last sync: 2024-Nov-25 18:54:24 UTC

Microsoft Managed Control 1181 - Baseline Configuration | Retention Of Previous Configurations | Regulatory Compliance - Configuration Management

Azure BuiltIn Policy definition

Source Azure Portal
Display name Microsoft Managed Control 1181 - Baseline Configuration | Retention Of Previous Configurations
Id 21839937-d241-4fa5-95c6-b669253d9ab9
Version 1.0.0
Details on versioning
Versioning Versions supported for Versioning: 0
Built-in Versioning [Preview]
Category Regulatory Compliance
Microsoft Learn
Description Microsoft implements this Configuration Management control
Additional metadata Name/Id: ACF1181 / Microsoft Managed Control 1181
Category: Configuration Management
Title: Baseline Configuration | Retention Of Previous Configurations
Ownership: Customer, Microsoft
Description: The organization retains The most recent previous version of the baseline configuration to support rollback.
Requirements: Azure implements procedures for at least the most recent previous version of the configuration baseline and configuration settings within at least one internal baseline storage solution, in the event information systems need to roll back to a stable version. Servers Configuration baselines and configuration settings are available via the Azure DevOps repository history in case a rollback to a previous baseline version is required. Additionally, a copy of the official configuration baseline is published internally to the Liquid requirements catalog that is the authoritative source of requirements authored and maintained by CELA policy owners as well as other groups across the company. Network Devices Previous versions of the configuration baselines for network devices are maintained permanently and archived in Network Device Manager (NDM) for at least three (3) months. Network Device Manager is a Microsoft-built software for storing configuration templates. In addition, networking configuration baselines are stored in Network Graph Database (NGS) and Azure DevOps indefinitely. Azure Services Service code is stored in Azure DevOps, which retains older versions of code indefinitely.
Mode Indexed
Type Static
Preview False
Deprecated False
Effect Fixed
audit
RBAC role(s) none
Rule aliases none
Rule resource types IF (2)
Microsoft.Resources/subscriptions
Microsoft.Resources/subscriptions/resourceGroups
Compliance Not a Compliance control
Initiatives usage none
History none
JSON compare n/a
JSON
api-version=2021-06-01
EPAC