Mods
Azure

Policy: Azure > Network > Network Security Group > Ingress Rules > Approved

Configure Network Security Group Ingress Rule checking. This policy defines whether to verify the security group ingress rules are approved, as well as the subsequent action to take on unapproved items. Rules for all Approved policies will be compiled in Approved > Compiled Rules and then evaluated.

If set to Enforce: Delete unapproved, any unapproved rules will be revoked from the security group.

Resource Types

This policy targets the following resource types:

Primary Policy

This policy is used with the following primary policy:

Controls

Policy Packs

This policy setting is used by the following policy packs:

Policy Specification

Schema Type
string
Default
Skip
Valid Values [YAML]
  • Skip
    
  • Check: Approved
    
  • Enforce: Delete unapproved
    
Examples [YAML]
  • Skip
    

Category

In Your Workspace

Developers