Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Bryanzab/update references #20

Merged
merged 5 commits into from
Sep 30, 2023
Merged
Show file tree
Hide file tree
Changes from all commits
Commits
File filter

Filter by extension

Filter by extension

Conversations
Failed to load comments.
Loading
Jump to
Jump to file
Failed to load files.
Loading
Diff view
Diff view
3 changes: 3 additions & 0 deletions services/Automation/automationAccounts/alerts.yaml
Original file line number Diff line number Diff line change
Expand Up @@ -20,6 +20,9 @@
operator: Exclude
values:
- Completed
references:
- name: Azure Automation Azure Monitor Metrics
url: https://docs.microsoft.com/en-us/azure/azure-monitor/essentials/metrics-supported#microsoftautomationautomationaccounts
deployments:
- description: Policy to audit/deploy Automation Account TotalJob Alert
template: Deploy-AA-TotalJob-Alert.json
Expand Down
28 changes: 28 additions & 0 deletions services/KeyVault/vaults/alerts.yaml
Original file line number Diff line number Diff line change
Expand Up @@ -35,6 +35,13 @@
operator: LessThan
threshold: 90
criterionType: StaticThresholdCriterion
references:
- name: Monitoring KeyVault Reference
url: https://docs.microsoft.com/en-us/azure/key-vault/general/monitor-key-vault-reference
- name: Monitoring Microsoft.KeyVault/vaults
url: https://docs.microsoft.com/en-us/azure/key-vault/general/monitor-key-vault
- name: KeyVault Insights Overview
url: https://docs.microsoft.com/en-us/azure/azure-monitor/insights/key-vault-insights-overview
deployments:
- description: Policy to audit/deploy KeyVault Availability Alert
template: Deploy-KV-Availability-Alert.json
Expand All @@ -55,6 +62,13 @@
operator: GreaterThan
threshold: 75
criterionType: StaticThresholdCriterion
references:
- name: Monitoring KeyVault Reference
url: https://docs.microsoft.com/en-us/azure/key-vault/general/monitor-key-vault-reference
- name: Monitoring Microsoft.KeyVault/vaults
url: https://docs.microsoft.com/en-us/azure/key-vault/general/monitor-key-vault
- name: KeyVault Insights Overview
url: https://docs.microsoft.com/en-us/azure/azure-monitor/insights/key-vault-insights-overview
deployments:
- description: Policy to audit/deploy KeyVault Capacity Alert
template: Deploy-KV-Capacity-Alert.json
Expand All @@ -75,6 +89,13 @@
operator: GreaterThan
threshold: 1000
criterionType: StaticThresholdCriterion
references:
- name: Monitoring KeyVault Reference
url: https://docs.microsoft.com/en-us/azure/key-vault/general/monitor-key-vault-reference
- name: Monitoring Microsoft.KeyVault/vaults
url: https://docs.microsoft.com/en-us/azure/key-vault/general/monitor-key-vault
- name: KeyVault Insights Overview
url: https://docs.microsoft.com/en-us/azure/azure-monitor/insights/key-vault-insights-overview
deployments:
- description: Policy to audit/deploy KeyVault Latency Alert
template: Deploy-KV-Latency-Alert.json
Expand All @@ -98,6 +119,13 @@
failingPeriods:
numberOfEvaluationPeriods: 4
minFailingPeriodsToAlert: 4
references:
- name: Monitoring KeyVault Reference
url: https://docs.microsoft.com/en-us/azure/key-vault/general/monitor-key-vault-reference
- name: Monitoring Microsoft.KeyVault/vaults
url: https://docs.microsoft.com/en-us/azure/key-vault/general/monitor-key-vault
- name: KeyVault Insights Overview
url: https://docs.microsoft.com/en-us/azure/azure-monitor/insights/key-vault-insights-overview
deployments:
- description: Policy to audit/deploy KeyVault Requests Alert
template: Deploy-KV-Requests-Alert.json
Expand Down
6 changes: 6 additions & 0 deletions services/Network/azureFirewalls/alerts.yaml
Original file line number Diff line number Diff line change
Expand Up @@ -35,6 +35,9 @@
operator: LessThan
threshold: 90
criterionType: StaticThresholdCriterion
references:
- name: Overview of Azure Firewall logs and metrics
url: https://docs.microsoft.com/en-us/azure/firewall/logs-and-metrics#metrics
deployments:
- description: Policy to audit/deploy Azure Firewall FirewallHealth Alert
template: Deploy-AFW-FirewallHealth-Alert.json
Expand All @@ -55,6 +58,9 @@
operator: LessThan
threshold: 80
criterionType: StaticThresholdCriterion
references:
- name: Overview of Azure Firewall logs and metrics
url: https://docs.microsoft.com/en-us/azure/firewall/logs-and-metrics#metrics
deployments:
- description: Policy to audit/deploy Azure Firewall SNATPortUtilization Alert
template: Deploy-AFW-SNATPortUtilization-Alert.json
Expand Down
20 changes: 20 additions & 0 deletions services/Network/expressRouteCircuits/alerts.yaml
Original file line number Diff line number Diff line change
Expand Up @@ -15,6 +15,11 @@
operator: LessThan
threshold: 90
criterionType: StaticThresholdCriterion
references:
- name: Monitor ExpressRoute Alerts
url: https://docs.microsoft.com/en-us/azure/expressroute/monitor-expressroute#alerts
- name: ExpressRoute KQL Queries
url: https://docs.microsoft.com/en-us/azure/expressroute/monitor-expressroute#sample-kusto-queries
deployments:
- description: Policy to audit/deploy ExpressRoute Circuits ARP Availability Alert
template: Deploy-ERCIR-ARPAvailability-Alert.json
Expand All @@ -35,6 +40,11 @@
operator: LessThan
threshold: 90
criterionType: StaticThresholdCriterion
references:
- name: Monitor ExpressRoute Alerts
url: https://docs.microsoft.com/en-us/azure/expressroute/monitor-expressroute#alerts
- name: ExpressRoute KQL Queries
url: https://docs.microsoft.com/en-us/azure/expressroute/monitor-expressroute#sample-kusto-queries
deployments:
- description: Policy to audit/deploy ExpressRoute Circuits BGP Availability Alert
template: Deploy-ERCIR-BGPAvailability-Alert.json
Expand All @@ -58,6 +68,11 @@
failingPeriods:
numberOfEvaluationPeriods: 4
minFailingPeriodsToAlert: 4
references:
- name: Monitor ExpressRoute Alerts
url: https://docs.microsoft.com/en-us/azure/expressroute/monitor-expressroute#alerts
- name: ExpressRoute KQL Queries
url: https://docs.microsoft.com/en-us/azure/expressroute/monitor-expressroute#sample-kusto-queries
deployments:
- description: Policy to audit/deploy ExpressRoute Circuits QosDropBitsInPerSecond
Alert
Expand All @@ -82,6 +97,11 @@
failingPeriods:
numberOfEvaluationPeriods: 4
minFailingPeriodsToAlert: 4
references:
- name: Monitor ExpressRoute Alerts
url: https://docs.microsoft.com/en-us/azure/expressroute/monitor-expressroute#alerts
- name: ExpressRoute KQL Queries
url: https://docs.microsoft.com/en-us/azure/expressroute/monitor-expressroute#sample-kusto-queries
deployments:
- description: Policy to audit/deploy ExpressRoute Circuits QosDropBitsOutPerSecond
Alert
Expand Down
9 changes: 9 additions & 0 deletions services/Network/expressRouteGateways/alerts.yaml
Original file line number Diff line number Diff line change
Expand Up @@ -15,6 +15,9 @@
operator: LessThan
threshold: 1
criterionType: StaticThresholdCriterion
references:
- name: ExpressRoute Monitoring Metrics Alerts for ExpressRoute Gateways
url: https://learn.microsoft.com/en-us/azure/expressroute/expressroute-monitoring-metrics-alerts#expressroute-gateways
deployments:
- description: Policy to audit/deploy ER Gateway Connection BitsInPerSecond Alert
template: Deploy-ERG-BitsInPerSecond-Alert.json
Expand All @@ -35,6 +38,9 @@
operator: LessThan
threshold: 1
criterionType: StaticThresholdCriterion
references:
- name: ExpressRoute Monitoring Metrics Alerts for ExpressRoute Gateways
url: https://learn.microsoft.com/en-us/azure/expressroute/expressroute-monitoring-metrics-alerts#expressroute-gateways
deployments:
- description: Policy to audit/deploy ER Gateway Connection BitsOutPerSecond Alert
template: Deploy-ERG-BitsOutPerSecond-Alert.json
Expand All @@ -55,6 +61,9 @@
operator: GreaterThan
threshold: 80
criterionType: StaticThresholdCriterion
references:
- name: ExpressRoute Monitoring Metrics Alerts for ExpressRoute Gateways
url: https://learn.microsoft.com/en-us/azure/expressroute/expressroute-monitoring-metrics-alerts#expressroute-gateways
deployments:
- description: Policy to audit/deploy ER Gateway Express Route CPU Utilization Alert
template: Deploy-ERG-CPUUtilization-Alert.json
22 changes: 22 additions & 0 deletions services/Network/loadBalancers/alerts.yaml
Original file line number Diff line number Diff line change
Expand Up @@ -15,6 +15,13 @@
operator: LessThan
threshold: 90
criterionType: StaticThresholdCriterion
references:
- name: Azure Monitor supported metrics by resource type - Azure Load Balancer
url: https://learn.microsoft.com/en-us/azure/azure-monitor/reference/supported-metrics/microsoft-network-loadbalancers-metrics
- name: Azure Load Balancer Multi-Demensional-Metrics
url: https://learn.microsoft.com/en-us/azure/load-balancer/load-balancer-standard-diagnostics#multi-dimensional-metrics
- name: Is The Data Path Up and Available for My Load-Balancer
url: https://learn.microsoft.com/en-us/azure/load-balancer/load-balancer-standard-diagnostics#is-the-data-path-up-and-available-for-my-load-balancer-frontend
deployments:
- description: Policy to audit/deploy Azure Load Balancer Data Path Availability
Alert
Expand All @@ -36,6 +43,9 @@
operator: LessThan
threshold: 90
criterionType: StaticThresholdCriterion
references:
- name: Azure Monitor supported metrics by resource type - Azure Load Balancer
url: https://learn.microsoft.com/en-us/azure/azure-monitor/reference/supported-metrics/microsoft-network-loadbalancers-metrics
deployments:
- description: Policy to audit/deploy Azure Load Balancer Global Backend Availability
Alert
Expand All @@ -57,6 +67,11 @@
operator: LessThan
threshold: 90
criterionType: StaticThresholdCriterion
references:
- name: Azure Monitor supported metrics by resource type - Azure Load Balancer
url: https://learn.microsoft.com/en-us/azure/azure-monitor/reference/supported-metrics/microsoft-network-loadbalancers-metrics
- name: Are Backend Instances for my Load-Balancer Responding to Probes
url: https://learn.microsoft.com/en-us/azure/load-balancer/load-balancer-standard-diagnostics#are-the-backend-instances-for-my-load-balancer-responding-to-probes
deployments:
- description: Policy to audit/deploy Azure Load Balancer Health Probe Status Alert
template: Deploy-LB-HealthProbeStatus-Alert.json
Expand All @@ -77,6 +92,13 @@
operator: GreaterThan
threshold: 900
criterionType: StaticThresholdCriterion
references:
- name: Azure Monitor supported metrics by resource type - Azure Load Balancer
url: https://learn.microsoft.com/en-us/azure/azure-monitor/reference/supported-metrics/microsoft-network-loadbalancers-metrics
- name: Load-Balancer Alerts
url: https://learn.microsoft.com/en-us/azure/load-balancer/monitor-load-balancer#alerts
- name: Check My SNAT Port Usage and Allocation
url: https://learn.microsoft.com/en-us/azure/load-balancer/load-balancer-standard-diagnostics#how-do-i-check-my-snat-port-usage-and-allocation
deployments:
- description: Policy to audit/deploy Azure Load Balancer Used SNAT Ports Alert
template: Deploy-LB-UsedSNATPorts-Alert.json
Expand Down
12 changes: 12 additions & 0 deletions services/Network/privateDnsZones/alerts.yaml
Original file line number Diff line number Diff line change
Expand Up @@ -16,6 +16,9 @@
operator: GreaterThanOrEqual
threshold: 80
criterionType: StaticThresholdCriterion
references:
- name: Private DNS Alert Metrics
url: https://learn.microsoft.com/en-us/azure/azure-monitor/reference/supported-metrics/microsoft-network-privatednszones-metrics
deployments:
- description: Policy to audit/deploy Private DNS Zone Capacity Utilization Alert
template: Deploy-PDNSZ-CapacityUtilization-Alert.json
Expand All @@ -36,6 +39,9 @@
operator: GreaterThanOrEqual
threshold: 500
criterionType: StaticThresholdCriterion
references:
- name: Private DNS Alert Metrics
url: https://learn.microsoft.com/en-us/azure/azure-monitor/reference/supported-metrics/microsoft-network-privatednszones-metrics
deployments:
- description: Policy to audit/deploy Private DNS Zone Query Volume Alert
template: Deploy-PDNSZ-QueryVolume-Alert.json
Expand All @@ -56,6 +62,9 @@
operator: GreaterThanOrEqual
threshold: 80
criterionType: StaticThresholdCriterion
references:
- name: Private DNS Alert Metrics
url: https://learn.microsoft.com/en-us/azure/azure-monitor/reference/supported-metrics/microsoft-network-privatednszones-metrics
deployments:
- description: Policy to audit/deploy Private DNS Zone Record Set Capacity Alert
template: Deploy-PDNSZ-RecordSetCapacity-Alert.json
Expand All @@ -77,6 +86,9 @@
operator: GreaterThanOrEqual
threshold: 80
criterionType: StaticThresholdCriterion
references:
- name: Private DNS Alert Metrics
url: https://learn.microsoft.com/en-us/azure/azure-monitor/reference/supported-metrics/microsoft-network-privatednszones-metrics
deployments:
- description: Policy to audit/deploy Private DNS Zone Registration Capacity Utilization
Alert
Expand Down
20 changes: 20 additions & 0 deletions services/Network/publicIPAddresses/alerts.yaml
Original file line number Diff line number Diff line change
Expand Up @@ -15,6 +15,11 @@
operator: GreaterThan
threshold: 8000000
criterionType: StaticThresholdCriterion
references:
- name: Monitor Public IP Addresses
url: https://learn.microsoft.com/en-us/azure/virtual-network/ip-services/monitor-public-ip#alerts
- name: Public IP Addresses Supported Metrics
url: https://learn.microsoft.com/en-us/azure/azure-monitor/essentials/metrics-supported#microsoftnetworkpublicipaddresses
deployments:
- description: Policy to audit/deploy PIP Bytes in DDoS Attack Alert
template: Deploy-PIP-BytesInDDOSAttack-Alert.json
Expand All @@ -35,6 +40,11 @@
operator: GreaterThan
threshold: 0
criterionType: StaticThresholdCriterion
references:
- name: Monitor Public IP Addresses
url: https://learn.microsoft.com/en-us/azure/virtual-network/ip-services/monitor-public-ip#alerts
- name: Public IP Addresses Supported Metrics
url: https://learn.microsoft.com/en-us/azure/azure-monitor/essentials/metrics-supported#microsoftnetworkpublicipaddresses
deployments:
- description: Policy to audit/deploy PIP DDoS Attack Alert
template: Deploy-PIP-DDOSAttack-Alert.json
Expand All @@ -55,6 +65,11 @@
operator: GreaterThanOrEqual
threshold: 40000
criterionType: StaticThresholdCriterion
references:
- name: Monitor Public IP Addresses
url: https://learn.microsoft.com/en-us/azure/virtual-network/ip-services/monitor-public-ip#alerts
- name: Public IP Addresses Supported Metrics
url: https://learn.microsoft.com/en-us/azure/azure-monitor/essentials/metrics-supported#microsoftnetworkpublicipaddresses
deployments:
- description: Policy to audit/deploy PIP Packets in DDoS Attack Alert
template: Deploy-PIP-PacketsInDDOS-Alert.json
Expand All @@ -75,6 +90,11 @@
operator: LessThan
threshold: 90
criterionType: StaticThresholdCriterion
references:
- name: Monitor Public IP Addresses
url: https://learn.microsoft.com/en-us/azure/virtual-network/ip-services/monitor-public-ip#alerts
- name: Public IP Addresses Supported Metrics
url: https://learn.microsoft.com/en-us/azure/azure-monitor/essentials/metrics-supported#microsoftnetworkpublicipaddresses
deployments:
- description: Policy to audit/deploy PIP VIP Availability Alert
template: Deploy-PIP-VIPAvailability-Alert.json
Expand Down
27 changes: 27 additions & 0 deletions services/Network/virtualNetworkGateways/alerts.yaml
Original file line number Diff line number Diff line change
Expand Up @@ -15,6 +15,9 @@
operator: LessThan
threshold: 1
criterionType: StaticThresholdCriterion
references:
- name: Supported metrics for microsoft.network/virtualnetworkgateways
url: https://learn.microsoft.com/en-us/azure/azure-monitor/reference/supported-metrics/microsoft-network-virtualnetworkgateways-metrics
deployments:
- description: Policy to audit/deploy Virtual Network Gateway Tunnel Bandwidth Alert
template: Deploy-VNETG-BandwidthUtilization-Alert.json
Expand All @@ -35,6 +38,9 @@
operator: LessThan
threshold: 1
criterionType: StaticThresholdCriterion
references:
- name: Supported metrics for microsoft.network/virtualnetworkgateways
url: https://learn.microsoft.com/en-us/azure/azure-monitor/reference/supported-metrics/microsoft-network-virtualnetworkgateways-metrics
deployments:
- description: Policy to audit/deploy Virtual Network Gateway Tunnel Egress Alert
template: Deploy-VNETG-Egress-Alert.json
Expand All @@ -58,6 +64,9 @@
failingPeriods:
numberOfEvaluationPeriods: 4
minFailingPeriodsToAlert: 4
references:
- name: Supported metrics for microsoft.network/virtualnetworkgateways
url: https://learn.microsoft.com/en-us/azure/azure-monitor/reference/supported-metrics/microsoft-network-virtualnetworkgateways-metrics
deployments:
- description: Policy to audit/deploy Vnet Gateway Egress Packet Drop Count Alert
template: Deploy-VNETG-EgressPacketDropCount-Alert.json
Expand All @@ -81,6 +90,9 @@
failingPeriods:
numberOfEvaluationPeriods: 4
minFailingPeriodsToAlert: 4
references:
- name: Supported metrics for microsoft.network/virtualnetworkgateways
url: https://learn.microsoft.com/en-us/azure/azure-monitor/reference/supported-metrics/microsoft-network-virtualnetworkgateways-metrics
deployments:
- description: Policy to audit/deploy Vnet Gateway Egress Packet Drop Mismatch Alert
template: Deploy-VNETG-EgressPacketDropMismatch-Alert.json
Expand All @@ -101,6 +113,9 @@
operator: LessThan
threshold: 1
criterionType: StaticThresholdCriterion
references:
- name: Supported metrics for microsoft.network/virtualnetworkgateways
url: https://learn.microsoft.com/en-us/azure/azure-monitor/reference/supported-metrics/microsoft-network-virtualnetworkgateways-metrics
deployments:
- description: Policy to audit/deploy Virtual Network Gateway Express Route Bits
Per Second Alert
Expand All @@ -122,6 +137,9 @@
operator: GreaterThan
threshold: 80
criterionType: StaticThresholdCriterion
references:
- name: Supported metrics for microsoft.network/virtualnetworkgateways
url: https://learn.microsoft.com/en-us/azure/azure-monitor/reference/supported-metrics/microsoft-network-virtualnetworkgateways-metrics
deployments:
- description: Policy to audit/deploy Virtual Network Gateway Express Route CPU
Utilization
Expand All @@ -143,6 +161,9 @@
operator: LessThan
threshold: 1
criterionType: StaticThresholdCriterion
references:
- name: Supported metrics for microsoft.network/virtualnetworkgateways
url: https://learn.microsoft.com/en-us/azure/azure-monitor/reference/supported-metrics/microsoft-network-virtualnetworkgateways-metrics
deployments:
- description: Policy to audit/deploy Virtual Network Gateway Tunnel Ingress Alert
template: Deploy-VNETG-Ingress-Alert.json
Expand All @@ -166,6 +187,9 @@
failingPeriods:
numberOfEvaluationPeriods: 4
minFailingPeriodsToAlert: 4
references:
- name: Supported metrics for microsoft.network/virtualnetworkgateways
url: https://learn.microsoft.com/en-us/azure/azure-monitor/reference/supported-metrics/microsoft-network-virtualnetworkgateways-metrics
deployments:
- description: Policy to audit/deploy Vnet Gateway Ingress Packet Drop Count Alert
template: Deploy-VNETG-IngressPacketDropCount-Alert.json
Expand All @@ -189,6 +213,9 @@
failingPeriods:
numberOfEvaluationPeriods: 4
minFailingPeriodsToAlert: 4
references:
- name: Supported metrics for microsoft.network/virtualnetworkgateways
url: https://learn.microsoft.com/en-us/azure/azure-monitor/reference/supported-metrics/microsoft-network-virtualnetworkgateways-metrics
deployments:
- description: Policy to audit/deploy Vnet Gateway Ingress Packet Drop Mismatch
Alert
Expand Down
Loading