Граф коммитов

74 Коммитов

Автор SHA1 Сообщение Дата
Matthew Bratschun ae8eb83631
Release v1.1.6 (#445)
* Updates for 3 changes

* added module 4 new module

* zip update

* modules.json update

* updating bicep

* adding "SSCReadOnlyServicePrincipalNameAPPID" to param validation

* make SSCReadOnlyServicePrincipalNameAPPID required

* update tag

* zipped and signed modules

---------

Co-authored-by: Jose Fehse <jose@fehse.ca>
2023-08-28 13:38:13 -04:00
Jose Fehse 28ba1f723a
Gr4 app id new logic (#443)
* Updates for 3 changes

* added module 4 new module

* zip update

* modules.json update

* updating bicep
2023-08-28 10:45:04 -06:00
Matthew Bratschun eb59a33bf2
Release v1.1.5.1 (#432)
* updated tags.json

* zipped and signed modules
2023-08-01 13:55:45 -04:00
Matthew Bratschun d9f7105fd5
Release v1.1.5 (#425)
* v1.1.5 tag

* zipped signed modules

* resigned modules
2023-07-20 12:51:33 -04:00
amrinderssc 579cc5e7c8
GR9-Check-VNetComplianceStatus-Issue (#407)
* GR9-Check-VNetComplianceStatus-Issue

* GR9-Check-VNetComplianceStatus-Issue

* GR9-Check-VNetComplianceStatus-Issue Zips Updated

---------

Co-authored-by: precog90 <ammyamazing@gmail.com>
Co-authored-by: Matthew Bratschun <25390936+mbrat2005@users.noreply.github.com>
2023-06-26 12:07:34 -06:00
Matthew Bratschun 04e30ba333
Fix Check-DeprecatedAccounts to Include OnPremisesSyncEnabled (#401)
* fix query to include OnPremisesSyncEnabled

* update zip
2023-06-12 10:39:38 -04:00
Matthew Bratschun 9b6baa697b
Release v1.1.4 (#396)
* v1.1.4 tag

* v1.1.4 zipped and signed
2023-06-06 13:01:51 -04:00
Matthew Bratschun 8183319f46
Add Cloud Usage Profiles to Config and Workbook (#389)
* initial commit cloud usage profiles

* add workbook section title

* add workbook section title

* default value

* add cloud usage profile link

* rezipped

* removed setup zips
2023-06-01 15:56:50 -04:00
Matthew Bratschun ae4412ce1f
#376 Log VNET and Subnet Compliance Exclusion by Tag or Param (#382)
* delete setup module zips

* subnet and vnet exclusion logging

* fix spelling, module versions

* module zips

* correct zipping pipeline to exclude setup

* remove setup zip
2023-05-19 10:05:29 -06:00
Matthew Bratschun 908ec4cdef
Release v1.1.3 (#367)
* v1.1.3 tag update

* add "securityRetentionDays": "730" to pipeline

* zipped and signed modules
2023-05-02 11:19:23 -06:00
Matthew Bratschun cd57ab94df
securityretentionasparameter - Fixed Zips (#366)
* first try with retention parameter

* renamedParameter

* pull subnet complaince module from main

* reverted zips to main

* reverted zips to main 2

* subnet zip

* vnet zip

* gr-common zip

---------

Co-authored-by: Jose Fehse <jose@fehse.ca>
2023-04-24 13:02:09 -04:00
Matthew Bratschun 3b37b45a62
Revert "Securityretentionasparameter (#362)" (#365)
This reverts commit 73fd294c20.
2023-04-18 12:56:37 -04:00
Jose Fehse 73fd294c20
Securityretentionasparameter (#362)
* first try with retention parameter

* renamedParameter

* updated modules
2023-04-18 12:47:11 -04:00
Matthew Bratschun b6e149fd72
Fix Backend Version Conversion and Try/Catch (#364)
* fix version conversion and try/catch

* zipped module

* parse call syntax

* zipped module

* skip table precreate and alert query validation
2023-04-17 19:06:00 -04:00
Matthew Bratschun 4aff3cd1b8
Release v1.1.2.1 (#361)
* module version check workflow

* zipped signed modules
2023-04-06 20:15:31 -04:00
Matthew Bratschun a0abf5ac26
Release v1.1.2 - Add Signing Pipeline Change (#357)
* Create defender-for-devops.yml

* tags-v1.1.2

* zipped and signed modules

* modify esrp signing job step

* delete defender pipeline

* modify esrp signing job step - dev

* modify esrp signing job - extension list

* zipped and signed
2023-04-04 16:15:57 -04:00
Matthew Bratschun 626b5984b0
Revert "Release v1.1.2 (#355)" (#356)
This reverts commit 35bc4f261d.
2023-04-03 13:20:42 -04:00
Matthew Bratschun 35bc4f261d
Release v1.1.2 (#355)
* Create defender-for-devops.yml

* tags-v1.1.2

* zipped and signed modules
2023-04-03 11:21:54 -04:00
Matthew Bratschun ec0045bf2c
refresh zipped modules (#336) 2023-03-07 21:23:56 -05:00
Jose Fehse 98c6951b1c
Adding New version alert (#334)
* added alert rule

* added new setup options

* chagnes

* zipped modules

* updated compliance checks module
2023-03-07 15:43:29 -05:00
Jose Fehse c3fe70de62
Gr11revamp2 (#305)
* Gr11Revamp

* zipping

* updated minor issue with HealthMonitoring

* minor workbook fix
2023-02-08 14:48:03 -05:00
Matthew Bratschun 084e4754f1
v1.0.9 (#292)
* v1.0.9 + prod workflow

* zip and sign

* v1.0.9 - added Joses PR
2023-02-06 13:09:55 -05:00
Matthew Bratschun 2e3e2b0470
Add GitHub Workflow to Re-zip Modules on Every PR (#287)
* clean up signature block

* correct message reference for doc check

* gh zip modules

* gh zip modules 2

* gh zip modules 3

* incremented changed module versions: Merge branch 'main' into zip-pr-modules

* gh zip modules 4

* zipped modules from src and replaced in psmodules: Merge branch 'zip-pr-modules' of https://github.com/mbrat2005/GuardrailsSolutionAccelerator into zip-pr-modules

* gh zip modules cleaned

* zipped modules from src and replaced in psmodules: Merge branch 'zip-pr-modules' of https://github.com/mbrat2005/GuardrailsSolutionAccelerator into zip-pr-modules

* gh zip modules cleaned 2

* zipped modules from src and replaced in psmodules: Merge branch 'zip-pr-modules' of https://github.com/mbrat2005/GuardrailsSolutionAccelerator into zip-pr-modules

* workflow permissions

* zipped modules from src and replaced in psmodules: Merge branch 'zip-pr-modules' of https://github.com/mbrat2005/GuardrailsSolutionAccelerator into zip-pr-modules
2023-01-31 21:18:57 -05:00
Jose Fehse b210757081
Update module 8 logic (#281)
* Fixed issue #32

* Mitigation for modules 8 and 9 - initial draft

* Added Mititgation and Report Time to modules 8,9 and 11

* Added Report Time to all modules.

* updated main with ReportTIme

* missed a file

* Updated create-manifest script.

* fixed az.accounts module version

* fixed automatic Subnet exclusion issue and added CBS subscription exclusion to module 8

* Fixed PBMM Module, added Report Time and CBS subscriptione exclusion to module 5-9 and 11.

* New zips

* Fixed minor parameter issues with main.ps1

* Fixed issues

* Fixed issues

* Added proper permissions to MI for tenant diagnostics

* merging from main

* Adding Mititgation Commands/Instructions

* Adding Mitigation commands

* Fixed module eleven

* Fixing zip issue

* Fixed documentationa and added check on parameter format

* Set up CI with Azure Pipelines

[skip ci]

* Added comment regarding permissions to documention.

* Completed Module approach changes

* minor fixes.

* added module parameters and updated doc.

* update

* setup update

* added tags.json

* Documentation updates

* Added tags documentation

* Fixed module 10

* Added zip for fixed module 10

* Complete re-writing of modules 5,6 and 7

* Removed unnecessary read me files for modules 6 and 7

* minor fixes in main and update.ps1

* minor fixes in 5,6,7

* Change datetime format.

* fixed typo in bicep file

* Added ItemName to Module 10

* Updated workbook

* Added new CodeOwner

* Updated query time to 24 hours.

* minor fix to module 10

* trying to merge...

* Fixing AzAccounts issue

* Fixed query for workbook

* fixing workbook

* Updated PBMMM and DiTransit zips

* new zips for test

* Updated localization zip

* Added module 3

* Fixed zips for 5,6 and 7

* fixed workbook not being updated.

* fixed.Needs testing

* updated module 11 - fixed detection of the log analytics for activity logs

* created bicep modules per component

* Added Tool Script to Update Module Versions (#217)

* add update-moduleversion script, module version PR check

* check target module version

* Refactor Setup to PowerShell Modules (#208)

* init empty modules

* reorg new modules

* wip: confirmation modules

* module imports

* module imports

* module imports

* wip: setup examples

* wip: transfer from setup

* move to $config.$1

* wip: setup conversion (dep core rscs)

* wip: setup conversion (dep core rscs)

* wip: core deployment

* core resource deployed

* core resource deployed

* lighthouse cleanup

* cleanup fixes

* wip: validaion, update

* lighthouse removal cleanup

* removal functions testing

* update functionality

* comment help

* save config

* saved config, ouptut message

* move to config[runtime]

* correcting runtime config obj

* manual removal params

* publishing

* fix paramset selection

* add modularized bicep

* setup support for  modularized bicep

* setup support for  modularized bicep

* eula messages

* message tweak

* -yes parameter

* comment details

* add updating modules.json to update runbooks

* fix: runbook update output; prompt clarity

* rg tags update; erroractionpreference

* remove component clarity

* -newComponents should not include lighthouse by default

* fixed Gr#2 when there are no guest account in subs (#218)

* fixed Gr#2 when there are no guest account in subs

* Update Check-ExternalAccounts.psm1

Co-authored-by: Matthew Bratschun <25390936+mbrat2005@users.noreply.github.com>

* Update controls.md (#221)

* V1.0.6 Signing (#220)

* fix signing pipeline references

* corrections to setup module for pipeline exec

* tags.json update

* signed-v1.0.6

* corrected summary format; signing pipeline output

* gr 5: pbmm: mandatory params, error handing

* pipeline skipCleanup param

* pipeline skipCleanup param

* v1.0.6 resigned

* gr 5: pbmm: simplify, remove new-customobject func

* gr 5: pbmm: simplify, remove new-customobject func

* pipeline skipCleanup variable

* type consistency in $c

* pipeline parameters

* pipeline parameters

* v1.0.6.1-zipped

* zipped module staging

* zipped module staging

* skipCleanup evaluation

* alternate uri blob support

* skipCleanup evaluation

* alternate uri blob support

* v1.0.6.2-signed

* remove new-customobject function and call

* custom pipeline resource names

* custom pipelie name keyvault

* v1.0.6-final

* fix: subscription selection output

* fix: subscription selection output - sort

* fix: pipeline skip logic

* v1.0.6-fix-sub-selection

Co-authored-by: Jose Fehse <jose@fehse.ca>

* Move to Invoke-AzRestMethod for Rest Calls (#223)

* move to invoke-azrestmethod, remove token params

* move to $response = invoke-azrestmethod

* fix pipeline var ref and conn name

* fix: modules.json missing spaces

* incremented module versions

* removed GraphAccessToken references

* subscription selection; zipped for testing

* fix psd1 encoding, update-moduleversion script

* add job status check

* correct subscriptionid refs

* module reference

* cleanup

* fix missing } in -force check

* retry cleanup

* wait to delete core resources

* fix: missing LAW should not throw error

* pipeline improvements

* regex support blob source

* setup.ps1 alternatePSModulesURL param

* pipeline:make pre-clean default

* correct cleanup KV reference

* fix monitoring account not found (#225)

* Resolve Department Number to a Department Name and Log to Log Analytics (#226)

* add department name

* add valid dept num to test pipeline

* update add-tenantinfo

* departmentNumber setup.md

* Updated update process doc (#227)

* wip: update process doc

* update docs with download release

* update docs with download release

Co-authored-by: Islam Gomaa <igomaa@users.noreply.github.com>

* fix monitoring account not found v2 (#228)

* fix monitoring account not found

* correct logged results in compliance table

Co-authored-by: Islam Gomaa <igomaa@users.noreply.github.com>

* Removing Log Analytics writes from modules and other minor fixes. (#230)

* Fixed issue #32

* Mitigation for modules 8 and 9 - initial draft

* Added Mititgation and Report Time to modules 8,9 and 11

* Added Report Time to all modules.

* updated main with ReportTIme

* missed a file

* Updated create-manifest script.

* fixed az.accounts module version

* fixed automatic Subnet exclusion issue and added CBS subscription exclusion to module 8

* Fixed PBMM Module, added Report Time and CBS subscriptione exclusion to module 5-9 and 11.

* New zips

* Fixed minor parameter issues with main.ps1

* Fixed issues

* Fixed issues

* Added proper permissions to MI for tenant diagnostics

* merging from main

* Adding Mititgation Commands/Instructions

* Adding Mitigation commands

* Fixed module eleven

* Fixing zip issue

* Fixed documentationa and added check on parameter format

* Set up CI with Azure Pipelines

[skip ci]

* Added comment regarding permissions to documention.

* Completed Module approach changes

* minor fixes.

* added module parameters and updated doc.

* update

* setup update

* added tags.json

* Documentation updates

* Added tags documentation

* Fixed module 10

* Added zip for fixed module 10

* Complete re-writing of modules 5,6 and 7

* Removed unnecessary read me files for modules 6 and 7

* minor fixes in main and update.ps1

* minor fixes in 5,6,7

* Change datetime format.

* fixed typo in bicep file

* Added ItemName to Module 10

* Updated workbook

* Added new CodeOwner

* Updated query time to 24 hours.

* minor fix to module 10

* trying to merge...

* Fixing AzAccounts issue

* Fixed query for workbook

* fixing workbook

* Updated PBMMM and DiTransit zips

* new zips for test

* Updated localization zip

* Added module 3

* Fixed zips for 5,6 and 7

* fixed workbook not being updated.

* first try

* first checkin after changing modules to send output out to main

* final changes.

* updated modules

* fixing minor issues

* bicep revamp

* fixed LoggingAndMonitoring

* updates

* fixing gr-common

* continuous improvement

* fixed.Needs testing

* updated module 11 - fixed detection of the log analytics for activity logs

* created bicep modules per component

* move to invoke-azrestmethod, remove token params

* move to $response = invoke-azrestmethod

* fix pipeline var ref and conn name

* fix: modules.json missing spaces

* incremented module versions

* removed GraphAccessToken references

* subscription selection; zipped for testing

* fix psd1 encoding, update-moduleversion script

* add job status check

* correct subscriptionid refs

* module reference

* cleanup

* fix missing } in -force check

* retry cleanup

* wait to delete core resources

* fix: missing LAW should not throw error

* all

* updated 8 and 9 modules

* updated zips

* updated all modules

* updated pbmm policy module

* pipeline improvements

* regex support blob source

* setup.ps1 alternatePSModulesURL param

* pipeline:make pre-clean default

* correct cleanup KV reference

* fixed issues

* more changes

* updated zips

* updated modules

* fixed module issues

* zips

* fix loose character

* fixed lost characters

* fixed issue with zip.

* LogAnalytics into Main-and Comments gaps

* seems to work

* modules versions and move function to common

* minor update

* pre-integrating with azure main

* Minor fix

Co-authored-by: Matthew Bratschun <matthew.bratschun@microsoft.com>

* Include AA variables in core component update action (#232)

* add updateCoreComponents

* wip: coreComponents - unique name suffix, summary

* wip: coreComponents - unique name suffix, summary

* components to update

* update docs

* setup.ps1 update values

* module versions

Co-authored-by: Islam Gomaa <igomaa@users.noreply.github.com>

* Move to shared Invoke-GraphQuery function (#233)

* Fixed issue #32

* Mitigation for modules 8 and 9 - initial draft

* Added Mititgation and Report Time to modules 8,9 and 11

* Added Report Time to all modules.

* updated main with ReportTIme

* missed a file

* Updated create-manifest script.

* fixed az.accounts module version

* fixed automatic Subnet exclusion issue and added CBS subscription exclusion to module 8

* Fixed PBMM Module, added Report Time and CBS subscriptione exclusion to module 5-9 and 11.

* New zips

* Fixed minor parameter issues with main.ps1

* Fixed issues

* Fixed issues

* Added proper permissions to MI for tenant diagnostics

* merging from main

* Adding Mititgation Commands/Instructions

* Adding Mitigation commands

* Fixed module eleven

* Fixing zip issue

* Fixed documentationa and added check on parameter format

* Set up CI with Azure Pipelines

[skip ci]

* Added comment regarding permissions to documention.

* Completed Module approach changes

* minor fixes.

* added module parameters and updated doc.

* update

* setup update

* added tags.json

* Documentation updates

* Added tags documentation

* Fixed module 10

* Added zip for fixed module 10

* Complete re-writing of modules 5,6 and 7

* Removed unnecessary read me files for modules 6 and 7

* minor fixes in main and update.ps1

* minor fixes in 5,6,7

* Change datetime format.

* fixed typo in bicep file

* Added ItemName to Module 10

* Updated workbook

* Added new CodeOwner

* Updated query time to 24 hours.

* minor fix to module 10

* trying to merge...

* Fixing AzAccounts issue

* Fixed query for workbook

* fixing workbook

* Updated PBMMM and DiTransit zips

* new zips for test

* Updated localization zip

* Added module 3

* Fixed zips for 5,6 and 7

* fixed workbook not being updated.

* first try

* first checkin after changing modules to send output out to main

* final changes.

* updated modules

* fixing minor issues

* bicep revamp

* fixed LoggingAndMonitoring

* updates

* fixing gr-common

* continuous improvement

* fixed.Needs testing

* updated module 11 - fixed detection of the log analytics for activity logs

* created bicep modules per component

* move to invoke-azrestmethod, remove token params

* move to $response = invoke-azrestmethod

* fix pipeline var ref and conn name

* fix: modules.json missing spaces

* incremented module versions

* removed GraphAccessToken references

* subscription selection; zipped for testing

* fix psd1 encoding, update-moduleversion script

* add job status check

* correct subscriptionid refs

* module reference

* cleanup

* fix missing } in -force check

* retry cleanup

* wait to delete core resources

* fix: missing LAW should not throw error

* all

* updated 8 and 9 modules

* updated zips

* updated all modules

* updated pbmm policy module

* pipeline improvements

* regex support blob source

* setup.ps1 alternatePSModulesURL param

* pipeline:make pre-clean default

* correct cleanup KV reference

* fixed issues

* more changes

* updated zips

* updated modules

* fixed module issues

* zips

* fix loose character

* fixed lost characters

* fixed issue with zip.

* LogAnalytics into Main-and Comments gaps

* seems to work

* modules versions and move function to common

* minor update

* pre-integrating with azure main

* remove referenes to add-logentry2

* remove add-logentry2 function

* wip; invoke-graphquery

* added Invoke-GraphQuery function, update refs

* remove extra sig block

* param regex

* call correct azrestmethod command, version

* call correct azrestmethod command, version [skip_clean]

* pipeline install dotnet for esrp [skip_clean]

* pipeline install dotnet for esrp [skip_clean]

* pipeline install dotnet for esrp [skip_clean]

* dotnet install path [skip_clean]

* dotnet install path [skip_clean]

* update to ersp v2 [skip_ci]

* update to ersp v2

* skip_clean logic [skip_clean]

* update module versions

Co-authored-by: Jose Fehse <jose@fehse.ca>
Co-authored-by: Islam Gomaa <igomaa@users.noreply.github.com>

* Documentation: release creation processs (#234)

* added create release docs

* signing branch name

* minor fix

* Revised and expanded module 8

---------

Co-authored-by: Matthew Bratschun <25390936+mbrat2005@users.noreply.github.com>
Co-authored-by: PatLac04 <patrice.lacroix@outlook.com>
Co-authored-by: MathesonSho <111992749+MathesonSho@users.noreply.github.com>
Co-authored-by: Islam Gomaa <igomaa@users.noreply.github.com>
Co-authored-by: Matthew Bratschun <matthew.bratschun@microsoft.com>
2023-01-27 14:38:08 -05:00
Matthew Bratschun cad32537c6
v1.0.8.1 re-signed and zipped (#277) 2023-01-27 12:48:01 -05:00
Jose Fehse d6f65943b5
Add required or not modules (and module 5 location fixes) (#272)
* Fixed issue #32

* Mitigation for modules 8 and 9 - initial draft

* Added Mititgation and Report Time to modules 8,9 and 11

* Added Report Time to all modules.

* updated main with ReportTIme

* missed a file

* Updated create-manifest script.

* fixed az.accounts module version

* fixed automatic Subnet exclusion issue and added CBS subscription exclusion to module 8

* Fixed PBMM Module, added Report Time and CBS subscriptione exclusion to module 5-9 and 11.

* New zips

* Fixed minor parameter issues with main.ps1

* Fixed issues

* Fixed issues

* Added proper permissions to MI for tenant diagnostics

* merging from main

* Adding Mititgation Commands/Instructions

* Adding Mitigation commands

* Fixed module eleven

* Fixing zip issue

* Fixed documentationa and added check on parameter format

* Set up CI with Azure Pipelines

[skip ci]

* Added comment regarding permissions to documention.

* Completed Module approach changes

* minor fixes.

* added module parameters and updated doc.

* update

* setup update

* added tags.json

* Documentation updates

* Added tags documentation

* Fixed module 10

* Added zip for fixed module 10

* Complete re-writing of modules 5,6 and 7

* Removed unnecessary read me files for modules 6 and 7

* minor fixes in main and update.ps1

* minor fixes in 5,6,7

* Change datetime format.

* fixed typo in bicep file

* Added ItemName to Module 10

* Updated workbook

* Added new CodeOwner

* Updated query time to 24 hours.

* minor fix to module 10

* trying to merge...

* Fixing AzAccounts issue

* Fixed query for workbook

* fixing workbook

* Updated PBMMM and DiTransit zips

* new zips for test

* Updated localization zip

* Added module 3

* Fixed zips for 5,6 and 7

* fixed workbook not being updated.

* fixed.Needs testing

* updated module 11 - fixed detection of the log analytics for activity logs

* created bicep modules per component

* Added Tool Script to Update Module Versions (#217)

* add update-moduleversion script, module version PR check

* check target module version

* Refactor Setup to PowerShell Modules (#208)

* init empty modules

* reorg new modules

* wip: confirmation modules

* module imports

* module imports

* module imports

* wip: setup examples

* wip: transfer from setup

* move to $config.$1

* wip: setup conversion (dep core rscs)

* wip: setup conversion (dep core rscs)

* wip: core deployment

* core resource deployed

* core resource deployed

* lighthouse cleanup

* cleanup fixes

* wip: validaion, update

* lighthouse removal cleanup

* removal functions testing

* update functionality

* comment help

* save config

* saved config, ouptut message

* move to config[runtime]

* correcting runtime config obj

* manual removal params

* publishing

* fix paramset selection

* add modularized bicep

* setup support for  modularized bicep

* setup support for  modularized bicep

* eula messages

* message tweak

* -yes parameter

* comment details

* add updating modules.json to update runbooks

* fix: runbook update output; prompt clarity

* rg tags update; erroractionpreference

* remove component clarity

* -newComponents should not include lighthouse by default

* fixed Gr#2 when there are no guest account in subs (#218)

* fixed Gr#2 when there are no guest account in subs

* Update Check-ExternalAccounts.psm1

Co-authored-by: Matthew Bratschun <25390936+mbrat2005@users.noreply.github.com>

* Update controls.md (#221)

* V1.0.6 Signing (#220)

* fix signing pipeline references

* corrections to setup module for pipeline exec

* tags.json update

* signed-v1.0.6

* corrected summary format; signing pipeline output

* gr 5: pbmm: mandatory params, error handing

* pipeline skipCleanup param

* pipeline skipCleanup param

* v1.0.6 resigned

* gr 5: pbmm: simplify, remove new-customobject func

* gr 5: pbmm: simplify, remove new-customobject func

* pipeline skipCleanup variable

* type consistency in $c

* pipeline parameters

* pipeline parameters

* v1.0.6.1-zipped

* zipped module staging

* zipped module staging

* skipCleanup evaluation

* alternate uri blob support

* skipCleanup evaluation

* alternate uri blob support

* v1.0.6.2-signed

* remove new-customobject function and call

* custom pipeline resource names

* custom pipelie name keyvault

* v1.0.6-final

* fix: subscription selection output

* fix: subscription selection output - sort

* fix: pipeline skip logic

* v1.0.6-fix-sub-selection

Co-authored-by: Jose Fehse <jose@fehse.ca>

* Move to Invoke-AzRestMethod for Rest Calls (#223)

* move to invoke-azrestmethod, remove token params

* move to $response = invoke-azrestmethod

* fix pipeline var ref and conn name

* fix: modules.json missing spaces

* incremented module versions

* removed GraphAccessToken references

* subscription selection; zipped for testing

* fix psd1 encoding, update-moduleversion script

* add job status check

* correct subscriptionid refs

* module reference

* cleanup

* fix missing } in -force check

* retry cleanup

* wait to delete core resources

* fix: missing LAW should not throw error

* pipeline improvements

* regex support blob source

* setup.ps1 alternatePSModulesURL param

* pipeline:make pre-clean default

* correct cleanup KV reference

* fix monitoring account not found (#225)

* Resolve Department Number to a Department Name and Log to Log Analytics (#226)

* add department name

* add valid dept num to test pipeline

* update add-tenantinfo

* departmentNumber setup.md

* Updated update process doc (#227)

* wip: update process doc

* update docs with download release

* update docs with download release

Co-authored-by: Islam Gomaa <igomaa@users.noreply.github.com>

* fix monitoring account not found v2 (#228)

* fix monitoring account not found

* correct logged results in compliance table

Co-authored-by: Islam Gomaa <igomaa@users.noreply.github.com>

* Removing Log Analytics writes from modules and other minor fixes. (#230)

* Fixed issue #32

* Mitigation for modules 8 and 9 - initial draft

* Added Mititgation and Report Time to modules 8,9 and 11

* Added Report Time to all modules.

* updated main with ReportTIme

* missed a file

* Updated create-manifest script.

* fixed az.accounts module version

* fixed automatic Subnet exclusion issue and added CBS subscription exclusion to module 8

* Fixed PBMM Module, added Report Time and CBS subscriptione exclusion to module 5-9 and 11.

* New zips

* Fixed minor parameter issues with main.ps1

* Fixed issues

* Fixed issues

* Added proper permissions to MI for tenant diagnostics

* merging from main

* Adding Mititgation Commands/Instructions

* Adding Mitigation commands

* Fixed module eleven

* Fixing zip issue

* Fixed documentationa and added check on parameter format

* Set up CI with Azure Pipelines

[skip ci]

* Added comment regarding permissions to documention.

* Completed Module approach changes

* minor fixes.

* added module parameters and updated doc.

* update

* setup update

* added tags.json

* Documentation updates

* Added tags documentation

* Fixed module 10

* Added zip for fixed module 10

* Complete re-writing of modules 5,6 and 7

* Removed unnecessary read me files for modules 6 and 7

* minor fixes in main and update.ps1

* minor fixes in 5,6,7

* Change datetime format.

* fixed typo in bicep file

* Added ItemName to Module 10

* Updated workbook

* Added new CodeOwner

* Updated query time to 24 hours.

* minor fix to module 10

* trying to merge...

* Fixing AzAccounts issue

* Fixed query for workbook

* fixing workbook

* Updated PBMMM and DiTransit zips

* new zips for test

* Updated localization zip

* Added module 3

* Fixed zips for 5,6 and 7

* fixed workbook not being updated.

* first try

* first checkin after changing modules to send output out to main

* final changes.

* updated modules

* fixing minor issues

* bicep revamp

* fixed LoggingAndMonitoring

* updates

* fixing gr-common

* continuous improvement

* fixed.Needs testing

* updated module 11 - fixed detection of the log analytics for activity logs

* created bicep modules per component

* move to invoke-azrestmethod, remove token params

* move to $response = invoke-azrestmethod

* fix pipeline var ref and conn name

* fix: modules.json missing spaces

* incremented module versions

* removed GraphAccessToken references

* subscription selection; zipped for testing

* fix psd1 encoding, update-moduleversion script

* add job status check

* correct subscriptionid refs

* module reference

* cleanup

* fix missing } in -force check

* retry cleanup

* wait to delete core resources

* fix: missing LAW should not throw error

* all

* updated 8 and 9 modules

* updated zips

* updated all modules

* updated pbmm policy module

* pipeline improvements

* regex support blob source

* setup.ps1 alternatePSModulesURL param

* pipeline:make pre-clean default

* correct cleanup KV reference

* fixed issues

* more changes

* updated zips

* updated modules

* fixed module issues

* zips

* fix loose character

* fixed lost characters

* fixed issue with zip.

* LogAnalytics into Main-and Comments gaps

* seems to work

* modules versions and move function to common

* minor update

* pre-integrating with azure main

* Minor fix

Co-authored-by: Matthew Bratschun <matthew.bratschun@microsoft.com>

* Include AA variables in core component update action (#232)

* add updateCoreComponents

* wip: coreComponents - unique name suffix, summary

* wip: coreComponents - unique name suffix, summary

* components to update

* update docs

* setup.ps1 update values

* module versions

Co-authored-by: Islam Gomaa <igomaa@users.noreply.github.com>

* Move to shared Invoke-GraphQuery function (#233)

* Fixed issue #32

* Mitigation for modules 8 and 9 - initial draft

* Added Mititgation and Report Time to modules 8,9 and 11

* Added Report Time to all modules.

* updated main with ReportTIme

* missed a file

* Updated create-manifest script.

* fixed az.accounts module version

* fixed automatic Subnet exclusion issue and added CBS subscription exclusion to module 8

* Fixed PBMM Module, added Report Time and CBS subscriptione exclusion to module 5-9 and 11.

* New zips

* Fixed minor parameter issues with main.ps1

* Fixed issues

* Fixed issues

* Added proper permissions to MI for tenant diagnostics

* merging from main

* Adding Mititgation Commands/Instructions

* Adding Mitigation commands

* Fixed module eleven

* Fixing zip issue

* Fixed documentationa and added check on parameter format

* Set up CI with Azure Pipelines

[skip ci]

* Added comment regarding permissions to documention.

* Completed Module approach changes

* minor fixes.

* added module parameters and updated doc.

* update

* setup update

* added tags.json

* Documentation updates

* Added tags documentation

* Fixed module 10

* Added zip for fixed module 10

* Complete re-writing of modules 5,6 and 7

* Removed unnecessary read me files for modules 6 and 7

* minor fixes in main and update.ps1

* minor fixes in 5,6,7

* Change datetime format.

* fixed typo in bicep file

* Added ItemName to Module 10

* Updated workbook

* Added new CodeOwner

* Updated query time to 24 hours.

* minor fix to module 10

* trying to merge...

* Fixing AzAccounts issue

* Fixed query for workbook

* fixing workbook

* Updated PBMMM and DiTransit zips

* new zips for test

* Updated localization zip

* Added module 3

* Fixed zips for 5,6 and 7

* fixed workbook not being updated.

* first try

* first checkin after changing modules to send output out to main

* final changes.

* updated modules

* fixing minor issues

* bicep revamp

* fixed LoggingAndMonitoring

* updates

* fixing gr-common

* continuous improvement

* fixed.Needs testing

* updated module 11 - fixed detection of the log analytics for activity logs

* created bicep modules per component

* move to invoke-azrestmethod, remove token params

* move to $response = invoke-azrestmethod

* fix pipeline var ref and conn name

* fix: modules.json missing spaces

* incremented module versions

* removed GraphAccessToken references

* subscription selection; zipped for testing

* fix psd1 encoding, update-moduleversion script

* add job status check

* correct subscriptionid refs

* module reference

* cleanup

* fix missing } in -force check

* retry cleanup

* wait to delete core resources

* fix: missing LAW should not throw error

* all

* updated 8 and 9 modules

* updated zips

* updated all modules

* updated pbmm policy module

* pipeline improvements

* regex support blob source

* setup.ps1 alternatePSModulesURL param

* pipeline:make pre-clean default

* correct cleanup KV reference

* fixed issues

* more changes

* updated zips

* updated modules

* fixed module issues

* zips

* fix loose character

* fixed lost characters

* fixed issue with zip.

* LogAnalytics into Main-and Comments gaps

* seems to work

* modules versions and move function to common

* minor update

* pre-integrating with azure main

* remove referenes to add-logentry2

* remove add-logentry2 function

* wip; invoke-graphquery

* added Invoke-GraphQuery function, update refs

* remove extra sig block

* param regex

* call correct azrestmethod command, version

* call correct azrestmethod command, version [skip_clean]

* pipeline install dotnet for esrp [skip_clean]

* pipeline install dotnet for esrp [skip_clean]

* pipeline install dotnet for esrp [skip_clean]

* dotnet install path [skip_clean]

* dotnet install path [skip_clean]

* update to ersp v2 [skip_ci]

* update to ersp v2

* skip_clean logic [skip_clean]

* update module versions

Co-authored-by: Jose Fehse <jose@fehse.ca>
Co-authored-by: Islam Gomaa <igomaa@users.noreply.github.com>

* Documentation: release creation processs (#234)

* added create release docs

* signing branch name

* minor fix

* initial change

* changed wb file to be in a file

* minor fixes

* updated workbook

* Re-wrote allowed location module

* updated zips

* update local zip

* fixed workbook

* workbook format issue

* LAW functions and workbook updates

* law function fix

Co-authored-by: Matthew Bratschun <25390936+mbrat2005@users.noreply.github.com>
Co-authored-by: PatLac04 <patrice.lacroix@outlook.com>
Co-authored-by: MathesonSho <111992749+MathesonSho@users.noreply.github.com>
Co-authored-by: Islam Gomaa <igomaa@users.noreply.github.com>
Co-authored-by: Matthew Bratschun <matthew.bratschun@microsoft.com>
2023-01-24 13:20:37 -05:00
Matthew Bratschun 3553ae8c8a
v1.0.8 Release (#261)
* updated versions

* signed v1.0.8
2023-01-06 16:11:41 -05:00
PatLac04 0ac8130ac5
Fix bg account licensing (#259)
* changed logic for AAD_P2 licence check

* changed logic to look for AAD_PREMIUM_P2 in serviceplans

Co-authored-by: Matthew Bratschun <25390936+mbrat2005@users.noreply.github.com>
2023-01-06 05:21:32 -07:00
PatLac04 30c3885b98
Bg account fix (#249)
* Fix issue in Get-BreakGlassAccounts

* added zip files in psmodules
2023-01-04 17:10:12 -05:00
Matthew Bratschun efdd702876
V1.0.7 Signed (#238)
* docs for new setup process

* main setup version

* deployment pipeline no setup.ps1

* deployment pipeline no setup.ps1

* deployment pipeline no setup.ps1

* target mgmt group id

* Revert "target mgmt group id"

This reverts commit 1ba832e3a6.

* v1.0.7-signed
2022-11-30 14:14:31 -05:00
Matthew Bratschun 389cd2a8db
Fix update to PS modules; include new zipped and signed modules (#236)
* fix update process to include PS modules

* zipped and signed modules
2022-11-17 13:33:32 -07:00
Jose Fehse b95be1045b
Removing Log Analytics writes from modules and other minor fixes. (#230)
* Fixed issue #32

* Mitigation for modules 8 and 9 - initial draft

* Added Mititgation and Report Time to modules 8,9 and 11

* Added Report Time to all modules.

* updated main with ReportTIme

* missed a file

* Updated create-manifest script.

* fixed az.accounts module version

* fixed automatic Subnet exclusion issue and added CBS subscription exclusion to module 8

* Fixed PBMM Module, added Report Time and CBS subscriptione exclusion to module 5-9 and 11.

* New zips

* Fixed minor parameter issues with main.ps1

* Fixed issues

* Fixed issues

* Added proper permissions to MI for tenant diagnostics

* merging from main

* Adding Mititgation Commands/Instructions

* Adding Mitigation commands

* Fixed module eleven

* Fixing zip issue

* Fixed documentationa and added check on parameter format

* Set up CI with Azure Pipelines

[skip ci]

* Added comment regarding permissions to documention.

* Completed Module approach changes

* minor fixes.

* added module parameters and updated doc.

* update

* setup update

* added tags.json

* Documentation updates

* Added tags documentation

* Fixed module 10

* Added zip for fixed module 10

* Complete re-writing of modules 5,6 and 7

* Removed unnecessary read me files for modules 6 and 7

* minor fixes in main and update.ps1

* minor fixes in 5,6,7

* Change datetime format.

* fixed typo in bicep file

* Added ItemName to Module 10

* Updated workbook

* Added new CodeOwner

* Updated query time to 24 hours.

* minor fix to module 10

* trying to merge...

* Fixing AzAccounts issue

* Fixed query for workbook

* fixing workbook

* Updated PBMMM and DiTransit zips

* new zips for test

* Updated localization zip

* Added module 3

* Fixed zips for 5,6 and 7

* fixed workbook not being updated.

* first try

* first checkin after changing modules to send output out to main

* final changes.

* updated modules

* fixing minor issues

* bicep revamp

* fixed LoggingAndMonitoring

* updates

* fixing gr-common

* continuous improvement

* fixed.Needs testing

* updated module 11 - fixed detection of the log analytics for activity logs

* created bicep modules per component

* move to invoke-azrestmethod, remove token params

* move to $response = invoke-azrestmethod

* fix pipeline var ref and conn name

* fix: modules.json missing spaces

* incremented module versions

* removed GraphAccessToken references

* subscription selection; zipped for testing

* fix psd1 encoding, update-moduleversion script

* add job status check

* correct subscriptionid refs

* module reference

* cleanup

* fix missing } in -force check

* retry cleanup

* wait to delete core resources

* fix: missing LAW should not throw error

* all

* updated 8 and 9 modules

* updated zips

* updated all modules

* updated pbmm policy module

* pipeline improvements

* regex support blob source

* setup.ps1 alternatePSModulesURL param

* pipeline:make pre-clean default

* correct cleanup KV reference

* fixed issues

* more changes

* updated zips

* updated modules

* fixed module issues

* zips

* fix loose character

* fixed lost characters

* fixed issue with zip.

* LogAnalytics into Main-and Comments gaps

* seems to work

* modules versions and move function to common

* minor update

* pre-integrating with azure main

* Minor fix

Co-authored-by: Matthew Bratschun <matthew.bratschun@microsoft.com>
2022-11-15 10:52:59 -07:00
Matthew Bratschun 87513d343d
Move to Invoke-AzRestMethod for Rest Calls (#223)
* move to invoke-azrestmethod, remove token params

* move to $response = invoke-azrestmethod

* fix pipeline var ref and conn name

* fix: modules.json missing spaces

* incremented module versions

* removed GraphAccessToken references

* subscription selection; zipped for testing

* fix psd1 encoding, update-moduleversion script

* add job status check

* correct subscriptionid refs

* module reference

* cleanup

* fix missing } in -force check

* retry cleanup

* wait to delete core resources

* fix: missing LAW should not throw error

* pipeline improvements

* regex support blob source

* setup.ps1 alternatePSModulesURL param

* pipeline:make pre-clean default

* correct cleanup KV reference
2022-11-07 10:30:44 -05:00
Matthew Bratschun 295cc471c1
V1.0.6 Signing (#220)
* fix signing pipeline references

* corrections to setup module for pipeline exec

* tags.json update

* signed-v1.0.6

* corrected summary format; signing pipeline output

* gr 5: pbmm: mandatory params, error handing

* pipeline skipCleanup param

* pipeline skipCleanup param

* v1.0.6 resigned

* gr 5: pbmm: simplify, remove new-customobject func

* gr 5: pbmm: simplify, remove new-customobject func

* pipeline skipCleanup variable

* type consistency in $c

* pipeline parameters

* pipeline parameters

* v1.0.6.1-zipped

* zipped module staging

* zipped module staging

* skipCleanup evaluation

* alternate uri blob support

* skipCleanup evaluation

* alternate uri blob support

* v1.0.6.2-signed

* remove new-customobject function and call

* custom pipeline resource names

* custom pipelie name keyvault

* v1.0.6-final

* fix: subscription selection output

* fix: subscription selection output - sort

* fix: pipeline skip logic

* v1.0.6-fix-sub-selection

Co-authored-by: Jose Fehse <jose@fehse.ca>
2022-11-02 15:43:04 -04:00
PatLac04 a95f94a264
fixed Gr#2 when there are no guest account in subs (#218)
* fixed Gr#2 when there are no guest account in subs

* Update Check-ExternalAccounts.psm1

Co-authored-by: Matthew Bratschun <25390936+mbrat2005@users.noreply.github.com>
2022-10-28 15:23:20 -06:00
Jose Fehse 24ad953dce
Fixmodule11diagnosticsdetection issue173 (#200)
* fixed.Needs testing

* updated module 11 - fixed detection of the log analytics for activity logs
2022-10-25 10:50:14 -04:00
Jose Fehse c51d79b901
Fix Subscriptions that don't have vnets being considered not compliant. (#196)
* ready to test updated module 8 and 9 logic (empty vnets)

* fixed zipping of localization module

* minor fixes

* minor touches to display items

* minor change
2022-10-20 09:50:41 -04:00
Jose Fehse 663c4791c3
Fix for modules 5,6 and 7 zips (#183)
* Fixed issue #32

* Mitigation for modules 8 and 9 - initial draft

* Added Mititgation and Report Time to modules 8,9 and 11

* Added Report Time to all modules.

* updated main with ReportTIme

* missed a file

* Updated create-manifest script.

* fixed az.accounts module version

* fixed automatic Subnet exclusion issue and added CBS subscription exclusion to module 8

* Fixed PBMM Module, added Report Time and CBS subscriptione exclusion to module 5-9 and 11.

* New zips

* Fixed minor parameter issues with main.ps1

* Fixed issues

* Fixed issues

* Added proper permissions to MI for tenant diagnostics

* merging from main

* Adding Mititgation Commands/Instructions

* Adding Mitigation commands

* Fixed module eleven

* Fixing zip issue

* Fixed documentationa and added check on parameter format

* Set up CI with Azure Pipelines

[skip ci]

* Added comment regarding permissions to documention.

* Completed Module approach changes

* minor fixes.

* added module parameters and updated doc.

* update

* setup update

* added tags.json

* Documentation updates

* Added tags documentation

* Fixed module 10

* Added zip for fixed module 10

* Complete re-writing of modules 5,6 and 7

* Removed unnecessary read me files for modules 6 and 7

* minor fixes in main and update.ps1

* minor fixes in 5,6,7

* Change datetime format.

* fixed typo in bicep file

* Added ItemName to Module 10

* Updated workbook

* Added new CodeOwner

* Updated query time to 24 hours.

* minor fix to module 10

* trying to merge...

* Fixing AzAccounts issue

* Fixed query for workbook

* fixing workbook

* Updated PBMMM and DiTransit zips

* new zips for test

* Updated localization zip

* Added module 3

* Fixed zips for 5,6 and 7
2022-10-07 17:44:43 -04:00
Matthew Bratschun c0fb44bcb1
v1.0.5.2 - Fix Gr-ComplianceCheck Zip (#175)
* Update ado-signing-pipeline.yml for Azure Pipelines

* Update ado-signing-pipeline.yml for Azure Pipelines

* pipeline: switch zip to -force from -update

* update GR-ComplianceChecks generatedBy

* re-zipped v1.0.5.2
2022-10-04 11:04:53 -04:00
Matthew Bratschun 0412750f15
Re-signed v1.0.5 (#174)
* Update ado-signing-pipeline.yml for Azure Pipelines

* Update ado-signing-pipeline.yml for Azure Pipelines

* Revert "V1.05 (#170)"

This reverts commit 681e082619.

* added signing pipeline checks

* added signing pipeline checks

* ado move to windows runner

* ado move to windows runner

* re-signed 1.0.5 files

* ipmo test

* increment logging and monitoring module version

* ipmo test outoyt

* ipmo test name, ignore CodeSignSummary

* ipmo test name, ignore CodeSignSummary

* ipmo test name, ignore CodeSignSummary

* ipmo test output

* ipmo test output

* ipmo test output

* ipmo test output

* ipmo output
2022-10-03 18:35:33 -04:00
Islam Gomaa 681e082619
V1.05 (#170)
* Change SubName to ID

* Created a detailed Design Doc

* add H1 Title

* Fixed Docs titles

* Add DDoS disclamer

* Increased Module version

* API attempt

* clean up Main

* release V1.05

Co-authored-by: Matthew Bratschun <25390936+mbrat2005@users.noreply.github.com>
2022-09-30 10:44:52 -04:00
Jose Fehse d2f1f139ab
Fix module11logsdetection (#164)
* Fixed issue #32

* Mitigation for modules 8 and 9 - initial draft

* Added Mititgation and Report Time to modules 8,9 and 11

* Added Report Time to all modules.

* updated main with ReportTIme

* missed a file

* Updated create-manifest script.

* fixed az.accounts module version

* fixed automatic Subnet exclusion issue and added CBS subscription exclusion to module 8

* Fixed PBMM Module, added Report Time and CBS subscriptione exclusion to module 5-9 and 11.

* New zips

* Fixed minor parameter issues with main.ps1

* Fixed issues

* Fixed issues

* Added proper permissions to MI for tenant diagnostics

* merging from main

* Adding Mititgation Commands/Instructions

* Adding Mitigation commands

* Fixed module eleven

* Fixing zip issue

* Fixed documentationa and added check on parameter format

* Set up CI with Azure Pipelines

[skip ci]

* Added comment regarding permissions to documention.

* Completed Module approach changes

* minor fixes.

* added module parameters and updated doc.

* update

* setup update

* added tags.json

* Documentation updates

* Added tags documentation

* Fixed module 10

* Added zip for fixed module 10

* Complete re-writing of modules 5,6 and 7

* Removed unnecessary read me files for modules 6 and 7

* minor fixes in main and update.ps1

* minor fixes in 5,6,7

* Change datetime format.

* fixed typo in bicep file

* Added ItemName to Module 10

* Updated workbook

* Added new CodeOwner

* Updated query time to 24 hours.

* minor fix to module 10

* trying to merge...

* Fixing AzAccounts issue

* Fixed query for workbook

* fixing workbook

* Updated PBMMM and DiTransit zips

* new zips for test

* Updated localization zip

* Added module 3

* fixedAAD log detection issue

* fixed zip
2022-09-28 10:24:55 -04:00
Jose Fehse 3dc1c3faf3
Module8 logic change (#152)
* Fixed issue #32

* Mitigation for modules 8 and 9 - initial draft

* Added Mititgation and Report Time to modules 8,9 and 11

* Added Report Time to all modules.

* updated main with ReportTIme

* missed a file

* Updated create-manifest script.

* fixed az.accounts module version

* fixed automatic Subnet exclusion issue and added CBS subscription exclusion to module 8

* Fixed PBMM Module, added Report Time and CBS subscriptione exclusion to module 5-9 and 11.

* New zips

* Fixed minor parameter issues with main.ps1

* Fixed issues

* Fixed issues

* Added proper permissions to MI for tenant diagnostics

* merging from main

* Adding Mititgation Commands/Instructions

* Adding Mitigation commands

* Fixed module eleven

* Fixing zip issue

* Fixed documentationa and added check on parameter format

* Set up CI with Azure Pipelines

[skip ci]

* Added comment regarding permissions to documention.

* Completed Module approach changes

* minor fixes.

* added module parameters and updated doc.

* update

* setup update

* added tags.json

* Documentation updates

* Added tags documentation

* Fixed module 10

* Added zip for fixed module 10

* Complete re-writing of modules 5,6 and 7

* Removed unnecessary read me files for modules 6 and 7

* minor fixes in main and update.ps1

* minor fixes in 5,6,7

* Change datetime format.

* fixed typo in bicep file

* Added ItemName to Module 10

* Updated workbook

* Added new CodeOwner

* Updated query time to 24 hours.

* minor fix to module 10

* trying to merge...

* Fixing AzAccounts issue

* Fixed query for workbook

* fixing workbook

* Updated PBMMM and DiTransit zips

* new zips for test

* Updated localization zip

* Added module 3

* changed udr detection logic

* minor fix
2022-09-22 13:01:35 -04:00
Jose Fehse d2822f0fa1
Module3 (#149)
* Fixed issue #32

* Mitigation for modules 8 and 9 - initial draft

* Added Mititgation and Report Time to modules 8,9 and 11

* Added Report Time to all modules.

* updated main with ReportTIme

* missed a file

* Updated create-manifest script.

* fixed az.accounts module version

* fixed automatic Subnet exclusion issue and added CBS subscription exclusion to module 8

* Fixed PBMM Module, added Report Time and CBS subscriptione exclusion to module 5-9 and 11.

* New zips

* Fixed minor parameter issues with main.ps1

* Fixed issues

* Fixed issues

* Added proper permissions to MI for tenant diagnostics

* merging from main

* Adding Mititgation Commands/Instructions

* Adding Mitigation commands

* Fixed module eleven

* Fixing zip issue

* Fixed documentationa and added check on parameter format

* Set up CI with Azure Pipelines

[skip ci]

* Added comment regarding permissions to documention.

* Completed Module approach changes

* minor fixes.

* added module parameters and updated doc.

* update

* setup update

* added tags.json

* Documentation updates

* Added tags documentation

* Fixed module 10

* Added zip for fixed module 10

* Complete re-writing of modules 5,6 and 7

* Removed unnecessary read me files for modules 6 and 7

* minor fixes in main and update.ps1

* minor fixes in 5,6,7

* Change datetime format.

* fixed typo in bicep file

* Added ItemName to Module 10

* Updated workbook

* Added new CodeOwner

* Updated query time to 24 hours.

* minor fix to module 10

* trying to merge...

* Fixing AzAccounts issue

* Fixed query for workbook

* fixing workbook

* Updated PBMMM and DiTransit zips

* new zips for test

* Updated localization zip

* Added module 3

* zipped language pack

* modules.json fix

* Added module 3
2022-09-22 11:03:00 -04:00
PatLac04 2f872352e6
Check network diagram (#142)
* Rename GR-Utilities to GR-Common

* Add check for Network Diagram
2022-09-20 11:38:32 -04:00
Jose Fehse c2f384f9ec
Fixed localization module (#135) 2022-09-16 06:50:38 -04:00
Matthew Bratschun 2854e93b70
V1.0.4 Signed and Zipped (#134)
* Update ado-signing-pipeline.yml for Azure Pipelines

* Update ado-signing-pipeline.yml for Azure Pipelines

* v1.0.4
2022-09-15 20:29:44 -04:00
PatLac04 ac3cd01c3d
Gr1 gr2 fixes (#130)
* fixes of modules 1 and 2

* changed CBSsubscriptionId to CBSsubscriptionName

* changed CBSsubscriptionId to Name

* one more CBSsubscriptionId to change

* fixed url to csv file
2022-09-15 13:41:43 -04:00
Jose Fehse 5eef5a36d1
Itsgsolution (#126)
* Fixed issue #32

* Mitigation for modules 8 and 9 - initial draft

* Added Mititgation and Report Time to modules 8,9 and 11

* Added Report Time to all modules.

* updated main with ReportTIme

* missed a file

* Updated create-manifest script.

* fixed az.accounts module version

* fixed automatic Subnet exclusion issue and added CBS subscription exclusion to module 8

* Fixed PBMM Module, added Report Time and CBS subscriptione exclusion to module 5-9 and 11.

* New zips

* Fixed minor parameter issues with main.ps1

* Fixed issues

* Fixed issues

* Added proper permissions to MI for tenant diagnostics

* merging from main

* Adding Mititgation Commands/Instructions

* Adding Mitigation commands

* Fixed module eleven

* Fixing zip issue

* Fixed documentationa and added check on parameter format

* Set up CI with Azure Pipelines

[skip ci]

* Added comment regarding permissions to documention.

* Completed Module approach changes

* minor fixes.

* added module parameters and updated doc.

* update

* setup update

* added tags.json

* Documentation updates

* Added tags documentation

* Fixed module 10

* Added zip for fixed module 10

* Complete re-writing of modules 5,6 and 7

* Removed unnecessary read me files for modules 6 and 7

* minor fixes in main and update.ps1

* minor fixes in 5,6,7

* Change datetime format.

* fixed typo in bicep file

* Added ItemName to Module 10

* Updated workbook

* Added new CodeOwner

* Updated query time to 24 hours.

* minor fix to module 10

* trying to merge...

* Fixing AzAccounts issue

* Fixed query for workbook

* fixing workbook

* Updated PBMMM and DiTransit zips

* new zips for test

* Updated localization zip

* added itsg file

* new module for itsg data

* added module for itsgcontrols

* istg

* added header config

* added itsg controls to all modules

* added itsg controls to all modules

* minor change

* added items, fixed setup

* fixed multiple items

* changes to workbook

* updated schedule to every 6 hours. Updated docs

* added subscriptionId parameter to setup.ps1

* added law functions and update workbook

* updated workbook (fix)

* updated bicep with law functions and new workbook

* updated setup to remove saved searches when updating

* CBS Subscription ID in config.json fixed

* updated zips

* renamed debug parameter and updated zip

* re-added initial parameters to config.json

* Added Guest users option to workbook.

* minor fix

* Updated URLs to point to main repo
2022-09-14 14:04:07 -04:00
Jose Fehse b22db5022e
Update solution (#112)
* Fixed issue #32

* Mitigation for modules 8 and 9 - initial draft

* Added Mititgation and Report Time to modules 8,9 and 11

* Added Report Time to all modules.

* updated main with ReportTIme

* missed a file

* Updated create-manifest script.

* fixed az.accounts module version

* fixed automatic Subnet exclusion issue and added CBS subscription exclusion to module 8

* Fixed PBMM Module, added Report Time and CBS subscriptione exclusion to module 5-9 and 11.

* New zips

* Fixed minor parameter issues with main.ps1

* Fixed issues

* Fixed issues

* Added proper permissions to MI for tenant diagnostics

* merging from main

* Adding Mititgation Commands/Instructions

* Adding Mitigation commands

* Fixed module eleven

* Fixing zip issue

* Fixed documentationa and added check on parameter format

* Set up CI with Azure Pipelines

[skip ci]

* Added comment regarding permissions to documention.

* Completed Module approach changes

* minor fixes.

* added module parameters and updated doc.

* update

* setup update

* added tags.json

* Documentation updates

* Added tags documentation

* Fixed module 10

* Added zip for fixed module 10

* Complete re-writing of modules 5,6 and 7

* Removed unnecessary read me files for modules 6 and 7

* minor fixes in main and update.ps1

* minor fixes in 5,6,7

* Change datetime format.

* fixed typo in bicep file

* Added ItemName to Module 10

* Updated workbook

* Added new CodeOwner

* Updated query time to 24 hours.

* minor fix to module 10

* trying to merge...

* Fixing AzAccounts issue

* Fixed query for workbook

* fixing workbook

* Updated PBMMM and DiTransit zips

* new zips for test

* Updated localization zip

* updatechanges

* commit before push. Will delete update.ps1

* updated modules.json

* updated workbook

* updated utilities module zip

* fixed issues with zips for 5, 6 and 7.

* fixed gr-utilities

* Added variable for tenantdomain

* updated setup to fix issue with tenant

* fixed setup update issue

* fixed issue with GR12 workbook

* fixed gr12 issue

* changed CBSSubscriptionName to CBSSubscriptionId

* CBS Subscription ID fixed

* issue with keyvault and encrypted variable fixed (workaround).
2022-08-25 16:00:35 -04:00