last sync: 2022-Oct-03 16:35:36 UTC

Azure Policy definition

Storage accounts should have shared access signature (SAS) policies configured

Name Storage accounts should have shared access signature (SAS) policies configured
Azure Portal
Id bc1b984e-ddae-40cc-801a-050a030e4fbe
Version 1.0.0
details on versioning
Category Storage
Microsoft docs
Description Ensure storage accounts have shared access signature (SAS) expiration policy enabled. Users use a SAS to delegate access to resources in Azure Storage account. And SAS expiration policy recommend upper expiration limit when a user creates a SAS token.
Mode Indexed
Type BuiltIn
Preview FALSE
Deprecated FALSE
Effect Default: Audit
Allowed: (Audit, Deny, Disabled)
Used RBAC Role none
Rule Aliases IF (1)
Alias Namespace ResourceType DefaultPath Modifiable
Microsoft.Storage/storageAccounts/sasPolicy Microsoft.Storage storageAccounts properties.sasPolicy false
Rule ResourceTypes IF (1)
Microsoft.Storage/storageAccounts
History
Date/Time (UTC ymd) (i) Change type Change detail
2022-01-07 18:14:35 add bc1b984e-ddae-40cc-801a-050a030e4fbe
Used in Initiatives none
JSON