How to set up alerts for the creation and updating of Azure policies at the management group level within your Azure environment.

Monalla-MSFT 12,771 Reputation points
2024-07-17T20:44:22.2066667+00:00

I am trying to set up alerts for the creation and updating of Azure policies at the management group level within your Azure environment. This issue stems from the expectation to monitor policy changes effectively at this level.

Azure Monitor
Azure Monitor
An Azure service that is used to collect, analyze, and act on telemetry data from Azure and on-premises environments.
3,012 questions
0 comments No comments
{count} votes

1 answer

Sort by: Most helpful
  1. Stanislav Zhelyazkov 22,101 Reputation points MVP
    2024-07-18T06:05:12.1766667+00:00

    Hi,

    As creating and updating Azure policies is administrative log event like any other resource setup diagnostic settings at management group scope for each management group. When you send the logs to Log Analytics you can create Log alert for those events. This is due to activity log alerts can only be created at subscription scope so you cannot create activity log alert to apply to management group activity log events.

    Please "Accept the answer" if the information helped you. This will help us and others in the community as well.

    0 comments No comments