last sync: 2023-Jun-19 17:45:01 UTC

Community Policy definition

Custom roles are not allowed

Name Custom roles are not allowed
Community-Policy GitHub
Id authorization_deny-or-audit-custom-role-creation
Version n/a
details on versioning
Category undefined
Microsoft docs
Description This policy will audit or deny the creation of RBAC custom roles.
Mode All
Type Custom Community
Effect Default
Deny
Allowed
Audit, Deny, Disabled
Used RBAC Role none
Rule Aliases IF (1)
Alias Namespace ResourceType DefaultPath Modifiable
Microsoft.Authorization/roleDefinitions/type Microsoft.Authorization roleDefinitions properties.type false
Rule ResourceTypes IF (1)
Microsoft.Authorization/roleDefinitions
JSON