Skip to content

Commit dab7232

Browse files
feat: update platform/alz library (automated) (#148)
1 parent 5e44e9f commit dab7232

File tree

3 files changed

+8
-8
lines changed

3 files changed

+8
-8
lines changed

platform/alz/README.md

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -347,7 +347,7 @@ flowchart TD
347347
- Enforce-EncryptTransit
348348
- Enforce-EncryptTransit_20240509
349349
- Enforce-EncryptTransit_20241211
350-
- Enforce-Encryption-CMK
350+
- Enforce-Encryption-CMK_20250218
351351
- Enforce-Guardrails-APIM
352352
- Enforce-Guardrails-AppServices
353353
- Enforce-Guardrails-Automation
@@ -716,7 +716,7 @@ The subscription id that hosts the private link DNS zones.
716716
- Enforce-EncryptTransit
717717
- Enforce-EncryptTransit_20240509
718718
- Enforce-EncryptTransit_20241211
719-
- Enforce-Encryption-CMK
719+
- Enforce-Encryption-CMK_20250218
720720
- Enforce-Guardrails-APIM
721721
- Enforce-Guardrails-AppServices
722722
- Enforce-Guardrails-Automation

platform/alz/archetype_definitions/root.alz_archetype_definition.json

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -197,7 +197,7 @@
197197
"Enforce-ALZ-Decomm",
198198
"Enforce-ALZ-Sandbox",
199199
"Enforce-Backup",
200-
"Enforce-Encryption-CMK",
200+
"Enforce-Encryption-CMK_20250218",
201201
"Enforce-EncryptTransit_20240509",
202202
"Enforce-EncryptTransit_20241211",
203203
"Enforce-EncryptTransit",

platform/alz/policy_set_definitions/Enforce-Encryption-CMK.alz_policy_set_definition.json renamed to platform/alz/policy_set_definitions/Enforce-Encryption-CMK_20250218.alz_policy_set_definition.json

Lines changed: 5 additions & 5 deletions
Original file line numberDiff line numberDiff line change
@@ -1,5 +1,5 @@
11
{
2-
"name": "Enforce-Encryption-CMK",
2+
"name": "Enforce-Encryption-CMK_20250218",
33
"properties": {
44
"description": "Deny or Audit resources without Encryption with a customer-managed key (CMK)",
55
"displayName": "Deny or Audit resources without Encryption with a customer-managed key (CMK)",
@@ -8,8 +8,9 @@
88
"AzureCloud"
99
],
1010
"category": "Encryption",
11+
"replacesPolicy": "Enforce-Encryption-CMK",
1112
"source": "https://github.com/Azure/Enterprise-Scale/",
12-
"version": "3.2.0"
13+
"version": "1.0.0"
1314
},
1415
"parameters": {
1516
"ACRCmkEffect": {
@@ -252,11 +253,10 @@
252253
},
253254
"cognitiveSearchCmk": {
254255
"allowedValues": [
255-
"Audit",
256-
"Deny",
256+
"AuditIfNotExists",
257257
"Disabled"
258258
],
259-
"defaultValue": "Deny",
259+
"defaultValue": "AuditIfNotExists",
260260
"type": "string"
261261
},
262262
"containerInstanceCmk": {

0 commit comments

Comments
 (0)