-
Notifications
You must be signed in to change notification settings - Fork 147
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Core key vault firewall should not be set to "Allow public access from all networks" #4251
Conversation
Unit Test Results0 tests 0 ✅ 0s ⏱️ Results for commit 6acf7f6. ♻️ This comment has been updated with latest results. |
27b801d
to
6acf7f6
Compare
/help |
🤖 pr-bot 🤖 Hello! You can use the following commands: (in response to this comment from @jonnyry) |
/test 6acf7f6 |
🤖 pr-bot 🤖 🏃 Running tests: https://github.com/microsoft/AzureTRE/actions/runs/12632129362 (with refid (in response to this comment from @jonnyry) |
@jonnyry How will a CI agent connect to the FW if this is set? |
@jonnyry believe I remember you saying you a have a script that opens/closes the KV firewall when you do a deploy? Think that would need to be part of this and added to the workflows. |
@tamirkamara @marrobi Ah right, yes, I was too hasty with my PR... the key vault secrets are read/written using the data plane. I'll take another look. |
Closing this PR. Will open a new one once a solution in place for CI agent access. |
Resolves #4250