Azure-Sentinel icon indicating copy to clipboard operation
Azure-Sentinel copied to clipboard

Fortinet Function App Connector - Post Deployment Steps

Open roboftheblues opened this issue 11 months ago • 12 comments

Hello,

Not enough details in the post deployment steps!

Post Deployment steps Create User Managed Identity in your subscription by following document. Refer this link Create Managed Identity. THIS ONE IS OK

Assign role to user assigned identity. Refer this link Assign role to user WHAT ROLE??

Open created function app, follow below steps or refer steps documented Function app setting

Go to Authentication / Authorization option NO AUTHORIZATION OPTION, ONLY AUTHENTICATION

Enable App Service Authentication HOW? NO STEPS PROVIDED

Select "Login with Microsoft Entra ID" for Action to take when request is not authenticated WHERE IS THIS STEP??

Select Microsoft Entra ID as Authentication Providers WHERE IS THIS??

Select advanced option from the management mode and fill details WHERE IS THIS??

UserIdentity object id as client ID (ex: b1fd400b-e34b-40c0-996f506d8a98)

Issuer url (format should be https://sts.windows.net/), refer for to get tenentID Get tenentID Allow token Audiences (ex: https://management.azure.com/ ) Click ok Click on save Open function app and go to Identify and capture the object ID Capture Object ID Add azure function app to key Vault access policy Add access policy

Not everyone is an Azure expert so a little more guidance would be beneficial to all, including ensuring that the steps reflect the process order and it reflects the settings in the blades/screens

roboftheblues avatar Mar 21 '24 10:03 roboftheblues

Hi @roboftheblues, Thanks for flagging this issue, we will investigate this issue and get back to you with some updates by 28-03-2024. Thanks!

v-sudkharat avatar Mar 21 '24 10:03 v-sudkharat

Hi @roboftheblues ,Could you share couple of time slots for teams meeting to [email protected] will provide detailed steps over call,as earlier worked on this issue with another customer,will be pushing the pr

v-muuppugund avatar Mar 27 '24 09:03 v-muuppugund

Hi @roboftheblues, Gentle Reminder: Could you please confirm if you meeting slot's already send? please respond to it in the next 2 days. If we don't receive a response by 03-04-2024 date, we will be closing this issue. Thanks!

v-sudkharat avatar Apr 01 '24 06:04 v-sudkharat

Hi,

Not sure what you’re asking for? Time slots so you can call me??

Regards,

Rob

Sent from my iPhone

On 1 Apr 2024, at 07:13, v-sudkharat @.***> wrote:



Hi @roboftheblueshttps://github.com/roboftheblues, Gentle Reminder: Could you please confirm if you meeting slot's already send? please respond to it in the next 2 days. If we don't receive a response by 03-04-2024 date, we will be closing this issue. Thanks!

— Reply to this email directly, view it on GitHubhttps://github.com/Azure/Azure-Sentinel/issues/10188#issuecomment-2029227001, or unsubscribehttps://github.com/notifications/unsubscribe-auth/BG6WY526VKB6CQZJQ6XI5C3Y3D3I7AVCNFSM6AAAAABFBE7BCWVHI2DSMVQWIX3LMV43OSLTON2WKQ3PNVWWK3TUHMZDAMRZGIZDOMBQGE. You are receiving this because you were mentioned.Message ID: @.***>

roboftheblues avatar Apr 02 '24 08:04 roboftheblues

Hi, Not sure what you’re asking for? Time slots so you can call me?? Regards, Rob Sent from my iPhone On 1 Apr 2024, at 07:13, v-sudkharat @.> wrote:  Hi @roboftheblueshttps://github.com/roboftheblues, Gentle Reminder: Could you please confirm if you meeting slot's already send? please respond to it in the next 2 days. If we don't receive a response by 03-04-2024 date, we will be closing this issue. Thanks! — Reply to this email directly, view it on GitHub<#10188 (comment)>, or unsubscribehttps://github.com/notifications/unsubscribe-auth/BG6WY526VKB6CQZJQ6XI5C3Y3D3I7AVCNFSM6AAAAABFBE7BCWVHI2DSMVQWIX3LMV43OSLTON2WKQ3PNVWWK3TUHMZDAMRZGIZDOMBQGE. You are receiving this because you were mentioned.Message ID: @.>

Hi @roboftheblues ,Yes for a teams meeting to share detailed steps for logic app changes and new function need to point,Could you share couple of time slots for teams meeting to [email protected] will provide detailed steps over call

v-muuppugund avatar Apr 04 '24 04:04 v-muuppugund

Ok, I’m away until 8th. Will message in return

Regards,

Rob

Sent from my iPhone

On 4 Apr 2024, at 05:28, Murali Krishna Dev Uppugunduri @.***> wrote:



Hi, Not sure what you’re asking for? Time slots so you can call me?? Regards, Rob … Sent from my iPhone On 1 Apr 2024, at 07:13, v-sudkharat @.> wrote:  Hi @roboftheblueshttps://github.com/roboftheblueshttps://github.com/roboftheblues, Gentle Reminder: Could you please confirm if you meeting slot's already send? please respond to it in the next 2 days. If we don't receive a response by 03-04-2024 date, we will be closing this issue. Thanks! — Reply to this email directly, view it on GitHub<#10188 (comment)https://github.com/Azure/Azure-Sentinel/issues/10188#issuecomment-2029227001>, or unsubscribehttps://github.com/notifications/unsubscribe-auth/BG6WY526VKB6CQZJQ6XI5C3Y3D3I7AVCNFSM6AAAAABFBE7BCWVHI2DSMVQWIX3LMV43OSLTON2WKQ3PNVWWK3TUHMZDAMRZGIZDOMBQGE. You are receiving this because you were mentioned.Message ID: @.>

Hi @roboftheblueshttps://github.com/roboftheblues ,Yes for a teams meeting to share detailed steps for logic app changes and new function need to point

— Reply to this email directly, view it on GitHubhttps://github.com/Azure/Azure-Sentinel/issues/10188#issuecomment-2036169105, or unsubscribehttps://github.com/notifications/unsubscribe-auth/BG6WY52G74CDG33QHGPCZD3Y3TJHFAVCNFSM6AAAAABFBE7BCWVHI2DSMVQWIX3LMV43OSLTON2WKQ3PNVWWK3TUHMZDAMZWGE3DSMJQGU. You are receiving this because you were mentioned.Message ID: @.***>

roboftheblues avatar Apr 04 '24 11:04 roboftheblues

Hi Murali,

I'm on CET. I'm pretty much free most mornings this week. If you're on Indian time then maybe a 10am CET call would suit you too. We should aim to discuss all of the issues.

Kind regards,

Rob


From: Murali Krishna Dev Uppugunduri @.> Sent: 04 April 2024 06:28 To: Azure/Azure-Sentinel @.> Cc: roboftheblues @.>; Mention @.> Subject: Re: [Azure/Azure-Sentinel] Fortinet Function App Connector - Post Deployment Steps (Issue #10188)

Hi, Not sure what you’re asking for? Time slots so you can call me?? Regards, Rob … Sent from my iPhone On 1 Apr 2024, at 07:13, v-sudkharat @.> wrote:  Hi @roboftheblueshttps://github.com/roboftheblueshttps://github.com/roboftheblues, Gentle Reminder: Could you please confirm if you meeting slot's already send? please respond to it in the next 2 days. If we don't receive a response by 03-04-2024 date, we will be closing this issue. Thanks! — Reply to this email directly, view it on GitHub<#10188 (comment)https://github.com/Azure/Azure-Sentinel/issues/10188#issuecomment-2029227001>, or unsubscribehttps://github.com/notifications/unsubscribe-auth/BG6WY526VKB6CQZJQ6XI5C3Y3D3I7AVCNFSM6AAAAABFBE7BCWVHI2DSMVQWIX3LMV43OSLTON2WKQ3PNVWWK3TUHMZDAMRZGIZDOMBQGE. You are receiving this because you were mentioned.Message ID: @.>

Hi @roboftheblueshttps://github.com/roboftheblues ,Yes for a teams meeting to share detailed steps for logic app changes and new function need to point

— Reply to this email directly, view it on GitHubhttps://github.com/Azure/Azure-Sentinel/issues/10188#issuecomment-2036169105, or unsubscribehttps://github.com/notifications/unsubscribe-auth/BG6WY52G74CDG33QHGPCZD3Y3TJHFAVCNFSM6AAAAABFBE7BCWVHI2DSMVQWIX3LMV43OSLTON2WKQ3PNVWWK3TUHMZDAMZWGE3DSMJQGU. You are receiving this because you were mentioned.Message ID: @.***>

roboftheblues avatar Apr 08 '24 12:04 roboftheblues

Hi Rob,

Sure,Will block your calendar for further troubleshooting,

Best Regards, Murali


From: roboftheblues @.> Sent: Monday, April 8, 2024 5:38 PM To: Azure/Azure-Sentinel @.> Cc: Murali Krishna Dev Uppugunduri (Tata Consultancy Services Limi) @.>; Comment @.> Subject: Re: [Azure/Azure-Sentinel] Fortinet Function App Connector - Post Deployment Steps (Issue #10188)

Hi Murali,

I'm on CET. I'm pretty much free most mornings this week. If you're on Indian time then maybe a 10am CET call would suit you too. We should aim to discuss all of the issues.

Kind regards,

Rob


From: Murali Krishna Dev Uppugunduri @.> Sent: 04 April 2024 06:28 To: Azure/Azure-Sentinel @.> Cc: roboftheblues @.>; Mention @.> Subject: Re: [Azure/Azure-Sentinel] Fortinet Function App Connector - Post Deployment Steps (Issue #10188)

Hi, Not sure what you’re asking for? Time slots so you can call me?? Regards, Rob … Sent from my iPhone On 1 Apr 2024, at 07:13, v-sudkharat @.> wrote:  Hi @roboftheblueshttps://github.com/roboftheblueshttps://github.com/roboftheblues, Gentle Reminder: Could you please confirm if you meeting slot's already send? please respond to it in the next 2 days. If we don't receive a response by 03-04-2024 date, we will be closing this issue. Thanks! — Reply to this email directly, view it on GitHub<#10188 (comment)https://github.com/Azure/Azure-Sentinel/issues/10188#issuecomment-2029227001>, or unsubscribehttps://github.com/notifications/unsubscribe-auth/BG6WY526VKB6CQZJQ6XI5C3Y3D3I7AVCNFSM6AAAAABFBE7BCWVHI2DSMVQWIX3LMV43OSLTON2WKQ3PNVWWK3TUHMZDAMRZGIZDOMBQGE. You are receiving this because you were mentioned.Message ID: @.>

Hi @roboftheblueshttps://github.com/roboftheblues ,Yes for a teams meeting to share detailed steps for logic app changes and new function need to point

— Reply to this email directly, view it on GitHubhttps://github.com/Azure/Azure-Sentinel/issues/10188#issuecomment-2036169105, or unsubscribehttps://github.com/notifications/unsubscribe-auth/BG6WY52G74CDG33QHGPCZD3Y3TJHFAVCNFSM6AAAAABFBE7BCWVHI2DSMVQWIX3LMV43OSLTON2WKQ3PNVWWK3TUHMZDAMZWGE3DSMJQGU. You are receiving this because you were mentioned.Message ID: @.***>

— Reply to this email directly, view it on GitHubhttps://github.com/Azure/Azure-Sentinel/issues/10188#issuecomment-2042577663, or unsubscribehttps://github.com/notifications/unsubscribe-auth/BBIZAWQ25Y4MZQGXJBQLWZLY4KCCNAVCNFSM6AAAAABFBE7BCWVHI2DSMVQWIX3LMV43OSLTON2WKQ3PNVWWK3TUHMZDANBSGU3TONRWGM. You are receiving this because you commented.Message ID: @.***>

v-muuppugund avatar Apr 08 '24 12:04 v-muuppugund

Hi Rob,

Could you please share email id for teams meeting,so will block the calendar for further troubleshooting the issue,

Best Regards, Murali


From: Murali Krishna Dev Uppugunduri (Tata Consultancy Services Limi) @.> Sent: Monday, April 8, 2024 6:13 PM To: Azure/Azure-Sentinel @.>; Azure/Azure-Sentinel @.> Cc: Comment @.> Subject: Re: [Azure/Azure-Sentinel] Fortinet Function App Connector - Post Deployment Steps (Issue #10188)

Hi Rob,

Sure,Will block your calendar for further troubleshooting,

Best Regards, Murali


From: roboftheblues @.> Sent: Monday, April 8, 2024 5:38 PM To: Azure/Azure-Sentinel @.> Cc: Murali Krishna Dev Uppugunduri (Tata Consultancy Services Limi) @.>; Comment @.> Subject: Re: [Azure/Azure-Sentinel] Fortinet Function App Connector - Post Deployment Steps (Issue #10188)

Hi Murali,

I'm on CET. I'm pretty much free most mornings this week. If you're on Indian time then maybe a 10am CET call would suit you too. We should aim to discuss all of the issues.

Kind regards,

Rob


From: Murali Krishna Dev Uppugunduri @.> Sent: 04 April 2024 06:28 To: Azure/Azure-Sentinel @.> Cc: roboftheblues @.>; Mention @.> Subject: Re: [Azure/Azure-Sentinel] Fortinet Function App Connector - Post Deployment Steps (Issue #10188)

Hi, Not sure what you’re asking for? Time slots so you can call me?? Regards, Rob … Sent from my iPhone On 1 Apr 2024, at 07:13, v-sudkharat @.> wrote:  Hi @roboftheblueshttps://github.com/roboftheblueshttps://github.com/roboftheblues, Gentle Reminder: Could you please confirm if you meeting slot's already send? please respond to it in the next 2 days. If we don't receive a response by 03-04-2024 date, we will be closing this issue. Thanks! — Reply to this email directly, view it on GitHub<#10188 (comment)https://github.com/Azure/Azure-Sentinel/issues/10188#issuecomment-2029227001>, or unsubscribehttps://github.com/notifications/unsubscribe-auth/BG6WY526VKB6CQZJQ6XI5C3Y3D3I7AVCNFSM6AAAAABFBE7BCWVHI2DSMVQWIX3LMV43OSLTON2WKQ3PNVWWK3TUHMZDAMRZGIZDOMBQGE. You are receiving this because you were mentioned.Message ID: @.>

Hi @roboftheblueshttps://github.com/roboftheblues ,Yes for a teams meeting to share detailed steps for logic app changes and new function need to point

— Reply to this email directly, view it on GitHubhttps://github.com/Azure/Azure-Sentinel/issues/10188#issuecomment-2036169105, or unsubscribehttps://github.com/notifications/unsubscribe-auth/BG6WY52G74CDG33QHGPCZD3Y3TJHFAVCNFSM6AAAAABFBE7BCWVHI2DSMVQWIX3LMV43OSLTON2WKQ3PNVWWK3TUHMZDAMZWGE3DSMJQGU. You are receiving this because you were mentioned.Message ID: @.***>

— Reply to this email directly, view it on GitHubhttps://github.com/Azure/Azure-Sentinel/issues/10188#issuecomment-2042577663, or unsubscribehttps://github.com/notifications/unsubscribe-auth/BBIZAWQ25Y4MZQGXJBQLWZLY4KCCNAVCNFSM6AAAAABFBE7BCWVHI2DSMVQWIX3LMV43OSLTON2WKQ3PNVWWK3TUHMZDANBSGU3TONRWGM. You are receiving this because you commented.Message ID: @.***>

v-muuppugund avatar Apr 10 '24 02:04 v-muuppugund

@.***

Sent from my iPhone

On 10 Apr 2024, at 04:32, Murali Krishna Dev Uppugunduri @.***> wrote:



Hi Rob,

Could you please share email id for teams meeting,so will block the calendar for further troubleshooting the issue,

Best Regards, Murali


From: Murali Krishna Dev Uppugunduri (Tata Consultancy Services Limi) @.> Sent: Monday, April 8, 2024 6:13 PM To: Azure/Azure-Sentinel @.>; Azure/Azure-Sentinel @.> Cc: Comment @.> Subject: Re: [Azure/Azure-Sentinel] Fortinet Function App Connector - Post Deployment Steps (Issue #10188)

Hi Rob,

Sure,Will block your calendar for further troubleshooting,

Best Regards, Murali


From: roboftheblues @.> Sent: Monday, April 8, 2024 5:38 PM To: Azure/Azure-Sentinel @.> Cc: Murali Krishna Dev Uppugunduri (Tata Consultancy Services Limi) @.>; Comment @.> Subject: Re: [Azure/Azure-Sentinel] Fortinet Function App Connector - Post Deployment Steps (Issue #10188)

Hi Murali,

I'm on CET. I'm pretty much free most mornings this week. If you're on Indian time then maybe a 10am CET call would suit you too. We should aim to discuss all of the issues.

Kind regards,

Rob


From: Murali Krishna Dev Uppugunduri @.> Sent: 04 April 2024 06:28 To: Azure/Azure-Sentinel @.> Cc: roboftheblues @.>; Mention @.> Subject: Re: [Azure/Azure-Sentinel] Fortinet Function App Connector - Post Deployment Steps (Issue #10188)

Hi, Not sure what you’re asking for? Time slots so you can call me?? Regards, Rob … Sent from my iPhone On 1 Apr 2024, at 07:13, v-sudkharat @.> wrote:  Hi @roboftheblueshttps://github.com/roboftheblueshttps://github.com/roboftheblues, Gentle Reminder: Could you please confirm if you meeting slot's already send? please respond to it in the next 2 days. If we don't receive a response by 03-04-2024 date, we will be closing this issue. Thanks! — Reply to this email directly, view it on GitHub<#10188 (comment)https://github.com/Azure/Azure-Sentinel/issues/10188#issuecomment-2029227001>, or unsubscribehttps://github.com/notifications/unsubscribe-auth/BG6WY526VKB6CQZJQ6XI5C3Y3D3I7AVCNFSM6AAAAABFBE7BCWVHI2DSMVQWIX3LMV43OSLTON2WKQ3PNVWWK3TUHMZDAMRZGIZDOMBQGE. You are receiving this because you were mentioned.Message ID: @.>

Hi @roboftheblueshttps://github.com/roboftheblues ,Yes for a teams meeting to share detailed steps for logic app changes and new function need to point

— Reply to this email directly, view it on GitHubhttps://github.com/Azure/Azure-Sentinel/issues/10188#issuecomment-2036169105, or unsubscribehttps://github.com/notifications/unsubscribe-auth/BG6WY52G74CDG33QHGPCZD3Y3TJHFAVCNFSM6AAAAABFBE7BCWVHI2DSMVQWIX3LMV43OSLTON2WKQ3PNVWWK3TUHMZDAMZWGE3DSMJQGU. You are receiving this because you were mentioned.Message ID: @.***>

— Reply to this email directly, view it on GitHubhttps://github.com/Azure/Azure-Sentinel/issues/10188#issuecomment-2042577663, or unsubscribehttps://github.com/notifications/unsubscribe-auth/BBIZAWQ25Y4MZQGXJBQLWZLY4KCCNAVCNFSM6AAAAABFBE7BCWVHI2DSMVQWIX3LMV43OSLTON2WKQ3PNVWWK3TUHMZDANBSGU3TONRWGM. You are receiving this because you commented.Message ID: @.***>

— Reply to this email directly, view it on GitHubhttps://github.com/Azure/Azure-Sentinel/issues/10188#issuecomment-2046367988, or unsubscribehttps://github.com/notifications/unsubscribe-auth/BG6WY55MMYV6AG4A2HIHRPTY4SQDHAVCNFSM6AAAAABFBE7BCWVHI2DSMVQWIX3LMV43OSLTON2WKQ3PNVWWK3TUHMZDANBWGM3DOOJYHA. You are receiving this because you were mentioned.Message ID: @.***>

roboftheblues avatar Apr 10 '24 07:04 roboftheblues

Hi @roboftheblues ,as discussed yesterday on call,will be working on steps for documentation ,will update you

v-muuppugund avatar Apr 12 '24 02:04 v-muuppugund

Hi @roboftheblues, We are working with concerned team for updating post deployment steps, we will update you. Thanks

v-rusraut avatar Apr 26 '24 06:04 v-rusraut

Hi @roboftheblues, Still we are working with concerned team for updating steps, we will update you. Thanks

v-rusraut avatar May 06 '24 05:05 v-rusraut

Thanks, that will be of benefit to other users in the future. We have resolved our issue and are no longer using the Fortinet Function App. Please continue to work on improving the documentation, for now i am closing this issue

roboftheblues avatar May 06 '24 08:05 roboftheblues