Policy for blocking ssh with source any

Copper Contributor

I am trying to  create a policy which does not allow security inbound rules for destination port 22 and source any. Policy definition is saved and assigned, but I can still create an inbound rule for destination port 22 with source any.

 

 

"policyRule": {
      "if": {
        "allOf": [
          {
            "field": "type",
            "equals": "Microsoft.Network/networkSecurityGroups/securityRules"
          },
          {
            "field": "Microsoft.Network/networkSecurityGroups/securityRules/destinationPortRange",
            "equals": "22"
          },
          {
            "field": "Microsoft.Network/networkSecurityGroups/securityRules/sourceAddressPrefix",
            "equals": "*"
          },
          {
            "field": "Microsoft.Network/networkSecurityGroups/securityRules/direction",
            "equals": "Inbound"
          }
        ]
      },
      "then": {
        "effect": "deny"
      }
    }

 

 


Any idea what I

1 Reply

never mind, I was to impatient. it takes some time before the policy is active/effective.