azure-policy
azure-policy copied to clipboard
Deploy SQL DB transparent data encryption includes Synapse workspace databases in managed RGs
This built-in Policy seems to flag databases in Synapse Workspace managed resource groups as non-compliant. Remediation fails, since it's a managed RG.
Synapse databases are likewise flagged by https://github.com/Azure/azure-policy/blob/master/built-in-policies/policyDefinitions/SQL/SqlServer_PublicNetworkAccess_Audit.json
Is there a way to exclude them?