Share via

Microsoft managed storage accounts triggering defender rules

Janne Kujanpää 266 Reputation points
2023-03-29T09:33:42.1533333+00:00

Databricks managed storage accounts are again triggering some Defender rules:

Following rules are triggered by databricks managed storage accounts

  • Storage account should use a private link connection
  • Storage accounts should restrict network access using virtual network rules

Exemption cannot be added because resource group has deny assignment => the policy itself should ignore storage account managed by Microsoft/Databricks to avoid false positives.

Is there any workarounds for this while waiting policy fixes?


If anyone has contact with team writing those policies, please let them know. Otherwise, I'll just wait for policies being GAd and create support ticket(s).

Azure Databricks
Azure Databricks

An Apache Spark-based analytics platform optimized for Azure.

Microsoft Security | Microsoft Defender | Microsoft Defender for Cloud

Your answer

Answers can be marked as 'Accepted' by the question author and 'Recommended' by moderators, which helps users know the answer solved the author's problem.