last sync: 2024-Sep-18 17:50:24 UTC

Container Apps should only be accessible over HTTPS

Azure BuiltIn Policy definition

Source Azure Portal
Display name Container Apps should only be accessible over HTTPS
Id 0e80e269-43a4-4ae9-b5bc-178126b8a5cb
Version 1.0.1
Details on versioning
Versioning Versions supported for Versioning: 1
1.0.1
Built-in Versioning [Preview]
Category Container Apps
Microsoft Learn
Description Use of HTTPS ensures server/service authentication and protects data in transit from network layer eavesdropping attacks. Disabling 'allowInsecure' will result in the automatic redirection of requests from HTTP to HTTPS connections for container apps.
Mode Indexed
Type BuiltIn
Preview False
Deprecated False
Effect Default
Audit
Allowed
Audit, Deny, Disabled
RBAC role(s) none
Rule aliases IF (1)
Alias Namespace ResourceType Path PathIsDefault DefaultPath Modifiable
Microsoft.App/containerApps/configuration.ingress.allowInsecure Microsoft.App containerApps properties.configuration.ingress.allowInsecure True False
Rule resource types IF (1)
Microsoft.App/containerApps
Compliance Not a Compliance control
Initiatives usage
Initiative DisplayName Initiative Id Initiative Category State Type
[Deprecated]: Deny or Deploy and append TLS requirements and SSL enforcement on resources without Encryption in transit Enforce-EncryptTransit Encryption Deprecated ALZ
Deny or Deploy and append TLS requirements and SSL enforcement on resources without Encryption in transit Enforce-EncryptTransit_20240509 Encryption GA ALZ
Deny or Deploy and append TLS requirements and SSL enforcement on resources without Encryption in transit Enforce-EncryptTransit_20240509 Encryption GA ALZ
History
Date/Time (UTC ymd) (i) Change type Change detail
2022-07-29 16:32:46 change Patch (1.0.0 > 1.0.1)
2022-05-16 16:31:13 add 0e80e269-43a4-4ae9-b5bc-178126b8a5cb
JSON compare
compare mode: version left: version right:
JSON
api-version=2021-06-01
EPAC