last sync: 2023-Jun-19 17:45:01 UTC

Community Policy definition

Restrict cloud shell storage account creation

Name Restrict cloud shell storage account creation
Community-Policy GitHub
Id 85e1cbb5-1687-4d33-abda-f02b8395b36d
Version 1.0.0
details on versioning
Category Tags
Microsoft docs
Description Storage accounts that you create in Cloud Shell are tagged with ms-resource-usage:azure-cloud-shell. If you want to disallow users from creating storage accounts in Cloud Shell, create an Azure resource policy for tags that is triggered by this specific tag. https://learn.microsoft.com/en-us/azure/cloud-shell/persisting-shell-storage#restrict-resource-creation-with-an-azure-resource-policy
Mode All
Type Custom Community
Effect Default
Deny
Allowed
Deny, Audit, Disabled
Used RBAC Role none
Rule Aliases
Rule ResourceTypes IF (1)
Microsoft.Storage/storageAccounts
JSON