Skip to content

AzAdvertizer data changes detected #2539

@avm-organizer

Description

@avm-organizer

Azure Advertizer Data Diff Report

Resource Type: microsoft.appconfiguration/configurationstores

New PSRule Recommendations:
- App Configuration Store replica location is not allowed

Resource Type: microsoft.appconfiguration/configurationstores/replicas

New PSRule Recommendations:
- App Configuration Store replica location is not allowed

Resource Type: microsoft.cognitiveservices/accounts/project_agent

New Advisor Recommendations:
- Foundry AI Agent with Indirect prompt Injection risk should require human in the loop control for MCP tool actions
- Foundry AI Agent with Indirect prompt Injection risk should use enhanced guardrails controls

Resource Type: microsoft.dashboard/grafana

New PSRule Recommendations:
- Use zone redundant Managed Grafana workspaces

Resource Type: microsoft.documentdb/cassandraclusters

New PSRule Recommendations:
- Use zone redundant Managed Instance for Apache Cassandra clusters

Resource Type: microsoft.documentdb/cassandraclusters/datacenters

New PSRule Recommendations:
- Use zone redundant Managed Instance for Apache Cassandra clusters

Resource Type: microsoft.documentdb/databaseaccounts

New PSRule Recommendations:
- Use zone redundant Cosmos DB accounts
- Cosmos DB NoSQL API account access keys are enabled

Resource Type: microsoft.documentdb/mongoclusters

New PSRule Recommendations:
- Use zone redundant Cosmos DB MongoDB vCore clusters
- MongoDB vCore clusters should use Microsoft Entra ID authentication

Resource Type: microsoft.eventhub/namespaces

New PSRule Recommendations:
- Use zone redundant Event Hub namespaces

Resource Type: microsoft.kusto/clusters

New PSRule Recommendations:
- Disable public network access on Data Explorer clusters

Resource Type: microsoft.network/azurefirewalls

New APRL Recommendations:
- Monitor "AZFW Latency Probe" metric

Resource Type: microsoft.security/awsresource

New Advisor Recommendations:
- Avoid the use of the "root" account
- IAM policies that allow full ":" administrative privileges should not be created

Resource Type: microsoft.sql/servers

New PSRule Recommendations:
- Customer-controlled maintenance window configuration

Metadata

Metadata

Assignees

No one assigned

    Labels

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions