last sync: 2025-Apr-29 17:16:02 UTC

Deny the creation of private DNS

Azure Landing Zones (ALZ) Policy definition

Source Repository Azure Landing Zones (ALZ) GitHub
JSON Deny-Private-DNS-Zones
Deploy policy Deny-Private-DNS-Zones (1.0.0) to Azure
Display name Deny the creation of private DNS
Id Deny-Private-DNS-Zones
Version 1.0.0
Details on versioning
Category Network
Description This policy denies the creation of a private DNS in the current scope, used in combination with policies that create centralized private DNS in connectivity subscription
Cloud environments AzureChinaCloud
AzureCloud
AzureUSGovernment
Mode Indexed
Type Custom Azure Landing Zones (ALZ)
Preview False
Deprecated False
Effect Default
Deny
Allowed
Audit, Deny, Disabled
RBAC role(s) none
Rule aliases
Rule resource types IF (1)
Microsoft.Network/privateDnsZones
Initiatives usage none
History none
JSON compare n/a
JSON
EPAC
Deploy policy Deny-Private-DNS-Zones (1.0.0) to Azure