-
Notifications
You must be signed in to change notification settings - Fork 55
Commit
This commit does not belong to any branch on this repository, and may belong to a fork outside of the repository.
Merge pull request #495 from zaidmohd/arcbox-passwd
ArcBox - Update windows password to optional
- Loading branch information
Showing
6 changed files
with
21 additions
and
3 deletions.
There are no files selected for viewing
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Original file line number | Diff line number | Diff line change |
---|---|---|
|
@@ -202,13 +202,13 @@ $customLocationRPOID=(az ad sp list --filter "displayname eq 'Custom Locations R | |
- _`sshRSAPublicKey`_ - Your SSH public key | ||
- _`tenantId`_ - Your Azure tenant id | ||
- _`windowsAdminUsername`_ - Client Windows VM Administrator username | ||
- _`windowsAdminPassword`_ - Client Windows VM Password. Password must have 3 of the following: 1 lower case character, 1 upper case character, 1 number, and 1 special character. The value must be between 12 and 123 characters long | ||
- _`logAnalyticsWorkspaceName`_ - Name for the ArcBox Log Analytics workspace that will be created | ||
- _`flavor`_ - Use the value "DataOps" to specify that you want to deploy the DataOps flavor of ArcBox | ||
- _`deployBastion`_ - Set to _`true`_ if you want to use Azure Bastion to connect to _ArcBox-Client_ | ||
- _`resourceTags`_ - Tags to assign for all ArcBox resources | ||
- _`namingPrefix`_ - The naming prefix for the nested virtual machines and all Azure resources deployed. The maximum length for the naming prefix is 7 characters,example if the value is _Contoso_: `Contoso-Win2k19` | ||
- _`sqlServerEdition`_ - SQL Server edition to deploy on the Hyper-V guest VM. Supported values are Developer, Standard, and Enterprise. Default is Developer edition. Azure Arc-enabled SQL Server features such as performance metrics requires Standard or Enterprise edition. Use this parameter to experience SQL Server performance metrics enabled by Azure Arc. | ||
- _`windowsAdminPassword`_ - (optional) Client Windows VM Password. Password must have 3 of the following: 1 lower case character, 1 upper case character, 1 number, and 1 special character. The value must be between 12 and 123 characters long. If not specified, the default value is generated using the Bicep newGuid() function and stored in the Key Vault. | ||
|
||
data:image/s3,"s3://crabby-images/38a34/38a34ecbaf5196f06ba88dba53704d80b354a53b" alt="Screenshot showing example parameters" | ||
|
||
|
@@ -267,6 +267,10 @@ By design, ArcBox doesn't open port 3389 on the network security group. Therefor | |
|
||
> **Note:** When using Azure Bastion, the desktop background image isn't visible. Therefore some screenshots in this guide may not exactly match your experience if you are connecting to _ArcBox-Client_ with Azure Bastion. | ||
- If the _`windowsAdminPassword`_ parameter is not specified during deployment, the password is automatically generated and stored in the Key Vault. Select "Password from Azure Key Vault" as the authentication type and use "windowsAdminPassword" as the Azure Key Vault secret name. | ||
|
||
data:image/s3,"s3://crabby-images/768db/768db46d1246fdaad21fef20bdf80a7d560e1d8b" alt="Screenshot showing connecting to the VM using Bastion and Key Vault" | ||
|
||
#### Connect using just-in-time access (JIT) | ||
|
||
If you already have [Microsoft Defender for Cloud](https://learn.microsoft.com/azure/defender-for-cloud/just-in-time-access-usage?tabs=jit-config-asc%2Cjit-request-asc) enabled on your subscription and would like to use JIT to access the Client VM, use the following steps: | ||
|
@@ -292,6 +296,8 @@ Example: | |
|
||
> **Note:** Logging into the Client VM without the UPN format _[email protected]_ will prevent the automation from running automatically. | ||
- If the _`windowsAdminPassword`_ parameter is not specified during deployment, the password is automatically generated and stored in the Key Vault. Copy the "windowsAdminPassword" secret value from the Key Vault to log in. | ||
|
||
#### The Logon scripts | ||
|
||
- Once you log into the _ArcBox-Client_ VM, multiple automated scripts will open and start running. These scripts usually take up to 60 minutes to finish, and once completed, the script windows will close automatically. At this point, the deployment is complete. | ||
|
Loading
Sorry, something went wrong. Reload?
Sorry, we cannot display this file.
Sorry, this file is invalid so it cannot be displayed.
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Loading
Sorry, something went wrong. Reload?
Sorry, we cannot display this file.
Sorry, this file is invalid so it cannot be displayed.
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Loading
Sorry, something went wrong. Reload?
Sorry, we cannot display this file.
Sorry, this file is invalid so it cannot be displayed.