support for custom policies (with rego) in azure security center for aks

wlodzimierz.borkowski@dnvgl.com 31 Reputation points
2021-11-23T13:26:52.763+00:00
Azure Kubernetes Service (AKS)
Azure Kubernetes Service (AKS)
An Azure service that provides serverless Kubernetes, an integrated continuous integration and continuous delivery experience, and enterprise-grade security and governance.
1,867 questions
Microsoft Defender for Cloud
Microsoft Defender for Cloud
An Azure service that provides threat protection for workloads running in Azure, on-premises, and in other clouds. Previously known as Azure Security Center and Azure Defender.
1,201 questions
0 comments No comments
{count} vote

Accepted answer
  1. SRIJIT-BOSE-MSFT 4,326 Reputation points Microsoft Employee
    2021-11-24T16:39:50.83+00:00

    @wlodzimierz.borkowski@dnvgl.com , thank you for your question.

    You can check out this blog article which has step-by-step guidelines for AKS custom policy feature.

    ----
    Hope this helps.

    Please "Accept as Answer" if it helped, so that it can help others in the community looking for help on similar topics.


1 additional answer

Sort by: Most helpful
  1. wlodzimierz.borkowski@dnvgl.com 31 Reputation points
    2021-11-26T10:48:14.357+00:00

    ok @SRIJIT-BOSE-MSFT , so is it possible to read k8s data with AKS managed gatekeeper version and reference them in Rego rules (things like list of pods with particular labels etc...) ?

    0 comments No comments