last sync: 2025-Apr-29 17:16:02 UTC

[Preview]: Mutate K8s Init Container to drop all capabilities

Azure BuiltIn Policy definition

Source Azure Portal
Display name [Preview]: Mutate K8s Init Container to drop all capabilities
Id c812272d-7488-495f-a505-047d34b83f58
Version 1.2.0-preview
Details on versioning
Versioning Versions supported for Versioning: 3
1.2.0-preview
1.1.0-preview
1.0.0-preview
Built-in Versioning [Preview]
Category Kubernetes
Microsoft Learn
Description Mutates securityContext.capabilities.drop to add in "ALL". This drops all capabilities for k8s linux init containers
Cloud environments AzureCloud = true
AzureUSGovernment = true
AzureChinaCloud = unknown
Available in AzUSGov The Policy is available in AzureUSGovernment cloud. Version: '1.1.0-preview'
Repository: Azure-Policy c812272d-7488-495f-a505-047d34b83f58
Mode Microsoft.Kubernetes.Data
Type BuiltIn
Preview True
Deprecated False
Effect Default
Mutate
Allowed
Mutate, Disabled
RBAC role(s) none
Rule aliases none
Rule resource types IF (1)
Compliance Not a Compliance control
Initiatives usage none
History
Date/Time (UTC ymd) (i) Change type Change detail
2025-04-22 16:46:02 change Minor, suffix remains equal (1.1.0-preview > 1.2.0-preview)
2024-08-09 18:17:47 change Minor, suffix remains equal (1.0.0-preview > 1.1.0-preview)
2024-07-15 18:22:44 add c812272d-7488-495f-a505-047d34b83f58
JSON compare
compare mode: version left: version right:
JSON
api-version=2021-06-01
EPAC