last sync: 2025-Sep-15 17:23:08 UTC

Kubernetes cluster containers should only pull images when image pull secrets are present

Azure BuiltIn Policy definition

Source Azure Portal
Display name Kubernetes cluster containers should only pull images when image pull secrets are present
Id 12db3749-7e03-4b9f-b443-d37d3fb9f8d9
Version 1.3.1
Details on versioning
Versioning Versions supported for Versioning: 5
1.3.1
1.3.0-preview
1.2.0-preview
1.1.0-preview
1.0.0-preview
Built-in Versioning [Preview]
Category Kubernetes
Microsoft Learn
Description Restrict containers' image pulls to enforce the presence of ImagePullSecrets, ensuring secure and authorized access to images within a Kubernetes cluster
Cloud environments AzureCloud = true
AzureUSGovernment = true
AzureChinaCloud = unknown
Available in AzUSGov The Policy is available in AzureUSGovernment cloud. Version: '1.1.0-preview'
Repository: Azure-Policy 12db3749-7e03-4b9f-b443-d37d3fb9f8d9
Mode Microsoft.Kubernetes.Data
Type BuiltIn
Preview False
Deprecated False
Effect Default
Audit
Allowed
Audit, Deny, Disabled
RBAC role(s) none
Rule aliases none
Rule resource types IF (1)
Compliance Not a Compliance control
Initiatives usage
Initiative DisplayName Initiative Id Initiative Category State Type polSet in AzUSGov
Deployment safeguards should help guide developers towards AKS recommended best practices c047ea8e-9c78-49b2-958b-37e56d291a44 Kubernetes GA BuiltIn true
History
Date/Time (UTC ymd) (i) Change type Change detail
2025-09-15 17:23:08 change Patch, old suffix: preview (1.3.0-preview > 1.3.1)
2025-04-22 16:46:02 change Minor, suffix remains equal (1.2.0-preview > 1.3.0-preview)
2024-08-09 18:17:47 change Minor, suffix remains equal (1.1.0-preview > 1.2.0-preview)
2024-02-20 22:44:08 change Minor, suffix remains equal (1.0.0-preview > 1.1.0-preview)
2023-10-31 19:02:40 add 12db3749-7e03-4b9f-b443-d37d3fb9f8d9
JSON compare
compare mode: version left: version right:
JSON
api-version=2021-06-01
EPAC