last sync: 2021-Jul-23 16:37:57 UTC

Azure Policy definition

Public network access on Azure IoT Hub should be disabled

Name Public network access on Azure IoT Hub should be disabled
Azure Portal
Id 2d6830fb-07eb-48e7-8c4d-2a442b35f0fb
Version 1.0.0
details on versioning
Category Internet of Things
Microsoft docs
Description Disabling the public network access property improves security by ensuring your Azure IoT Hub can only be accessed from a private endpoint.
Mode Indexed
Type BuiltIn
Preview FALSE
Deprecated FALSE
Effect Default: Audit
Allowed: (Audit, Deny, Disabled)
Used RBAC Role none
History
Date/Time (UTC ymd) (i) Change type Change detail
2021-03-02 15:11:40 add 2d6830fb-07eb-48e7-8c4d-2a442b35f0fb
Used in Initiatives none
JSON
{
  "properties": {
    "displayName": "Public network access on Azure IoT Hub should be disabled",
    "policyType": "BuiltIn",
    "mode": "Indexed",
    "description": "Disabling the public network access property improves security by ensuring your Azure IoT Hub can only be accessed from a private endpoint.",
    "metadata": {
      "version": "1.0.0",
      "category": "Internet of Things"
    },
    "parameters": {
      "effect": {
        "type": "String",
        "metadata": {
          "displayName": "Effect",
          "description": "Enable or disable the execution of the policy"
        },
        "allowedValues": [
          "Audit",
          "Deny",
          "Disabled"
        ],
        "defaultValue": "Audit"
      }
    },
    "policyRule": {
      "if": {
        "allOf": [
          {
            "field": "type",
            "equals": "Microsoft.Devices/IotHubs"
          },
          {
            "field": "Microsoft.Devices/IotHubs/publicNetworkAccess",
            "notEquals": "Disabled"
          }
        ]
      },
      "then": {
      "effect": "[parameters('effect')]"
      }
    }
  },
  "id": "/providers/Microsoft.Authorization/policyDefinitions/2d6830fb-07eb-48e7-8c4d-2a442b35f0fb",
  "type": "Microsoft.Authorization/policyDefinitions",
  "name": "2d6830fb-07eb-48e7-8c4d-2a442b35f0fb"
}