Azure-docs: Setting event hub policy

Created on 25 Jun 2020  Â·  3Comments  Â·  Source: MicrosoftDocs/azure-docs

It is no longer possible to set an event hub policy other than "RootManageSharedAccessKey" which is set as a default. This is a security risk as it effectively provides admin rights on the namespace and event hub. Can you please fix?


Document Details

⚠ Do not edit this section. It is required for docs.microsoft.com ➟ GitHub issue linking.

Azure-Monitosvc Pri2 awaiting-product-team-response cxp logsubsvc product-question triaged

All 3 comments

@scunge6006 Thanks for your comment! We will review and provide an update as appropriate.

@scunge6006 Thanks for your valuable feedback. When diagnostic settings are enabled to send logs to Event Hub, diagnostic settings creates event hubs in the event hub namespace if they do not exist. Therefore, it needs manage permissions to create them.

As this is more of feature request than documentation change, I would recommend you to navigate here and share your feedback or suggestions directly with the responsible Azure feature team and clicking the vote button of your suggestion to raise visibility and priority on it.

Hope this helps ! We will close the issue for now. If there are further questions , please revert and we will be glad to assist you.

Thanks for the update and suggestion. I will follow up with contacting the Azure team.

Miles

From: SwathiDhanwada-MSFT notifications@github.com
Sent: Wednesday, 1 July 2020 7:28 PM
To: MicrosoftDocs/azure-docs azure-docs@noreply.github.com
Cc: Scott Hill, Miles Miles.Scott-Hill@team.telstra.com; Mention mention@noreply.github.com
Subject: Re: [MicrosoftDocs/azure-docs] Setting event hub policy (#57827)

[External Email] This email was sent from outside the organisation – be cautious, particularly with links and attachments.

@scunge6006https://github.com/scunge6006 Thanks for your valuable feedback. When diagnostic settings are enabled to send logs to Event Hub, diagnostic settings creates event hubs in the event hub namespace if they do not exist. Therefore, it needs manage permissions to create them.

As this is more of feature request than documentation change, I would recommend you to navigate herehttps://feedback.azure.com/forums/267889-azure-monitor-log-analytics and share your feedback or suggestions directly with the responsible Azure feature team and clicking the vote button of your suggestion to raise visibility and priority on it.

Hope this helps ! We will close the issue for now. If there are further questions , please revert and we will be glad to assist you.

—
You are receiving this because you were mentioned.
Reply to this email directly, view it on GitHubhttps://github.com/MicrosoftDocs/azure-docs/issues/57827#issuecomment-652243902, or unsubscribehttps://github.com/notifications/unsubscribe-auth/AM6TUWKU22PKS5254EZVYA3RZLQQRANCNFSM4OHXSTBA.

Was this page helpful?
0 / 5 - 0 ratings

Related issues

monteledwards picture monteledwards  Â·  3Comments

AronT-TLV picture AronT-TLV  Â·  3Comments

mrdfuse picture mrdfuse  Â·  3Comments

spottedmahn picture spottedmahn  Â·  3Comments

jharbieh picture jharbieh  Â·  3Comments