Azure / Enterprise-Scale

The Azure Landing Zones (Enterprise-Scale) architecture provides prescriptive guidance coupled with Azure best practices, and it follows design principles across the critical design areas for organizations to define their Azure architecture
https://aka.ms/alz
MIT License
1.69k stars 963 forks source link

Defender for Cloud provisioning cleanup - remove D4C DNS and VM Vulnerability Assessment Provider #1577

Closed Springstone closed 4 months ago

Springstone commented 7 months ago

Overview/Summary

Defender for Cloud provisioning cleanup - remove D4C DNS and VM Vulnerability Assessment Provider

Defender for Cloud for DNS is deprecated and replaced by features in Defender for Servers. The vulnerability assessment provider for Qualys is being deprecated, and the default ("mdeTvm") - Microsoft Defender for Endpoint Thread Vulnerability Management is the only option going forward.

This PR fixes/adds/changes/removes

  1. Updates to initiatives and assignments

Breaking Changes

  1. Breaking for initiative: Deploy-MDFC-Config
  2. Breaking for assignment: DINE-MDFCConfigPolicyAssignment

As part of this Pull Request I have

Springstone commented 5 months ago

@jtracey93 Can I merge this? It's been pending for a while.