Skip to content

[Feature Request]: Allow Resource level policy exemption #2996

Open
@shawntmeyer

Description

@shawntmeyer

Description

The current policyExemption modules only support exemptions at the MG, Sub, or RG levels. When policyExemptions are deployed to resources, they are treated as extensions. We need this capability to allow the creation of a storage account with public access when we have a policy applied to the Sub or MG that blocks this access.

If implemented, this would need to be added to all resource types as assignments can be created on every resource's level.

Metadata

Metadata

Assignees

No one assigned

    Type

    No type

    Projects

    • Status

      Blocked

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions