Policy-usedHide
Records: 10 25 100 200 Use the filters above each column to filter and limit table data. Advanced searches can be performed by using the following operators:
< ,
<= ,
> ,
>= ,
= ,
* ,
! ,
{ ,
} ,
|| ,
&& ,
[empty] ,
[nonempty] ,
rgx: Learn more ? Page 1 2 3 4 5 of 5
Clear App Service Automation Cache Compute General Guest Configuration Monitoring Security Center Service Fabric SQL Storage Stream Analytics Clear GA
Policy DisplayName
Policy Id
Category
Version
Versioning
Effect
Roles#
Roles
State
policy in AzUSGov
A maximum of 3 owners should be designated for your subscription
4f11b553-d42e-4e3a-89be-32ca364cad4c
Security Center
3.0.0
1x 3.0.0
Default AuditIfNotExistsAllowed AuditIfNotExists, Disabled
0
GA
true
Add system-assigned managed identity to enable Guest Configuration assignments on virtual machines with no identities
3cf2ab00-13f1-4d0c-8971-2ac904541a7e
Guest Configuration
4.1.0
2x 4.1.0, 4.0.0
Fixed modify
1
Contributor
GA
true
Add system-assigned managed identity to enable Guest Configuration assignments on VMs with a user-assigned identity
497dff13-db2a-4c0f-8603-28fa3b331ab6
Guest Configuration
4.1.0
2x 4.1.0, 4.0.0
Fixed modify
1
Contributor
GA
true
All network ports should be restricted on network security groups associated to your virtual machine
9daedab3-fb2d-461e-b861-71790eead4f6
Security Center
3.0.0
1x 3.0.0
Default AuditIfNotExistsAllowed AuditIfNotExists, Disabled
0
GA
true
An Azure Active Directory administrator should be provisioned for SQL servers
1f314764-cb73-4fc9-b863-8eca98ac36e9
SQL
1.0.0
1x 1.0.0
Default AuditIfNotExistsAllowed AuditIfNotExists, Disabled
0
GA
true
App Service apps should have remote debugging turned off
cb510bfd-1cba-4d9f-a230-cb0976f4bb71
App Service
2.0.0
1x 2.0.0
Default AuditIfNotExistsAllowed AuditIfNotExists, Disabled
0
GA
true
App Service apps should only be accessible over HTTPS
a4af4a39-4135-47fb-b175-47fbdf85311d
App Service
4.0.0
1x 4.0.0
Default AuditAllowed Audit, Disabled, Deny
0
GA
true
Audit diagnostic setting for selected resource types
7f89b1eb-583c-429a-8828-af049802c1d9
Monitoring
2.0.1
1x 2.0.1
Fixed AuditIfNotExists
0
GA
true
Audit Linux machines that allow remote connections from accounts without passwords
ea53dbee-c6c9-4f0e-9f9e-de0039b78023
Guest Configuration
3.1.0
2x 3.1.0, 3.0.0
Default AuditIfNotExistsAllowed AuditIfNotExists, Disabled
0
GA
true
Audit Linux machines that do not have the passwd file permissions set to 0644
e6955644-301c-44b5-a4c4-528577de6861
Guest Configuration
3.1.0
2x 3.1.0, 3.0.0
Default AuditIfNotExistsAllowed AuditIfNotExists, Disabled
0
GA
true
Audit Linux machines that have accounts without passwords
f6ec09a3-78bf-4f8f-99dc-6c77182d0f99
Guest Configuration
3.1.0
2x 3.1.0, 3.0.0
Default AuditIfNotExistsAllowed AuditIfNotExists, Disabled
0
GA
true
Audit usage of custom RBAC roles
a451c1ef-c6ca-483d-87ed-f49761e3ffb5
General
1.0.1
1x 1.0.1
Default AuditAllowed Audit, Disabled
0
GA
true
Audit VMs that do not use managed disks
06a78e20-9358-41c9-923c-fb736d382a4d
Compute
1.0.0
1x 1.0.0
Fixed audit
0
GA
true
Audit Windows machines missing any of specified members in the Administrators group
30f71ea1-ac77-4f26-9fc5-2d926bbd4ba7
Guest Configuration
2.0.0
1x 2.0.0
Fixed auditIfNotExists
0
GA
true
Audit Windows machines on which the Log Analytics agent is not connected as expected
6265018c-d7e2-432f-a75d-094d5f6f4465
Guest Configuration
2.0.0
1x 2.0.0
Fixed auditIfNotExists
0
GA
true
Audit Windows machines that allow re-use of the passwords after the specified number of unique passwords
5b054a0d-39e2-4d53-bea3-9734cad2c69b
Guest Configuration
2.1.0
1x 2.1.0
Default AuditIfNotExistsAllowed AuditIfNotExists, Disabled
0
GA
true
Audit Windows machines that are not joined to the specified domain
84662df4-0e37-44a6-9ce1-c9d2150db18c
Guest Configuration
2.0.0
1x 2.0.0
Fixed auditIfNotExists
0
GA
true
Audit Windows machines that do not have the maximum password age set to specified number of days
4ceb8dc2-559c-478b-a15b-733fbf1e3738
Guest Configuration
2.1.0
1x 2.1.0
Default AuditIfNotExistsAllowed AuditIfNotExists, Disabled
0
GA
true
Audit Windows machines that do not have the minimum password age set to specified number of days
237b38db-ca4d-4259-9e47-7882441ca2c0
Guest Configuration
2.1.0
1x 2.1.0
Default AuditIfNotExistsAllowed AuditIfNotExists, Disabled
0
GA
true
Audit Windows machines that do not have the password complexity setting enabled
bf16e0bb-31e1-4646-8202-60a235cc7e74
Guest Configuration
2.0.0
1x 2.0.0
Default AuditIfNotExistsAllowed AuditIfNotExists, Disabled
0
GA
true
Audit Windows machines that do not restrict the minimum password length to specified number of characters
a2d0e922-65d0-40c4-8f87-ea6da2d307a2
Guest Configuration
2.1.0
1x 2.1.0
Default AuditIfNotExistsAllowed AuditIfNotExists, Disabled
0
GA
true
Audit Windows machines that do not store passwords using reversible encryption
da0f98fe-a24b-4ad5-af69-bd0400233661
Guest Configuration
2.0.0
1x 2.0.0
Default AuditIfNotExistsAllowed AuditIfNotExists, Disabled
0
GA
true
Auditing on SQL server should be enabled
a6fb4358-5bf4-4ad7-ba82-2cd2f41ce5e9
SQL
2.0.0
1x 2.0.0
Default AuditIfNotExistsAllowed AuditIfNotExists, Disabled
0
GA
true
Automation account variables should be encrypted
3657f5a0-770e-44a3-b44e-9431ba1e9735
Automation
1.1.0
1x 1.1.0
Default AuditAllowed Audit, Deny, Disabled
0
GA
true
Azure DDoS Protection should be enabled
a7aca53f-2ed4-4466-a25e-0b45ade68efd
Security Center
3.0.1
2x 3.0.1, 3.0.0
Default AuditIfNotExistsAllowed AuditIfNotExists, Disabled
0
GA
true
Azure Defender for SQL should be enabled for unprotected Azure SQL servers
abfb4388-5bf4-4ad7-ba82-2cd2f41ceae9
SQL
2.0.1
1x 2.0.1
Default AuditIfNotExistsAllowed AuditIfNotExists, Disabled
0
GA
true
Blocked accounts with owner permissions on Azure resources should be removed
0cfea604-3201-4e14-88fc-fae4c427a6c5
Security Center
1.0.0
1x 1.0.0
Default AuditIfNotExistsAllowed AuditIfNotExists, Disabled
0
GA
true
Blocked accounts with read and write permissions on Azure resources should be removed
8d7e1fde-fe26-4b5f-8108-f8e432cbc2be
Security Center
1.0.0
1x 1.0.0
Default AuditIfNotExistsAllowed AuditIfNotExists, Disabled
0
GA
true
Dependency agent should be enabled in virtual machine scale sets for listed virtual machine images
e2dd799a-a932-4e9d-ac17-d473bc3c6c10
Monitoring
2.1.0
2x 2.1.0, 2.0.0
Default AuditIfNotExistsAllowed AuditIfNotExists, Disabled
0
GA
true
Deploy the Linux Guest Configuration extension to enable Guest Configuration assignments on Linux VMs
331e8ea8-378a-410f-a2e5-ae22f38bb0da
Guest Configuration
3.2.0
3x 3.2.0, 3.1.0, 3.0.0
Fixed deployIfNotExists
1
Contributor
GA
true
Deploy the Windows Guest Configuration extension to enable Guest Configuration assignments on Windows VMs
385f5831-96d4-41db-9a3c-cd3af78aaae6
Guest Configuration
1.3.0
2x 1.3.0, 1.2.0
Fixed deployIfNotExists
1
Contributor
GA
true
Function apps should have remote debugging turned off
0e60b895-3786-45da-8377-9c6b4b6ac5f9
App Service
2.0.0
1x 2.0.0
Default AuditIfNotExistsAllowed AuditIfNotExists, Disabled
0
GA
true
Function apps should only be accessible over HTTPS
6d555dd1-86f2-4f1c-8ed7-5abae7c6cbab
App Service
5.0.0
1x 5.0.0
Default AuditAllowed Audit, Disabled, Deny
0
GA
true
Guest accounts with owner permissions on Azure resources should be removed
339353f6-2387-4a45-abe4-7f529d121046
Security Center
1.0.0
1x 1.0.0
Default AuditIfNotExistsAllowed AuditIfNotExists, Disabled
0
GA
true
Guest accounts with read permissions on Azure resources should be removed
e9ac8f8e-ce22-4355-8f04-99b911d6be52
Security Center
1.0.0
1x 1.0.0
Default AuditIfNotExistsAllowed AuditIfNotExists, Disabled
0
GA
true
Guest accounts with write permissions on Azure resources should be removed
94e1c2ac-cbbe-4cac-a2b5-389c812dee87
Security Center
1.0.0
1x 1.0.0
Default AuditIfNotExistsAllowed AuditIfNotExists, Disabled
0
GA
true
Management ports of virtual machines should be protected with just-in-time network access control
b0f33259-77d7-4c9e-aac6-3aabcfae693c
Security Center
3.0.0
1x 3.0.0
Default AuditIfNotExistsAllowed AuditIfNotExists, Disabled
0
GA
true
Only secure connections to your Azure Cache for Redis should be enabled
22bee202-a82f-4305-9a2a-6d7f44d4dedb
Cache
1.0.0
1x 1.0.0
Default AuditAllowed Audit, Deny, Disabled
0
GA
true
Resource logs in Azure Stream Analytics should be enabled
f9be5368-9bf5-4b84-9e0a-7850da98bb46
Stream Analytics
5.0.0
1x 5.0.0
Default AuditIfNotExistsAllowed AuditIfNotExists, Disabled
0
GA
true
Secure transfer to storage accounts should be enabled
404c3081-a854-4457-ae30-26a93ef643f9
Storage
2.0.0
1x 2.0.0
Default AuditAllowed Audit, Deny, Disabled
0
GA
true
Service Fabric clusters should only use Azure Active Directory for client authentication
b54ed75b-3e1a-44ac-a333-05ba39b99ff0
Service Fabric
1.1.0
1x 1.1.0
Default AuditAllowed Audit, Deny, Disabled
0
GA
true
SQL databases should have vulnerability findings resolved
feedbf84-6b99-488c-acc2-71c829aa5ffc
Security Center
4.1.0
1x 4.1.0
Default AuditIfNotExistsAllowed AuditIfNotExists, Disabled
0
GA
true
Storage accounts should be migrated to new Azure Resource Manager resources
37e0d2fe-28a5-43d6-a273-67d37d1f5606
Storage
1.0.0
1x 1.0.0
Default AuditAllowed Audit, Deny, Disabled
0
GA
true
Storage accounts should restrict network access
34c877ad-507e-4c82-993e-3452a6e0ad3c
Storage
1.1.1
1x 1.1.1
Default AuditAllowed Audit, Deny, Disabled
0
GA
true
There should be more than one owner assigned to your subscription
09024ccc-0c5f-475e-9457-b7c0d9ed487b
Security Center
3.0.0
1x 3.0.0
Default AuditIfNotExistsAllowed AuditIfNotExists, Disabled
0
GA
true
Transparent Data Encryption on SQL databases should be enabled
17k78e20-9358-41c9-923c-fb736d382a12
SQL
2.0.0
1x 2.0.0
Default AuditIfNotExistsAllowed AuditIfNotExists, Disabled
0
GA
true
Virtual machines should be migrated to new Azure Resource Manager resources
1d84d5fb-01f6-4d12-ba4f-4a26081d403d
Compute
1.0.0
1x 1.0.0
Default AuditAllowed Audit, Deny, Disabled
0
GA
true
Windows machines should be configured to use secure communication protocols
5752e6d6-1206-46d8-8ab1-ecc2f71a8112
Guest Configuration
4.1.1
1x 4.1.1
Default AuditIfNotExistsAllowed AuditIfNotExists, Disabled
0
GA
true
No results
JSON
api-version=2023-04-01
Copy definition Copy definition 4 EPAC EPAC
{ 8 items displayName: "[Preview]: SWIFT CSP-CSCF v2020" , policyType: "BuiltIn" , description: "This initiative includes audit and virtual machine extension deployment policies that address a subset of SWIFT CSP-CSCF v2020 controls. Additional policies will be added in upcoming releases. For more information, visit https://aka.ms/swift2020-init." , metadata: { 3 items version: "6.6.0-preview" , category: "Regulatory Compliance" , preview: true } , version: "6.6.0-preview" , parameters: { 7 items IncludeArcMachines: { 4 items type: "String" , metadata: { 2 items displayName: "Include Arc connected servers for Guest Configuration policies" , description: "Optionally choose to audit settings inside Arc connected servers using Guest Configuration policies. By selecting this option, you agree to be charged monthly per Arc connected machine." } , allowedValues: [ 2 items ] , defaultValue: "false" } , listOfResourceTypesWithDiagnosticLogsEnabled: { 4 items type: "Array" , metadata: { 1 item displayName: "List of resource types that should have resource logs enabled" } , allowedValues: [ 46 items "Microsoft.AnalysisServices/servers" , "Microsoft.ApiManagement/service" , "Microsoft.Network/applicationGateways" , "Microsoft.Automation/automationAccounts" , "Microsoft.ContainerInstance/containerGroups" , "Microsoft.ContainerRegistry/registries" , "Microsoft.ContainerService/managedClusters" , "Microsoft.Batch/batchAccounts" , "Microsoft.Cdn/profiles/endpoints" , "Microsoft.CognitiveServices/accounts" , "Microsoft.DocumentDB/databaseAccounts" , "Microsoft.DataFactory/factories" , "Microsoft.DataLakeAnalytics/accounts" , "Microsoft.DataLakeStore/accounts" , "Microsoft.EventGrid/eventSubscriptions" , "Microsoft.EventGrid/topics" , "Microsoft.EventHub/namespaces" , "Microsoft.Network/expressRouteCircuits" , "Microsoft.Network/azureFirewalls" , "Microsoft.HDInsight/clusters" , "Microsoft.Devices/IotHubs" , "Microsoft.KeyVault/vaults" , "Microsoft.Network/loadBalancers" , "Microsoft.Logic/integrationAccounts" , "Microsoft.Logic/workflows" , "Microsoft.DBforMySQL/servers" , "Microsoft.Network/networkInterfaces" , "Microsoft.Network/networkSecurityGroups" , "Microsoft.DBforPostgreSQL/servers" , "Microsoft.PowerBIDedicated/capacities" , "Microsoft.Network/publicIPAddresses" , "Microsoft.RecoveryServices/vaults" , "Microsoft.Cache/redis" , "Microsoft.Relay/namespaces" , "Microsoft.Search/searchServices" , "Microsoft.ServiceBus/namespaces" , "Microsoft.SignalRService/SignalR" , "Microsoft.Sql/servers/databases" , "Microsoft.Sql/servers/elasticPools" , "Microsoft.StreamAnalytics/streamingjobs" , "Microsoft.TimeSeriesInsights/environments" , "Microsoft.Network/trafficManagerProfiles" , "Microsoft.Compute/virtualMachines" , "Microsoft.Compute/virtualMachineScaleSets" , "Microsoft.Network/virtualNetworks" , "Microsoft.Network/virtualNetworkGateways" ] , defaultValue: [ 46 items "Microsoft.AnalysisServices/servers" , "Microsoft.ApiManagement/service" , "Microsoft.Network/applicationGateways" , "Microsoft.Automation/automationAccounts" , "Microsoft.ContainerInstance/containerGroups" , "Microsoft.ContainerRegistry/registries" , "Microsoft.ContainerService/managedClusters" , "Microsoft.Batch/batchAccounts" , "Microsoft.Cdn/profiles/endpoints" , "Microsoft.CognitiveServices/accounts" , "Microsoft.DocumentDB/databaseAccounts" , "Microsoft.DataFactory/factories" , "Microsoft.DataLakeAnalytics/accounts" , "Microsoft.DataLakeStore/accounts" , "Microsoft.EventGrid/eventSubscriptions" , "Microsoft.EventGrid/topics" , "Microsoft.EventHub/namespaces" , "Microsoft.Network/expressRouteCircuits" , "Microsoft.Network/azureFirewalls" , "Microsoft.HDInsight/clusters" , "Microsoft.Devices/IotHubs" , "Microsoft.KeyVault/vaults" , "Microsoft.Network/loadBalancers" , "Microsoft.Logic/integrationAccounts" , "Microsoft.Logic/workflows" , "Microsoft.DBforMySQL/servers" , "Microsoft.Network/networkInterfaces" , "Microsoft.Network/networkSecurityGroups" , "Microsoft.DBforPostgreSQL/servers" , "Microsoft.PowerBIDedicated/capacities" , "Microsoft.Network/publicIPAddresses" , "Microsoft.RecoveryServices/vaults" , "Microsoft.Cache/redis" , "Microsoft.Relay/namespaces" , "Microsoft.Search/searchServices" , "Microsoft.ServiceBus/namespaces" , "Microsoft.SignalRService/SignalR" , "Microsoft.Sql/servers/databases" , "Microsoft.Sql/servers/elasticPools" , "Microsoft.StreamAnalytics/streamingjobs" , "Microsoft.TimeSeriesInsights/environments" , "Microsoft.Network/trafficManagerProfiles" , "Microsoft.Compute/virtualMachines" , "Microsoft.Compute/virtualMachineScaleSets" , "Microsoft.Network/virtualNetworks" , "Microsoft.Network/virtualNetworkGateways" ] } , logsEnabled-7f89b1eb-583c-429a-8828-af049802c1d9: { 4 items } , metricsEnabled-7f89b1eb-583c-429a-8828-af049802c1d9: { 4 items } , workspaceIDsLogAnalyticsAgentShouldConnectTo: { 2 items type: "String" , metadata: { 2 items displayName: "Connected workspace IDs" , description: "A semicolon-separated list of the workspace IDs that the Log Analytics agent should be connected to" } } , listOfMembersToIncludeInWindowsVMAdministratorsGroup: { 2 items type: "String" , metadata: { 2 items displayName: "Members to include" , description: "A semicolon-separated list of members that should be included in the Administrators local group. Ex: Administrator; myUser1; myUser2" } } , domainNameFQDN: { 2 items type: "String" , metadata: { 2 items displayName: "Domain Name (FQDN)" , description: "The fully qualified domain name (FQDN) that the Windows VMs should be joined to" } } } , policyDefinitions: [ 48 items { 4 items } , { 4 items } , { 4 items } , { 4 items } , { 4 items } , { 4 items policyDefinitionReferenceId: "FunctionAppShouldOnlyBeAccessibleOverHttps" , policyDefinitionId: /providers/Microsoft.Authorization/policyDefinitions/6d555dd1-86f2-4f1c-8ed7-5abae7c6cbab Function apps should only be accessible over HTTPS , definitionVersion: 5.*.*5.0.0 , parameters: {} } , { 4 items policyDefinitionReferenceId: "WebApplicationShouldOnlyBeAccessibleOverHttps" , policyDefinitionId: /providers/Microsoft.Authorization/policyDefinitions/a4af4a39-4135-47fb-b175-47fbdf85311d App Service apps should only be accessible over HTTPS , definitionVersion: 4.*.*4.0.0 , parameters: {} } , { 4 items } , { 4 items } , { 4 items policyDefinitionReferenceId: "RemoteDebuggingShouldBeTurnedOffForFunctionApp" , policyDefinitionId: /providers/Microsoft.Authorization/policyDefinitions/0e60b895-3786-45da-8377-9c6b4b6ac5f9 Function apps should have remote debugging turned off , definitionVersion: 2.*.*2.0.0 , parameters: {} } , { 4 items policyDefinitionReferenceId: "RemoteDebuggingShouldBeTurnedOffForWebApplication" , policyDefinitionId: /providers/Microsoft.Authorization/policyDefinitions/cb510bfd-1cba-4d9f-a230-cb0976f4bb71 App Service apps should have remote debugging turned off , definitionVersion: 2.*.*2.0.0 , parameters: {} } , { 4 items policyDefinitionReferenceId: "DDoSProtectionStandardShouldBeEnabled" , policyDefinitionId: /providers/Microsoft.Authorization/policyDefinitions/a7aca53f-2ed4-4466-a25e-0b45ade68efd Azure DDoS Protection should be enabled , definitionVersion: 3.*.*3.0.1 , parameters: {} } , { 4 items } , { 4 items } , { 4 items } , { 4 items } , { 4 items } , { 4 items } , { 4 items } , { 4 items } , { 4 items } , { 4 items } , { 4 items } , { 4 items } , { 4 items } , { 4 items } , { 4 items policyDefinitionReferenceId: "VulnerabilitiesOnYourSqlDatabasesShouldBeRemediated" , policyDefinitionId: /providers/Microsoft.Authorization/policyDefinitions/feedbf84-6b99-488c-acc2-71c829aa5ffc SQL databases should have vulnerability findings resolved , definitionVersion: 4.*.*4.1.0 , parameters: {} } , { 4 items } , { 4 items } , { 4 items } , { 4 items policyDefinitionReferenceId: "SecureTransferToStorageAccountsShouldBeEnabled" , policyDefinitionId: /providers/Microsoft.Authorization/policyDefinitions/404c3081-a854-4457-ae30-26a93ef643f9 Secure transfer to storage accounts should be enabled , definitionVersion: 2.*.*2.0.0 , parameters: {} } , { 4 items } , { 4 items } , { 4 items } , { 4 items policyDefinitionReferenceId: "AuditUnrestrictedNetworkAccessToStorageAccounts" , policyDefinitionId: /providers/Microsoft.Authorization/policyDefinitions/34c877ad-507e-4c82-993e-3452a6e0ad3c Storage accounts should restrict network access , definitionVersion: 1.*.*1.1.1 , parameters: {} } , { 4 items } , { 4 items policyDefinitionReferenceId: "AuditUsageOfCustomRbacRules" , policyDefinitionId: /providers/Microsoft.Authorization/policyDefinitions/a451c1ef-c6ca-483d-87ed-f49761e3ffb5 Audit usage of custom RBAC roles , definitionVersion: 1.*.*1.0.1 , parameters: {} } , { 4 items policyDefinitionReferenceId: "AuditVMsThatDoNotUseManagedDisks" , policyDefinitionId: /providers/Microsoft.Authorization/policyDefinitions/06a78e20-9358-41c9-923c-fb736d382a4d Audit VMs that do not use managed disks , definitionVersion: 1.*.*1.0.0 , parameters: {} } , { 4 items } , { 4 items policyDefinitionReferenceId: "AutomationAccountVariablesShouldBeEncrypted" , policyDefinitionId: /providers/Microsoft.Authorization/policyDefinitions/3657f5a0-770e-44a3-b44e-9431ba1e9735 Automation account variables should be encrypted , definitionVersion: 1.*.*1.1.0 , parameters: {} } , { 4 items } , { 4 items policyDefinitionReferenceId: "DiagnosticLogsInAzureStreamAnalyticsShouldBeEnabled" , policyDefinitionId: /providers/Microsoft.Authorization/policyDefinitions/f9be5368-9bf5-4b84-9e0a-7850da98bb46 Resource logs in Azure Stream Analytics should be enabled , definitionVersion: 5.*.*5.0.0 , parameters: {} } , { 4 items } , { 4 items } , { 4 items policyDefinitionReferenceId: "AuditSqlServerLevelAuditingSettings" , policyDefinitionId: /providers/Microsoft.Authorization/policyDefinitions/a6fb4358-5bf4-4ad7-ba82-2cd2f41ce5e9 Auditing on SQL server should be enabled , definitionVersion: 2.*.*2.0.0 , parameters: {} } , { 4 items } , { 4 items } , { 4 items } ] , versions: [ 6 items "6.6.0-preview" , "6.5.0-preview" , "6.4.0-preview" , "6.3.0-preview" , "6.2.0-preview" , "6.1.0-preview" ] }