last sync: 2025-Feb-14 18:36:58 UTC

Configure Azure Virtual Desktop hostpools to disable public network access only for session hosts

Azure BuiltIn Policy definition

Source Azure Portal
Display name Configure Azure Virtual Desktop hostpools to disable public network access only for session hosts
Id e84e8a9a-f43e-46e3-9458-bbcfb2d7e429
Version 1.0.0
Details on versioning
Versioning Versions supported for Versioning: 1
Built-in Versioning [Preview]
Category Desktop Virtualization
Microsoft Learn
Description Disable public network access for your Azure Virtual Desktop hostpool session hosts, but allow public access for end users. This allows users to still access AVD service while ensuring the session host is only accessible through private routes. Learn more at:
Cloud environments AzureCloud = true
AzureUSGovernment = unknown
AzureChinaCloud = unknown
Available in AzUSGov Unknown, no evidence if Policy definition is/not available in AzureUSGovernment
Mode Indexed
Type BuiltIn
Preview False
Deprecated False
Effect Default
Modify, Disabled
RBAC role(s)
Role Name Role Id
Desktop Virtualization Host Pool Contributor e307426c-f9b6-4e81-87de-d99efb3c32bc
Rule aliases IF (1)
Alias Namespace ResourceType Path PathIsDefault DefaultPath Modifiable
Microsoft.DesktopVirtualization/hostPools/publicNetworkAccess Microsoft.DesktopVirtualization hostpools properties.publicNetworkAccess True True
THEN-Operations (1)
Alias Namespace ResourceType Path PathIsDefault DefaultPath Modifiable
Microsoft.DesktopVirtualization/hostPools/publicNetworkAccess Microsoft.DesktopVirtualization hostpools properties.publicNetworkAccess True True
Rule resource types IF (1)
Compliance Not a Compliance control
Initiatives usage none
Date/Time (UTC ymd) (i) Change type Change detail
2023-02-16 18:41:08 add e84e8a9a-f43e-46e3-9458-bbcfb2d7e429
JSON compare n/a