last sync: 2023-Sep-29 17:58:48 UTC

Azure Policy definition

Configure container registries to disable ARM audience token authentication.

Source Azure Portal
Display name Configure container registries to disable ARM audience token authentication.
Id 785596ed-054f-41bc-aaec-7f3d0ba05725
Version 1.0.0
details on versioning
Category Container Registry
Microsoft docs
Description Disable Azure Active Directory ARM audience tokens for authentication to your registry. Only Azure Container Registry (ACR) audience tokens will be used for authentication. This will ensure only tokens meant for usage on the registry can be used for authentication. Disabling ARM audience tokens does not affect admin user's or scoped access tokens' authentication. Learn more at: https://aka.ms/acr/authentication.
Mode Indexed
Type BuiltIn
Preview False
Deprecated False
Effect Default
Modify
Allowed
Modify, Disabled
RBAC role(s)
Role Name Role Id
Contributor b24988ac-6180-42a0-ab88-20f7382dd24c
Rule aliases IF (2)
Alias Namespace ResourceType DefaultPath Modifiable
Microsoft.ContainerRegistry/registries/policies.azureADAuthenticationAsArmPolicy Microsoft.ContainerRegistry registries properties.policies.azureADAuthenticationAsArmPolicy false
Microsoft.ContainerRegistry/registries/policies.azureADAuthenticationAsArmPolicy.status Microsoft.ContainerRegistry registries properties.policies.azureADAuthenticationAsArmPolicy.status true
THEN-Operations (1)
Alias Namespace ResourceType DefaultPath Modifiable
Microsoft.ContainerRegistry/registries/policies.azureADAuthenticationAsArmPolicy.status Microsoft.ContainerRegistry registries properties.policies.azureADAuthenticationAsArmPolicy.status true
Rule resource types IF (1)
Microsoft.ContainerRegistry/registries
Compliance Not a Compliance control
Initiatives usage none
History
Date/Time (UTC ymd) (i) Change type Change detail
2022-07-15 16:32:44 add 785596ed-054f-41bc-aaec-7f3d0ba05725
JSON compare n/a
JSON
api-version=2021-06-01