last sync: 2021-Nov-26 17:15:01 UTC

Azure Policy definition

Private endpoint connections on Batch accounts should be enabled

Name Private endpoint connections on Batch accounts should be enabled
Azure Portal
Id 009a0c92-f5b4-4776-9b66-4ed2b4775563
Version 1.0.0
details on versioning
Category Batch
Microsoft docs
Description Private endpoint connections allow secure communication by enabling private connectivity to Batch accounts without a need for public IP addresses at the source or destination. Learn more about private endpoints in Batch at https://docs.microsoft.com/azure/batch/private-connectivity.
Mode Indexed
Type BuiltIn
Preview FALSE
Deprecated FALSE
Effect Default: AuditIfNotExists
Allowed: (AuditIfNotExists, Disabled)
Used RBAC Role none
History
Date/Time (UTC ymd) (i) Change type Change detail
2021-02-23 16:24:42 add 009a0c92-f5b4-4776-9b66-4ed2b4775563
Used in Initiatives
Initiative DisplayName Initiative Id Initiative Category State
New Zealand ISM Restricted d1a462af-7e6d-4901-98ac-61570b4ed22a Regulatory Compliance GA
JSON
{
  "displayName": "Private endpoint connections on Batch accounts should be enabled",
  "policyType": "BuiltIn",
  "mode": "Indexed",
  "description": "Private endpoint connections allow secure communication by enabling private connectivity to Batch accounts without a need for public IP addresses at the source or destination. Learn more about private endpoints in Batch at https://docs.microsoft.com/azure/batch/private-connectivity.",
  "metadata": {
    "version": "1.0.0",
    "category": "Batch"
  },
  "parameters": {
    "effect": {
      "type": "String",
      "metadata": {
        "displayName": "Effect",
        "description": "Enable or disable the execution of the policy"
      },
      "allowedValues": [
        "AuditIfNotExists",
        "Disabled"
      ],
      "defaultValue": "AuditIfNotExists"
    }
  },
  "policyRule": {
    "if": {
      "field": "type",
      "equals": "Microsoft.Batch/batchAccounts"
    },
    "then": {
      "effect": "[parameters('effect')]",
      "details": {
        "type": "Microsoft.Batch/batchAccounts/privateEndpointConnections",
        "existenceCondition": {
          "field": "Microsoft.Batch/batchAccounts/privateEndpointConnections/privateLinkServiceConnectionState.status",
          "equals": "Approved"
        }
      }
    }
  }
}