Azure / Azure/Azure-Landing-Zones

Policy assignment "Enable category group resource logging for supported resources to Log Analytics" does not reference correct initiative

Open Beginner friendly
#291 3 comments 0 reactions 0 assignees Claimed by @pratyushverma63 View on GitHub
Transfer From: ALZ Library :arrow_right:
Dominant language
PowerShell
Stars
96
Forks
70
Avg merge
3d 1h
Merged PRs (30d)
7

Description

Policy assignment "Enable category group resource logging for supported resources to Log Analytics" has description:

"Resource logs should be enabled to track activities and events that take place on your resources and give you visibility and insights into any changes that occur. This initiative deploys diagnostic setting **using the allLogs category group** to route logs to an **Event Hub** for all supported resources."

Assuming "Event Hub" is a plain mistake, however, description states using allLogs category group.

Policy referenced by this assignment is currently: "Enable **audit** category group resource logging for supported resources to Log Analytics" (/providers/microsoft.authorization/policysetdefinitions/f5b29bc4-feca-4cc6-a58a-772dd5e290a5).

Based on assignment title and description, I would have expected the policy referenced to be: "Enable **allLogs** category group resource logging for supported resources to Log Analytics" (/providers/Microsoft.Authorization/policySetDefinitions/0884adba-2312-4468-abeb-5422caed1038).

Has there been a mix up here? If not, I would recommend amending the assignment title and description to be clearer that this assignment intends to enable only audit category group resource logging.

Contributor guide

Open the contributing guide

Research direction

Compare the policy assignment named in the issue with policy set definitions f5b29bc4-feca-4cc6-a58a-772dd5e290a5 and 0884adba-2312-4468-abeb-5422caed1038. Confirm whether the assignment should reference the audit or allLogs initiative, then ensure its title and description consistently describe the chosen category group and destination.

Written by the indexing model from the issue text.

Assessment

Tech stack
azure
Domain
cloud
Issue type
Bug
Difficulty
2/5
Estimated time
1-3 hours
Activity status
Active
Clarity
Mostly clear
Newbie friendliness
62/100

Get new issues in your inbox

A short digest of beginner-friendly GitHub issues.