@@ -40,6 +40,7 @@ resource "azurerm_network_security_rule" "azfrontdoor" {
4040 resource_group_name = azurerm_resource_group. this . name
4141 network_security_group_name = azurerm_network_security_group. this . name
4242}
43+
4344resource "azurerm_subnet" "public" {
4445 name = " ${ local . prefix } -public"
4546 resource_group_name = azurerm_resource_group. this . name
@@ -73,8 +74,7 @@ resource "azurerm_subnet" "private" {
7374 virtual_network_name = azurerm_virtual_network. this . name
7475 address_prefixes = [cidrsubnet (local. cidr , 3 , 1 )]
7576
76- enforce_private_link_endpoint_network_policies = true
77- enforce_private_link_service_network_policies = true
77+ private_endpoint_network_policies = " Enabled"
7878
7979 delegation {
8080 name = " databricks"
@@ -95,16 +95,14 @@ resource "azurerm_subnet_network_security_group_association" "private" {
9595 network_security_group_id = azurerm_network_security_group. this . id
9696}
9797
98-
9998resource "azurerm_subnet" "plsubnet" {
100- name = " ${ local . prefix } -privatelink"
101- resource_group_name = azurerm_resource_group. this . name
102- virtual_network_name = azurerm_virtual_network. this . name
103- address_prefixes = [cidrsubnet (local. cidr , 3 , 2 )]
104- enforce_private_link_endpoint_network_policies = true // set to true to disable subnet policy
99+ name = " ${ local . prefix } -privatelink"
100+ resource_group_name = azurerm_resource_group. this . name
101+ virtual_network_name = azurerm_virtual_network. this . name
102+ address_prefixes = [cidrsubnet (local. cidr , 3 , 2 )]
103+ private_endpoint_network_policies = " Enabled "
105104}
106105
107-
108106resource "azurerm_virtual_network" "hubvnet" {
109107 name = " ${ local . prefix } -hub-vnet"
110108 location = azurerm_resource_group. this . location
@@ -121,7 +119,6 @@ resource "azurerm_subnet" "hubfw" {
121119 address_prefixes = [cidrsubnet (var. hubcidr , 3 , 0 )]
122120}
123121
124-
125122resource "azurerm_virtual_network_peering" "hubvnet" {
126123 name = " peerhubtospoke"
127124 resource_group_name = azurerm_resource_group. this . name
@@ -134,4 +131,4 @@ resource "azurerm_virtual_network_peering" "spokevnet" {
134131 resource_group_name = azurerm_resource_group. this . name
135132 virtual_network_name = azurerm_virtual_network. this . name
136133 remote_virtual_network_id = azurerm_virtual_network. hubvnet . id
137- }
134+ }
0 commit comments