last sync: 2024-Jun-24 18:15:26 UTC

Function apps should disable public network access

Azure BuiltIn Policy definition

Source Azure Portal
Display name Function apps should disable public network access
Id 969ac98b-88a8-449f-883c-2e9adb123127
Version 1.0.0
Details on versioning
Category App Service
Microsoft Learn
Description Disabling public network access improves security by ensuring that the Function app is not exposed on the public internet. Creating private endpoints can limit exposure of a Function App. Learn more at:
Mode Indexed
Type BuiltIn
Preview False
Deprecated False
Effect Default
Audit, Disabled, Deny
RBAC role(s) none
Rule aliases IF (1)
Alias Namespace ResourceType Path PathIsDefault DefaultPath Modifiable
Microsoft.Web/sites/publicNetworkAccess Microsoft.Web sites properties.publicNetworkAccess True True
Rule resource types IF (1)
Compliance Not a Compliance control
Initiatives usage
Initiative DisplayName Initiative Id Initiative Category State Type
[Preview]: Control the use of App Service in a Virtual Enclave 528d78c5-246c-4f26-ade6-d30798705411 VirtualEnclaves Preview BuiltIn
Public network access should be disabled for PaaS services Deny-PublicPaaSEndpoints Network GA ALZ
Date/Time (UTC ymd) (i) Change type Change detail
2022-10-07 16:34:28 add 969ac98b-88a8-449f-883c-2e9adb123127
JSON compare n/a