last sync: 2024-Sep-18 17:50:24 UTC

[Preview]: Sets Privilege escalation in the Pod spec in init containers to false.

Azure BuiltIn Policy definition

Source Azure Portal
Display name [Preview]: Sets Privilege escalation in the Pod spec in init containers to false.
Id 4ee3ee6a-96ea-4d25-9c00-17f11d2e02c8
Version 1.1.0-preview
Details on versioning
Versioning Versions supported for Versioning: 2
1.0.0-preview
1.1.0-preview
Built-in Versioning [Preview]
Category Kubernetes
Microsoft Learn
Description Setting Privilege escalation to false in init containers increases security by preventing containers from allowing privilege escalation such as via set-user-ID or set-group-ID file mode.
Mode Microsoft.Kubernetes.Data
Type BuiltIn
Preview True
Deprecated False
Effect Default
Mutate
Allowed
Mutate, Disabled
RBAC role(s) none
Rule aliases none
Rule resource types IF (1)
Microsoft.ContainerService/managedClusters
Compliance Not a Compliance control
Initiatives usage none
History
Date/Time (UTC ymd) (i) Change type Change detail
2024-08-09 18:17:47 change Minor, suffix remains equal (1.0.0-preview > 1.1.0-preview)
2024-07-09 18:20:14 add 4ee3ee6a-96ea-4d25-9c00-17f11d2e02c8
JSON compare
compare mode: version left: version right:
JSON
api-version=2021-06-01
EPAC