last sync: 2024-Sep-18 17:50:24 UTC

[Preview]: Sets automountServiceAccountToken in the Pod spec in containers to false.

Azure BuiltIn Policy definition

Source Azure Portal
Display name [Preview]: Sets automountServiceAccountToken in the Pod spec in containers to false.
Id 57f274ef-580a-4ed2-bcf8-5c6fa3775253
Version 1.1.0-preview
Details on versioning
Versioning Versions supported for Versioning: 2
1.0.0-preview
1.1.0-preview
Built-in Versioning [Preview]
Category Kubernetes
Microsoft Learn
Description Setting automountServiceAccountToken to false increases security by avoiding the default auto-mounting of service account tokens
Mode Microsoft.Kubernetes.Data
Type BuiltIn
Preview True
Deprecated False
Effect Default
Mutate
Allowed
Mutate, Disabled
RBAC role(s) none
Rule aliases none
Rule resource types IF (1)
Microsoft.ContainerService/managedClusters
Compliance Not a Compliance control
Initiatives usage none
History
Date/Time (UTC ymd) (i) Change type Change detail
2024-08-09 18:17:47 change Minor, suffix remains equal (1.0.0-preview > 1.1.0-preview)
2024-07-09 18:20:14 add 57f274ef-580a-4ed2-bcf8-5c6fa3775253
JSON compare
compare mode: version left: version right:
JSON
api-version=2021-06-01
EPAC