMonPrivateLink#configure-log-analytics.
Mode Indexed
Type BuiltIn
Preview False
Deprecated False
Effect Default
Audit
Allowed
audit, Audit, deny, Deny, disabled, Disabled
RBAC role(s) none
Rule aliases IF (2)
Alias Namespace ResourceType Path PathIsDefault DefaultPath Modifiable
Microsoft.OperationalInsights/workspaces/publicNetworkAccessForIngestion Microsoft.OperationalInsights workspaces properties.publicNetworkAccessForIngestion True True
Microsoft.OperationalInsights/workspaces/publicNetworkAccessForQuery Microsoft.OperationalInsights workspaces properties.publicNetworkAccessForQuery True True
Rule resource types IF (1)
Microsoft.OperationalInsights/workspaces
Compliance
The following 1 compliance controls are associated with this Policy definition 'Log Analytics workspaces should block log ingestion and querying from public networks' (6c53d030-cc64-46f0-906d-2bc061cd1334)
Control Domain Control Name MetadataId Category Title Owner Requirements Description Info Policy#
RBI_ITF_NBFC_v2017 3.1.g RBI_ITF_NBFC_v2017_3.1.g RBI IT Framework 3.1.g Information and Cyber Security Trails-3.1 n/a The IS Policy must provide for a IS framework with the following basic tenets: Trails- NBFCs shall ensure that audit trails exist for IT assets satisfying its business requirements including regulatory and legal requirements, facilitating audit, serving as forensic evidence when required and assisting in dispute resolution. If an employee, for instance, attempts to access an unauthorized section, this improper activity should be recorded in the audit trail. link 36
Initiatives usage
Initiative DisplayName Initiative Id Initiative Category State Type
[Preview]: Reserve Bank of India - IT Framework for NBFC 7f89f09c-48c1-f28d-1bd5-84f3fb22f86c Regulatory Compliance Preview BuiltIn
Audit Public Network Access f1535064-3294-48fa-94e2-6e83095a5c08 SDN GA BuiltIn
History
Date/Time (UTC ymd) (i) Change type Change detail
2022-04-01 20:29:14 change Minor (1.0.0 > 1.1.0)
2021-05-11 14:06:18 add 6c53d030-cc64-46f0-906d-2bc061cd1334
JSON compare
compare mode: version left: version right:
JSON
api-version=2021-06-01
EPAC