last sync: 2022-May-24 16:30:29 UTC

Azure Policy definition

Service Fabric clusters should have the ClusterProtectionLevel property set to EncryptAndSign

Name Service Fabric clusters should have the ClusterProtectionLevel property set to EncryptAndSign
Azure Portal
Id 617c02be-7f02-4efd-8836-3180d47b6c68
Version 1.1.0
details on versioning
Category Service Fabric
Microsoft docs
Description Service Fabric provides three levels of protection (None, Sign and EncryptAndSign) for node-to-node communication using a primary cluster certificate. Set the protection level to ensure that all node-to-node messages are encrypted and digitally signed
Mode Indexed
Type BuiltIn
Preview FALSE
Deprecated FALSE
Effect Default: Audit
Allowed: (Audit, Deny, Disabled)
Used RBAC Role none
Rule Aliases IF (3)
Alias Namespace ResourceType DefaultPath Modifiable
Microsoft.ServiceFabric/clusters/fabricSettings[*].name Microsoft.ServiceFabric clusters properties.fabricSettings[*].name false
Microsoft.ServiceFabric/clusters/fabricSettings[*].parameters[*].name Microsoft.ServiceFabric clusters properties.fabricSettings[*].parameters[*].name false
Microsoft.ServiceFabric/clusters/fabricSettings[*].parameters[*].value Microsoft.ServiceFabric clusters properties.fabricSettings[*].parameters[*].value false
Rule ResourceTypes IF (1)
Microsoft.ServiceFabric/clusters
History none
Used in Initiatives
Initiative DisplayName Initiative Id Initiative Category State Type
[Deprecated]: Azure Security Benchmark v1 42a694ed-f65e-42b2-aa9e-8052e9740a92 Regulatory Compliance Deprecated BuiltIn
[Deprecated]: Azure Security Benchmark v2 bb522ac1-bc39-4957-b194-429bcd3bcb0b Regulatory Compliance Deprecated BuiltIn
[Preview]: SWIFT CSCF v2021 abf84fac-f817-a70c-14b5-47eec767458a Regulatory Compliance Preview BuiltIn
Azure Security Benchmark 1f3afdf9-d0c9-4c3d-847f-89da613e70a8 Security Center GA BuiltIn
CMMC Level 3 b5629c75-5c77-4422-87b9-2509e680f8de Regulatory Compliance GA BuiltIn
FedRAMP High d5264498-16f4-418a-b659-fa7ef418175f Regulatory Compliance GA BuiltIn
FedRAMP Moderate e95f5a9f-57ad-4d03-bb0b-b1d16db93693 Regulatory Compliance GA BuiltIn
ISO 27001:2013 89c6cddc-1c73-4ac1-b19c-54d1a15a42f2 Regulatory Compliance GA BuiltIn
NIST SP 800-171 Rev. 2 03055927-78bd-4236-86c0-f36125a10dc9 Regulatory Compliance GA BuiltIn
NIST SP 800-53 Rev. 4 cf25b9c1-bd23-4eb6-bd2c-f4f3ac644a5f Regulatory Compliance GA BuiltIn
NIST SP 800-53 Rev. 5 179d1daa-458f-4e47-8086-2a68d0d6c38f Regulatory Compliance GA BuiltIn
PCI v3.2.1:2018 496eeda9-8f2f-4d5e-8dfd-204f0a92ed41 Regulatory Compliance GA BuiltIn
UK OFFICIAL and UK NHS 3937f550-eedd-4639-9c5e-294358be442e Regulatory Compliance GA BuiltIn
JSON