Skip to content

Commit

Permalink
Merge pull request #20 from bzabber/bryanzab/UpdateReferences
Browse files Browse the repository at this point in the history
Bryanzab/update references
  • Loading branch information
JoeyBarnes authored Sep 30, 2023
2 parents 281a609 + b83714a commit 87067ba
Show file tree
Hide file tree
Showing 14 changed files with 197 additions and 2 deletions.
3 changes: 3 additions & 0 deletions services/Automation/automationAccounts/alerts.yaml
Original file line number Diff line number Diff line change
Expand Up @@ -20,6 +20,9 @@
operator: Exclude
values:
- Completed
references:
- name: Azure Automation Azure Monitor Metrics
url: https://docs.microsoft.com/en-us/azure/azure-monitor/essentials/metrics-supported#microsoftautomationautomationaccounts
deployments:
- description: Policy to audit/deploy Automation Account TotalJob Alert
template: Deploy-AA-TotalJob-Alert.json
Expand Down
28 changes: 28 additions & 0 deletions services/KeyVault/vaults/alerts.yaml
Original file line number Diff line number Diff line change
Expand Up @@ -35,6 +35,13 @@
operator: LessThan
threshold: 90
criterionType: StaticThresholdCriterion
references:
- name: Monitoring KeyVault Reference
url: https://docs.microsoft.com/en-us/azure/key-vault/general/monitor-key-vault-reference
- name: Monitoring Microsoft.KeyVault/vaults
url: https://docs.microsoft.com/en-us/azure/key-vault/general/monitor-key-vault
- name: KeyVault Insights Overview
url: https://docs.microsoft.com/en-us/azure/azure-monitor/insights/key-vault-insights-overview
deployments:
- description: Policy to audit/deploy KeyVault Availability Alert
template: Deploy-KV-Availability-Alert.json
Expand All @@ -55,6 +62,13 @@
operator: GreaterThan
threshold: 75
criterionType: StaticThresholdCriterion
references:
- name: Monitoring KeyVault Reference
url: https://docs.microsoft.com/en-us/azure/key-vault/general/monitor-key-vault-reference
- name: Monitoring Microsoft.KeyVault/vaults
url: https://docs.microsoft.com/en-us/azure/key-vault/general/monitor-key-vault
- name: KeyVault Insights Overview
url: https://docs.microsoft.com/en-us/azure/azure-monitor/insights/key-vault-insights-overview
deployments:
- description: Policy to audit/deploy KeyVault Capacity Alert
template: Deploy-KV-Capacity-Alert.json
Expand All @@ -75,6 +89,13 @@
operator: GreaterThan
threshold: 1000
criterionType: StaticThresholdCriterion
references:
- name: Monitoring KeyVault Reference
url: https://docs.microsoft.com/en-us/azure/key-vault/general/monitor-key-vault-reference
- name: Monitoring Microsoft.KeyVault/vaults
url: https://docs.microsoft.com/en-us/azure/key-vault/general/monitor-key-vault
- name: KeyVault Insights Overview
url: https://docs.microsoft.com/en-us/azure/azure-monitor/insights/key-vault-insights-overview
deployments:
- description: Policy to audit/deploy KeyVault Latency Alert
template: Deploy-KV-Latency-Alert.json
Expand All @@ -98,6 +119,13 @@
failingPeriods:
numberOfEvaluationPeriods: 4
minFailingPeriodsToAlert: 4
references:
- name: Monitoring KeyVault Reference
url: https://docs.microsoft.com/en-us/azure/key-vault/general/monitor-key-vault-reference
- name: Monitoring Microsoft.KeyVault/vaults
url: https://docs.microsoft.com/en-us/azure/key-vault/general/monitor-key-vault
- name: KeyVault Insights Overview
url: https://docs.microsoft.com/en-us/azure/azure-monitor/insights/key-vault-insights-overview
deployments:
- description: Policy to audit/deploy KeyVault Requests Alert
template: Deploy-KV-Requests-Alert.json
Expand Down
6 changes: 6 additions & 0 deletions services/Network/azureFirewalls/alerts.yaml
Original file line number Diff line number Diff line change
Expand Up @@ -35,6 +35,9 @@
operator: LessThan
threshold: 90
criterionType: StaticThresholdCriterion
references:
- name: Overview of Azure Firewall logs and metrics
url: https://docs.microsoft.com/en-us/azure/firewall/logs-and-metrics#metrics
deployments:
- description: Policy to audit/deploy Azure Firewall FirewallHealth Alert
template: Deploy-AFW-FirewallHealth-Alert.json
Expand All @@ -55,6 +58,9 @@
operator: LessThan
threshold: 80
criterionType: StaticThresholdCriterion
references:
- name: Overview of Azure Firewall logs and metrics
url: https://docs.microsoft.com/en-us/azure/firewall/logs-and-metrics#metrics
deployments:
- description: Policy to audit/deploy Azure Firewall SNATPortUtilization Alert
template: Deploy-AFW-SNATPortUtilization-Alert.json
Expand Down
20 changes: 20 additions & 0 deletions services/Network/expressRouteCircuits/alerts.yaml
Original file line number Diff line number Diff line change
Expand Up @@ -15,6 +15,11 @@
operator: LessThan
threshold: 90
criterionType: StaticThresholdCriterion
references:
- name: Monitor ExpressRoute Alerts
url: https://docs.microsoft.com/en-us/azure/expressroute/monitor-expressroute#alerts
- name: ExpressRoute KQL Queries
url: https://docs.microsoft.com/en-us/azure/expressroute/monitor-expressroute#sample-kusto-queries
deployments:
- description: Policy to audit/deploy ExpressRoute Circuits ARP Availability Alert
template: Deploy-ERCIR-ARPAvailability-Alert.json
Expand All @@ -35,6 +40,11 @@
operator: LessThan
threshold: 90
criterionType: StaticThresholdCriterion
references:
- name: Monitor ExpressRoute Alerts
url: https://docs.microsoft.com/en-us/azure/expressroute/monitor-expressroute#alerts
- name: ExpressRoute KQL Queries
url: https://docs.microsoft.com/en-us/azure/expressroute/monitor-expressroute#sample-kusto-queries
deployments:
- description: Policy to audit/deploy ExpressRoute Circuits BGP Availability Alert
template: Deploy-ERCIR-BGPAvailability-Alert.json
Expand All @@ -58,6 +68,11 @@
failingPeriods:
numberOfEvaluationPeriods: 4
minFailingPeriodsToAlert: 4
references:
- name: Monitor ExpressRoute Alerts
url: https://docs.microsoft.com/en-us/azure/expressroute/monitor-expressroute#alerts
- name: ExpressRoute KQL Queries
url: https://docs.microsoft.com/en-us/azure/expressroute/monitor-expressroute#sample-kusto-queries
deployments:
- description: Policy to audit/deploy ExpressRoute Circuits QosDropBitsInPerSecond
Alert
Expand All @@ -82,6 +97,11 @@
failingPeriods:
numberOfEvaluationPeriods: 4
minFailingPeriodsToAlert: 4
references:
- name: Monitor ExpressRoute Alerts
url: https://docs.microsoft.com/en-us/azure/expressroute/monitor-expressroute#alerts
- name: ExpressRoute KQL Queries
url: https://docs.microsoft.com/en-us/azure/expressroute/monitor-expressroute#sample-kusto-queries
deployments:
- description: Policy to audit/deploy ExpressRoute Circuits QosDropBitsOutPerSecond
Alert
Expand Down
9 changes: 9 additions & 0 deletions services/Network/expressRouteGateways/alerts.yaml
Original file line number Diff line number Diff line change
Expand Up @@ -15,6 +15,9 @@
operator: LessThan
threshold: 1
criterionType: StaticThresholdCriterion
references:
- name: ExpressRoute Monitoring Metrics Alerts for ExpressRoute Gateways
url: https://learn.microsoft.com/en-us/azure/expressroute/expressroute-monitoring-metrics-alerts#expressroute-gateways
deployments:
- description: Policy to audit/deploy ER Gateway Connection BitsInPerSecond Alert
template: Deploy-ERG-BitsInPerSecond-Alert.json
Expand All @@ -35,6 +38,9 @@
operator: LessThan
threshold: 1
criterionType: StaticThresholdCriterion
references:
- name: ExpressRoute Monitoring Metrics Alerts for ExpressRoute Gateways
url: https://learn.microsoft.com/en-us/azure/expressroute/expressroute-monitoring-metrics-alerts#expressroute-gateways
deployments:
- description: Policy to audit/deploy ER Gateway Connection BitsOutPerSecond Alert
template: Deploy-ERG-BitsOutPerSecond-Alert.json
Expand All @@ -55,6 +61,9 @@
operator: GreaterThan
threshold: 80
criterionType: StaticThresholdCriterion
references:
- name: ExpressRoute Monitoring Metrics Alerts for ExpressRoute Gateways
url: https://learn.microsoft.com/en-us/azure/expressroute/expressroute-monitoring-metrics-alerts#expressroute-gateways
deployments:
- description: Policy to audit/deploy ER Gateway Express Route CPU Utilization Alert
template: Deploy-ERG-CPUUtilization-Alert.json
22 changes: 22 additions & 0 deletions services/Network/loadBalancers/alerts.yaml
Original file line number Diff line number Diff line change
Expand Up @@ -15,6 +15,13 @@
operator: LessThan
threshold: 90
criterionType: StaticThresholdCriterion
references:
- name: Azure Monitor supported metrics by resource type - Azure Load Balancer
url: https://learn.microsoft.com/en-us/azure/azure-monitor/reference/supported-metrics/microsoft-network-loadbalancers-metrics
- name: Azure Load Balancer Multi-Demensional-Metrics
url: https://learn.microsoft.com/en-us/azure/load-balancer/load-balancer-standard-diagnostics#multi-dimensional-metrics
- name: Is The Data Path Up and Available for My Load-Balancer
url: https://learn.microsoft.com/en-us/azure/load-balancer/load-balancer-standard-diagnostics#is-the-data-path-up-and-available-for-my-load-balancer-frontend
deployments:
- description: Policy to audit/deploy Azure Load Balancer Data Path Availability
Alert
Expand All @@ -36,6 +43,9 @@
operator: LessThan
threshold: 90
criterionType: StaticThresholdCriterion
references:
- name: Azure Monitor supported metrics by resource type - Azure Load Balancer
url: https://learn.microsoft.com/en-us/azure/azure-monitor/reference/supported-metrics/microsoft-network-loadbalancers-metrics
deployments:
- description: Policy to audit/deploy Azure Load Balancer Global Backend Availability
Alert
Expand All @@ -57,6 +67,11 @@
operator: LessThan
threshold: 90
criterionType: StaticThresholdCriterion
references:
- name: Azure Monitor supported metrics by resource type - Azure Load Balancer
url: https://learn.microsoft.com/en-us/azure/azure-monitor/reference/supported-metrics/microsoft-network-loadbalancers-metrics
- name: Are Backend Instances for my Load-Balancer Responding to Probes
url: https://learn.microsoft.com/en-us/azure/load-balancer/load-balancer-standard-diagnostics#are-the-backend-instances-for-my-load-balancer-responding-to-probes
deployments:
- description: Policy to audit/deploy Azure Load Balancer Health Probe Status Alert
template: Deploy-LB-HealthProbeStatus-Alert.json
Expand All @@ -77,6 +92,13 @@
operator: GreaterThan
threshold: 900
criterionType: StaticThresholdCriterion
references:
- name: Azure Monitor supported metrics by resource type - Azure Load Balancer
url: https://learn.microsoft.com/en-us/azure/azure-monitor/reference/supported-metrics/microsoft-network-loadbalancers-metrics
- name: Load-Balancer Alerts
url: https://learn.microsoft.com/en-us/azure/load-balancer/monitor-load-balancer#alerts
- name: Check My SNAT Port Usage and Allocation
url: https://learn.microsoft.com/en-us/azure/load-balancer/load-balancer-standard-diagnostics#how-do-i-check-my-snat-port-usage-and-allocation
deployments:
- description: Policy to audit/deploy Azure Load Balancer Used SNAT Ports Alert
template: Deploy-LB-UsedSNATPorts-Alert.json
Expand Down
12 changes: 12 additions & 0 deletions services/Network/privateDnsZones/alerts.yaml
Original file line number Diff line number Diff line change
Expand Up @@ -16,6 +16,9 @@
operator: GreaterThanOrEqual
threshold: 80
criterionType: StaticThresholdCriterion
references:
- name: Private DNS Alert Metrics
url: https://learn.microsoft.com/en-us/azure/azure-monitor/reference/supported-metrics/microsoft-network-privatednszones-metrics
deployments:
- description: Policy to audit/deploy Private DNS Zone Capacity Utilization Alert
template: Deploy-PDNSZ-CapacityUtilization-Alert.json
Expand All @@ -36,6 +39,9 @@
operator: GreaterThanOrEqual
threshold: 500
criterionType: StaticThresholdCriterion
references:
- name: Private DNS Alert Metrics
url: https://learn.microsoft.com/en-us/azure/azure-monitor/reference/supported-metrics/microsoft-network-privatednszones-metrics
deployments:
- description: Policy to audit/deploy Private DNS Zone Query Volume Alert
template: Deploy-PDNSZ-QueryVolume-Alert.json
Expand All @@ -56,6 +62,9 @@
operator: GreaterThanOrEqual
threshold: 80
criterionType: StaticThresholdCriterion
references:
- name: Private DNS Alert Metrics
url: https://learn.microsoft.com/en-us/azure/azure-monitor/reference/supported-metrics/microsoft-network-privatednszones-metrics
deployments:
- description: Policy to audit/deploy Private DNS Zone Record Set Capacity Alert
template: Deploy-PDNSZ-RecordSetCapacity-Alert.json
Expand All @@ -77,6 +86,9 @@
operator: GreaterThanOrEqual
threshold: 80
criterionType: StaticThresholdCriterion
references:
- name: Private DNS Alert Metrics
url: https://learn.microsoft.com/en-us/azure/azure-monitor/reference/supported-metrics/microsoft-network-privatednszones-metrics
deployments:
- description: Policy to audit/deploy Private DNS Zone Registration Capacity Utilization
Alert
Expand Down
20 changes: 20 additions & 0 deletions services/Network/publicIPAddresses/alerts.yaml
Original file line number Diff line number Diff line change
Expand Up @@ -15,6 +15,11 @@
operator: GreaterThan
threshold: 8000000
criterionType: StaticThresholdCriterion
references:
- name: Monitor Public IP Addresses
url: https://learn.microsoft.com/en-us/azure/virtual-network/ip-services/monitor-public-ip#alerts
- name: Public IP Addresses Supported Metrics
url: https://learn.microsoft.com/en-us/azure/azure-monitor/essentials/metrics-supported#microsoftnetworkpublicipaddresses
deployments:
- description: Policy to audit/deploy PIP Bytes in DDoS Attack Alert
template: Deploy-PIP-BytesInDDOSAttack-Alert.json
Expand All @@ -35,6 +40,11 @@
operator: GreaterThan
threshold: 0
criterionType: StaticThresholdCriterion
references:
- name: Monitor Public IP Addresses
url: https://learn.microsoft.com/en-us/azure/virtual-network/ip-services/monitor-public-ip#alerts
- name: Public IP Addresses Supported Metrics
url: https://learn.microsoft.com/en-us/azure/azure-monitor/essentials/metrics-supported#microsoftnetworkpublicipaddresses
deployments:
- description: Policy to audit/deploy PIP DDoS Attack Alert
template: Deploy-PIP-DDOSAttack-Alert.json
Expand All @@ -55,6 +65,11 @@
operator: GreaterThanOrEqual
threshold: 40000
criterionType: StaticThresholdCriterion
references:
- name: Monitor Public IP Addresses
url: https://learn.microsoft.com/en-us/azure/virtual-network/ip-services/monitor-public-ip#alerts
- name: Public IP Addresses Supported Metrics
url: https://learn.microsoft.com/en-us/azure/azure-monitor/essentials/metrics-supported#microsoftnetworkpublicipaddresses
deployments:
- description: Policy to audit/deploy PIP Packets in DDoS Attack Alert
template: Deploy-PIP-PacketsInDDOS-Alert.json
Expand All @@ -75,6 +90,11 @@
operator: LessThan
threshold: 90
criterionType: StaticThresholdCriterion
references:
- name: Monitor Public IP Addresses
url: https://learn.microsoft.com/en-us/azure/virtual-network/ip-services/monitor-public-ip#alerts
- name: Public IP Addresses Supported Metrics
url: https://learn.microsoft.com/en-us/azure/azure-monitor/essentials/metrics-supported#microsoftnetworkpublicipaddresses
deployments:
- description: Policy to audit/deploy PIP VIP Availability Alert
template: Deploy-PIP-VIPAvailability-Alert.json
Expand Down
27 changes: 27 additions & 0 deletions services/Network/virtualNetworkGateways/alerts.yaml
Original file line number Diff line number Diff line change
Expand Up @@ -15,6 +15,9 @@
operator: LessThan
threshold: 1
criterionType: StaticThresholdCriterion
references:
- name: Supported metrics for microsoft.network/virtualnetworkgateways
url: https://learn.microsoft.com/en-us/azure/azure-monitor/reference/supported-metrics/microsoft-network-virtualnetworkgateways-metrics
deployments:
- description: Policy to audit/deploy Virtual Network Gateway Tunnel Bandwidth Alert
template: Deploy-VNETG-BandwidthUtilization-Alert.json
Expand All @@ -35,6 +38,9 @@
operator: LessThan
threshold: 1
criterionType: StaticThresholdCriterion
references:
- name: Supported metrics for microsoft.network/virtualnetworkgateways
url: https://learn.microsoft.com/en-us/azure/azure-monitor/reference/supported-metrics/microsoft-network-virtualnetworkgateways-metrics
deployments:
- description: Policy to audit/deploy Virtual Network Gateway Tunnel Egress Alert
template: Deploy-VNETG-Egress-Alert.json
Expand All @@ -58,6 +64,9 @@
failingPeriods:
numberOfEvaluationPeriods: 4
minFailingPeriodsToAlert: 4
references:
- name: Supported metrics for microsoft.network/virtualnetworkgateways
url: https://learn.microsoft.com/en-us/azure/azure-monitor/reference/supported-metrics/microsoft-network-virtualnetworkgateways-metrics
deployments:
- description: Policy to audit/deploy Vnet Gateway Egress Packet Drop Count Alert
template: Deploy-VNETG-EgressPacketDropCount-Alert.json
Expand All @@ -81,6 +90,9 @@
failingPeriods:
numberOfEvaluationPeriods: 4
minFailingPeriodsToAlert: 4
references:
- name: Supported metrics for microsoft.network/virtualnetworkgateways
url: https://learn.microsoft.com/en-us/azure/azure-monitor/reference/supported-metrics/microsoft-network-virtualnetworkgateways-metrics
deployments:
- description: Policy to audit/deploy Vnet Gateway Egress Packet Drop Mismatch Alert
template: Deploy-VNETG-EgressPacketDropMismatch-Alert.json
Expand All @@ -101,6 +113,9 @@
operator: LessThan
threshold: 1
criterionType: StaticThresholdCriterion
references:
- name: Supported metrics for microsoft.network/virtualnetworkgateways
url: https://learn.microsoft.com/en-us/azure/azure-monitor/reference/supported-metrics/microsoft-network-virtualnetworkgateways-metrics
deployments:
- description: Policy to audit/deploy Virtual Network Gateway Express Route Bits
Per Second Alert
Expand All @@ -122,6 +137,9 @@
operator: GreaterThan
threshold: 80
criterionType: StaticThresholdCriterion
references:
- name: Supported metrics for microsoft.network/virtualnetworkgateways
url: https://learn.microsoft.com/en-us/azure/azure-monitor/reference/supported-metrics/microsoft-network-virtualnetworkgateways-metrics
deployments:
- description: Policy to audit/deploy Virtual Network Gateway Express Route CPU
Utilization
Expand All @@ -143,6 +161,9 @@
operator: LessThan
threshold: 1
criterionType: StaticThresholdCriterion
references:
- name: Supported metrics for microsoft.network/virtualnetworkgateways
url: https://learn.microsoft.com/en-us/azure/azure-monitor/reference/supported-metrics/microsoft-network-virtualnetworkgateways-metrics
deployments:
- description: Policy to audit/deploy Virtual Network Gateway Tunnel Ingress Alert
template: Deploy-VNETG-Ingress-Alert.json
Expand All @@ -166,6 +187,9 @@
failingPeriods:
numberOfEvaluationPeriods: 4
minFailingPeriodsToAlert: 4
references:
- name: Supported metrics for microsoft.network/virtualnetworkgateways
url: https://learn.microsoft.com/en-us/azure/azure-monitor/reference/supported-metrics/microsoft-network-virtualnetworkgateways-metrics
deployments:
- description: Policy to audit/deploy Vnet Gateway Ingress Packet Drop Count Alert
template: Deploy-VNETG-IngressPacketDropCount-Alert.json
Expand All @@ -189,6 +213,9 @@
failingPeriods:
numberOfEvaluationPeriods: 4
minFailingPeriodsToAlert: 4
references:
- name: Supported metrics for microsoft.network/virtualnetworkgateways
url: https://learn.microsoft.com/en-us/azure/azure-monitor/reference/supported-metrics/microsoft-network-virtualnetworkgateways-metrics
deployments:
- description: Policy to audit/deploy Vnet Gateway Ingress Packet Drop Mismatch
Alert
Expand Down
Loading

0 comments on commit 87067ba

Please sign in to comment.