last sync: 2024-Sep-19 17:51:32 UTC

Configure Synapse workspaces to have auditing enabled

Azure BuiltIn Policy definition

Source Azure Portal
Display name Configure Synapse workspaces to have auditing enabled
Id ac7891a4-ac7a-4ba0-9ae9-c923e5a225ee
Version 2.0.0
Details on versioning
Versioning Versions supported for Versioning: 1
2.0.0
Built-in Versioning [Preview]
Category Synapse
Microsoft Learn
Description To ensure the operations performed against your SQL assets are captured, Synapse workspaces should have auditing enabled. This is sometimes required for compliance with regulatory standards.
Mode Indexed
Type BuiltIn
Preview False
Deprecated False
Effect Default
DeployIfNotExists
Allowed
DeployIfNotExists, Disabled
RBAC role(s)
Role Name Role Id
SQL Security Manager 056cd41c-7e88-42e1-933e-88ba6a50c9c3
Storage Account Contributor 17d1049b-9a84-46fb-8f53-869881c3d3ab
Rule aliases THEN-ExistenceCondition (1)
Alias Namespace ResourceType Path PathIsDefault DefaultPath Modifiable
Microsoft.Synapse/workspaces/auditingSettings/state Microsoft.Synapse workspaces/auditingSettings properties.state True False
Rule resource types IF (1)
Microsoft.Synapse/workspaces
THEN-Deployment (3)
Microsoft.Resources/deployments
Microsoft.Storage/storageAccounts
Microsoft.Synapse/workspaces/auditingSettings
Compliance Not a Compliance control
Initiatives usage none
History
Date/Time (UTC ymd) (i) Change type Change detail
2021-09-27 15:52:17 change Major (1.1.0 > 2.0.0)
2021-03-31 14:35:06 change Minor (1.0.0 > 1.1.0)
2021-03-09 14:37:41 add ac7891a4-ac7a-4ba0-9ae9-c923e5a225ee
JSON compare
compare mode: version left: version right:
JSON
api-version=2021-06-01
EPAC