There is NOT a built-in defender policy that prevents users from creating public DNS zones.

Claudia Ferguson 81 Reputation points Microsoft Employee
2022-04-29T03:36:07.107+00:00

Hello all,
There is currently NOT a DEFENDER built-in policy that prevents users from creating public DNS zones. I’m wondering if you are aware of a policy or alternative method to prevent creation of new zones?

DNS Resource Locks are not an option for us. It causes issues downstream with Terraform.

Please advise

Azure Policy
Azure Policy
An Azure service that is used to implement corporate governance and standards at scale for Azure resources.
600 questions
0 comments No comments
{count} votes

0 additional answers

Sort by: Most helpful