Control: Virtual machines' Guest Configuration extension should be deployed with system-assigned managed identity
Description
The Guest Configuration extension requires a system assigned managed identity. Azure virtual machines in the scope of this policy will be non-compliant when they have the Guest Configuration extension installed but do not have a system assigned managed identity.
Usage
Run the control in your terminal:
powerpipe control run azure_compliance.control.compute_vm_guest_configuration_with_system_assigned_managed_identity
Snapshot and share results via Turbot Pipes:
powerpipe loginpowerpipe control run azure_compliance.control.compute_vm_guest_configuration_with_system_assigned_managed_identity --share
SQL
This control uses a named query:
compute_vm_guest_configuration_with_system_assigned_managed_identity