last sync: 2025-Apr-29 17:15:47 UTC

Enforce recommended guardrails for Compute

Azure Landing Zones (ALZ) Policy Initiative (PolicySet)

Source Repository Azure Landing Zones (ALZ) GitHub
JSON Enforce-Guardrails-Compute
Display nameEnforce recommended guardrails for Compute
IdEnforce-Guardrails-Compute
Version1.1.0
Details on versioning
CategoryCompute
DescriptionThis policy initiative is a group of policies that ensures Compute is compliant per regulated Landing Zones.
Cloud environments AzureChinaCloud
AzureCloud
AzureUSGovernment
TypeCustom Azure Landing Zones (ALZ)
DeprecatedFalse
PreviewFalse
Policy-used summary
Policy types Policy states Policy categories
Total Policies: 2
Builtin Policies: 2
Static Policies: 0
ALZ Policies: 0
GA: 2
1 categories:
Compute: 2
Policy-used
Policy DisplayName Policy Id Category Effect Roles# Roles State Type policy in AzUSGov
Managed disks should be double encrypted with both platform-managed and customer-managed keys ca91455f-eace-4f96-be59-e6e2c35b4816 Compute Default
Audit
Allowed
Audit, Deny, Disabled
0 GA BuiltIn true
Virtual machines and virtual machine scale sets should have encryption at host enabled fc4d8e41-e223-45ea-9bf5-eada37891d87 Compute Default
Audit
Allowed
Audit, Deny, Disabled
0 GA BuiltIn true
Roles used
No Roles used
History none
JSON compare n/a
JSON
EPAC