last sync: 2025-Sep-19 17:23:11 UTC

Deny Key Vault resource access - Azure Resource Manager

Community Policy definition

Source Repository Community-Policy GitHub
JSON Community-Policy GitHub
Deploy policy b1f2a4d3-6e89-41a7-bb1f-2d8c5e7a9f25 (1.0.0) to Azure
Display name Deny Key Vault resource access - Azure Resource Manager
Id b1f2a4d3-6e89-41a7-bb1f-2d8c5e7a9f25
Version 1.0.0
Details on versioning
Category Key Vault
Microsoft Learn
Description Requires Key Vaults to be deployed with 'Azure Resource Manager for template deployment' disabled.
Mode All
Type Custom Community
Effect Default
Audit
Allowed
Deny, Audit, Disabled
RBAC role(s) none
Rule aliases IF (1)
Alias Namespace ResourceType Path PathIsDefault DefaultPath Modifiable
Microsoft.KeyVault/vaults/enabledForTemplateDeployment Microsoft.KeyVault vaults properties.enabledForTemplateDeployment True True
Rule resource types IF (1)
Microsoft.KeyVault/vaults
JSON
EPAC
Deploy policy b1f2a4d3-6e89-41a7-bb1f-2d8c5e7a9f25 (1.0.0) to Azure