Skip to content
This repository was archived by the owner on Jan 30, 2025. It is now read-only.

Commit c58ba48

Browse files
committed
Fixed the AKS policy deployment
1 parent f9e8418 commit c58ba48

File tree

2 files changed

+3
-8
lines changed

2 files changed

+3
-8
lines changed

policy/custom/definitions/policyset/AKS.bicep

Lines changed: 2 additions & 5 deletions
Original file line numberDiff line numberDiff line change
@@ -10,9 +10,6 @@
1010
targetScope = 'managementGroup'
1111

1212
@description('Management Group scope for the policy definition.')
13-
param policyDefinitionManagementGroupId string
14-
15-
var customPolicyDefinitionMgScope = tenantResourceId('Microsoft.Management/managementGroups', policyDefinitionManagementGroupId)
1613

1714
resource aksPolicySet 'Microsoft.Authorization/policySetDefinitions@2020-03-01' = {
1815
name: 'custom-aks'
@@ -29,15 +26,15 @@ resource aksPolicySet 'Microsoft.Authorization/policySetDefinitions@2020-03-01'
2926
groupNames: [
3027
'AKS'
3128
]
32-
policyDefinitionId: extensionResourceId(customPolicyDefinitionMgScope, 'Microsoft.Authorization/policyDefinitions', 'a8eff44f-8c92-45c3-a3fb-9880802d67a7')
29+
policyDefinitionId: tenantResourceId('Microsoft.Authorization/policyDefinitions', 'a8eff44f-8c92-45c3-a3fb-9880802d67a7')
3330
policyDefinitionReferenceId: toLower(replace('Deploy Azure Policy Add-on to Azure Kubernetes Service clusters', ' ', '-'))
3431
parameters: {}
3532
}
3633
{
3734
groupNames: [
3835
'AKS'
3936
]
40-
policyDefinitionId: extensionResourceId(customPolicyDefinitionMgScope, 'Microsoft.Authorization/policyDefinitions', '3fc4dc25-5baf-40d8-9b05-7fe74c1bc64e')
37+
policyDefinitionId: tenantResourceId('Microsoft.Authorization/policyDefinitions', '3fc4dc25-5baf-40d8-9b05-7fe74c1bc64e')
4138
policyDefinitionReferenceId: toLower(replace('Kubernetes clusters should use internal load balancers', ' ', '-'))
4239
parameters: {}
4340
}

policy/custom/definitions/policyset/AKS.parameters.json

Lines changed: 1 addition & 3 deletions
Original file line numberDiff line numberDiff line change
@@ -2,8 +2,6 @@
22
"$schema": "https://schema.management.azure.com/schemas/2019-04-01/deploymentParameters.json#",
33
"contentVersion": "1.0.0.0",
44
"parameters": {
5-
"policyDefinitionManagementGroupId": {
6-
"value": "{{var-topLevelManagementGroupName}}"
7-
}
5+
86
}
97
}

0 commit comments

Comments
 (0)