last sync: 2022-May-24 16:30:29 UTC

Azure Policy definition

Log Analytics workspaces should block log ingestion and querying from public networks

Name Log Analytics workspaces should block log ingestion and querying from public networks
Azure Portal
Id 6c53d030-cc64-46f0-906d-2bc061cd1334
Version 1.1.0
details on versioning
Category Monitoring
Microsoft docs
Description Improve workspace security by blocking log ingestion and querying from public networks. Only private-link connected networks will be able to ingest and query logs on this workspace. Learn more at https://aka.ms/AzMonPrivateLink#configure-log-analytics.
Mode Indexed
Type BuiltIn
Preview FALSE
Deprecated FALSE
Effect Default: Audit
Allowed: (audit, Audit, deny, Deny, disabled, Disabled)
Used RBAC Role none
Rule Aliases IF (2)
Alias Namespace ResourceType DefaultPath Modifiable
Microsoft.OperationalInsights/workspaces/publicNetworkAccessForIngestion Microsoft.OperationalInsights workspaces properties.publicNetworkAccessForIngestion true
Microsoft.OperationalInsights/workspaces/publicNetworkAccessForQuery Microsoft.OperationalInsights workspaces properties.publicNetworkAccessForQuery true
Rule ResourceTypes IF (1)
Microsoft.OperationalInsights/workspaces
History
Date/Time (UTC ymd) (i) Change type Change detail
2022-04-01 20:29:14 change Minor (1.0.0 > 1.1.0)
2021-05-11 14:06:18 add 6c53d030-cc64-46f0-906d-2bc061cd1334
Used in Initiatives none
JSON Changes

JSON