Skip to content

Commit a162fc1

Browse files
authored
Handle new Defender managed assignments (#973)
* Handle new Defender managed assignments Adding a new case to skip Defender Plan Managed policies. Azure Defender for Cloud is creating new assignments for "Defender for SQL servers on Machines provisioning" that do not follow the expected description naming convention "This policy assignment was automatically created by"... so EPAC is trying to delete them. * change from full string to starts with Made the new entry a little more generic
1 parent fe26351 commit a162fc1

File tree

1 file changed

+3
-1
lines changed

1 file changed

+3
-1
lines changed

Scripts/Helpers/Confirm-PacOwner.ps1

Lines changed: 3 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -32,7 +32,9 @@ function Confirm-PacOwner {
3232
$ManagedByCounters.dfcSecurityPolicies += 1
3333
return "managedByDfcSecurityPolicies"
3434
}
35-
elseif ($description.StartsWith("This policy assignment was automatically created by ")) {
35+
elseif ($description.StartsWith("This policy assignment was automatically created by ") -or
36+
$description.StartsWith("This initiative enables Defender ")
37+
) {
3638
$ManagedByCounters.dfcDefenderPlans += 1
3739
return "managedByDfcDefenderPlans"
3840
}

0 commit comments

Comments
 (0)