Azure Policy to remediate/Enforce "Encryption at Host"

Aditya Garg 61 Reputation points
2023-06-26T16:52:04.5333333+00:00

Hello Community,

I observe the in built Azure Policy here to audit VMs for "encryption at host" setting(end to end encryption using PMK or CMK).

"Virtual machines and virtual machine scale sets should have encryption at host enabled"

Is there a built in/custom policy to remediate/enforce above on existing resources?(deployifnotexists/modify effect)

Kind regards,

Kind regards,

Aditya Garg

Azure Disk Encryption
Azure Disk Encryption
An Azure service for virtual machines (VMs) that helps address organizational security and compliance requirements by encrypting the VM boot and data disks with keys and policies that are controlled in Azure Key Vault.
162 questions
Azure Policy
Azure Policy
An Azure service that is used to implement corporate governance and standards at scale for Azure resources.
812 questions
{count} votes

1 answer

Sort by: Most helpful
  1. Deleted

    This answer has been deleted due to a violation of our Code of Conduct. The answer was manually reported or identified through automated detection before action was taken. Please refer to our Code of Conduct for more information.


    Comments have been turned off. Learn more