Summary
This release brings mainly lots of goodness in the Azure Policy space as well as improving our testing, thanks to PSRule for Azure, also updating the Private DNS Zones for Private Link that get deployed in the Private DNS Zones module, and finally changing our module docs to being programmatically generated, so you only need to update a .bicep
module now and the docs get generated as part of your PR 🥳
Policy Changes
- Converted
Deny-Public-IP
assignment to new assignment using built-in policy calledDeny-Public-IP-Addresses
as detailed in #398 & #386 - Add new default assignment of
Deploy-Private-DNS-Zones
tocorp
MG fixing #137 and brining assignments into alignment across all ALZ implementation options (portal and Terraform) - Remove assignment of
Deny-Public-IP
in default assignments fromcorp
to bring assignments into alignment across all ALZ implementation options (portal and Terraform)
Breaking Changes
Nothing technically breaking, however you will just need to remove the old policy assignments of Deny-Public-IP
from corp
and identity
Management Groups and re-run/deploy the alzDefaultPolicyAssignments.bicep
and this will put the assignment, using the built-in definition instead of the custom one, to the identity
Management Group.
More on this process and instructions can be found here: How to migrate ALZ custom policies to Azure built-in policies
What's Changed
- 16989: Add bicep sample code by @khushal08 in #355
- Fix #388 - Incorrect variable reference by @oZakari in #390
- Fixed documentation on parLandingZoneMgChildren parameter description… by @lachaves in #394
- Replaced DDoS Standard with DDoS Network Protection by @lachaves in #396
- Resolve #386 & #330 by @jtracey93 in #398
- ALZ Bicep - Generate Markdown for Parameters by @JamJarchitect in #304
- Update Policy Library (automated) by @github-actions in #400
- Update Private DNS Zones by @jtracey93 in #403
- Change conditional source - Fix #406 by @jtracey93 in #407
New Contributors
- @khushal08 made their first contribution in #355
- @oZakari made their first contribution in #390
Full Changelog: v0.11.0...v0.12.0