last sync: 2024-Oct-04 17:51:30 UTC

Configure Kubernetes clusters with Flux v2 configuration using Bucket source and secrets in KeyVault

Azure BuiltIn Policy definition

Source Azure Portal
Display name Configure Kubernetes clusters with Flux v2 configuration using Bucket source and secrets in KeyVault
Id 5174c1db-ca42-e0d4-b320-4f1cf6a1fa93
Version 1.0.0
Details on versioning
Versioning Versions supported for Versioning: 1
1.0.0
Built-in Versioning [Preview]
Category Kubernetes
Microsoft Learn
Description Deploy a 'fluxConfiguration' to Kubernetes clusters to assure that the clusters get their source of truth for workloads and configurations from the defined Bucket. This definition requires a Bucket SecretKey stored in Key Vault. For instructions, visit https://aka.ms/GitOpsFlux2Policy.
Mode Indexed
Type BuiltIn
Preview False
Deprecated False
Effect Default
DeployIfNotExists
Allowed
DeployIfNotExists, Disabled
RBAC role(s)
Role Name Role Id
Contributor b24988ac-6180-42a0-ab88-20f7382dd24c
Rule aliases THEN-ExistenceCondition (8)
Alias Namespace ResourceType Path PathIsDefault DefaultPath Modifiable
Microsoft.KubernetesConfiguration/fluxConfigurations/bucket.accessKey Microsoft.KubernetesConfiguration fluxConfigurations properties.bucket.accessKey True False
Microsoft.KubernetesConfiguration/fluxConfigurations/bucket.bucketName Microsoft.KubernetesConfiguration fluxConfigurations properties.bucket.bucketName True False
Microsoft.KubernetesConfiguration/fluxConfigurations/bucket.insecure Microsoft.KubernetesConfiguration fluxConfigurations properties.bucket.insecure True False
Microsoft.KubernetesConfiguration/fluxConfigurations/bucket.syncIntervalInSeconds Microsoft.KubernetesConfiguration fluxConfigurations properties.bucket.syncIntervalInSeconds True False
Microsoft.KubernetesConfiguration/fluxConfigurations/bucket.timeoutInSeconds Microsoft.KubernetesConfiguration fluxConfigurations properties.bucket.timeoutInSeconds True False
Microsoft.KubernetesConfiguration/fluxConfigurations/bucket.url Microsoft.KubernetesConfiguration fluxConfigurations properties.bucket.url True False
Microsoft.KubernetesConfiguration/fluxConfigurations/namespace Microsoft.KubernetesConfiguration fluxConfigurations properties.namespace True False
Microsoft.KubernetesConfiguration/fluxConfigurations/scope Microsoft.KubernetesConfiguration fluxConfigurations properties.scope True False
Rule resource types IF (2)
Microsoft.ContainerService/managedClusters
Microsoft.Kubernetes/connectedClusters
THEN-Deployment (1)
Microsoft.KubernetesConfiguration/fluxConfigurations
Compliance Not a Compliance control
Initiatives usage none
History
Date/Time (UTC ymd) (i) Change type Change detail
2022-08-19 16:33:23 add 5174c1db-ca42-e0d4-b320-4f1cf6a1fa93
JSON compare n/a
JSON
api-version=2021-06-01
EPAC