last sync: 2025-Apr-29 17:16:02 UTC

Bot Service should have local authentication methods disabled

Azure BuiltIn Policy definition

Source Azure Portal
Display name Bot Service should have local authentication methods disabled
Id ffea632e-4e3a-4424-bf78-10e179bb2e1a
Version 1.0.0
Details on versioning
Versioning Versions supported for Versioning: 1
1.0.0
Built-in Versioning [Preview]
Category Bot Service
Microsoft Learn
Description Disabling local authentication methods improves security by ensuring that a bot uses AAD exclusively for authentication.
Cloud environments AzureCloud = true
AzureUSGovernment = true
AzureChinaCloud = unknown
Available in AzUSGov The Policy is available in AzureUSGovernment cloud. Version: '1.0.0'
Repository: Azure-Policy ffea632e-4e3a-4424-bf78-10e179bb2e1a
Mode Indexed
Type BuiltIn
Preview False
Deprecated False
Effect Default
Audit
Allowed
Audit, Deny, Disabled
RBAC role(s) none
Rule aliases IF (1)
Alias Namespace ResourceType Path PathIsDefault DefaultPath Modifiable
Microsoft.BotService/botServices/disableLocalAuth Microsoft.BotService botServices properties.disableLocalAuth True False
Rule resource types IF (1)
Compliance Not a Compliance control
Initiatives usage
Initiative DisplayName Initiative Id Initiative Category State Type polSet in AzUSGov
Enforce recommended guardrails for Bot Service Enforce-Guardrails-BotService Bot Service GA ALZ
History
Date/Time (UTC ymd) (i) Change type Change detail
2021-08-23 14:26:16 add ffea632e-4e3a-4424-bf78-10e179bb2e1a
JSON compare n/a
JSON
api-version=2021-06-01
EPAC