last sync: 2025-Aug-20 17:22:59 UTC

Apply Diagnostic Settings for Azure Key Vault to a Log Analytics workspace

Community Policy definition

Source Repository Community-Policy GitHub
JSON Community-Policy GitHub
Deploy policy 7adb2f86-c465-4149-899e-2b1e66efa66f (1.0.0) to Azure
Display name Apply Diagnostic Settings for Azure Key Vault to a Log Analytics workspace
Id 7adb2f86-c465-4149-899e-2b1e66efa66f
Version 1.0.0
Details on versioning
Category Monitoring
Microsoft Learn
Description This policy automatically deploys diagnostic settings for Azure Key Vault to a Log Analytics workspace.
Mode Indexed
Type Custom Community
Effect Default
DeployIfNotExists
Allowed
DeployIfNotExists, AuditIfNotExists, Disabled
RBAC role(s)
Role Name Role Id
Contributor b24988ac-6180-42a0-ab88-20f7382dd24c
Rule aliases THEN-ExistenceCondition (3)
Alias Namespace ResourceType Path PathIsDefault DefaultPath Modifiable
Microsoft.Insights/diagnosticSettings/logs.enabled microsoft.insights diagnosticSettings properties.logs[*].enabled True False
Microsoft.Insights/diagnosticSettings/metrics.enabled microsoft.insights diagnosticSettings properties.metrics[*].enabled True False
Microsoft.Insights/diagnosticSettings/workspaceId microsoft.insights diagnosticSettings properties.workspaceId True False
Rule resource types IF (1)
Microsoft.KeyVault/vaults
JSON
EPAC
Deploy policy 7adb2f86-c465-4149-899e-2b1e66efa66f (1.0.0) to Azure