last sync: 2024-Sep-18 17:50:24 UTC

Customer managed key encryption must be used as part of CMK Encryption for Arc SQL managed instances.

Azure BuiltIn Policy definition

Source Azure Portal
Display name Customer managed key encryption must be used as part of CMK Encryption for Arc SQL managed instances.
Id 413923f0-ff16-41ae-8583-90c5c5d9fa8f
Version 1.0.0
Details on versioning
Versioning Versions supported for Versioning: 1
1.0.0
Built-in Versioning [Preview]
Category SQL Managed Instance
Microsoft Learn
Description As a part of CMK encryption, Customer managed key encryption must be used. Learn more at https://aka.ms/EnableTDEArcSQLMI.
Mode Indexed
Type BuiltIn
Preview False
Deprecated False
Effect Default
Audit
Allowed
Audit, Disabled
RBAC role(s) none
Rule aliases IF (2)
Alias Namespace ResourceType Path PathIsDefault DefaultPath Modifiable
Microsoft.AzureArcData/sqlManagedInstances/k8sRaw.spec.security.transparentDataEncryption Microsoft.AzureArcData SqlManagedInstances properties.k8sRaw.spec.security.transparentDataEncryption True False
Microsoft.AzureArcData/sqlManagedInstances/k8sRaw.spec.security.transparentDataEncryption.mode Microsoft.AzureArcData SqlManagedInstances properties.k8sRaw.spec.security.transparentDataEncryption.mode True False
Rule resource types IF (1)
Microsoft.AzureArcData/sqlmanagedinstances
Compliance Not a Compliance control
Initiatives usage none
History
Date/Time (UTC ymd) (i) Change type Change detail
2023-07-10 18:02:26 add 413923f0-ff16-41ae-8583-90c5c5d9fa8f
JSON compare n/a
JSON
api-version=2021-06-01
EPAC