last sync: 2022-Feb-22 17:31:36 UTC

Enterprise-Scale Policy Initiative

Deploy Microsoft Defender for Cloud configuration

NameDeploy Microsoft Defender for Cloud configuration
Enterprise-Scale GitHub
IdDeploy-ASCDF-Config
Version2.1.0
details on versioning
CategorySecurity Center
Microsoft docs
DescriptionDeploy Microsoft Defender for Cloud configuration
TypeCustom Enterprise-Scale
DeprecatedFalse
PreviewFalse
History none
Policy count Total Policies: 12
Builtin Policies: 11
Static Policies: 0
ESLZ Policies: 1
Policy used
Policy DisplayName Policy Id Category Effect State Type
Configure Azure Defender for App Service to be enabled b40e7bcd-a1e5-47fe-b9cf-2f534d0bfb7d Security Center Default: DeployIfNotExists
Allowed: (DeployIfNotExists, Disabled)
GA BuiltIn
Configure Azure Defender for Azure SQL database to be enabled b99b73e7-074b-4089-9395-b7236f094491 Security Center Default: DeployIfNotExists
Allowed: (DeployIfNotExists, Disabled)
GA BuiltIn
Configure Azure Defender for DNS to be enabled 2370a3c1-4a25-4283-a91a-c9c1a145fb2f Security Center Default: DeployIfNotExists
Allowed: (DeployIfNotExists, Disabled)
GA BuiltIn
Configure Azure Defender for Key Vaults to be enabled 1f725891-01c0-420a-9059-4fa46cb770b7 Security Center Default: DeployIfNotExists
Allowed: (DeployIfNotExists, Disabled)
GA BuiltIn
Configure Azure Defender for open-source relational databases to be enabled 44433aa3-7ec2-4002-93ea-65c65ff0310a Security Center Default: DeployIfNotExists
Allowed: (DeployIfNotExists, Disabled)
GA BuiltIn
Configure Azure Defender for Resource Manager to be enabled b7021b2b-08fd-4dc0-9de7-3c6ece09faf9 Security Center Default: DeployIfNotExists
Allowed: (DeployIfNotExists, Disabled)
GA BuiltIn
Configure Azure Defender for servers to be enabled 8e86a5b6-b9bd-49d1-8e21-4bb8a0862222 Security Center Default: DeployIfNotExists
Allowed: (DeployIfNotExists, Disabled)
GA BuiltIn
Configure Azure Defender for SQL servers on machines to be enabled 50ea7265-7d8c-429e-9a7d-ca1f410191c3 Security Center Default: DeployIfNotExists
Allowed: (DeployIfNotExists, Disabled)
GA BuiltIn
Configure Azure Defender for Storage to be enabled 74c30959-af11-47b3-9ed2-a26e03f427a3 Security Center Default: DeployIfNotExists
Allowed: (DeployIfNotExists, Disabled)
GA BuiltIn
Configure Microsoft Defender for Containers to be enabled c9ddb292-b203-4738-aead-18e2716e858f Security Center Default: DeployIfNotExists
Allowed: (DeployIfNotExists, Disabled)
GA BuiltIn
Deploy Azure Security Center Security Contacts Deploy-ASC-SecurityContacts Security Center Default: DeployIfNotExists
Allowed: (DeployIfNotExists, Disabled)
GA ESLZ
Deploy export to Log Analytics workspace for Azure Security Center data ffb6f416-7bd2-4488-8828-56585fef2be9 Security Center Fixed: deployIfNotExists GA BuiltIn
JSON