Skip to content
This repository was archived by the owner on Mar 15, 2025. It is now read-only.

Update Cognitive Services Policies#370

Merged
krnese merged 3 commits intosecure-by-defaultfrom
marvinbuss/cs_policy
Feb 27, 2023
Merged

Update Cognitive Services Policies#370
krnese merged 3 commits intosecure-by-defaultfrom
marvinbuss/cs_policy

Conversation

@marvinbuss
Copy link
Contributor

Summary of the Pull Request

Update Cognitive Services Policies

PR Checklist

Validation Steps Performed

Manual Validation

@marvinbuss marvinbuss added the enhancement New feature or request label Feb 24, 2023
@marvinbuss marvinbuss requested a review from a team February 24, 2023 13:50
@marvinbuss marvinbuss self-assigned this Feb 24, 2023
@marvinbuss marvinbuss requested a review from krnese February 24, 2023 13:51
@krnese krnese merged commit 66b1b49 into secure-by-default Feb 27, 2023
@krnese krnese deleted the marvinbuss/cs_policy branch February 27, 2023 19:14
@krnese
Copy link
Contributor

krnese commented Feb 27, 2023

Thx. Approved. Would appreciate if we could avoid renaming the files moving forward as that would break the overall contract from 1) adding definition, 2) crating assignment tied to the definition, and 3) overall dependency graph for the orchestration.

@marvinbuss
Copy link
Contributor Author

marvinbuss commented Feb 27, 2023

Thx. Approved. Would appreciate if we could avoid renaming the files moving forward as that would break the overall contract from 1) adding definition, 2) crating assignment tied to the definition, and 3) overall dependency graph for the orchestration.

Thanks for the feedback. Will take this into account for the next one. 👍
Just did it for this one as the "OpenAI" is just a "kind" of Cognitive Service.

krnese added a commit that referenced this pull request Mar 3, 2023
* wave #1

* adding AKS

* added defender options

* adding mySql and other minor updates

* update

* backup completeness

* update + event grid

* adding Azure Data Explorer

* minor update

* adding rbac

* formatting

* adding ARM template for compliant services

* v2 refresh

* optimizing dependency

* adding policies

* dns update

* Update hubspoke-connectivity.json

* Update industryArmV2.json

* Update hubspoke-connectivity.json

* Update fsiPortalV2.json

* Update industryArmV2.json

* adding EH for data export

* Compliant network policySet

* prevent ssh and rdp from internet to network

* erDiag

* updated data export with description

* adding sub for ingress and egress

* adding assignments

* name lenght

* updated KV and adding cosmosDb

* more data stuff

* removing 'db'

* compliant events

* aks + nw

* Update Cognitive Services Policies (#370)

Co-authored-by: Kristian Nese <kristian.nese@microsoft.com>

* nw part 1

* network orchestration

* sql policySet

* adding sql, service bus, and postgre sql

* adding sql assignment + storage def and assignment

* updating condition

* lenght

* correcting params

* Network Policies (#374)

* Network Policies

* Removing duplicate assignments

---------

Co-authored-by: Kristian Nese <kristian.nese@microsoft.com>

* adding synapse

* update assignment name

* param mapping

* compliant corp lz

* update condition

* fixing url

* converge on private DNS across verticals

* compliant corp lz and modification to each vertical

* updated compliant services

* adding AVD

* Centralized logging initiative

* added diag to storage account

* naming convention for storage

* default identity sub behavior

* Add Azure Storage Policies (#375)

* Add Azure Storage Policies

* Fix minor bug

* Update type

* Add policy for CORS rules

* Add policy for CMK for encryption scopes

* Remove policy for encryption scope

* Update display name

* Add list of allowed values for policy definition

* Update policy for encryption

* Add policy assignments

* Removed policy for cross tenant PEs

* Add missing parameters

* Update mg name

* update sequencing

---------

Co-authored-by: Marvin Buss <34542414+marvinbuss@users.noreply.github.com>
Co-authored-by: Uday Pandya <14359777+uday31in@users.noreply.github.com>
Sign up for free to subscribe to this conversation on GitHub. Already have an account? Sign in.

Labels

enhancement New feature or request

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants