last sync: 2020-Jul-07 14:21:17 UTC

Azure Policy

[Deprecated]: Ensure CPU and memory resource limits defined on containers in AKS

Policy DisplayName [Deprecated]: Ensure CPU and memory resource limits defined on containers in AKS
Policy Id a2d3ed81-8d11-4079-80a5-1faadc0024f4
Policy Category Kubernetes service
Policy Description This policy ensures CPU and memory resource limits are defined on containers in an Azure Kubernetes Service cluster. This policy is deprecated, please visit https://aka.ms/kubepolicydoc for instructions on using new Kubernetes policies.
Policy Mode Microsoft.ContainerService.Data
Policy Type BuiltIn
Policy in Preview FALSE
Policy Deprecated True
Policy Effect Default: EnforceRegoPolicy
Allowed: (EnforceRegoPolicy,Disabled)
Roles used none
Policy Changes
Date/Time (UTC ymd) (i) Change Change detail
2020-06-01 18:36:18 change: DisplayName previous DisplayName: [Limited Preview]: [AKS] Ensure CPU and memory resource limits defined on containers in AKS
2019-11-12 19:11:12 change: DisplayName previous DisplayName: [Limited Preview]: Ensure CPU and memory resource limits defined on containers in AKS
Used in Policy Initiative(s) none
Policy Rule
{
  "properties": {
  "displayName": "[Deprecated]: Ensure CPU and memory resource limits defined on containers in AKS",
    "policyType": "BuiltIn",
    "mode": "Microsoft.ContainerService.Data",
    "description": "This policy ensures CPU and memory resource limits are defined on containers in an Azure Kubernetes Service cluster. This policy is deprecated, please visit https://aka.ms/kubepolicydoc for instructions on using new Kubernetes policies.",
    "metadata": {
      "version": "1.0.1-deprecated",
      "category": "Kubernetes service",
      "deprecated": true
    },
    "parameters": {
      "effect": {
        "type": "String",
        "metadata": {
        "displayName": "[Deprecated]: Effect",
          "description": "Enable or disable the execution of the policy"
        },
        "allowedValues": [
          "EnforceRegoPolicy",
          "Disabled"
        ],
        "defaultValue": "EnforceRegoPolicy"
      }
    },
    "policyRule": {
      "if": {
        "field": "type",
        "equals": "Microsoft.ContainerService/managedClusters"
      },
      "then": {
      "effect": "[parameters('effect')]",
        "details": {
          "policyId": "ContainerResourceLimits",
          "policy": "https://raw.githubusercontent.com/Azure/azure-policy/master/built-in-references/KubernetesService/container-resource-limits/limited-preview/gatekeeperpolicy.rego"
        }
      }
    }
  },
  "id": "/providers/Microsoft.Authorization/policyDefinitions/a2d3ed81-8d11-4079-80a5-1faadc0024f4",
  "type": "Microsoft.Authorization/policyDefinitions",
  "name": "a2d3ed81-8d11-4079-80a5-1faadc0024f4"
}