Azure / azure-policy

Repository for Azure Resource Policy built-in definitions and samples
MIT License
1.49k stars 1.08k forks source link

Video Analyzer accounts should use customer-managed keys to encrypt data at rest: property doesn't exist #1246

Open jdgoeij opened 9 months ago

jdgoeij commented 9 months ago

Details of the scenario you tried and the problem that is occurring

I tried deploying the built-in policy 'Video Analyzer accounts should use customer-managed keys to encrypt data at rest - property doesn't exist' and it generated the error below.

Verbose logs showing the problem

Creating policy assignment 'Video Analyzer accounts should use customer-managed keys to encrypt data at rest' in 'managementgroup' failed. The policy definition '165a4137-c3ed-4fd0-a17f-1c8a80266580' rule is invalid. The resource type 'videoanalyzers' referenced by the 'field' property 'Microsoft.Media/videoanalyzers/encryption.type' of the policy rule doesn't exist under provider 'Microsoft.Media'.

Suggested solution to the issue

N/A

If policy is Guest Configuration - details about target node

N/A

andreaskhvid commented 9 months ago

Experiencing the same issue. Came across it when trying to deploy the FSI industry policies in which it is referenced (line 155): https://github.com/microsoft/industry/blob/main/foundations/azure/referenceImplementations/core/managementGroupTemplates/policyDefinitions/DENY-PaaSWithoutCMKPolicySetDefinition.json