Coder Social home page Coder Social logo

modify-subnet-nsg about community-policy HOT 9 CLOSED

azure avatar azure commented on June 11, 2024
modify-subnet-nsg

from community-policy.

Comments (9)

fawohlsc avatar fawohlsc commented on June 11, 2024

@maheswara321 - Have you tried creating a new subnet? Does the policy add the NSG? Just to make sure the policy is assigned to the right scope. Also, did you try to trigger an on-demand evaluation scan to speed up populating the compliance results (See: Get compliance data of Azure resources)

from community-policy.

maheswara321 avatar maheswara321 commented on June 11, 2024

Hi Fabian,

Thank you so much for your prompt response.

I just have created a new vnet and in that I had new default subnet that has no NSG. I also have existing vnets with subnets that don't have NSG at all in subscriptions but in both of the cases policy doesn't identify them as non-compliance one , and it is reflecting the status 100% compliance.

Below is the vnet with subnet that doesn't have any NSG.

image

It is reflecting as 100% compliance as shown below.

image

Please help me know, am i passing the parameters as wrong? I have tried both the ways like giving new resource group name new NSG name also resource group of vnet that already exists and location.. but it doesn't work anyways.

I am also wondering if there is any deployIfNotExists policy available for this if it doesn't work like this.

Kindly respond on this Fab.

Thank you very much for your support.

Kind regards,
Mahes.

from community-policy.

fawohlsc avatar fawohlsc commented on June 11, 2024

@maheswara321 - Just did some testing. Seems like the policy does not work anymore. Sorry for the inconvenience. Probably, you want to look for another policy, which can assign NSGs to your subnet.

from community-policy.

maheswara321 avatar maheswara321 commented on June 11, 2024

Hello @fawohlsc,

Thanks for your response.

Can you please suggest me the working one?

Thank you.

from community-policy.

maheswara321 avatar maheswara321 commented on June 11, 2024

Hi @fawohlsc,

May I have any response please?

Thank you.

from community-policy.

fawohlsc avatar fawohlsc commented on June 11, 2024

@maheswara321 - May I ask you to contribute to this repository by fixing the policy modify-subnet-nsg?
I believe it`s a good starting point and I am missing the bandwidth to fix it myself at the moment.
Many thanks.

from community-policy.

maheswara321 avatar maheswara321 commented on June 11, 2024

Hi @fawohlsc,

Thanks for responding back.

I am happy to work on these, however currently I am completely oocupied with Info sec work right now. Also these are completely new for us being a SOC analysts. and that's where we were looking for help.

Thanks for understanding.

from community-policy.

fawohlsc avatar fawohlsc commented on June 11, 2024

@maheswara321 - I fully understand 👍

John Savill has produced some great deep-dive videos around Azure Policy:
Anatomy of Azure Policy
Azure Policy Remediation Deep Dive

Hope they help you on your Azure governance journey!

from community-policy.

techlake avatar techlake commented on June 11, 2024

Cleaning up old issues (closing)

from community-policy.

Related Issues (20)

Recommend Projects

  • React photo React

    A declarative, efficient, and flexible JavaScript library for building user interfaces.

  • Vue.js photo Vue.js

    🖖 Vue.js is a progressive, incrementally-adoptable JavaScript framework for building UI on the web.

  • Typescript photo Typescript

    TypeScript is a superset of JavaScript that compiles to clean JavaScript output.

  • TensorFlow photo TensorFlow

    An Open Source Machine Learning Framework for Everyone

  • Django photo Django

    The Web framework for perfectionists with deadlines.

  • D3 photo D3

    Bring data to life with SVG, Canvas and HTML. 📊📈🎉

Recommend Topics

  • javascript

    JavaScript (JS) is a lightweight interpreted programming language with first-class functions.

  • web

    Some thing interesting about web. New door for the world.

  • server

    A server is a program made to process requests and deliver data to clients.

  • Machine learning

    Machine learning is a way of modeling and interpreting data that allows a piece of software to respond intelligently.

  • Game

    Some thing interesting about game, make everyone happy.

Recommend Org

  • Facebook photo Facebook

    We are working to build community through open source technology. NB: members must have two-factor auth.

  • Microsoft photo Microsoft

    Open source projects and samples from Microsoft.

  • Google photo Google

    Google ❤️ Open Source for everyone.

  • D3 photo D3

    Data-Driven Documents codes.