last sync: 2024-Nov-25 18:54:43 UTC

Enforce recommended guardrails for Data Factory

Azure Landing Zones (ALZ) Policy Initiative (PolicySet)

Source Repository Azure Landing Zones (ALZ) GitHub
JSON Enforce-Guardrails-DataFactory
Display nameEnforce recommended guardrails for Data Factory
IdEnforce-Guardrails-DataFactory
Version1.0.0
Details on versioning
CategoryData Factory
DescriptionThis policy initiative is a group of policies that ensures Data Factory is compliant per regulated Landing Zones.
TypeCustom Azure Landing Zones (ALZ)
DeprecatedFalse
PreviewFalse
Policy count Total Policies: 5
Builtin Policies: 5
Static Policies: 0
ALZ Policies: 0
Policy used
Policy DisplayName Policy Id Category Effect Roles# Roles State Type
Azure Data Factory linked services should use Key Vault for storing secrets 127ef6d7-242f-43b3-9eef-947faf1725d0 Data Factory Default
Audit
Allowed
Audit, Deny, Disabled
0 GA BuiltIn
Azure Data Factory linked services should use system-assigned managed identity authentication when it is supported f78ccdb4-7bf4-4106-8647-270491d2978a Data Factory Default
Audit
Allowed
Audit, Deny, Disabled
0 GA BuiltIn
Azure Data Factory should use a Git repository for source control 77d40665-3120-4348-b539-3192ec808307 Data Factory Default
Audit
Allowed
Audit, Deny, Disabled
0 GA BuiltIn
Configure Data Factories to disable public network access 08b1442b-7789-4130-8506-4f99a97226a7 Data Factory Default
Modify
Allowed
Modify, Disabled
1 Data Factory Contributor GA BuiltIn
SQL Server Integration Services integration runtimes on Azure Data Factory should be joined to a virtual network 0088bc63-6dee-4a9c-9d29-91cfdc848952 Data Factory Default
Audit
Allowed
Audit, Deny, Disabled
0 GA BuiltIn
Roles used
Total Roles usage: 1
Total Roles unique usage: 1
Role Role Id Policies count Policies
Data Factory Contributor 673868aa-7521-48a0-acc6-0f60742d39f5 1 Configure Data Factories to disable public network access
History none
JSON compare n/a
JSON
EPAC