added private dns zone and LA workspace policy

This commit is contained in:
Marvin Buss 2020-12-14 10:51:16 +01:00
Родитель 2665b1bb35
Коммит eaa8e3743c
2 изменённых файлов: 82 добавлений и 0 удалений

Просмотреть файл

@ -0,0 +1,41 @@
{
"$schema": "https://schema.management.azure.com/schemas/2019-04-01/deploymentParameters.json#",
"contentVersion": "1.0.0.0",
"parameters": {
"policyName": {
"value": "Deny-LogAnalytics"
},
"policyDescription": {
"value": "Restrict deployment of log analytics workspace."
},
"policyMode": {
"value": "All"
},
"policyParameters": {
"value": {}
},
"policyDefinition": {
"value": {
"if": {
"allOf": [
{
"field": "type",
"equals": "Microsoft.OperationalInsights/workspaces"
}
]
},
"then": {
"effect": "Deny"
}
}
},
"policyMetadata": {
"value": {
"version": "1.0.0",
"category": "Log Analytics",
"preview": false,
"deprecated": false
}
}
}
}

Просмотреть файл

@ -0,0 +1,41 @@
{
"$schema": "https://schema.management.azure.com/schemas/2019-04-01/deploymentParameters.json#",
"contentVersion": "1.0.0.0",
"parameters": {
"policyName": {
"value": "Deny-PrivateDnsZones"
},
"policyDescription": {
"value": "Restrict deployment of private dns zones."
},
"policyMode": {
"value": "All"
},
"policyParameters": {
"value": {}
},
"policyDefinition": {
"value": {
"if": {
"allOf": [
{
"field": "type",
"equals": "Microsoft.Network/privateDnsZones"
}
]
},
"then": {
"effect": "Deny"
}
}
},
"policyMetadata": {
"value": {
"version": "1.0.0",
"category": "Private DNS Zones",
"preview": false,
"deprecated": false
}
}
}
}