last sync: 2025-May-02 19:26:58 UTC

Require automatic OS image patching on Virtual Machine Scale Sets

Azure BuiltIn Policy definition

Source Azure Portal
Display name Require automatic OS image patching on Virtual Machine Scale Sets
Id 465f0161-0087-490a-9ad9-ad6217f4f43a
Version 1.0.0
Details on versioning
Versioning Versions supported for Versioning: 1
1.0.0
Built-in Versioning [Preview]
Category Compute
Microsoft Learn
Description This policy enforces enabling automatic OS image patching on Virtual Machine Scale Sets to always keep Virtual Machines secure by safely applying latest security patches every month.
Cloud environments AzureCloud = true
AzureUSGovernment = unknown
AzureChinaCloud = unknown
Available in AzUSGov Unknown, no evidence if Policy definition is/not available in AzureUSGovernment
Mode All
Type BuiltIn
Preview False
Deprecated False
Effect Fixed
deny
RBAC role(s) none
Rule aliases IF (2)
Alias Namespace ResourceType Path PathIsDefault DefaultPath Modifiable
Microsoft.Compute/VirtualMachineScaleSets/upgradePolicy.automaticOSUpgrade Microsoft.Compute
Microsoft.Compute
virtualMachineScaleSets
virtualMachineScaleSets
properties.upgradePolicy.automaticOSUpgradePolicy.enableAutomaticOSUpgrade
properties.upgradePolicy.automaticOSUpgrade
True
False

properties.upgradePolicy.automaticOSUpgradePolicy.enableAutomaticOSUpgrade
False
False
Microsoft.Compute/VirtualMachineScaleSets/upgradePolicy.automaticOSUpgradePolicy.enableAutomaticOSUpgrade Microsoft.Compute
Microsoft.Compute
virtualMachineScaleSets
virtualMachineScaleSets
properties.upgradePolicy.automaticOSUpgradePolicy.enableAutomaticOSUpgrade
properties.upgradePolicy.automaticOSUpgrade
True
False

properties.upgradePolicy.automaticOSUpgradePolicy.enableAutomaticOSUpgrade
False
False
Rule resource types IF (1)
Compliance Not a Compliance control
Initiatives usage none
History none
JSON compare n/a
JSON
api-version=2021-06-01
EPAC