Mods
Azure

Policy: Azure > CIS v2.0 > 08 - Key Vault > 8.06 - Ensure Role Based Access Control for Azure Key Vault

Configures auditing against a CIS Benchmark item.

Level: 2

WARNING: Role assignments disappear when a Key Vault has been deleted (soft-delete) and recovered. Afterwards it will be required to recreate all role assignments.

This is a limitation of the soft-delete feature across all Azure services.

Resource Types

This policy targets the following resource types:

Primary Policy

This policy is used with the following primary policy:

Controls

Policy Specification

Schema Type
string
Default
Per Azure > CIS v2.0 > 08 - Key Vault
Valid Values [YAML]
  • Per Azure > CIS v2.0 > 08 - Key Vault
    
  • Skip
    
  • Check: Benchmark
    

Category

In Your Workspace

Developers