🚀Launch Week 09, June 30th - July 4th, 2025🚀
Mods
Azure

Policy: Azure > Storage > Storage Account > Shared Key Access

Define the Shared Key Access settings required for Azure > Storage > Storage Account.

This policy determines whether Shared Key access is permitted for Azure Storage Accounts. Disabling Shared Key access ensures that only requests authorized with Microsoft Entra ID (AAD) are permitted, enhancing the security of storage account access. Enabling Shared Key access allows requests authorized with account keys or SAS tokens. When set to "Check: Disabled" or "Check: Enabled", the control will alarm if the storage account's setting does not match the policy. When set to "Enforce: Disabled" or "Enforce: Enabled", the control will automatically set the property to match the policy. Setting the policy to "Skip" will exclude the storage account from this check.

Targets

This policy targets the following resource types:

Controls

Setting this policy configures this control:

Policy Specification

Schema Type
string
Default
Skip
Valid Values [YAML]
  • Skip
    
  • Check: Disabled
    
  • Check: Enabled
    
  • Enforce: Disabled
    
  • Enforce: Enabled
    

Category

In Your Workspace

Developers