Azure / Azure/ResourceModules

[Feature Request]: Allow Resource level policy exemption

Open
#2,996 2 comments 0 reactions 0 assignees Claimed by @shawntmeyer View on GitHub
[cat] needs further discussion blocked enhancement
Dominant language
PowerShell
Stars
737
Forks
436
Avg merge
10d 7h
Merged PRs (30d)
1

Description

### Description

The current policyExemption modules only support exemptions at the MG, Sub, or RG levels. When policyExemptions are deployed to resources, they are treated as extensions. We need this capability to allow the creation of a storage account with public access when we have a policy applied to the Sub or MG that blocks this access.

If implemented, this would need to be added to all resource types as assignments can be created on every resource's level.

Contributor guide

Open the contributing guide

Assessment

This issue has not been assessed yet.

Get new issues in your inbox

A short digest of beginner-friendly GitHub issues.