Sacha Narinx

Results 208 comments of Sacha Narinx

@rybal06 please note that all ALZ custom policies have been updated as part of Policy Refresh Q1 FY25 to support TLS 1.3. However, for built-in policies, I would suggest raising...

@diiyyani this is coming soon. We'll be providing the option to choose target - Log Analytics, Event Hub or Storage.

Closing this as we've deprecated all our diagnostic settings policies and shifted to the PG owned initiative to do the same. Please review https://aka.ms/alz/whatsnew for details. If you find gaps...

@AndersAsp thank you for reporting the issue. I'll investigate further, but suspect you've configuring the first initiative to only send Audit logs (not the default AllLogs), in which case this...

@AndersAsp I've reviewed the issue and confirm the conflict/issue exactly as you've described it. The policy "Configure SQL servers to have auditing enabled to Log Analytics workspace" configures the Azure...

@buysr thanks for reaching out, and this is super valid feedback. Unfortunately, we do not maintain built-in policies, which are maintained by the product groups that own the resource provider,...

@RobinsonMW I'll be updating the API versions for `vnetPeering.json`. However, it is important to note that this is not a supported scenario - as you can't change address space if...

@RobinsonMW I've updated the Microsoft.Network/virtualNetworks API version throughout the ALZ Portal Accelerator. You can test the change from my working branch here: https://portal.azure.com/#view/Microsoft_Azure_CreateUIDef/CustomDeploymentBlade/uri/https%3A%2F%2Fraw.githubusercontent.com%2FSpringstone%2FEnterprise-Scale%2FNetworkPeeringAPI%2FeslzArm%2FeslzArm.json/uiFormDefinitionUri/https%3A%2F%2Fraw.githubusercontent.com%2FSpringstone%2FEnterprise-Scale%2FNetworkPeeringAPI%2FeslzArm%2Feslz-portal.json In my own testing, I cannot change...

@vegazbabz To clarify, our [policy list](https://github.com/Azure/Enterprise-Scale/wiki/ALZ-Policies), covers policies assigned by default by ALZ. These additional custom policies have been provided as examples on how to use this for your purposes...

Closing as this topic is about example policies, and we've improved documentation accordingly. We now have a real use case for denyaction deployed and assigned by default. The intent is...