Azure / Enterprise-Scale

The Azure Landing Zones (Enterprise-Scale) architecture provides prescriptive guidance coupled with Azure best practices, and it follows design principles across the critical design areas for organizations to define their Azure architecture
https://aka.ms/alz
MIT License
1.72k stars 980 forks source link

Azure Firewall Diagnostic logging - Resource specific mode #1819

Open gerrynicol opened 1 month ago

gerrynicol commented 1 month ago

Describe the feature end to end, including deployment scenario details under which the feature would occur.

Azure Firewall now has resource specific mode for logging. This offers better logging and reduced costs. Would it be possible to add this as an option for the firewall logging in the Initiaitive - 'Enable allLogs category group resource logging for supported resources to Log Analytics'

https://learn.microsoft.com/en-us/azure/firewall/monitor-firewall

Thanks Gerry

Why is this feature important. Describe why this would be important for your organization and others. Would this impact similar orgs in the same way?

Gives better option to view trace logs

Please provide the correlation id associated with your error or bug.

xxxxxxxx-xxxx-xxxx-xxxx-xxxxxxxxxxxx

Can you describe any alternatives that you have taken since this feature does not exist?

No response

Feature Implementation

No response

Check previous GitHub issues

Code of Conduct

oZakari commented 1 month ago

@Springstone is this something we could potentially add in?

Springstone commented 3 weeks ago

@gerrynicol thanks for reaching out. This is on the roadmap. All resources will be transitioning to resource specific logging (away from logging to the same core tables) however, this will take time to adopt - and other priorities have slowed progress. PG are waiting for more resources to support this to justify the engineering cost of changing diagnostic settings logging. Will keep you posted.