Diagnostic settings not showing as defined for certain resources.

J3 1 Reputation point
2021-09-28T15:55:02.9+00:00

Vnet gateways and subnets diagnostic settings are both accessed the same way. Theyre not under the monitor section of the resource but under activity log then diagnostic settings. I have a policy to define these settings but there is some discrepancy in confirming if it was succesful. For vnet gateways i see diagnostic settings configured when i go to the overall diagnostics blade and can click on the resource and it shows its defined but not going directly to the resource. It also shows 0/1 non compliant so its picking up that its compliant and enabled. For subscriptions how do I confirm this?

Azure Blueprints
Azure Blueprints
An Azure service that provides templates for quick, repeatable creation of fully governed cloud subscriptions.
70 questions
Azure Monitor
Azure Monitor
An Azure service that is used to collect, analyze, and act on telemetry data from Azure and on-premises environments.
2,829 questions
Azure Policy
Azure Policy
An Azure service that is used to implement corporate governance and standards at scale for Azure resources.
799 questions
{count} votes

1 answer

Sort by: Most helpful
  1. Alistair Ross 7,101 Reputation points Microsoft Employee
    2021-11-11T13:22:49.83+00:00

    Hi @J3

    You are incorrect for enabling the Diagnostic logs from the Activity Log, this is for all activity logs generated on the selected subscription.

    Azure Policy should be able to deploy these diagnostic settings with ease, if you need to create a new policy I would suggest https://github.com/JimGBritt/AzurePolicy/blob/master/AzureMonitor/Scripts/README.md#overview-of-create-azdiagpolicyps1

    0 comments No comments