Policy: Azure > Network > Network Security Group > Ingress Rules > Approved > Minimum Bitmask
Defines the smallest allowed bitmask (largest range of IP addresses) that can be granted access in any single custom security group ingress rule.
Examples: - IPv4 - 32 - Restrict rules to a single IP address - 24 - Restrict rules to a /24 CIDR block - 0 - Unlimited size - IPv6 - 256 - Restrict rules to a single IP address - 32 - Restrict rules to a /32 CIDR block
Applies to non-Guardrails managed Security Groups.
Resource Types
This policy targets the following resource types:
Primary Policy
This policy is used with the following primary policy:
Controls
- Azure > Network > Network Security Group > Ingress Rules
- Azure > Network > Network Security Group > Ingress Rules > Approved
Policy Specification
Schema Type |
|
---|---|
Default |
|
Category
In Your Workspace
Developers
- tmod:@turbot/turbot#/control/categories/resourceApproved
- tmod:@turbot/azure-network#/policy/types/networkSecurityGroupIngressRulesApprovedMinimumBitmask
- turbot graphql policy-type --id "tmod:@turbot/azure-network#/policy/types/networkSecurityGroupIngressRulesApprovedMinimumBitmask"
- turbot graphql policy-settings --filter "policyTypeId:tmod:@turbot/azure-network#/policy/types/networkSecurityGroupIngressRulesApprovedMinimumBitmask"
Get Policy TypeGet Policy Settings
Category URI
Policy Type URI
GraphQL
CLI