standard
turbot/azure_thrifty

Pipeline: Detect & correct Monitor log profiles without retention policy

Detect & correct Monitor log profiles without retention poliy

Overview

Log profile retention in Azure can significantly impact cost management by controlling the amount of log data stored and the duration for which it is retained.

This pipeline allows you to specify a collection of log profiles without retention poliy and then either send notifications or attempt to perform a predefined corrective action upon the collection.

Getting Started

This control will work out-of-the-box with some sensible defaults (configurable via variables).

You should be able to simply run the following command in your terminal:

flowpipe pipeline run detect_and_correct_monitor_log_profiles_without_retention_policy

By default, Flowpipe runs in wizard mode and prompts directly in the terminal for a decision on the action(s) to take for each detected resource.

However, you can run Flowpipe in server mode with external integrations, allowing it to prompt for input via http, slack, teams, etc.

Alternatively, you can choose to configure and run in other modes:

  • Notify: Provides detections without taking any corrective action.
  • Automatic: Performs corrective actions automatically without user intervention.

Run the pipeline

To run this pipeline from your terminal:

flowpipe pipeline run azure_thrifty.pipeline.detect_and_correct_monitor_log_profiles_without_retention_policy

Use this pipeline

To call this pipeline from your pipeline, use a step:

step "pipeline" "step_name" {
pipeline = azure_thrifty.pipeline.detect_and_correct_monitor_log_profiles_without_retention_policy
}

Params

NameTypeRequiredDescriptionDefault
database
connection.steampipe
YesDatabase connection string.connection.steampipe.default
notifier
notifier
YesThe name of the notifier to use for sending notification messages.notifier.default
notification_level
string
info, verbose, error
YesThe verbosity level of notification messages to send.info
approvers
list(notifier)
YesList of notifiers to be used for obtaining action/approval decisions.notifier.default
default_action
string
notify, skip, enable_log_profile_retention
YesThe default action to use for the detected item, used if no input is provided.notify
enabled_actions
list(string)
skip, enable_log_profile_retention
YesThe list of enabled actions to provide to approvers for selection.
[
"skip",
"enable_log_profile_retention"
]

Outputs

This pipeline has no outputs.

Tags

category = Cost
class = unused
plugin = azure
recommended = true
service = Azure/Monitor