last sync: 2024-Nov-25 18:54:24 UTC

Bot Service should have local authentication methods disabled

Azure BuiltIn Policy definition

Source Azure Portal
Display name Bot Service should have local authentication methods disabled
Id ffea632e-4e3a-4424-bf78-10e179bb2e1a
Version 1.0.0
Details on versioning
Versioning Versions supported for Versioning: 1
1.0.0
Built-in Versioning [Preview]
Category Bot Service
Microsoft Learn
Description Disabling local authentication methods improves security by ensuring that a bot uses AAD exclusively for authentication.
Mode Indexed
Type BuiltIn
Preview False
Deprecated False
Effect Default
Audit
Allowed
Audit, Deny, Disabled
RBAC role(s) none
Rule aliases IF (1)
Alias Namespace ResourceType Path PathIsDefault DefaultPath Modifiable
Microsoft.BotService/botServices/disableLocalAuth Microsoft.BotService botServices properties.disableLocalAuth True False
Rule resource types IF (1)
Microsoft.BotService/botServices
Compliance Not a Compliance control
Initiatives usage
Initiative DisplayName Initiative Id Initiative Category State Type
Enforce recommended guardrails for Bot Service Enforce-Guardrails-BotService Bot Service GA ALZ
History
Date/Time (UTC ymd) (i) Change type Change detail
2021-08-23 14:26:16 add ffea632e-4e3a-4424-bf78-10e179bb2e1a
JSON compare n/a
JSON
api-version=2021-06-01
EPAC