Граф коммитов

70 Коммитов

Автор SHA1 Сообщение Дата
msftkenneth 567dc8eeb2
Add sourceAddressPrefixes to the Resource section (#164)
It is probably missed to add the suggested line to cater multiple values in array form for the source address prefixes.
2020-08-18 16:21:43 -07:00
jvalley19 3ba087d6a1
Final Pull Request (#170)
* fixed conflict merge

* ee

* bnm

* yh

* vv

* sd

* bn

* xx

* vb

* tt

* ss

* zz

* remove sub ids

* aa

* updates

* ff

* updates

* tt

* updates

* mm

* rr

* Added info Azure cli to remove legal hold & other misc updates

* Fix typos

* Moved env variables for toolkit & subscription in the code

* ss

* kk

* Adding Az.Accounts to dockerfile

* cc

* ii

* ll

* yy

* vv

* cc

* ee

* Added all azure regions to AzureBastion module

* nn

* gg

* tt

* dd

* Adding install module in the code itself

* jk

* Added condition to connect to azure & install modules for dev ops

* qaz

* wsx

* bb

* Commented env variables in debug

* ff

* HUB vnet module

* changed MSVDI to connect to shrd svcs hub

* dummy values for config files

* changed para for msvdi with shrd svcs

* do not need to lowercase regions so commented out

* added variables to file so don't need to input

* new prereq script. Not necessary to run

* readme for shared services

* updated readme

* Update

* edc

* Topological path for DevOps pipeline

* test

* Update

* Running individual modules

* Updates

* updated comments

* new modules

* Create dockflow.yml

* Updates to SharedServices & MS-VDI readme

* qq

* Added more info on password restrictions

* Update

* 56

* 985

* 12

* 67

* 45

* 12

* 678

* 12

* 456

* tt

* 12

* 12

* 1q23

* 125

* 343

* 25

* 345

* 2134

* 12

* 2

* 454

* 124

* 312

* 12

* 23

* 34

* mylife

* q3

* 12

* 24

* q1234

* 696

* qw23

* q12e4

* w5

* 213

* 2198

* qw

* 255

* 89876

* 447

* 3242

* 89

* 43234

* 2342342

* q4eq3214

* 87

* 323

* 2345

* 123456

* New version of code for github action

* updates to files

* updated av set infoo

* 789234

* 234143

* 24223412342

* Teardown test

* Copied workflow from Jack's branch

* new changes

* update to readme in shrdsvcs

* new document for github actions

* 234

* adding changes to script for cleanup

* update readme

* update readme

* sdf

* 235

* 123

* 2345

* new changes to readme

* new changes to readme

* readme

* readme

* readmeupdate

* readme

* red

* read

* readme

* 1234

* readme

* 7897894

* update readme shrd svcs

* 345

* new changes to readme

* removed the cleanup and added to different script

* new change to clean up script

* Updates to shared services readme

* update

* 234

* Added passing parameters for subscription & tenant to parameters.json for shared services

* update for networkwatcher

* removed statement in av sets

* Test GH Actions

* Test GH Actions

* Update

* Update

* Cleared values

* Update

* changes to dockerfile version.

* Update

* Update readme

* Update README.md

* Updates to docs - added SPN info

* All documentation updates - removed personal GH repo reference & referencing shared services deployment in quickstart

* Added release notes

* Update

* no change

* added password randomization

* no change

* added sentinel changes

* formatting

* sentinel change and secret changes to kv

* secret changes to kv

* sentinel changes

* dublicate code correction... No code change

* added sentinel env var

* Test Gov Deployment

* updated SS readme

* naming convention changes

* example of inputfile for master script

* updated readme

* updated docker yml fiile

* master orchestration script

* new github actions doc

* master orchestration documentation

* new env document

* updated MS-VDI parameters with ctx

* updated with ps7 requirements

* new windows virtual desktop environment

* added new artifact location parameter

* added spoke env

* doc

* new Vnet peering module

* application group module

* host pool module

* added output for script

* doc edit

* new images for docs

* updated doc

* disable resources

* docedit

* doc edit

* shared services as a spoke

* doc edit

* docedit

* doc updated

* updated for vms

Co-authored-by: RKSelvi <42325057+RKSelvi@users.noreply.github.com>
Co-authored-by: Selvi Kalaiselvi <selvi.kalaiselvi@appliedis.com>
Co-authored-by: Steve Downs <33630027+SteveDatAzureGov@users.noreply.github.com>
2020-06-17 13:19:50 -04:00
RKSelvi 352150b580
Update GH actions to deploy shared services & tear down (#169)
* 5

* 6

* 7

* aa

* jj

* Update

* ll

* ll

* mm

* vv

* cv

* df

* Added logic for the NSG flow logs com vs gov

* changes to merge conflicts

* fixed conflict merge

* ee

* bnm

* yh

* vv

* sd

* bn

* xx

* vb

* tt

* ss

* zz

* remove sub ids

* aa

* updates

* ff

* updates

* tt

* updates

* mm

* rr

* Added info Azure cli to remove legal hold & other misc updates

* Fix typos

* Moved env variables for toolkit & subscription in the code

* ss

* kk

* Adding Az.Accounts to dockerfile

* cc

* ii

* ll

* yy

* vv

* cc

* ee

* Added all azure regions to AzureBastion module

* nn

* gg

* tt

* dd

* Adding install module in the code itself

* jk

* Added condition to connect to azure & install modules for dev ops

* qaz

* wsx

* bb

* Commented env variables in debug

* ff

* HUB vnet module

* changed MSVDI to connect to shrd svcs hub

* dummy values for config files

* changed para for msvdi with shrd svcs

* do not need to lowercase regions so commented out

* added variables to file so don't need to input

* new prereq script. Not necessary to run

* readme for shared services

* updated readme

* Update

* edc

* Topological path for DevOps pipeline

* test

* Update

* Running individual modules

* Updates

* updated comments

* new modules

* Create dockflow.yml

* Updates to SharedServices & MS-VDI readme

* qq

* Added more info on password restrictions

* Update

* 56

* 985

* 12

* 67

* 45

* 12

* 678

* 12

* 456

* tt

* 12

* 12

* 1q23

* 125

* 343

* 25

* 345

* 2134

* 12

* 2

* 454

* 124

* 312

* 12

* 23

* 34

* mylife

* q3

* 12

* 24

* q1234

* 696

* qw23

* q12e4

* w5

* 213

* 2198

* qw

* 255

* 89876

* 447

* 3242

* 89

* 43234

* 2342342

* q4eq3214

* 87

* 323

* 2345

* 123456

* New version of code for github action

* updates to files

* updated av set infoo

* 789234

* 234143

* 24223412342

* Teardown test

* Copied workflow from Jack's branch

* new changes

* update to readme in shrdsvcs

* new document for github actions

* 234

* adding changes to script for cleanup

* update readme

* update readme

* sdf

* 235

* 123

* 2345

* new changes to readme

* new changes to readme

* readme

* readme

* readmeupdate

* readme

* red

* read

* readme

* 1234

* readme

* 7897894

* update readme shrd svcs

* 345

* new changes to readme

* removed the cleanup and added to different script

* new change to clean up script

* Updates to shared services readme

* update

* 234

* Added passing parameters for subscription & tenant to parameters.json for shared services

* update for networkwatcher

* removed statement in av sets

* Test GH Actions

* Test GH Actions

* Update

* Update

* Cleared values

* Update

* changes to dockerfile version.

* Update

* Update readme

* Update README.md

* Updates to docs - added SPN info

* All documentation updates - removed personal GH repo reference & referencing shared services deployment in quickstart

* Added release notes

* Update

* Merge

* Readding docs updates after merge conflict

* Update GH actions workflow file

* Update

* Removed duplicated folder

* Clean up

* Remove ms-vdi for GH action wf & added teardown

* no change

* added password randomization

* no change

* added sentinel changes

* formatting

* sentinel change and secret changes to kv

* secret changes to kv

* sentinel changes

* dublicate code correction... No code change

* added sentinel env var

* Test Gov Deployment

* updated SS readme

* Merge changes for Azure Sentinel addition & auto-generate password

* naming convention changes

* Test

Co-authored-by: jvalley19 <52843322+jvalley19@users.noreply.github.com>
2020-06-17 12:45:37 -04:00
RKSelvi 8b8ecd33ef
Modified Shared Services environment & added new MS-VDI environment - In support for this new environment changes have been made to support all Azure environments (#163)
* Update dockerimage.yml

* Removed build.yml file

* Run toolkit container

* update

* fix

* mm

* bb

* nn

* qq

* ww

* ee

* rr

* pp

* aa

* Added storageblobURL to resources

* Added StorageblobURL to resources and env variable

* added storageblobURL

* added storageblobURL

* Commented out the Azure Provider feature Bastion

* added condition for resources gov vs com

* changed old GUID for Az Policy

* New change for gov. But need to adjust for com

* changed linux agent version number

* 1

* 2

* 3

* 4

* added logic for the ethernet

* added the ADDS module back after fixing script

* Updated modules IIS, SQLServerAlwaysOn,VM Scale sets for storagebloburl

* 5

* 6

* 7

* aa

* jj

* Update

* ll

* ll

* mm

* vv

* cv

* df

* Added logic for the NSG flow logs com vs gov

* changes to merge conflicts

* fixed conflict merge

* ee

* bnm

* yh

* vv

* sd

* bn

* xx

* vb

* tt

* ss

* zz

* remove sub ids

* aa

* updates

* ff

* updates

* tt

* updates

* mm

* rr

* Added info Azure cli to remove legal hold & other misc updates

* Fix typos

* Moved env variables for toolkit & subscription in the code

* ss

* kk

* Adding Az.Accounts to dockerfile

* cc

* ii

* ll

* yy

* vv

* cc

* ee

* Added all azure regions to AzureBastion module

* nn

* gg

* tt

* dd

* Adding install module in the code itself

* jk

* Added condition to connect to azure & install modules for dev ops

* qaz

* wsx

* bb

* Commented env variables in debug

* ff

* HUB vnet module

* changed MSVDI to connect to shrd svcs hub

* dummy values for config files

* changed para for msvdi with shrd svcs

* do not need to lowercase regions so commented out

* added variables to file so don't need to input

* new prereq script. Not necessary to run

* readme for shared services

* updated readme

* Update

* edc

* Topological path for DevOps pipeline

* test

* Update

* Running individual modules

* Updates

* updated comments

* new modules

* Create dockflow.yml

* Updates to SharedServices & MS-VDI readme

* qq

* Added more info on password restrictions

* Update

* 56

* 985

* 12

* 67

* 45

* 12

* 678

* 12

* 456

* tt

* 12

* 12

* 1q23

* 125

* 343

* 25

* 345

* 2134

* 12

* 2

* 454

* 124

* 312

* 12

* 23

* 34

* mylife

* q3

* 12

* 24

* q1234

* 696

* qw23

* q12e4

* w5

* 213

* 2198

* qw

* 255

* 89876

* 447

* 3242

* 89

* 43234

* 2342342

* q4eq3214

* 87

* 323

* 2345

* 123456

* New version of code for github action

* updates to files

* updated av set infoo

* 789234

* 234143

* 24223412342

* Teardown test

* Copied workflow from Jack's branch

* new changes

* update to readme in shrdsvcs

* new document for github actions

* 234

* adding changes to script for cleanup

* update readme

* update readme

* sdf

* 235

* 123

* 2345

* new changes to readme

* new changes to readme

* readme

* readme

* readmeupdate

* readme

* red

* read

* readme

* 1234

* readme

* 7897894

* update readme shrd svcs

* 345

* new changes to readme

* removed the cleanup and added to different script

* new change to clean up script

* Updates to shared services readme

* update

* 234

* Added passing parameters for subscription & tenant to parameters.json for shared services

* update for networkwatcher

* removed statement in av sets

* Test GH Actions

* Test GH Actions

* Update

* Update

* Cleared values

* Update

* changes to dockerfile version.

* Update

* Update readme

* Update README.md

* Updates to docs - added SPN info

Co-authored-by: jvalley19 <52843322+jvalley19@users.noreply.github.com>
2020-04-30 09:37:04 -04:00
Tony Box 0fe1cf717b fix tag values to provide an empty object (#154) 2019-11-06 16:03:55 -08:00
dhillonsh c3eb0c4e38 Remove duplicate parameter (#150)
* Remove duplicate parameter

* Removed duplicate parameter

* Fixing formatting

* Formatting

* Update readme.md

* Fixing invalid default value
2019-10-17 10:18:53 -07:00
dhillonsh 4297877ac4 BugFix Kusto Cluster docs (#149)
* Fix notes

* Fix notes

* Fix notes

* Update readme.md

* Formatting

* Removing trailing comma
2019-10-10 00:30:10 -07:00
dhillonsh 49866edae6 Kusto Database Module (#148)
* adding Kusto Database module

* formatting
2019-10-10 00:28:16 -07:00
dhillonsh 34104313b8 Kusto Cluster Module (#145)
* adding module

* Update readme.md

* Update readme.md

* Update readme.md

* Updating tests
2019-10-08 17:55:59 -07:00
dhillonsh e0d9facf93 Fixed defaultValue for secretsObject (#142)
* Fixed defaultValue for secretsObject

* Update deploy.json
2019-10-04 14:04:32 -07:00
Thomas Aure 082d84480d Fixed the documentation. (#143) 2019-10-04 14:03:28 -07:00
Christopher Bennage f0b3944d89
Module folder cleanup (#128)
* revmoing version from orchestration files

* removed logic for module subpath

* removed examples using "2.0" folder

* removing the '2.0' folder from modules
2019-09-24 15:35:33 -07:00
Christopher Bennage 8c77dc75fa resolving conflicts 2019-09-24 14:25:23 -07:00
dwas01 9c1ae9de5e Module updates 2019-09-24 14:44:51 +12:00
dwas01 5dc36adee7 Module Updates tags removing akv scripts 2019-09-23 17:58:48 +12:00
dwas01 59fec81305 application.inisights module updates 2019-09-23 17:40:31 +12:00
dwas01 51d41446f7 analysis.service module updates 2019-09-23 16:53:20 +12:00
dwas01 50b44d57eb api.managment module updates 2019-09-23 15:44:45 +12:00
Kungumaraj Nachimuthu d66ef4a76e Toolkit Config Change and Validation RG Enhancement (#134)
* Completed the initial implementation.

* Finalized the changes and tested

* Changes based on feedback from today's review

* Changes post running tested.

* Changes to optimize the code.
2019-09-19 21:49:54 -07:00
Jorge Cotillo e99b083e70 Fixed virtualMachineScaleSet default name when the parameter is empty 2019-09-12 16:42:06 -07:00
dwas01 c9300aee67 event.hub module updates
fix deploy.json
2019-09-11 04:19:19 +12:00
dwas01 5a23196b99 stream.analytics module updates
deploy.json and readme.md fixes
2019-09-11 03:20:57 +12:00
dwas01 8ad77028f0 event.hub module updates
deploy.json and readme.md fixes
2019-09-11 03:20:36 +12:00
dwas01 fd36507529 cognitive.services module updates
deploy.json and readme.md fixes
2019-09-11 03:20:17 +12:00
dwas01 582d8213c2 analysis.services module updates
deploy.json and readme.md fixes
2019-09-11 03:19:54 +12:00
dwas01 ce7ab74ec7 stream.analytics module updates 2019-09-11 02:18:27 +12:00
dwas01 9ff74cfa55 event.hub module updates 2019-09-11 01:45:20 +12:00
dwas01 00082f9472 cognitive.services module updates
fixed akv secrets and module tests scripts
2019-09-11 01:45:04 +12:00
dwas01 aa53491fb9 cognitive.service module updates
fixed deploy.json apiversion
2019-09-11 00:46:13 +12:00
dwas01 8248c2fc3e application.insights module updates
fixed output tests
2019-09-11 00:30:35 +12:00
dwas01 c2b2fd8dfc api.management module updates
fixed output tests
2019-09-11 00:30:09 +12:00
dwas01 a60a1b4855 analysis.services module updates
fixes output tests
2019-09-11 00:29:45 +12:00
dwas01 deec6cb85f cognitive.services module updates 2019-09-11 00:29:01 +12:00
Kungumaraj Nachimuthu afdebb4d06 AKS and On-Premise Archetype updates (#112)
* Changes based on feedback. First round of corrections.

* Fix added for multi-subscription deployment

* Added Debug argument for troubleshooting pipeline

* Reset the context change after storage setup

* Minor update to fix type

* Added Debug flag

* Minor update

* Update to avoid switching subscription when in validation mode

* Debugging consolidation script

* More debugging

* Debugging continued

* Debugging continued 2

* Removed extra Cmdlet that pollutes the outputs

* Logging to troubleshoot invalid cache in pipeline added

* Applied a fix for AzureDevOps Cache implementation to cache objects arrays and object

* Convert cache string to object when possible

* More logging added

* Test-Json  logic may be flawed. Debugging it.

* Debug

* Pipeline bootstrap var added

* Debugging failed module - AKS

* Merged the rootcert.ps1 and rootcert.sh

* Debugging On-Prem Archetype

* Debugging On-Prem

* Feedback based on recent changes.

* Changes based on PR feedback

* Changed based on PR feedback

* Added Debug for storage accounts

* Preserving the context after bootstrap.

* Added the missing parameter

* Initialize and Teardown of Validation Resource Group logic added

* Excluding the dependency on the SetupValidationResourceGroup job because it was removed.

* Removed orphaned dependencies

* Added missing mode parameter

* Fixed  invalid function name

* Validation Resource Group default location set

* Passing the validation resource group created based on archetype instance name

* Missing variable fixed

* Missing parameter is passed to the method

* ResourceGroupName for validation RG is reset

* Minor change to validation group name

* Minor updates

* Removed the constrain to switch subscription on deploy mode only

* Setup and Teardown testing in the same job

* Resource Group name being reset on delete

* Commented out the write-host used for debugging

* Destroy the validation resource group at the end

* Setup of validation resource group is now merged with deployment resource group setup logic.

* Typo in function name

* typo in function name fixed

* Added debug lines

* Removed the extra condition that prevented the creation of rg in validation mode

* Fix for teardown of rg

* Running SecurityCenter module in debug mode

* Fix for UpdateAzureFirewall added

* Storing outputs as objects instead of hashtables.

* Avoiding ConvertTo-Json due to serialization problem

* Fix applied for Output conversion

* Comments added.

* Cleaned up comments.

* Cleaned up based on feedback item

* Change to AzureFirewall Id to reference the output

* Fixed the incorrect token

* Running storage module in debug mode

* Empty string values need to evaluate to false

* Modified cache key retrieval logic

* Validation of resource group moved inside InvokeARMOperation method

* Minor var name fix

* Debugging UpdateAzFw module

* Teardown should also create the validation resource group

* Using different secrets group

* Updated the service conn. profile

* Updated the CreateRootCertificate module

* Pipeline will now use test var group

* OnPremises pipeline's sc updated

* Updated the path after on-premises folder name change

* Added isOutput=true to bootstrap initialize

* Updated Shared Services Pipeline yaml for testing

* Shared Services OnPrem Extension updated

* Adding Debug to Azfw for troubleshooting

* P2S root certificate generation script fixed

* Debug added for vgw

* Updated the deployment name for Shared Services without OnPremises extension for testing

* Debug added for OnPremises extension for storage account

* Debug added to all modules

* Fixed indention and Null Guid issue

* Location updated

* Debugging all modules

* Minor fix

* Removed isOutput from the PowerShell script

* Fixed Test-JsonContent

* Enabled artifacts storage account

* Reverted the changes to pipeline yaml files

* Reverted changes to pipeline yaml

* Revert the change to deployment name in Shared Services

* Reverted the artifacts storage account name

* Removed comments in Test-JsonContent

* Merging the changes from AKS & OnPremises (#121)

* Continuing Shared Services deployment

* Updated the order of execution of the components

* Updated location of the Shared Services Archetype

* Modified the code to use the location from the parameters file or module configuration and not subscription

* Removed additional logic for location of the resource group and reusing the existing location var

* Updated the parameters value being passed for Disk Encryption module

* Accounting for output of simple data types

* Using Test Var Group

* Updated the SC

* Debugging EventHub

* Changed the order of execution of AKS LandingZone in pipeline

* Reordering the modules

* AKS deployment

* Fix

* Added a new rule to the firewall

* Reverted changes before PR submission

* Removed the additional Debug flag during invocation

* Reverting the ArtifactsStorageAccount and making it disabled

* Reverting the changes to Parameters.json for OnPremises Extended version

* Reverting Artifacts Storage Account Name.

* Reverting the parameters file in Shared Service Non-Extended Version

* Added RBAC to AKS

* Merging deltas / updates to AKS-OnPrem-Feedback Branch (#129)

* Updated the pipeline to run in MS Subscription

* Fixed the name of the var group

* Updated the region.

* Minor changes as per discussion

* Added NSG flow module to the archetypes - AKS and OnPremises

* Adding the enable.flow.logs under NetworkSecurityGroups module. This will be added again after merge vnext post jcotillo/governance-stage branch merge to vnext.

* Reverted back the secret group name and service connection name

* Added the Enable NSG Flow Logs module to pipeline yaml file.

* Split the AKS into three stage deployment - included ApplyGovernance stage

* Minor updates to stage names

* Updates from today's discussion

* Corrected the DeployEnvironment Stage

* Minor update

* Added the missing switch for TearDownValidationResourceGroup

* Shared Services non extended version updated

* Updates to add diagnostic settings to EventHub

* PR finalized.
2019-09-09 08:24:03 -07:00
Jorge Cotillo c0be28c844 removed |out-null from get-azcontext to prevent null from being retrieved 2019-09-08 19:22:32 -07:00
dwas01 b20d9a252b machine.learning module updates 2019-09-09 11:36:02 +12:00
dwas01 9b006ac0c6 application .inisghts module updates
corrected storage account parameter sku
2019-09-08 10:23:24 +12:00
dwas01 8bbf5c168d application.inisights module updates 2019-09-08 09:42:16 +12:00
dwas01 267d6a7171 api.management module updates
new akv script and updates to readme.md
2019-09-08 08:32:59 +12:00
dwas01 fab2043241 analysis.services module updates
updates and fixes to readme.md
2019-09-08 06:06:34 +12:00
Jorge Cotillo 544838b54f Jcotillo/governance stage (#126)
* created new pipeline stage

* updated artifacts storage account reference

* updated location reference on all archetypes

* rolled back to West US region

* moved domain admin information to shared services object

* removed comments and updated kv name

* Enabled Service Map and diag strg connection

* added diagnostic and logging to resources

* enabled monitoring on PaaS services

* enable service endpoint on diagnostics

* updated adds asg

* enable accelerated networking by default

* fixed vmss template and added nsg flow logs script

* updated pipelines to match orchestration.json

* fixed onpremises pipeline reference name

* renamed environment folder

* fixed stage name

* fixed path name

* removed landing zone from shared services pipeline

* added governance

* added custom task to upload scripts to SA

* updated Linux VM SKU

* updated availability set default name

* fixed unit tests

* removed dependency

* removed log analytics dependency

* fixed NSG flow logs relative path

* updated ntier iaas archetype stage name

* fixed module name

* updated diagnostic storage account name

* updated default config

* added missing parameter

* fixed shared services parameter reference

* moved parameter files into test folder

* updated diagnostic settings

* added missing parameters to sample parameter file

* updated base on feedback

* updated test context names
2019-09-06 15:28:39 -07:00
dwas01 b6d3549ebe analysis.services.akv.secrects script added 2019-09-04 10:19:15 +12:00
dwas01 bb280743be app.insights module updates 2019-09-04 10:11:16 +12:00
dwas01 1c5e4268db api.management readme.md updates 2019-08-29 17:19:57 +12:00
dwas01 334b23e6de analysis.services readme.md updates 2019-08-29 17:19:27 +12:00
dwas01 08f0d30555 api.management test module and readme updates 2019-08-29 16:37:57 +12:00
dwas01 f159337fe0 analysis.services readme and module test updates 2019-08-29 16:32:21 +12:00
dwas01 ffe9875d04 6484 api managment, 6593 analyis services modules (#116)
* 6484 api managment, 6593 analyis services modules

* modules test updates

* defaults updated
2019-08-28 19:34:54 -07:00
Jorge Cotillo 264075d170 gw fix 2019-08-28 12:42:11 -07:00
Jorge Cotillo d2d89cb8df removed files 2019-08-28 11:30:44 -07:00