Decommission of remediation
To decommission the remediation functionality in Azure subscription,
Disable all the remediation policies- Azure account security policy remediation functionality can be disabled from Cloudneeti portal. On disabling the remediation policies stops the auto-remediation of new resources whenever deployed.
Remove Resource Policy Contributor (Preview) role access of Cloudneeti application from the subscription.
1. Disable Remediation policies
Login to Cloudneeti portal with License Admin role
-
Select desired License and Account
-
Click Configure
-
Select Configure security policies
-
Select Remediation Available in filter to see only the policies with remediation available.
-
Disable the policy remediation
-
Click Save
Note:
-
Disabling remediation of security policies does not immediately effective, it will take some time to delete internal assignment present in Azure policy framework.
-
The resource configuration updated during remediation will remain the same after disabling the remediation policies.
2. Remove “Policy Resource Contributor (Preview)” access
-
Click Subscriptions in primary menu (1)
-
Select desired Subscription
-
Click on Access Control (IAM) (2)
-
Select Roles tab
-
Select Resource Policy Contributor (Preview)
-
Select Cloudneeti Application (1)
-
Click Remove (2)