Use Azure Policy to manage and enforce your standards for governance and compliance and to assess that compliance at scale. When you implement Azure Policy, you are effectively adding guard-rails for your users. But you also have a way to audit your organization compliance against a particular policy.
In this walkthrough, you will learn the implications of using a Policy in Azure. For this walkthrough, you will use Azure CLI to create a storage account that will not be compliant, but allowing its contents to be accessed using HTTP. Then you will add a Policy that requires HTTPS, and see how you can audit existing, non-compliant resource. You will audit the resource using the portal and using PowerShell script. Then you will create another non-compliant resource and see how Azure blocks the resource during creation.
Continue reading “Walkthrough using Azure Policy to audit and enforce compliance”
Use Azure Policy to manage and enforce your standards for governance and compliance and to assess that compliance at scale. The idea is to set standards and to be able to demonstrated your organization is meeting your regularoty compliance goals.
In previous blog posts, you learned about setting up Management Groups and Security Center. For management groups, you learned that policies can be applied across multiple subscriptions. You noticed that Security Center provides a set of policies (an an policy initiative) for your subscription.
In this post, learn the basics of Azure Policy for you to manage resource consistency, regulatory compliance, security, and cost. And how Policies can be grouped together as initiatives, and how you can assign initiatives to specific regulatory compliance goals.
Continue reading “Understanding Azure Policy for regulatory compliance”
Once you have set up your first subscription, you can set up your Management Group.
In Azure, management groups are a way to group your subscriptions. When you apply policies and governance to your management group, all of the subscriptions within a management group automatically inherit the conditions applied. Enterprises want management groups as a way to scale your operations no matter how many subscriptions you may have.
For example, you may want to restrict the regions available for your resources to those within a particular region. A policy that reflects that can be applied to a management group and will automatically be applied to all management groups, all subscriptions, and all resources under that management group.
Continue reading “Setting up Management Group for production in enterprise”
Security Center provides out of the box policies and a dashboard to identify possible security issues with your subscription.
To start with Security Center has a good set of policies that will help you do basic audits and provide security alerts.
Use Security Center to meet your cloud requirements
In this article, you will be able to meet the following requirements:
- Set up ways for your security team, developers, and operations to quickly audit subscriptions.
- Mitigate security issues
Continue reading “Setting up Security Center for production in enterprise”
Operations and security are central in any cloud deployment. It should be top of mind in each of your cloud deployments.
Enabling your operations team to find and fix errors, to build practices around scaling your data are essential to having a successful Azure data center.
Log Analytics provides a unified way to show what is happening across your Azure data center.
In this article learn how to set up Log Analytics to receive data from multiple Azure subscriptions, on premises virtual machines or other clouds. And learn to configure your Log Analytics workspace, set up role-based-access-control, and how to incorporate Log Analytics best practices. In addition, you will also learn how to get started with some important queries.
Continue reading “Setting up Log Analytics workspace for production in enterprise”