Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

AMPLS Private Endpoint connected to Hub VNET #738

Closed
FabienGilbert opened this issue Aug 24, 2022 · 0 comments · Fixed by #739
Closed

AMPLS Private Endpoint connected to Hub VNET #738

FabienGilbert opened this issue Aug 24, 2022 · 0 comments · Fixed by #739
Labels
bug Something isn't working

Comments

@FabienGilbert
Copy link
Contributor

Description

The Azure Monitor Private Link Scope gets created in the Hub tier.

The Log Analytics Workspace is in the Operations tier. It would make sense for the AMPLS and its Private Endpoint to be in the Operations tier and attached to the Operations VNET.

Besides, when using a small prefix for the hub subnet in the hub VNET, such as /28, which is not that uncommon for our customers using limited NIPR or SIPR IP space, the AMPLS Private Endpoint ends up using most available IP addresses in the hub subnet. Meanwhile the operations VNET sits empty.

Steps to Reproduce

Steps to reproduce the behavior:

  1. Deploy MLZ

Expected behavior

The Log Analytics Workspace is in the Operations Resource Group. The Azure Monitor Private Links Scope is in the Operations Resource Group and its Private Endpoint is attached to the Operations VNET.

Actual behavior

The Log Analytics Workspace is in the Operations Resource Group. The Azure Monitor Private Links Scope is in the Hub Resource Group and its Private Endpoint is attached to the Hub VNET.

Screenshots

image
image
image

Additional context

Operating System: Windows 11
Terraform Version: Bicep
Cloud (public, Azure Government, etc.): Both public and Azure US Gov

@FabienGilbert FabienGilbert added the bug Something isn't working label Aug 24, 2022
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
bug Something isn't working
Projects
None yet
Development

Successfully merging a pull request may close this issue.

1 participant