Source | Azure Portal | ||||||||||||
Display name | Kubernetes cluster Windows containers should not run as ContainerAdministrator | ||||||||||||
Id | 5485eac0-7e8f-4964-998b-a44f4f0c1e75 | ||||||||||||
Version | 1.2.0 Details on versioning |
||||||||||||
Versioning |
Versions supported for Versioning: 2 1.2.0 1.1.0 Built-in Versioning [Preview] |
||||||||||||
Category | Kubernetes Microsoft Learn |
||||||||||||
Description | Prevent usage of ContainerAdministrator as the user to execute the container processes for Windows pods or containers. This recommendation is intended to improve the security of Windows nodes. For more information, see https://kubernetes.io/docs/concepts/windows/intro/ . | ||||||||||||
Cloud environments | AzureCloud = true AzureUSGovernment = true AzureChinaCloud = unknown |
||||||||||||
Available in AzUSGov | The Policy is available in AzureUSGovernment cloud. Version: '2.1.0' Repository: Azure-Policy 5485eac0-7e8f-4964-998b-a44f4f0c1e75 |
||||||||||||
Mode | Microsoft.Kubernetes.Data | ||||||||||||
Type | BuiltIn | ||||||||||||
Preview | False | ||||||||||||
Deprecated | False | ||||||||||||
Effect | Default Audit Allowed Audit, Deny, Disabled |
||||||||||||
RBAC role(s) | none | ||||||||||||
Rule aliases | none | ||||||||||||
Rule resource types | IF (2) |
||||||||||||
Compliance | Not a Compliance control | ||||||||||||
Initiatives usage |
|
||||||||||||
History |
|
||||||||||||
JSON compare |
compare mode:
version left:
version right:
|
||||||||||||
JSON |
|