last sync: 2024-Apr-23 17:45:49 UTC

[Preview]: Configure ChangeTracking Extension for Linux virtual machines

Azure BuiltIn Policy definition

Source Azure Portal
Display name [Preview]: Configure ChangeTracking Extension for Linux virtual machines
Id ec88097d-843f-4a92-8471-78016d337ba4
Version 2.0.0-preview
Details on versioning
Category Security Center
Microsoft Learn
Description Configure Linux virtual machines to automatically install the ChangeTracking Extension to enable File Integrity Monitoring(FIM) in Azure Security Center. FIM examines operating system files, Windows registries, application software, Linux system files, and more, for changes that might indicate an attack. The extension can be installed in virtual machines and locations supported by Azure Monitor Agent.
Mode Indexed
Type BuiltIn
Preview True
Deprecated False
Effect Default
DeployIfNotExists
Allowed
DeployIfNotExists, Disabled
RBAC role(s)
Role Name Role Id
Virtual Machine Contributor 9980e02c-c2be-4d73-94e8-173b1dc7cf3c
Rule aliases IF (3)
Alias Namespace ResourceType DefaultPath Modifiable
Microsoft.Compute/imageOffer Microsoft.Compute
Microsoft.Compute
Microsoft.Compute
virtualMachines
virtualMachineScaleSets
disks
properties.storageProfile.imageReference.offer
properties.virtualMachineProfile.storageProfile.imageReference.offer
properties.creationData.imageReference.id
false
false
false
Microsoft.Compute/imagePublisher Microsoft.Compute
Microsoft.Compute
Microsoft.Compute
virtualMachines
virtualMachineScaleSets
disks
properties.storageProfile.imageReference.publisher
properties.virtualMachineProfile.storageProfile.imageReference.publisher
properties.creationData.imageReference.id
false
false
false
Microsoft.Compute/imageSku Microsoft.Compute
Microsoft.Compute
Microsoft.Compute
virtualMachines
virtualMachineScaleSets
disks
properties.storageProfile.imageReference.sku
properties.virtualMachineProfile.storageProfile.imageReference.sku
properties.creationData.imageReference.id
false
false
false
THEN-ExistenceCondition (3)
Alias Namespace ResourceType DefaultPath Modifiable
Microsoft.Compute/virtualMachines/extensions/provisioningState Microsoft.Compute virtualMachines/extensions properties.provisioningState false
Microsoft.Compute/virtualMachines/extensions/Publisher Microsoft.Compute virtualMachines/extensions properties.publisher false
Microsoft.Compute/virtualMachines/extensions/type Microsoft.Compute virtualMachines/extensions properties.type false
Rule resource types IF (1)
Microsoft.Compute/virtualMachines
THEN-Deployment (1)
Microsoft.Compute/virtualMachines/extensions
Compliance Not a Compliance control
Initiatives usage
Initiative DisplayName Initiative Id Initiative Category State Type
[Preview]: Enable ChangeTracking and Inventory for virtual machines 92a36f05-ebc9-4bba-9128-b47ad2ea3354 ChangeTrackingAndInventory Preview BuiltIn
History
Date/Time (UTC ymd) (i) Change type Change detail
2022-12-21 17:43:51 change Major, suffix remains equal (1.1.0-preview > 2.0.0-preview)
2022-09-23 16:35:49 change Minor, suffix remains equal (1.0.0-preview > 1.1.0-preview)
2021-11-12 16:23:07 add ec88097d-843f-4a92-8471-78016d337ba4
JSON compare
compare mode: version left: version right:
JSON
api-version=2021-06-01
EPAC