last sync: 2024-May-27 19:38:21 UTC

[Preview]: Deploy Image Integrity on Azure Kubernetes Service

Azure BuiltIn Policy definition

Source Azure Portal
Display name [Preview]: Deploy Image Integrity on Azure Kubernetes Service
Id 5dc99dae-cfb2-42cc-8762-9aae02b74e27
Version 1.0.5-preview
Details on versioning
Category Kubernetes
Microsoft Learn
Description Deploy both Image Integrity and Policy Add-Ons Azure Kubernetes clusters. For more info, visit
Mode Indexed
Type BuiltIn
Preview False
Deprecated False
Effect Default
DeployIfNotExists, Disabled
RBAC role(s)
Role Name Role Id
Azure Kubernetes Service Contributor Role ed7f3fbd-7b88-4dd4-9017-9adb7ce333f8
Azure Kubernetes Service Policy Add-on Deployment 18ed5180-3e48-46fd-8541-4ea054d57064
Rule aliases THEN-ExistenceCondition (1)
Alias Namespace ResourceType DefaultPath Modifiable
Microsoft.ContainerService/managedClusters/securityProfile.imageIntegrity.enabled Microsoft.ContainerService managedClusters properties.securityProfile.imageIntegrity.enabled false
Rule resource types IF (1)
THEN-Deployment (2)
Compliance Not a Compliance control
Initiatives usage
Initiative DisplayName Initiative Id Initiative Category State Type
[Preview]: Use Image Integrity to ensure only trusted images are deployed af28bf8b-c669-4dd3-9137-1e68fdc61bd6 Kubernetes Preview BuiltIn
Date/Time (UTC ymd) (i) Change type Change detail
2023-11-08 19:40:08 change Patch, suffix remains equal (1.0.4-preview > 1.0.5-preview)
2023-10-31 19:02:40 change Patch, suffix remains equal (1.0.3-preview > 1.0.4-preview)
2023-10-23 17:41:36 change Patch, suffix remains equal (1.0.1-preview > 1.0.3-preview)
2023-10-16 18:01:34 change Patch, suffix remains equal (1.0.0-preview > 1.0.1-preview)
2023-09-01 18:00:13 add 5dc99dae-cfb2-42cc-8762-9aae02b74e27
JSON compare
compare mode: version left: version right: