turbot/azure_compliance

Control: Virtual machines' Guest Configuration extension should be deployed with system-assigned managed identity

Description

The Guest Configuration extension requires a system assigned managed identity. Azure virtual machines in the scope of this policy will be non-compliant when they have the Guest Configuration extension installed but do not have a system assigned managed identity.

Usage

Run the control in your terminal:

powerpipe control run azure_compliance.control.compute_vm_guest_configuration_with_system_assigned_managed_identity

Snapshot and share results via Turbot Pipes:

powerpipe login
powerpipe control run azure_compliance.control.compute_vm_guest_configuration_with_system_assigned_managed_identity --share

SQL

This control uses a named query:

compute_vm_guest_configuration_with_system_assigned_managed_identity

Tags