last sync: 2024-Sep-18 17:50:24 UTC

[Preview]: Mutate K8s Container to drop all capabilities

Azure BuiltIn Policy definition

Source Azure Portal
Display name [Preview]: Mutate K8s Container to drop all capabilities
Id c873b3ba-c605-42e4-a64b-a142a93826fc
Version 1.1.0-preview
Details on versioning
Versioning Versions supported for Versioning: 2
1.0.0-preview
1.1.0-preview
Built-in Versioning [Preview]
Category Kubernetes
Microsoft Learn
Description Mutates securityContext.capabilities.drop to add in "ALL". This drops all capabilities for k8s linux containers
Mode Microsoft.Kubernetes.Data
Type BuiltIn
Preview True
Deprecated False
Effect Default
Mutate
Allowed
Mutate, Disabled
RBAC role(s) none
Rule aliases none
Rule resource types IF (1)
Microsoft.ContainerService/managedClusters
Compliance Not a Compliance control
Initiatives usage none
History
Date/Time (UTC ymd) (i) Change type Change detail
2024-08-09 18:17:47 change Minor, suffix remains equal (1.0.0-preview > 1.1.0-preview)
2024-07-15 18:22:44 add c873b3ba-c605-42e4-a64b-a142a93826fc
JSON compare
compare mode: version left: version right:
JSON
api-version=2021-06-01
EPAC