last sync: 2025-Apr-29 17:16:02 UTC

App Service apps that use PHP should use a specified 'PHP version'

Azure BuiltIn Policy definition

Source Azure Portal
Display name App Service apps that use PHP should use a specified 'PHP version'
Id 7261b898-8a84-4db8-9e04-18527132abb3
Version 3.2.0
Details on versioning
Versioning Versions supported for Versioning: 1
3.2.0
Built-in Versioning [Preview]
Category App Service
Microsoft Learn
Description Periodically, newer versions are released for PHP software either due to security flaws or to include additional functionality. Using the latest PHP version for App Service apps is recommended in order to take advantage of security fixes, if any, and/or new functionalities of the latest version. This policy only applies to Linux apps. This policy requires you to specify a PHP version that meets your requirements.
Cloud environments AzureCloud = true
AzureUSGovernment = true
AzureChinaCloud = unknown
Available in AzUSGov The Policy is available in AzureUSGovernment cloud. Version: '3.*.*'
Mode Indexed
Type BuiltIn
Preview False
Deprecated False
Effect Default
AuditIfNotExists
Allowed
AuditIfNotExists, Disabled
RBAC role(s) none
Rule aliases THEN-ExistenceCondition (1)
Alias Namespace ResourceType Path PathIsDefault DefaultPath Modifiable
Microsoft.Web/sites/config/web.linuxFxVersion Microsoft.Web sites/config properties.linuxFxVersion True False
Rule resource types IF (1)
Compliance
The following 7 compliance controls are associated with this Policy definition 'App Service apps that use PHP should use a specified 'PHP version'' (7261b898-8a84-4db8-9e04-18527132abb3)
Control Domain Control Name MetadataId Category Title Owner Requirements Description Info Policy#
C.04.3 - Technical vulnerabilities C.04.3 - Technical vulnerabilities 404 not found n/a n/a 26
C.04.3 - Timelines C.04.3 - Timelines 404 not found n/a n/a 20
C.04.6 - Technical vulnerabilities C.04.6 - Technical vulnerabilities 404 not found n/a n/a 27
C.04.6 - Timelines C.04.6 - Timelines 404 not found n/a n/a 20
C.04.7 - Evaluated C.04.7 - Evaluated 404 not found n/a n/a 55
CIS_Azure_2.0.0 9.6 CIS_Azure_2.0.0_9.6 CIS Microsoft Azure Foundations Benchmark recommendation 9.6 9 Ensure That 'PHP version' is the Latest, If Used to Run the Web App Shared If your app is written using version-dependent features or libraries, they may not be available on the latest version. If you wish to upgrade, research the impact thoroughly. Upgrading may have unforeseen consequences that could result in downtime. Periodically newer versions are released for PHP software either due to security flaws or to include additional functionality. Using the latest PHP version for web apps is recommended in order to take advantage of security fixes, if any, and/or additional functionalities of the newer version. Newer versions may contain security enhancements and additional functionality. Using the latest software version is recommended in order to take advantage of enhancements and new capabilities. With each software installation, organizations need to determine if a given update meets their requirements. They must also verify the compatibility and support provided for any additional software against the update revision that is selected. link 3
New_Zealand_ISM 14.5.8.C.01 New_Zealand_ISM_14.5.8.C.01 New_Zealand_ISM_14.5.8.C.01 14. Software security 14.5.8.C.01 Web applications n/a Agencies SHOULD follow the documentation provided in the Open Web Application Security Project guide to building secure Web applications and Web services. 18
Initiatives usage
Initiative DisplayName Initiative Id Initiative Category State Type polSet in AzUSGov
[Preview]: Control the use of App Service in a Virtual Enclave 528d78c5-246c-4f26-ade6-d30798705411 VirtualEnclaves Preview BuiltIn true
CIS Microsoft Azure Foundations Benchmark v2.0.0 06f19060-9e68-4070-92ca-f15cc126059e Regulatory Compliance GA BuiltIn unknown
New Zealand ISM 4f5b1359-4f8e-4d7c-9733-ea47fcde891e Regulatory Compliance GA BuiltIn unknown
NL BIO Cloud Theme 6ce73208-883e-490f-a2ac-44aac3b3687f Regulatory Compliance GA BuiltIn unknown
NL BIO Cloud Theme V2 d8b2ffbe-c6a8-4622-965d-4ade11d1d2ee Regulatory Compliance GA BuiltIn unknown
History
Date/Time (UTC ymd) (i) Change type Change detail
2023-05-01 17:41:52 change Minor (3.1.0 > 3.2.0)
2023-01-13 18:06:06 change Minor (3.0.0 > 3.1.0)
2022-07-01 16:32:34 change Major (2.2.0 > 3.0.0)
2022-01-21 21:53:22 change Minor (2.1.0 > 2.2.0)
2021-05-04 14:34:06 change Minor (2.0.0 > 2.1.0)
2020-10-20 13:29:33 change Major (1.0.0 > 2.0.0)
2019-11-12 19:11:12 add 7261b898-8a84-4db8-9e04-18527132abb3
JSON compare
compare mode: version left: version right:
JSON
api-version=2021-06-01
EPAC