Working with Azure Policies¶
This is level 200 workshop that covers different aspects of working with Azure Policies where you will learn:
- What is Azure Policy
- How Azure Policy definition is structured
- What is Azure Policy Initiative
- How to assign Policy
- How to implement custom Policy
- How to implement Azure Policy as Code
- What is Policy driven governance
- What are the best practices for working with Azure Policy
and much more...
Workshop is organized as a combination of theoretical blocks with slides and hand-on labs. Estimated time for workshop completion is between 3 and 4 hours.
Agenda¶
- Welcome + practical information
- Azure Policy overview (slides)
- Lab-01 - Provision lab resources
- Lab-02 - Assign
Require a tag on resource groups
andRequire a tag on resources
deny policies toiac-ws7-rg
resource group - Lab-03 - Implement Azure policies to enforce naming convention for your Azure resources
- Lab-04 - Implement Azure Initiative to group naming convention policy definitions for supported resource types
- Lab-05 - Deploy and configure Network Security Group flow logs with
Deploy If Not Exists
(DINE) policy - Lab-06 - Azure policy Compliance, Remediation and Exemptions
- Lab-07 - Cleaning up resources
Prerequisites¶
Please spend some time before the workshop and make sure that you have installed/registered/configured all prerequisites.