Skip to content

jksprattler/azure-security

Repository files navigation

Contents

  • /azure-dev-infra contains terraform artifacts for general infrastructure related to dev deployments associated with directories within this repo.
  • /azuread-users-groups-roles contains the terraform artifacts for implementing Azure AD Users, Groups (dynamic) and Roles allowing you to implement Identity Governance using IAM as code. Link to runbook instructions here which includes a YouTube demo of the implementation.
  • /azuread-users-groups-roles-pt2 is a revisit of the previous runbook for implementing Azure AD Users, Groups and Roles by following this HashCorp doc which utilizes a for_each loop through a list of users in a csv file. Also included are steps to create the GH Actions SPN using Terraform and further limiting privileges by allowing only Read access across the subscription rather than Owner. The SPN API permissions are also now managed via Terraform. Link to runbook instructions here which includes a YouTube demo of the implementation.

About

Azure AD, RBAC, Policy, Secure vWAN, hybrid AD design proof of concepts/labs/demos using Terraform, Python

Topics

Resources

Stars

Watchers

Forks