Landing Zone Configuration Resource Properties Args
The properties of landing zone configuration resource type.
Constructors
Properties
Parameter used to deploy a Bastion: Select 'Yes' to enable deployment, 'No' to skip it, or 'Existing' to reuse an existing Bastion.
The Bastion subnet address. Specify the address using IPv4 CIDR notation.
The custom naming convention applied to specific resource types for this landing zone configuration, which overrides the default naming convention for those resource types. Example - 'customNamingConvention': {'resourceType': 'azureFirewalls', 'formula': '{DeploymentPrefix}-afwl-{DeploymentSuffix}'}
Parameter used to deploy a DDoS protection plan: Select 'Yes' to enable deployment, 'No' to skip it, or 'Existing' to reuse an existing DDoS protection plan.
The assigned policies of the 'Decommissioned' management group and indicator to create it or not.
The resource ID of the Bastion when reusing an existing one.
The resource ID of the DDoS protection plan when reusing an existing one.
The resource ID of the log analytics workspace when reusing an existing one.
Parameter used for deploying a Firewall: Select 'No' to skip deployment, 'Standard' to deploy the Standard SKU, or 'Premium' to deploy the Premium SKU.
The Firewall subnet address used for deploying a firewall. Specify the Firewall subnet using IPv4 CIDR notation.
The gateway subnet address used for deploying a virtual network. Specify the subnet using IPv4 CIDR notation.
The Virtual Network address. Specify the address using IPv4 CIDR notation.
The child management groups of 'Landing Zones' management group and their assigned policies.
The assigned policies of the 'Landing Zones' management group.
Parameter used to deploy a log analytics workspace: Select 'Yes' to enable deployment, 'No' to skip it, or 'Existing' to reuse an existing log analytics workspace.
Parameter to define the retention period for logs, in days. The minimum duration is 30 days and the maximum is 730 days.
The managed identity to be assigned to this landing zone configuration.
The default naming convention applied to all resources for this landing zone configuration. Example - {DeploymentPrefix}-Contoso-{ResourceTypeAbbreviation}{DeploymentSuffix}-{Environment}-testing
The assigned policies of the 'Connectivity' management group under 'Platform' management group.
The assigned policies of the 'Identity' management group under 'Platform' management group.
The assigned policies of the 'Management' management group under 'Platform' management group.
The names of the 'Platform' child management groups and their assigned policies, excluding the default ones: 'Connectivity', 'Identity', and 'Management'
The assigned policies of the 'Platform' management group.
The assigned policies of the 'Sandbox' management group and indicator to create it or not.
The assigned policies of the parent management group.