Azure Policy

  • Designed to help with resource governance, security, compliance, cost management, etc.
  • Policies focus on resource properties (RBAC focused on user actions)
  • Policy definition – Defines what should happen
    • Define the condition (if/else) and the effect (deny, audit, append, modify, etc.)
    • Examples include allowed resource types, allowed locations, allowed SKUs, inherit resource tags
  • Built-in and custom policies are supported
  • Policy initiative – a group of policy definitions
  • Policy assignment – assignment of a policy definition/initiative to a scope
    • Scopes can be assigned to
      • management groups,
      • subscriptions,
      • resource groups, and
      • resources
  • Policies allow for exclusions of scopes
  • Checked during resource creation or updates and existing ones with remediation tasks
◀ Previous Episode Next Episode ▶

Adam Marczak

I've spent most of my career working with software and cloud technologies, but at heart I'm simply someone who loves learning new things and sharing what I discover. Through this blog and my Azure 4 Everyone YouTube channel, I try to make Azure and cloud computing more approachable for developers, architects, and anyone curious about technology. For full profile details, visit adammarczak.pl.

Did you enjoy the article?

Share it!

More tagged posts