Policy Events - List Query Results For Subscription
Consulta eventos de política para os recursos sob a assinatura.
POST https://management.azure.com/subscriptions/{subscriptionId}/providers/Microsoft.PolicyInsights/policyEvents/default/queryResults?api-version=2024-10-01
POST https://management.azure.com/subscriptions/{subscriptionId}/providers/Microsoft.PolicyInsights/policyEvents/default/queryResults?api-version=2024-10-01&$top={$top}&$orderby={$orderby}&$select={$select}&$from={$from}&$to={$to}&$filter={$filter}&$apply={$apply}&$skiptoken={$skiptoken}
Parâmetros do URI
| Name | Em | Necessário | Tipo | Description |
|---|---|---|---|---|
|
policy
|
path | True |
O nome do recurso virtual em PolicyEvents tipo de recurso; apenas "padrão" é permitido. |
|
|
subscription
|
path | True |
string minLength: 1 |
O ID da assinatura de destino. |
|
api-version
|
query | True |
string minLength: 1 |
A versão da API a utilizar para esta operação. |
|
$apply
|
query |
string |
OData aplicar expressão para agregações. |
|
|
$filter
|
query |
string |
Expressão de filtro OData. |
|
|
$from
|
query |
string (date-time) |
Carimbo de data/hora formatado ISO 8601 especificando a hora de início do intervalo a consultar. Quando não especificado, o serviço usa ($to - 1 dia). |
|
|
$orderby
|
query |
string |
Ordenando a expressão usando a notação OData. Um ou mais nomes de coluna separados por vírgulas com um "desc" opcional (o padrão) ou "asc", por exemplo, "$orderby=PolicyAssignmentId, ResourceId asc". |
|
|
$select
|
query |
string |
Selecione a expressão usando a notação OData. Limita as colunas em cada registro apenas àquelas solicitadas, por exemplo, "$select=PolicyAssignmentId, ResourceId". |
|
|
$skiptoken
|
query |
string |
Skiptoken só é fornecido se uma resposta anterior retornou um resultado parcial como parte do elemento nextLink. |
|
|
$to
|
query |
string (date-time) |
Carimbo de data/hora formatado ISO 8601 especificando a hora de término do intervalo a ser consultado. Quando não especificado, o serviço usa o tempo de solicitação. |
|
|
$top
|
query |
integer (int32) minimum: 0 |
Número máximo de registos a devolver. |
Respostas
| Name | Tipo | Description |
|---|---|---|
| 200 OK |
O pedido foi bem-sucedido. |
|
| Other Status Codes |
Uma resposta de erro inesperada. |
Segurança
azure_auth
Azure Active Directory OAuth2 Flow.
Tipo:
oauth2
Fluxo:
implicit
URL de Autorização:
https://login.microsoftonline.com/common/oauth2/authorize
Âmbitos
| Name | Description |
|---|---|
| user_impersonation | personificar a sua conta de utilizador |
Exemplos
Filter and aggregate only
Pedido de amostra
POST https://management.azure.com/subscriptions/fffedd8f-ffff-fffd-fffd-fffed2f84852/providers/Microsoft.PolicyInsights/policyEvents/default/queryResults?api-version=2024-10-01&$from=2018-02-05T18:00:00Z&$filter=PolicyDefinitionAction eq 'deny'&$apply=aggregate($count as NumDenyEvents)
Resposta da amostra
{
"@odata.context": "https://management.azure.com/subscriptions/fffedd8f-ffff-fffd-fffd-fffed2f84852/providers/Microsoft.PolicyInsights/policyEvents/$metadata#default",
"@odata.count": 1,
"value": [
{
"@odata.context": "https://management.azure.com/subscriptions/fffedd8f-ffff-fffd-fffd-fffed2f84852/providers/Microsoft.PolicyInsights/policyEvents/$metadata#default/$entity",
"@odata.id": null,
"NumDenyEvents": 40
}
]
}
Filter and group with aggregate
Pedido de amostra
POST https://management.azure.com/subscriptions/fffedd8f-ffff-fffd-fffd-fffed2f84852/providers/Microsoft.PolicyInsights/policyEvents/default/queryResults?api-version=2024-10-01&$top=2&$from=2018-02-05T18:00:00Z&$filter=PolicyDefinitionAction eq 'audit' or PolicyDefinitionAction eq 'deny'&$apply=groupby((PolicyAssignmentId, PolicyDefinitionId, PolicyDefinitionAction, ResourceId), aggregate($count as NumEvents))
Resposta da amostra
{
"@odata.context": "https://management.azure.com/subscriptions/fffedd8f-ffff-fffd-fffd-fffed2f84852/providers/Microsoft.PolicyInsights/policyEvents/$metadata#default",
"@odata.count": 2,
"value": [
{
"@odata.context": "https://management.azure.com/subscriptions/fffedd8f-ffff-fffd-fffd-fffed2f84852/providers/Microsoft.PolicyInsights/policyEvents/$metadata#default/$entity",
"@odata.id": null,
"NumEvents": 1,
"policyAssignmentId": "/subscriptions/fffedd8f-ffff-fffd-fffd-fffed2f84852/providers/microsoft.authorization/policyassignments/3f3c4330183b4e218fe6fd29",
"policyDefinitionAction": "audit",
"policyDefinitionId": "/subscriptions/fffedd8f-ffff-fffd-fffd-fffed2f84852/providers/microsoft.authorization/policydefinitions/24813039-7534-408a-9842-eb99f45721b1",
"resourceId": "/subscriptions/fffedd8f-ffff-fffd-fffd-fffed2f84852/resourcegroups/myResourceGroup/providers/microsoft.servicefabric/clusters/myCluster/applications/resourcescachemonitor/services/myService"
},
{
"@odata.context": "https://management.azure.com/subscriptions/fffedd8f-ffff-fffd-fffd-fffed2f84852/providers/Microsoft.PolicyInsights/policyEvents/$metadata#default/$entity",
"@odata.id": null,
"NumEvents": 1,
"policyAssignmentId": "/subscriptions/fffedd8f-ffff-fffd-fffd-fffed2f84852/providers/microsoft.authorization/policyassignments/d6be6bb37e5f4333baa95c2a",
"policyDefinitionAction": "audit",
"policyDefinitionId": "/subscriptions/fffedd8f-ffff-fffd-fffd-fffed2f84852/providers/microsoft.authorization/policydefinitions/5948d091-78b7-4d3b-a404-cc6a0329b0c6",
"resourceId": "/subscriptions/fffedd8f-ffff-fffd-fffd-fffed2f84852/resourcegroups/myResourceGroup/providers/microsoft.servicefabric/clusters/myCluster/applications/resourcescachemonitor/services/myService"
}
]
}
Filter and group without aggregate
Pedido de amostra
POST https://management.azure.com/subscriptions/fffedd8f-ffff-fffd-fffd-fffed2f84852/providers/Microsoft.PolicyInsights/policyEvents/default/queryResults?api-version=2024-10-01&$top=2&$from=2018-01-05T18:00:00Z&$filter=PolicyDefinitionAction ne 'audit' and PolicyDefinitionAction ne 'append'&$apply=groupby((PolicyAssignmentId, PolicyDefinitionId, PolicyDefinitionAction, ResourceId))
Resposta da amostra
{
"@odata.context": "https://management.azure.com/subscriptions/fffedd8f-ffff-fffd-fffd-fffed2f84852/providers/Microsoft.PolicyInsights/policyEvents/$metadata#default",
"@odata.count": 2,
"value": [
{
"@odata.context": "https://management.azure.com/subscriptions/fffedd8f-ffff-fffd-fffd-fffed2f84852/providers/Microsoft.PolicyInsights/policyEvents/$metadata#default/$entity",
"@odata.id": null,
"policyAssignmentId": "/subscriptions/fffedd8f-ffff-fffd-fffd-fffed2f84852/resourcegroups/5bc427ca-0089-4d0d-85bd-e98d1e40b3bf/providers/microsoft.authorization/policyassignments/storageaccountsku",
"policyDefinitionAction": "deny",
"policyDefinitionId": "/providers/microsoft.authorization/policydefinitions/7433c107-6db4-4ad1-b57a-a76dce0154a1",
"resourceId": "/subscriptions/fffedd8f-ffff-fffd-fffd-fffed2f84852/resourcegroups/5bc427ca-0089-4d0d-85bd-e98d1e40b3bf/providers/microsoft.storage/storageaccounts/7d528d3a"
},
{
"@odata.context": "https://management.azure.com/subscriptions/fffedd8f-ffff-fffd-fffd-fffed2f84852/providers/Microsoft.PolicyInsights/policyEvents/$metadata#default/$entity",
"@odata.id": null,
"policyAssignmentId": "/subscriptions/fffedd8f-ffff-fffd-fffd-fffed2f84852/resourcegroups/myResourceGroup/providers/microsoft.authorization/policyassignments/da43b50031bf4bce84584faa",
"policyDefinitionAction": "deny",
"policyDefinitionId": "/providers/microsoft.authorization/policydefinitions/1e30110a-5ceb-460c-a204-c1c3969c6d62",
"resourceId": "/subscriptions/fffedd8f-ffff-fffd-fffd-fffed2f84852/resourcegroups/myResourceGroup/providers/microsoft.storage/storageaccounts/mysa1"
}
]
}
Filter and multiple groups
Pedido de amostra
POST https://management.azure.com/subscriptions/fffedd8f-ffff-fffd-fffd-fffed2f84852/providers/Microsoft.PolicyInsights/policyEvents/default/queryResults?api-version=2024-10-01&$top=10&$orderby=NumDeniedResources desc&$from=2018-01-01T00:00:00Z&$filter=PolicyDefinitionAction eq 'deny'&$apply=groupby((PolicyAssignmentId, PolicyDefinitionId, ResourceId))/groupby((PolicyAssignmentId, PolicyDefinitionId), aggregate($count as NumDeniedResources))
Resposta da amostra
{
"@odata.context": "https://management.azure.com/subscriptions/fffedd8f-ffff-fffd-fffd-fffed2f84852/providers/Microsoft.PolicyInsights/policyEvents/$metadata#default",
"@odata.count": 6,
"value": [
{
"@odata.context": "https://management.azure.com/subscriptions/fffedd8f-ffff-fffd-fffd-fffed2f84852/providers/Microsoft.PolicyInsights/policyEvents/$metadata#default/$entity",
"@odata.id": null,
"NumDeniedResources": 3,
"policyAssignmentId": "/subscriptions/fffedd8f-ffff-fffd-fffd-fffed2f84852/resourcegroups/myResourceGroup1/providers/microsoft.authorization/policyassignments/0591f497c35344fcbaf7a393",
"policyDefinitionId": "/providers/microsoft.authorization/policydefinitions/e56962a6-4747-49cd-b67b-bf8b01975c4c"
},
{
"@odata.context": "https://management.azure.com/subscriptions/fffedd8f-ffff-fffd-fffd-fffed2f84852/providers/Microsoft.PolicyInsights/policyEvents/$metadata#default/$entity",
"@odata.id": null,
"NumDeniedResources": 2,
"policyAssignmentId": "/subscriptions/fffedd8f-ffff-fffd-fffd-fffed2f84852/resourcegroups/myResourceGroup1/providers/microsoft.authorization/policyassignments/myassignment1",
"policyDefinitionId": "/subscriptions/fffedd8f-ffff-fffd-fffd-fffed2f84852/providers/microsoft.authorization/policydefinitions/mydefinition1"
},
{
"@odata.context": "https://management.azure.com/subscriptions/fffedd8f-ffff-fffd-fffd-fffed2f84852/providers/Microsoft.PolicyInsights/policyEvents/$metadata#default/$entity",
"@odata.id": null,
"NumDeniedResources": 2,
"policyAssignmentId": "/subscriptions/fffedd8f-ffff-fffd-fffd-fffed2f84852/resourcegroups/myResourceGroup1/providers/microsoft.authorization/policyassignments/myassignment1",
"policyDefinitionId": "/subscriptions/fffedd8f-ffff-fffd-fffd-fffed2f84852/providers/microsoft.authorization/policydefinitions/mydefinition2"
},
{
"@odata.context": "https://management.azure.com/subscriptions/fffedd8f-ffff-fffd-fffd-fffed2f84852/providers/Microsoft.PolicyInsights/policyEvents/$metadata#default/$entity",
"@odata.id": null,
"NumDeniedResources": 1,
"policyAssignmentId": "/subscriptions/fffedd8f-ffff-fffd-fffd-fffed2f84852/resourcegroups/5bc427ca-0089-4d0d-85bd-e98d1e40b3bf/providers/microsoft.authorization/policyassignments/storageaccountsku",
"policyDefinitionId": "/providers/microsoft.authorization/policydefinitions/7433c107-6db4-4ad1-b57a-a76dce0154a1"
},
{
"@odata.context": "https://management.azure.com/subscriptions/fffedd8f-ffff-fffd-fffd-fffed2f84852/providers/Microsoft.PolicyInsights/policyEvents/$metadata#default/$entity",
"@odata.id": null,
"NumDeniedResources": 1,
"policyAssignmentId": "/subscriptions/fffedd8f-ffff-fffd-fffd-fffed2f84852/resourcegroups/myResourceGroup2/providers/microsoft.authorization/policyassignments/da43b50031bf4bce84584faa",
"policyDefinitionId": "/providers/microsoft.authorization/policydefinitions/1e30110a-5ceb-460c-a204-c1c3969c6d62"
},
{
"@odata.context": "https://management.azure.com/subscriptions/fffedd8f-ffff-fffd-fffd-fffed2f84852/providers/Microsoft.PolicyInsights/policyEvents/$metadata#default/$entity",
"@odata.id": null,
"NumDeniedResources": 1,
"policyAssignmentId": "/subscriptions/fffedd8f-ffff-fffd-fffd-fffed2f84852/resourcegroups/myResourceGroup2/providers/microsoft.authorization/policyassignments/myassignment2",
"policyDefinitionId": "/subscriptions/fffedd8f-ffff-fffd-fffd-fffed2f84852/providers/microsoft.authorization/policydefinitions/mydefinition3"
}
]
}
Query at subscription scope
Pedido de amostra
POST https://management.azure.com/subscriptions/fffedd8f-ffff-fffd-fffd-fffed2f84852/providers/Microsoft.PolicyInsights/policyEvents/default/queryResults?api-version=2024-10-01
Resposta da amostra
{
"@odata.context": "https://management.azure.com/subscriptions/fff10b27-fff3-fff5-fff8-fffbe01e86a5/providers/Microsoft.PolicyInsights/policyEvents/$metadata#default",
"@odata.count": 2,
"@odata.nextLink": null,
"value": [
{
"@odata.context": "https://management.azure.com/subscriptions/fff10b27-fff3-fff5-fff8-fffbe01e86a5/providers/Microsoft.PolicyInsights/policyEvents/$metadata#default/$entity",
"@odata.id": null,
"complianceState": "NonCompliant",
"effectiveParameters": null,
"isCompliant": false,
"managementGroupIds": "myManagementGroup,fff988bf-fff1-ffff-fffb-fffcd011db47",
"policyAssignmentId": "/providers/Microsoft.Management/managementGroups/myManagementGroup/providers/Microsoft.Authorization/policyAssignments/ec62f9b2a454487296f2ccd4",
"policyAssignmentName": "ec62f9b2a454487296f2ccd4",
"policyAssignmentOwner": "tbd",
"policyAssignmentParameters": "{\"ALLOWEDRESOURCEGROUPS_1\":{\"value\":[\"rg1\",\"rg2\"]},\"ALLOWEDRESOURCEGROUPS_2\":{\"value\":[\"myrg3\",\"myrg4\"]}}",
"policyAssignmentScope": "/providers/Microsoft.Management/managementGroups/myManagementGroup",
"policyDefinitionAction": "audit",
"policyDefinitionCategory": "tbd",
"policyDefinitionId": "/providers/Microsoft.Management/managementGroups/myManagementGroup/providers/Microsoft.Authorization/policyDefinitions/72c0c41a-c752-4bc0-9c61-0d6adc567066",
"policyDefinitionName": "72c0c41a-c752-4bc0-9c61-0d6adc567066",
"policyDefinitionReferenceId": "181565554491747128",
"policySetDefinitionCategory": null,
"policySetDefinitionId": "/providers/Microsoft.Management/managementGroups/myManagementGroup/providers/Microsoft.Authorization/policySetDefinitions/00b36c66-612b-44e2-9f8e-b758296d40fe",
"policySetDefinitionName": "00b36c66-612b-44e2-9f8e-b758296d40fe",
"policySetDefinitionOwner": null,
"policySetDefinitionParameters": null,
"principalOid": "fffdfc0f-fff5-fff0-fff3-fff1a968dcc6",
"resourceGroup": "myResourceGroup",
"resourceId": "/subscriptions/fff10b27-fff3-fff5-fff8-fffbe01e86a5/resourcegroups/myResourceGroup/providers/Microsoft.ServiceFabric/clusters/myCluster/applications/myApplication",
"resourceLocation": "eastus",
"resourceTags": "tbd",
"resourceType": "/Microsoft.ServiceFabric/clusters/applications",
"subscriptionId": "fff10b27-fff3-fff5-fff8-fffbe01e86a5",
"tenantId": "fff988bf-fff1-ffff-fffb-fffcd011db47",
"timestamp": "2018-02-07T20:43:04.6971328Z"
},
{
"@odata.context": "https://management.azure.com/subscriptions/fff10b27-fff3-fff5-fff8-fffbe01e86a5/providers/Microsoft.PolicyInsights/policyEvents/$metadata#default/$entity",
"@odata.id": null,
"complianceState": "NonCompliant",
"effectiveParameters": null,
"isCompliant": false,
"managementGroupIds": "myManagementGroup,fff988bf-fff1-ffff-fffb-fffcd011db47",
"policyAssignmentId": "/providers/Microsoft.Management/managementGroups/myManagementGroup/providers/Microsoft.Authorization/policyAssignments/ec62f9b2a454487296f2ccd4",
"policyAssignmentName": "ec62f9b2a454487296f2ccd4",
"policyAssignmentOwner": "tbd",
"policyAssignmentParameters": "{\"ALLOWEDRESOURCEGROUPS_1\":{\"value\":[\"rg1\",\"rg2\"]},\"ALLOWEDRESOURCEGROUPS_2\":{\"value\":[\"myrg3\",\"myrg4\"]}}",
"policyAssignmentScope": "/providers/Microsoft.Management/managementGroups/myManagementGroup",
"policyDefinitionAction": "audit",
"policyDefinitionCategory": "tbd",
"policyDefinitionId": "/providers/Microsoft.Management/managementGroups/myManagementGroup/providers/Microsoft.Authorization/policyDefinitions/72c0c41a-c752-4bc0-9c61-0d6adc567066",
"policyDefinitionName": "72c0c41a-c752-4bc0-9c61-0d6adc567066",
"policyDefinitionReferenceId": "624540685646900425",
"policySetDefinitionCategory": null,
"policySetDefinitionId": "/providers/Microsoft.Management/managementGroups/myManagementGroup/providers/Microsoft.Authorization/policySetDefinitions/00b36c66-612b-44e2-9f8e-b758296d40fe",
"policySetDefinitionName": "00b36c66-612b-44e2-9f8e-b758296d40fe",
"policySetDefinitionOwner": null,
"policySetDefinitionParameters": null,
"principalOid": "fffdfc0f-fff5-fff0-fff3-fff1a968dcc6",
"resourceGroup": "myResourceGroup",
"resourceId": "/subscriptions/fff10b27-fff3-fff5-fff8-fffbe01e86a5/resourcegroups/myResourceGroup/providers/Microsoft.ServiceFabric/clusters/myCluster/applications/myApplication",
"resourceLocation": "eastus",
"resourceTags": "tbd",
"resourceType": "/Microsoft.ServiceFabric/clusters/applications",
"subscriptionId": "fff10b27-fff3-fff5-fff8-fffbe01e86a5",
"tenantId": "fff988bf-fff1-ffff-fffb-fffcd011db47",
"timestamp": "2018-02-07T20:43:04.6971328Z"
}
]
}
Query at subscription scope with next link
Pedido de amostra
POST https://management.azure.com/subscriptions/fffedd8f-ffff-fffd-fffd-fffed2f84852/providers/Microsoft.PolicyInsights/policyEvents/default/queryResults?api-version=2024-10-01&$skiptoken=WpmWfBSvPhkAK6QD
Resposta da amostra
{
"@odata.context": "https://management.azure.com/subscriptions/fff10b27-fff3-fff5-fff8-fffbe01e86a5/providers/Microsoft.PolicyInsights/policyEvents/$metadata#default",
"@odata.count": 2,
"@odata.nextLink": null,
"value": [
{
"@odata.context": "https://management.azure.com/subscriptions/fff10b27-fff3-fff5-fff8-fffbe01e86a5/providers/Microsoft.PolicyInsights/policyEvents/$metadata#default/$entity",
"@odata.id": null,
"complianceState": "NonCompliant",
"effectiveParameters": null,
"isCompliant": false,
"managementGroupIds": "myManagementGroup,fff988bf-fff1-ffff-fffb-fffcd011db47",
"policyAssignmentId": "/providers/Microsoft.Management/managementGroups/myManagementGroup/providers/Microsoft.Authorization/policyAssignments/ec62f9b2a454487296f2ccd4",
"policyAssignmentName": "ec62f9b2a454487296f2ccd4",
"policyAssignmentOwner": "tbd",
"policyAssignmentParameters": "{\"ALLOWEDRESOURCEGROUPS_1\":{\"value\":[\"rg1\",\"rg2\"]},\"ALLOWEDRESOURCEGROUPS_2\":{\"value\":[\"myrg3\",\"myrg4\"]}}",
"policyAssignmentScope": "/providers/Microsoft.Management/managementGroups/myManagementGroup",
"policyDefinitionAction": "audit",
"policyDefinitionCategory": "tbd",
"policyDefinitionId": "/providers/Microsoft.Management/managementGroups/myManagementGroup/providers/Microsoft.Authorization/policyDefinitions/72c0c41a-c752-4bc0-9c61-0d6adc567066",
"policyDefinitionName": "72c0c41a-c752-4bc0-9c61-0d6adc567066",
"policyDefinitionReferenceId": "181565554491747128",
"policySetDefinitionCategory": null,
"policySetDefinitionId": "/providers/Microsoft.Management/managementGroups/myManagementGroup/providers/Microsoft.Authorization/policySetDefinitions/00b36c66-612b-44e2-9f8e-b758296d40fe",
"policySetDefinitionName": "00b36c66-612b-44e2-9f8e-b758296d40fe",
"policySetDefinitionOwner": null,
"policySetDefinitionParameters": null,
"principalOid": "fffdfc0f-fff5-fff0-fff3-fff1a968dcc6",
"resourceGroup": "myResourceGroup",
"resourceId": "/subscriptions/fff10b27-fff3-fff5-fff8-fffbe01e86a5/resourcegroups/myResourceGroup/providers/Microsoft.ServiceFabric/clusters/myCluster/applications/myApplication",
"resourceLocation": "eastus",
"resourceTags": "tbd",
"resourceType": "/Microsoft.ServiceFabric/clusters/applications",
"subscriptionId": "fff10b27-fff3-fff5-fff8-fffbe01e86a5",
"tenantId": "fff988bf-fff1-ffff-fffb-fffcd011db47",
"timestamp": "2018-02-07T20:43:04.6971328Z"
},
{
"@odata.context": "https://management.azure.com/subscriptions/fff10b27-fff3-fff5-fff8-fffbe01e86a5/providers/Microsoft.PolicyInsights/policyEvents/$metadata#default/$entity",
"@odata.id": null,
"complianceState": "NonCompliant",
"effectiveParameters": null,
"isCompliant": false,
"managementGroupIds": "myManagementGroup,fff988bf-fff1-ffff-fffb-fffcd011db47",
"policyAssignmentId": "/providers/Microsoft.Management/managementGroups/myManagementGroup/providers/Microsoft.Authorization/policyAssignments/ec62f9b2a454487296f2ccd4",
"policyAssignmentName": "ec62f9b2a454487296f2ccd4",
"policyAssignmentOwner": "tbd",
"policyAssignmentParameters": "{\"ALLOWEDRESOURCEGROUPS_1\":{\"value\":[\"rg1\",\"rg2\"]},\"ALLOWEDRESOURCEGROUPS_2\":{\"value\":[\"myrg3\",\"myrg4\"]}}",
"policyAssignmentScope": "/providers/Microsoft.Management/managementGroups/myManagementGroup",
"policyDefinitionAction": "audit",
"policyDefinitionCategory": "tbd",
"policyDefinitionId": "/providers/Microsoft.Management/managementGroups/myManagementGroup/providers/Microsoft.Authorization/policyDefinitions/72c0c41a-c752-4bc0-9c61-0d6adc567066",
"policyDefinitionName": "72c0c41a-c752-4bc0-9c61-0d6adc567066",
"policyDefinitionReferenceId": "624540685646900425",
"policySetDefinitionCategory": null,
"policySetDefinitionId": "/providers/Microsoft.Management/managementGroups/myManagementGroup/providers/Microsoft.Authorization/policySetDefinitions/00b36c66-612b-44e2-9f8e-b758296d40fe",
"policySetDefinitionName": "00b36c66-612b-44e2-9f8e-b758296d40fe",
"policySetDefinitionOwner": null,
"policySetDefinitionParameters": null,
"principalOid": "fffdfc0f-fff5-fff0-fff3-fff1a968dcc6",
"resourceGroup": "myResourceGroup",
"resourceId": "/subscriptions/fff10b27-fff3-fff5-fff8-fffbe01e86a5/resourcegroups/myResourceGroup/providers/Microsoft.ServiceFabric/clusters/myCluster/applications/myApplication",
"resourceLocation": "eastus",
"resourceTags": "tbd",
"resourceType": "/Microsoft.ServiceFabric/clusters/applications",
"subscriptionId": "fff10b27-fff3-fff5-fff8-fffbe01e86a5",
"tenantId": "fff988bf-fff1-ffff-fffb-fffcd011db47",
"timestamp": "2018-02-07T20:43:04.6971328Z"
}
]
}
Time range; sort, select and limit
Pedido de amostra
POST https://management.azure.com/subscriptions/fffedd8f-ffff-fffd-fffd-fffed2f84852/providers/Microsoft.PolicyInsights/policyEvents/default/queryResults?api-version=2024-10-01&$top=2&$orderby=Timestamp desc, PolicyAssignmentId asc, SubscriptionId asc, ResourceGroup asc, ResourceId&$select=Timestamp, PolicyAssignmentId, PolicyDefinitionId, SubscriptionId, ResourceGroup, ResourceId&$from=2018-02-05T18:00:00Z&$to=2018-02-06T18:00:00Z
Resposta da amostra
{
"@odata.context": "https://management.azure.com/subscriptions/fffedd8f-ffff-fffd-fffd-fffed2f84852/providers/Microsoft.PolicyInsights/policyEvents/$metadata#default",
"@odata.count": 2,
"value": [
{
"@odata.context": "https://management.azure.com/subscriptions/fffedd8f-ffff-fffd-fffd-fffed2f84852/providers/Microsoft.PolicyInsights/policyEvents/$metadata#default/$entity",
"@odata.id": null,
"policyAssignmentId": "/subscriptions/fffedd8f-ffff-fffd-fffd-fffed2f84852/providers/Microsoft.Authorization/policyAssignments/89b27f38-e9e4-4468-ab81-801c84b8c017",
"policyDefinitionId": "/providers/Microsoft.Authorization/policyDefinitions/201ea587-7c90-41c3-910f-c280ae01cfd6",
"resourceGroup": "myResourceGroup",
"resourceId": "/subscriptions/fffedd8f-ffff-fffd-fffd-fffed2f84852/resourcegroups/myResourceGroup/providers/Microsoft.ClassicCompute/domainNames/myDomain",
"subscriptionId": "fffedd8f-ffff-fffd-fffd-fffed2f84852",
"timestamp": "2018-02-05T22:34:02.3475017Z"
},
{
"@odata.context": "https://management.azure.com/subscriptions/fffedd8f-ffff-fffd-fffd-fffed2f84852/providers/Microsoft.PolicyInsights/policyEvents/$metadata#default/$entity",
"@odata.id": null,
"policyAssignmentId": "/subscriptions/fffedd8f-ffff-fffd-fffd-fffed2f84852/providers/Microsoft.Authorization/policyAssignments/Enable Monitoring in Azure Security Center",
"policyDefinitionId": "/providers/Microsoft.Authorization/policyDefinitions/201ea587-7c90-41c3-910f-c280ae01cfd6",
"resourceGroup": "myResourceGroup",
"resourceId": "/subscriptions/fffedd8f-ffff-fffd-fffd-fffed2f84852/resourcegroups/myResourceGroup/providers/Microsoft.ClassicCompute/domainNames/myDomain",
"subscriptionId": "fffedd8f-ffff-fffd-fffd-fffed2f84852",
"timestamp": "2018-02-05T22:34:01.6135357Z"
}
]
}
Definições
| Name | Description |
|---|---|
|
Component |
Detalhes do evento do componente. |
|
Policy |
Registro de evento de política. |
|
Policy |
Resultados da consulta. |
|
Policy |
O nome do recurso virtual em PolicyEvents tipo de recurso; apenas "padrão" é permitido. |
|
Policy |
Resposta de erro. |
|
Policy |
Definição de erro. |
ComponentEventDetails
Detalhes do evento do componente.
| Name | Tipo | Description |
|---|---|---|
| id |
string |
ID do componente. |
| name |
string |
Nome do componente. |
| policyDefinitionAction |
string |
Ação de definição de política, ou seja, efeito. |
| principalOid |
string |
ID do objeto principal para o usuário que iniciou a operação do componente de recurso que disparou o evento de política. |
| tenantId |
string |
ID do locatário para o registro de evento da política. |
| timestamp |
string (date-time) |
Carimbo de data/hora para registro de evento da política de componentes. |
| type |
string |
Tipo de componente. |
PolicyEvent
Registro de evento de política.
| Name | Tipo | Description |
|---|---|---|
| @odata.context |
string |
Cadeia de contexto OData; usado por clientes OData para resolver informações de tipo com base em metadados. |
| @odata.id |
string |
ID da entidade OData; sempre definido como null, pois os registros de eventos de política não têm uma ID de entidade. |
| complianceState |
string |
Estado de conformidade do recurso. |
| components |
Registros de eventos de componentes preenchidos somente quando a URL contém a cláusula $expand=components. |
|
| effectiveParameters |
string |
Parâmetros efetivos para a atribuição de política. |
| isCompliant |
boolean |
Sinalizador que indica se o recurso está em conformidade com a atribuição de política contra a qual foi avaliado. |
| managementGroupIds |
string |
Lista separada por vírgulas de IDs de grupo de gerenciamento, que representam a hierarquia dos grupos de gerenciamento nos quais o recurso está. |
| policyAssignmentId |
string |
ID de atribuição de política. |
| policyAssignmentName |
string |
Nome da atribuição de política. |
| policyAssignmentOwner |
string |
Proprietário da atribuição de política. |
| policyAssignmentParameters |
string |
Parâmetros de atribuição de política. |
| policyAssignmentScope |
string |
Âmbito da atribuição de políticas. |
| policyDefinitionAction |
string |
Ação de definição de política, ou seja, efeito. |
| policyDefinitionCategory |
string |
Categoria de definição de política. |
| policyDefinitionId |
string |
ID de definição de política. |
| policyDefinitionName |
string |
Nome da definição da política. |
| policyDefinitionReferenceId |
string |
ID de referência para a definição de política dentro do conjunto de políticas, se a atribuição de política for para um conjunto de políticas. |
| policySetDefinitionCategory |
string |
Categoria de definição do conjunto de políticas, se a atribuição de política for para um conjunto de políticas. |
| policySetDefinitionId |
string |
ID de definição do conjunto de políticas, se a atribuição de política for para um conjunto de políticas. |
| policySetDefinitionName |
string |
Nome da definição do conjunto de políticas, se a atribuição de política for para um conjunto de políticas. |
| policySetDefinitionOwner |
string |
Proprietário da definição do conjunto de políticas, se a atribuição de política for para um conjunto de políticas. |
| policySetDefinitionParameters |
string |
Parâmetros de definição do conjunto de políticas, se a atribuição de política for para um conjunto de políticas. |
| principalOid |
string |
ID do objeto principal para o usuário que iniciou a operação de recurso que disparou o evento de política. |
| resourceGroup |
string |
Nome do grupo de recursos. |
| resourceId |
string |
ID do recurso. |
| resourceLocation |
string |
Localização do recurso. |
| resourceTags |
string |
Lista de tags de recursos. |
| resourceType |
string |
Tipo de recurso. |
| subscriptionId |
string |
ID da subscrição. |
| tenantId |
string |
ID do locatário para o registro de evento da política. |
| timestamp |
string (date-time) |
Carimbo de data/hora para o registro de evento da política. |
PolicyEventsQueryResults
Resultados da consulta.
| Name | Tipo | Description |
|---|---|---|
| @odata.context |
string |
Cadeia de contexto OData; usado por clientes OData para resolver informações de tipo com base em metadados. |
| @odata.count |
integer (int32) minimum: 0 |
Contagem de entidades OData; representa o número de registros de eventos de política retornados. |
| @odata.nextLink |
string |
Odata próximo link; URL para obter o próximo conjunto de resultados. |
| value |
Resultados da consulta. |
PolicyEventsResourceType
O nome do recurso virtual em PolicyEvents tipo de recurso; apenas "padrão" é permitido.
| Valor | Description |
|---|---|
| default |
predefinição |
PolicyInsightsCommon.QueryFailure
Resposta de erro.
| Name | Tipo | Description |
|---|---|---|
| error |
Definição de erro. |
PolicyInsightsCommon.QueryFailureError
Definição de erro.
| Name | Tipo | Description |
|---|---|---|
| code |
string |
Código de erro específico do serviço que serve como substatus para o código de erro HTTP. |
| message |
string |
Descrição do erro. |