Reference
azure Dialect
See which types this Dialect interprets and which architectural facts its Rules can establish.
On this pageOverview
Version and compatibility
Version: 0.1.0.
Provider bindings and declared compatibility
azure/azapi:= 2.12.0.hashicorp/azuread:= 3.9.0.hashicorp/azurerm:= 5.3.0.
Each row identifies a type and instance kind. Conditional Rules retain their individual conditions in the details below.
azure.concept.ai-foundrySource-
A Microsoft Foundry account or project boundary.
-
Used by
ai-foundry,ai-foundry-project,ai-services-project. azure.concept.ai-inference-endpointSource-
A managed endpoint that serves model inference requests.
-
Used by
ai-model-deployment,machine-learning-inference-cluster. azure.concept.ai-service-accountSource-
An Azure AI services account exposing managed AI APIs.
-
Used by
ai-services-account. azure.concept.analytics-poolSource-
A SQL or Apache Spark analytics pool.
-
Used by
synapse-spark-pool,synapse-sql-pool. azure.concept.api-management-detailSource-
An API, product, backend, policy, workspace, or gateway configuration inside API Management.
azure.concept.app-serviceSource-
An Azure App Service web application runtime.
-
Used by
linux-web-app,windows-web-app. azure.concept.app-service-environmentSource-
An isolated Azure App Service hosting environment.
-
Used by
app-service-environment. azure.concept.application-insightsSource-
An Azure Monitor Application Insights application resource.
-
Used by
application-insights,linux-function-app,windows-function-app. azure.concept.arc-enabled-serverSource-
A server connected to Azure through Azure Arc.
-
Used by
arc-enabled-server. azure.concept.arc-resource-bridgeSource-
An Azure Arc resource bridge connecting an external platform.
-
Used by
arc-resource-bridge. azure.concept.attestation-providerSource-
A Microsoft Azure Attestation provider.
-
Used by
attestation-provider. azure.concept.automation-accountSource-
An Azure Automation account owning runbooks and schedules.
-
Used by
automation-account. azure.concept.azure-enclaveSource-
An Azure Enclave isolated workload and connectivity boundary.
-
Used by
azure-enclave. azure.concept.azure-firewallSource-
An Azure Firewall managed network security service.
-
Used by
azure-firewall. azure.concept.azure-local-clusterSource-
An Azure Local or Azure Stack HCI cluster.
-
Used by
azure-local-cluster. azure.concept.backup-vaultSource-
A managed vault storing protected recovery data.
-
Used by
data-protection-backup-vault,netapp-backup-vault,recovery-services-vault. azure.concept.bastion-hostSource-
An Azure Bastion service providing managed private administration access.
-
Used by
bastion-host. azure.concept.batch-accountSource-
An Azure Batch account owning pools, jobs, and applications.
-
Used by
batch-account. azure.concept.batch-poolSource-
A pool providing compute capacity to Azure Batch.
-
Used by
batch-application,batch-pool. azure.concept.block-storage-volumeSource-
A durable block-storage volume attachable to compute workloads.
-
Used by
elastic-san-volume,managed-disk,stack-hci-virtual-hard-disk. azure.concept.bot-serviceSource-
An Azure Bot Service bot registration or application.
-
Used by 4 Rules
azure.concept.chaos-experimentSource-
An Azure Chaos Studio experiment.
-
Used by
chaos-studio-experiment. azure.concept.communication-serviceSource-
An Azure Communication Services resource.
-
Used by
communication-service. azure.concept.compute-imageSource-
A reusable Azure compute image or image definition.
-
Used by
compute-image,shared-image. azure.concept.compute-placementSource-
Availability, proximity, reservation, or host placement supporting Azure compute.
azure.concept.confidential-ledgerSource-
An Azure confidential ledger providing tamper-evident storage.
-
Used by
confidential-ledger. azure.concept.container-appSource-
An Azure Container Apps service running container revisions.
-
Used by
container-app. azure.concept.container-app-environmentSource-
An Azure Container Apps environment sharing network and operational boundaries.
-
Used by
container-app,container-app-environment,container-app-job. azure.concept.container-app-jobSource-
An Azure Container Apps job running finite container work.
-
Used by
container-app-job. azure.concept.container-instance-groupSource-
An Azure Container Instances container group scheduled as one unit.
-
Used by
container-instance-group. azure.concept.container-registrySource-
An Azure Container Registry storing and distributing OCI artifacts.
azure.concept.content-delivery-profileSource-
An Azure content delivery profile serving cached content globally.
-
Used by
cdn-endpoint,cdn-profile. azure.concept.cosmos-accountSource-
An Azure Cosmos DB account defining global distribution and API boundaries.
azure.concept.custom-locationSource-
An Azure Arc custom location extending Azure resource placement.
-
Used by
arc-custom-location. azure.concept.data-explorer-clusterSource-
An Azure Data Explorer cluster serving real-time analytics.
-
Used by
data-explorer-cluster. azure.concept.data-factorySource-
An Azure Data Factory integration and orchestration boundary.
-
Used by
data-factory. azure.concept.data-integration-detailSource-
A dataset, linked service, trigger, connection, or data-flow supporting integration.
azure.concept.data-integration-runtimeSource-
A managed or self-hosted Azure data integration runtime.
-
Used by
data-factory-azure-integration-runtime,data-factory-self-hosted-integration-runtime. -
An Azure Data Share account.
-
Used by
data-share-account. azure.concept.database-componentSource-
A table, container, graph, configuration, replica, or policy supporting an Azure database.
azure.concept.databricks-workspaceSource-
An Azure Databricks workspace.
-
Used by
databricks-workspace. azure.concept.ddos-protection-planSource-
An Azure DDoS Protection plan protecting virtual networks.
-
Used by
ddos-protection-plan. azure.concept.dedicated-host-groupSource-
An Azure Dedicated Host placement group.
-
Used by
dedicated-host-group. azure.concept.dedicated-interconnectSource-
A dedicated private connection between an external network and a cloud provider.
-
Used by
expressroute-circuit,expressroute-port. azure.concept.defender-planSource-
A Microsoft Defender for Cloud protection plan or workspace integration.
-
Used by
defender-subscription-plan,defender-workspace. azure.concept.dev-centerSource-
A Microsoft Dev Box and deployment-environment Dev Center.
-
Used by
dev-center. azure.concept.developer-environmentSource-
A developer workstation, environment, or testing workspace.
-
Used by 4 Rules
azure.concept.digital-twins-instanceSource-
An Azure Digital Twins service instance.
-
Used by
digital-twins-instance. azure.concept.disk-snapshotSource-
A point-in-time snapshot of Azure disk storage.
-
Used by
disk-snapshot,virtual-machine-restore-point. azure.concept.elastic-sanSource-
An Azure Elastic SAN storage boundary.
-
Used by
elastic-san,elastic-san-volume-group. azure.concept.email-communication-serviceSource-
An Azure Communication Services Email resource.
-
Used by
email-communication-service. azure.concept.encryption-keySource-
A managed key used for cryptographic operations.
-
Used by
key-vault-key,managed-hsm-key. azure.concept.entra-directorySource-
A Microsoft Entra External ID directory boundary.
-
Used by
entra-external-id-directory. azure.concept.entra-domain-serviceSource-
A Microsoft Entra Domain Services managed domain.
-
Used by
entra-domain-services. azure.concept.event-grid-topicSource-
An Azure Event Grid custom, domain, or system topic owning event subscriptions.
azure.concept.expressroute-gatewaySource-
An Azure ExpressRoute gateway connecting a virtual network to private circuits.
-
Used by
expressroute-gateway. azure.concept.firewall-policySource-
An Azure Firewall or web application firewall policy.
-
Used by
azure-firewall-policy,azure-firewall-policy-rule-collection-group. azure.concept.front-door-profileSource-
An Azure Front Door global application delivery profile.
-
Used by
classic-front-door,front-door-profile. azure.concept.governance-detailSource-
An Azure policy, role, deployment, budget, or governance configuration.
azure.concept.graph-data-connect-accountSource-
A Microsoft Graph Data Connect service account.
-
Used by
graph-data-connect-account. azure.concept.health-data-serviceSource-
A FHIR, DICOM, or MedTech service in Azure Health Data Services.
azure.concept.health-data-workspaceSource-
An Azure Health Data Services workspace owning healthcare data services.
-
Used by
health-data-services-workspace. azure.concept.identity-governance-detailSource-
A location, assignment, federation, role, or policy supporting identity governance.
azure.concept.identity-groupSource-
A managed group principal used to assign access collectively.
-
Used by
entra-group,entra-group-without-members. azure.concept.image-gallerySource-
An Azure Compute Gallery owning image definitions and versions.
-
Used by
compute-gallery. azure.concept.integration-accountSource-
An Azure Logic Apps integration account.
-
Used by
logic-app-integration-account. azure.concept.integration-connectionSource-
An Azure API or App Service connection supporting integration.
-
Used by
api-connection,app-service-connection. azure.concept.iot-central-applicationSource-
An Azure IoT Central application.
-
Used by
iot-central-application. azure.concept.iot-detailSource-
A route, endpoint, consumer group, certificate, or organization supporting Azure IoT.
azure.concept.iot-provisioning-serviceSource-
An Azure IoT Hub Device Provisioning Service.
-
Used by
iot-hub-device-provisioning-service. azure.concept.iot-update-serviceSource-
An Azure Device Update for IoT Hub account boundary.
-
Used by
iot-hub-device-update-account. azure.concept.key-vaultSource-
An Azure Key Vault security boundary for keys, secrets, and certificates.
azure.concept.kubernetes-fleetSource-
An Azure Kubernetes Fleet Manager fleet coordinating Kubernetes clusters.
-
Used by
kubernetes-fleet. azure.concept.kubernetes-node-poolSource-
A node pool contributing compute capacity to a Kubernetes cluster.
-
Used by
aks-node-pool. azure.concept.load-balancer-componentSource-
A frontend, backend, route, probe, rule, or policy supporting Azure load balancing.
azure.concept.local-network-gatewaySource-
An Azure representation of an external VPN site gateway.
-
Used by
local-network-gateway,vpn-site. azure.concept.log-analytics-workspaceSource-
An Azure Log Analytics workspace collecting operational data.
azure.concept.logical-databaseSource-
A logical database or keyspace contained by an Azure managed database service.
azure.concept.machine-learning-computeSource-
Compute capacity attached to Azure Machine Learning.
-
Used by
machine-learning-compute-cluster,machine-learning-compute-instance. azure.concept.machine-learning-workspaceSource-
An Azure Machine Learning workspace.
-
Used by
machine-learning-workspace. azure.concept.maintenance-configurationSource-
An Azure maintenance configuration defining update windows.
-
Used by
maintenance-configuration. azure.concept.managed-applicationSource-
An Azure Managed Application deployment.
-
Used by
managed-application. azure.concept.managed-cacheSource-
A managed in-memory cache service.
-
Used by
azure-cache-for-redis,azure-managed-redis. azure.concept.managed-hsmSource-
An Azure Key Vault Managed HSM security boundary.
-
Used by
dedicated-hardware-security-module,managed-hsm,managed-hsm-key. azure.concept.managed-secretSource-
A managed secret identity whose sensitive value stays outside architecture output.
-
Used by
key-vault-secret. azure.concept.maps-accountSource-
An Azure Maps account exposing geospatial platform APIs.
-
Used by
maps-account. azure.concept.message-queueSource-
A managed queue buffering work or messages for asynchronous consumers.
azure.concept.message-subscriptionSource-
A durable subscription consuming messages from a topic.
-
Used by
event-grid-event-subscription,event-grid-system-topic-subscription,service-bus-subscription. azure.concept.message-topicSource-
A messaging topic receiving messages from publishers.
-
Used by
event-grid-namespace-topic. azure.concept.messaging-detailSource-
A consumer group, authorization rule, schema, route, or endpoint supporting messaging.
-
Used by
event-hubs-consumer-group,event-hubs-schema-group,service-bus-subscription-rule. azure.concept.messaging-namespaceSource-
An Azure messaging namespace owning queues, topics, or event streams.
azure.concept.netapp-capacity-poolSource-
An Azure NetApp Files capacity pool.
-
Used by
netapp-capacity-pool. azure.concept.network-function-serviceSource-
An Azure managed network-function collection or control service.
-
Used by
network-function-traffic-collector. azure.concept.network-peeringSource-
A direct private connectivity agreement between virtual networks.
-
Used by
databricks-virtual-network-peering,virtual-network-peering. azure.concept.network-policy-detailSource-
A route, security rule, association, or network policy supporting Azure networking.
azure.concept.network-security-groupSource-
An Azure Network Security Group containing stateful traffic rules.
-
Used by
network-security-group. azure.concept.network-security-perimeterSource-
An Azure Network Security Perimeter isolating platform services.
-
Used by
network-security-perimeter. azure.concept.network-watcherSource-
An Azure Network Watcher regional network monitoring service.
-
Used by
network-watcher. azure.concept.notification-hubSource-
An Azure Notification Hubs push-notification hub.
-
Used by
notification-hub. azure.concept.notification-namespaceSource-
An Azure Notification Hubs namespace.
-
Used by
notification-hubs-namespace. azure.concept.operations-detailSource-
An alert, diagnostic, workbook, schedule, dashboard, or operational configuration.
-
Used by 13 Rules
application-insights-web-testautomation-schedulelog-analytics-data-export-rulelog-analytics-saved-searchlog-analytics-solutionlog-analytics-workspace-tablemonitor-action-groupmonitor-data-collection-endpointmonitor-diagnostic-settingmonitor-metric-alertmonitor-scheduled-query-alertnetwork-watcher-flow-logportal-dashboard
azure.concept.private-dns-resolverSource-
An Azure DNS Private Resolver forwarding DNS between networks.
-
Used by
private-dns-resolver. azure.concept.private-endpointSource-
A private endpoint exposing a service inside a virtual network.
-
Used by
private-endpoint. azure.concept.private-link-scopeSource-
An Azure private-link scope or hub grouping private service connectivity.
-
Used by
arc-private-link-scope,monitor-private-link-scope,synapse-private-link-hub. azure.concept.private-link-serviceSource-
An Azure Private Link service publishing a private endpoint target.
-
Used by
private-link-service. azure.concept.purview-accountSource-
A Microsoft Purview data governance account.
-
Used by
purview-account. azure.concept.realtime-communication-serviceSource-
An Azure managed real-time communication service.
-
Used by
fluid-relay,signalr-service,web-pubsub. azure.concept.relay-connectionSource-
An Azure Relay hybrid connection.
-
Used by
relay-hybrid-connection. azure.concept.resource-groupSource-
An Azure Resource Group lifecycle and access boundary.
-
Used by 224 Rules
ai-foundryai-search-serviceai-services-accountaks-clusteranalysis-services-serverapi-managementapi-management-standalone-gatewayapp-configurationapp-service-environmentapp-service-planapplication-gatewayapplication-insightsapplication-load-balancerarc-custom-locationarc-enabled-serverarc-kubernetes-clusterarc-private-link-scopearc-provisioned-kubernetes-clusterarc-resource-bridgeattestation-providerautomatic-kubernetes-clusterautomation-accountautomation-runbookazure-botazure-cache-for-redisazure-firewallazure-local-clusterazure-managed-redisbastion-hostbatch-accountbot-channels-registrationbot-web-appcdn-endpointcdn-profilechaos-studio-experimentclassic-front-doorcommunication-servicecompute-gallerycompute-imageconfidential-ledgercontainer-appcontainer-app-environmentcontainer-app-jobcontainer-instance-groupcontainer-registrycosmos-accountcosmos-cassandra-clustercosmos-postgresql-clustercustom-ip-prefixdata-box-edge-devicedata-explorer-clusterdata-factorydata-protection-backup-vaultdata-share-accountdatabase-migration-projectdatabase-migration-servicedatabricks-virtual-network-peeringdatabricks-workspacedatadog-monitorddos-protection-plandedicated-hardware-security-modulededicated-host-groupdev-centerdev-center-projectdev-test-labdev-test-linux-virtual-machinedev-test-windows-virtual-machinedigital-twins-instancedisk-snapshotdns-zonedynatrace-monitorelastic-cloudelastic-sanemail-communication-serviceentra-domain-servicesentra-external-id-directoryevent-grid-domainevent-grid-namespaceevent-grid-partner-namespaceevent-grid-system-topicevent-grid-topicevent-hubs-clusterevent-hubs-namespaceexpressroute-circuitexpressroute-gatewayexpressroute-portfabric-capacityfile-share-backup-policyflex-consumption-function-appfluid-relayfront-door-profilegraph-data-connect-accounthdinsight-hadoop-clusterhdinsight-hbase-clusterhdinsight-interactive-query-clusterhdinsight-kafka-clusterhdinsight-spark-clusterhealth-bothealth-data-fhir-servicehealth-data-services-workspacehealthcare-serviceiot-central-applicationiot-hubiot-hub-device-provisioning-serviceiot-hub-device-update-accountkey-vaultkubernetes-fleetlinux-function-applinux-virtual-machinelinux-virtual-machine-scale-setlinux-web-appload-balancerload-testlocal-network-gatewaylog-analytics-clusterlog-analytics-solutionlog-analytics-workspacelogic-app-integration-accountlogic-app-standardlogic-app-workflowmachine-learning-workspacemaintenance-configurationmanaged-applicationmanaged-devops-poolmanaged-diskmanaged-grafanamanaged-hsmmanaged-lustre-file-systemmanaged-service-fabric-clustermaps-accountmongo-clustermonitor-private-link-scopemonitor-workspacemssql-servermysql-databasemysql-flexible-servernat-gatewaynetapp-accountnetapp-backup-policynetapp-backup-vaultnetapp-capacity-poolnetapp-volumenetwork-function-traffic-collectornetwork-security-groupnetwork-security-perimeternetwork-watchernew-relic-monitornginx-deploymentnotification-hubnotification-hubs-namespaceoracle-autonomous-databaseoracle-cloud-vm-clusteroracle-exadata-infrastructureoracle-resource-anchororchestrated-virtual-machine-scale-setpalo-alto-firewallplaywright-workspacepoint-to-site-vpn-gatewaypostgresql-flexible-serverpower-bi-embedded-capacityprivate-dns-resolverprivate-dns-zoneprivate-endpointprivate-link-servicepublic-addresspublic-ip-prefixpurview-accountqumulo-file-systemrecovery-services-vaultred-hat-openshift-clusterrelay-hybrid-connectionrelay-namespaceresource-grouproute-serverroute-tablesap-discovery-virtual-instancesap-single-node-virtual-instancesap-three-tier-virtual-instanceservice-bus-namespaceservice-fabric-clustershared-imagesignalr-servicesite-recovery-fabricsite-recovery-protection-containerspring-appspring-apps-servicesql-managed-instancestack-hci-virtual-hard-diskstatic-web-appstorage-accountstorage-moverstorage-sync-servicestream-analytics-clusterstream-analytics-jobsubnetsynapse-private-link-hubsynapse-workspacesystem-center-vmm-servertraffic-manager-profiletrusted-signing-accountuser-assigned-managed-identityvideo-indexer-accountvirtual-desktop-application-groupvirtual-desktop-host-poolvirtual-desktop-workspacevirtual-hubvirtual-machinevirtual-machine-backup-policyvirtual-machine-scale-setvirtual-networkvirtual-network-gatewayvirtual-network-gateway-connectionvirtual-network-managervirtual-network-peeringvirtual-wanvmware-private-cloudvpn-gatewayvpn-siteweb-application-firewall-policyweb-pubsubwindows-function-appwindows-virtual-machinewindows-virtual-machine-scale-setwindows-web-app
azure.concept.route-tableSource-
An Azure route table controlling subnet traffic paths.
-
Used by
route-server,route-table. azure.concept.security-detailSource-
A certificate, access policy, alert, connector, or security configuration.
azure.concept.service-fabric-clusterSource-
An Azure Service Fabric cluster running distributed applications.
-
Used by
managed-service-fabric-cluster,service-fabric-cluster. azure.concept.service-identity-bindingSource-
An access-control binding that contributes to a service identity.
-
No Rule in this Dialect uses this definition.
azure.concept.site-recovery-detailSource-
A recovery plan, mapping, replicated machine, or protection configuration.
-
Used by
backup-protected-vm,site-recovery-plan,site-recovery-replicated-vm. azure.concept.site-recovery-fabricSource-
An Azure Site Recovery source or target fabric.
-
Used by
site-recovery-fabric,site-recovery-protection-container. azure.concept.spring-appSource-
An application deployed in Azure Spring Apps.
-
Used by
spring-app,spring-apps-gateway. azure.concept.spring-apps-serviceSource-
An Azure Spring Apps service boundary.
-
Used by
spring-apps-service. azure.concept.sql-serverSource-
An Azure SQL logical server owning managed databases.
-
Used by
mssql-database,mssql-server. azure.concept.sre-agentSource-
An Azure SRE Agent operating against explicitly assigned Azure resources.
-
Used by
sre-agent. azure.concept.static-web-appSource-
An Azure Static Web Apps site with managed hosting and APIs.
-
Used by
static-web-app. azure.concept.storage-accountSource-
An Azure Storage account owning data services and their security boundary.
azure.concept.storage-object-detailSource-
An object, path, directory, table entity, or policy inside Azure Storage.
azure.concept.storage-sync-serviceSource-
An Azure File Sync service synchronizing file servers and Azure Files.
-
Used by
storage-sync-service. azure.concept.stream-analytics-jobSource-
An Azure Stream Analytics streaming query job.
-
Used by
stream-analytics-job. azure.concept.synapse-workspaceSource-
An Azure Synapse Analytics workspace.
-
Used by
synapse-workspace. azure.concept.table-storage-tableSource-
An Azure Table Storage table.
-
Used by
storage-table-entity,table-storage-table. azure.concept.third-party-monitorSource-
A third-party observability service managed through Azure.
-
Used by 4 Rules
azure.concept.traffic-manager-profileSource-
An Azure Traffic Manager DNS traffic-routing profile.
-
Used by
traffic-manager-profile. azure.concept.trusted-signing-accountSource-
An Azure Artifact Signing account.
-
Used by
trusted-signing-account. azure.concept.video-indexer-accountSource-
An Azure AI Video Indexer account.
-
Used by
video-indexer-account. azure.concept.virtual-desktop-application-groupSource-
An Azure Virtual Desktop desktop or RemoteApp publication group.
-
Used by
virtual-desktop-application-group. azure.concept.virtual-desktop-host-poolSource-
An Azure Virtual Desktop host pool providing session hosts.
-
Used by
virtual-desktop-host-pool. azure.concept.virtual-desktop-workspaceSource-
An Azure Virtual Desktop workspace publishing application groups.
-
Used by
virtual-desktop-workspace. azure.concept.virtual-machine-scale-setSource-
An Azure-managed group of virtual machines that scales as one compute workload.
azure.concept.virtual-network-managerSource-
An Azure Virtual Network Manager control plane for network groups and policy.
-
Used by
virtual-network-manager. azure.concept.vmware-private-cloudSource-
An Azure VMware Solution private cloud.
-
Used by
vmware-private-cloud. azure.concept.vpn-connectionSource-
A virtual private network connection between network endpoints.
-
Used by
virtual-network-gateway-connection,vpn-gateway-connection. azure.concept.vpn-gatewaySource-
A managed gateway terminating virtual private network connections.
-
Used by
point-to-site-vpn-gateway,virtual-network-gateway,vpn-gateway. azure.concept.web-application-firewall-policySource-
A reusable Azure Web Application Firewall policy applied to Application Gateway traffic.
-
Used by
application-gateway,web-application-firewall-policy. azure.concept.workflowSource-
A managed workflow coordinating steps and service calls.
-
Used by 4 Rules
azure.context.ownershipSource-
Administrative or lifecycle ownership.
-
Used by 257 Rules
ai-foundryai-search-serviceai-services-accountaks-clusteranalysis-services-serverapi-managementapi-management-standalone-gatewayapp-configurationapp-service-environmentapp-service-planapplication-gatewayapplication-insightsapplication-load-balancerarc-custom-locationarc-enabled-serverarc-kubernetes-clusterarc-private-link-scopearc-provisioned-kubernetes-clusterarc-resource-bridgeattestation-providerautomatic-kubernetes-clusterautomation-accountautomation-runbookazure-botazure-cache-for-redisazure-files-shareazure-firewallazure-local-clusterazure-managed-redisbastion-hostbatch-accountblob-containerbot-channels-registrationbot-web-appcdn-endpointcdn-profilechaos-studio-experimentclassic-front-doorcommunication-servicecompute-gallerycompute-imageconfidential-ledgercontainer-appcontainer-app-environmentcontainer-app-jobcontainer-instance-groupcontainer-registrycosmos-accountcosmos-cassandra-clustercosmos-cassandra-keyspacecosmos-gremlin-databasecosmos-mongo-databasecosmos-postgresql-clustercosmos-sql-containercosmos-sql-databasecustom-ip-prefixdata-box-edge-devicedata-explorer-clusterdata-factorydata-lake-filesystemdata-protection-backup-vaultdata-share-accountdatabase-migration-projectdatabase-migration-servicedatabricks-virtual-network-peeringdatabricks-workspacedatadog-monitorddos-protection-plandedicated-hardware-security-modulededicated-host-groupdev-centerdev-center-projectdev-test-labdev-test-linux-virtual-machinedev-test-windows-virtual-machinedigital-twins-instancedisk-snapshotdns-a-recorddns-aaaa-recorddns-cname-recorddns-mx-recorddns-ns-recorddns-ptr-recorddns-srv-recorddns-txt-recorddns-zonedynatrace-monitorelastic-cloudelastic-sanemail-communication-serviceentra-domain-servicesentra-external-id-directoryevent-grid-domainevent-grid-domain-topicevent-grid-event-subscriptionevent-grid-namespaceevent-grid-namespace-topicevent-grid-partner-namespaceevent-grid-system-topicevent-grid-system-topic-subscriptionevent-grid-topicevent-hubevent-hubs-clusterevent-hubs-consumer-groupevent-hubs-namespaceexpressroute-circuitexpressroute-gatewayexpressroute-portfabric-capacityfile-share-backup-policyflex-consumption-function-appfluid-relayfront-door-profilegraph-data-connect-accounthdinsight-hadoop-clusterhdinsight-hbase-clusterhdinsight-interactive-query-clusterhdinsight-kafka-clusterhdinsight-spark-clusterhealth-bothealth-data-fhir-servicehealth-data-services-workspacehealthcare-serviceiot-central-applicationiot-hubiot-hub-device-provisioning-serviceiot-hub-device-update-accountkey-vaultkey-vault-keykey-vault-secretkubernetes-fleetlinux-function-applinux-virtual-machinelinux-virtual-machine-scale-setlinux-web-appload-balancerload-testlocal-network-gatewaylog-analytics-clusterlog-analytics-solutionlog-analytics-workspacelogic-app-integration-accountlogic-app-standardlogic-app-workflowmachine-learning-workspacemaintenance-configurationmanaged-applicationmanaged-devops-poolmanaged-diskmanaged-grafanamanaged-hsmmanaged-hsm-keymanaged-lustre-file-systemmanaged-service-fabric-clustermaps-accountmongo-clustermonitor-private-link-scopemonitor-workspacemssql-databasemssql-servermysql-databasemysql-flexible-servernat-gatewaynetapp-accountnetapp-backup-policynetapp-backup-vaultnetapp-capacity-poolnetapp-volumenetwork-function-traffic-collectornetwork-security-groupnetwork-security-perimeternetwork-watchernew-relic-monitornginx-deploymentnotification-hubnotification-hubs-namespaceoracle-autonomous-databaseoracle-cloud-vm-clusteroracle-exadata-infrastructureoracle-resource-anchororchestrated-virtual-machine-scale-setpalo-alto-firewallplaywright-workspacepoint-to-site-vpn-gatewaypostgresql-flexible-serverpower-bi-embedded-capacityprivate-dns-a-recordprivate-dns-cname-recordprivate-dns-resolverprivate-dns-zoneprivate-dns-zone-vnet-linkprivate-endpointprivate-link-servicepublic-addresspublic-ip-prefixpurview-accountqueue-storage-queuequmulo-file-systemrecovery-services-vaultred-hat-openshift-clusterrelay-hybrid-connectionrelay-namespaceroute-serverroute-tablesap-discovery-virtual-instancesap-single-node-virtual-instancesap-three-tier-virtual-instanceservice-bus-namespaceservice-bus-queueservice-bus-subscriptionservice-bus-topicservice-fabric-clustershared-imagesignalr-servicesite-recovery-fabricsite-recovery-protection-containerspring-appspring-apps-servicesql-managed-instancestack-hci-virtual-hard-diskstatic-web-appstorage-accountstorage-moverstorage-sync-servicestream-analytics-clusterstream-analytics-jobsubnetsynapse-private-link-hubsynapse-workspacesystem-center-vmm-servertable-storage-tabletraffic-manager-profiletrusted-signing-accountuser-assigned-managed-identityvideo-indexer-accountvirtual-desktop-application-groupvirtual-desktop-host-poolvirtual-desktop-workspacevirtual-hubvirtual-machinevirtual-machine-backup-policyvirtual-machine-scale-setvirtual-networkvirtual-network-gatewayvirtual-network-gateway-connectionvirtual-network-managervirtual-network-peeringvirtual-wanvmware-private-cloudvpn-gatewayvpn-siteweb-application-firewall-policyweb-pubsubwindows-function-appwindows-virtual-machinewindows-virtual-machine-scale-setwindows-web-app
azure.relation.delivers-toSource-
Introduced by a labeled emission. Used by
event-grid-event-subscription,event-grid-system-topic-subscription. azure.relation.observed-bySource-
Introduced by a labeled emission.
azure.relation.peers-withSource-
Introduced by a labeled emission. Used by
virtual-network-peering. azure.relation.private-name-resolutionSource-
Introduced by a labeled emission. Used by
postgresql-flexible-server. azure.relation.subscribes-toSource-
Introduced by a labeled emission. Used by
event-grid-event-subscription,event-grid-system-topic-subscription,service-bus-subscription. azure.relation.uses-waf-policySource-
Introduced by a labeled emission. Used by
application-gateway.
rf.concept.kubernetes-clusterrf.concept.managed-databaserf.concept.object-storage-containerrf.concept.service-identityrf.concept.subnetrf.concept.virtual-networkrf.context.networkrf.context.runtime
Open a Rule for its declared behavior and source. Matching, emission resolution and composition define how evidence can establish it.
azure.rule.azure-enclave Source
Matches resource instances of azapi_resource.
Classification: azure.concept.azure-enclave.
Conditions, identity and resolution
Condition
source.type == "Microsoft.Mission/virtualEnclaves@2026-03-01-preview"azure.rule.horizondb-cluster Source
Matches resource instances of azapi_resource.
Classification: rf.concept.managed-database.
Conditions, identity and resolution
Condition
source.type == "Microsoft.HorizonDb/clusters@2026-01-20-preview"azure.rule.sre-agent Source
Matches resource instances of azapi_resource.
Classification: azure.concept.sre-agent.
Conditions, identity and resolution
Condition
source.type == "Microsoft.App/agents@2026-01-01"azure.rule.entra-access-package-assignment-policy Source
Matches resource instances of azuread_access_package_assignment_policy.
Classification: azure.concept.identity-governance-detail.
azure.rule.entra-app-role-assignment Source
Matches resource instances of azuread_app_role_assignment.
Classification: azure.concept.identity-governance-detail.
azure.rule.entra-application-federated-identity Source
Matches resource instances of azuread_application_federated_identity_credential.
Classification: azure.concept.identity-governance-detail.
azure.rule.entra-application-registration Source
Matches resource instances of azuread_application_registration.
Classification: azure.concept.entra-application.
azure.rule.entra-application Source
Matches resource instances of azuread_application.
Classification: azure.concept.entra-application.
azure.rule.entra-authentication-strength-policy Source
Matches resource instances of azuread_authentication_strength_policy.
Classification: azure.concept.identity-governance-detail.
azure.rule.entra-group-without-members Source
Matches resource instances of azuread_group_without_members.
Classification: azure.concept.identity-group.
azure.rule.entra-group Source
Matches resource instances of azuread_group.
Classification: azure.concept.identity-group.
azure.rule.entra-named-location Source
Matches resource instances of azuread_named_location.
Classification: azure.concept.identity-governance-detail.
azure.rule.entra-service-principal Source
Matches resource instances of azuread_service_principal.
Classification: rf.concept.service-identity.
Conditions, identity and resolution
Identity
attributes:["client_id"]scope:"provider"
Endpoint
attributes:["client_id"]
azure.rule.entra-external-id-directory Source
Matches resource instances of azurerm_aadb2c_directory.
Classification: azure.concept.entra-directory.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.entra-domain-services-replica-set Source
Matches resource instances of azurerm_active_directory_domain_service_replica_set.
Classification: azure.concept.identity-governance-detail.
azure.rule.entra-domain-services-trust Source
Matches resource instances of azurerm_active_directory_domain_service_trust.
Classification: azure.concept.identity-governance-detail.
azure.rule.entra-domain-services Source
Matches resource instances of azurerm_active_directory_domain_service.
Classification: azure.concept.entra-domain-service.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.advanced-threat-protection Source
Matches resource instances of azurerm_advanced_threat_protection.
Classification: azure.concept.security-detail.
azure.rule.ai-foundry-project Source
Matches resource instances of azurerm_ai_foundry_project.
Classification: azure.concept.ai-foundry.
azure.rule.ai-foundry Source
Matches resource instances of azurerm_ai_foundry.
Classification: azure.concept.ai-foundry.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.analysis-services-server Source
Matches resource instances of azurerm_analysis_services_server.
Classification: azure.concept.analytics-cluster.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.api-connection Source
Matches resource instances of azurerm_api_connection.
Classification: azure.concept.integration-connection.
azure.rule.api-management-api Source
Matches resource instances of azurerm_api_management_api.
Classification: azure.concept.api-management-detail.
azure.rule.api-management-backend Source
Matches resource instances of azurerm_api_management_backend.
Classification: azure.concept.api-management-detail.
azure.rule.api-management-gateway Source
Matches resource instances of azurerm_api_management_gateway.
Classification: azure.concept.api-management-detail.
azure.rule.api-management-policy Source
Matches resource instances of azurerm_api_management_policy.
Classification: azure.concept.api-management-detail.
azure.rule.api-management-product Source
Matches resource instances of azurerm_api_management_product.
Classification: azure.concept.api-management-detail.
azure.rule.api-management-standalone-gateway Source
Matches resource instances of azurerm_api_management_standalone_gateway.
Classification: azure.concept.api-gateway.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.api-management-workspace Source
Matches resource instances of azurerm_api_management_workspace.
Classification: azure.concept.api-management-detail.
azure.rule.api-management Source
Matches resource instances of azurerm_api_management.
Classification: azure.concept.api-gateway.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.app-configuration Source
Matches resource instances of azurerm_app_configuration.
Classification: azure.concept.app-configuration.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.app-service-connection Source
Matches resource instances of azurerm_app_service_connection.
Classification: azure.concept.integration-connection.
azure.rule.app-service-environment Source
Matches resource instances of azurerm_app_service_environment_v3.
Classification: azure.concept.app-service-environment.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.application-gateway Source
Matches resource instances of azurerm_application_gateway.
Classification: azure.concept.load-balancer.
Contexts
rf.context.network: targetsrf.concept.subnetthroughsource.gateway_ip_configuration[0].subnet_id.azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Relations
azure.relation.uses-waf-policy: targetsazure.concept.web-application-firewall-policythroughsource.firewall_policy_id.
Conditions, identity and resolution
Identity
attributes:["id"]scope:"provider"
Endpoint
attributes:["id"]
Context through source.gateway_ip_configuration[0].subnet_id
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.idmatch.strategy:"exact"
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
Relation through source.firewall_policy_id
on_null:"absent"on_empty:"absent"match.by:target.idmatch.strategy:"exact"
azure.rule.application-insights-web-test Source
Matches resource instances of azurerm_application_insights_standard_web_test.
Classification: azure.concept.operations-detail.
azure.rule.application-insights Source
Matches resource instances of azurerm_application_insights.
Classification: azure.concept.application-insights.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Relations
azure.relation.observed-by: targetsazure.concept.log-analytics-workspacethroughsource.workspace_id.
Conditions, identity and resolution
Identity
attributes:["id", "connection_string"]scope:"provider"
Endpoint
attributes:["id", "connection_string", "instrumentation_key"]
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
Relation through source.workspace_id
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.idmatch.strategy:"exact"
azure.rule.application-load-balancer-frontend Source
Matches resource instances of azurerm_application_load_balancer_frontend.
Classification: azure.concept.load-balancer-component.
azure.rule.application-load-balancer Source
Matches resource instances of azurerm_application_load_balancer.
Classification: azure.concept.load-balancer.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Identity
attributes:["id"]scope:"provider"
Endpoint
attributes:["id"]
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.application-security-group Source
Matches resource instances of azurerm_application_security_group.
Classification: azure.concept.network-policy-detail.
azure.rule.arc-kubernetes-cluster Source
Matches resource instances of azurerm_arc_kubernetes_cluster.
Classification: rf.concept.kubernetes-cluster.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Identity
attributes:["id"]scope:"provider"
Endpoint
attributes:["id"]
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.arc-provisioned-kubernetes-cluster Source
Matches resource instances of azurerm_arc_kubernetes_provisioned_cluster.
Classification: rf.concept.kubernetes-cluster.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Identity
attributes:["id"]scope:"provider"
Endpoint
attributes:["id"]
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.arc-enabled-server Source
Matches resource instances of azurerm_arc_machine.
Classification: azure.concept.arc-enabled-server.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.arc-private-link-scope Source
Matches resource instances of azurerm_arc_private_link_scope.
Classification: azure.concept.private-link-scope.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.arc-resource-bridge Source
Matches resource instances of azurerm_arc_resource_bridge_appliance.
Classification: azure.concept.arc-resource-bridge.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.attestation-provider Source
Matches resource instances of azurerm_attestation_provider.
Classification: azure.concept.attestation-provider.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.automation-account Source
Matches resource instances of azurerm_automation_account.
Classification: azure.concept.automation-account.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.automation-runbook Source
Matches resource instances of azurerm_automation_runbook.
Classification: azure.concept.workflow.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.automation-schedule Source
Matches resource instances of azurerm_automation_schedule.
Classification: azure.concept.operations-detail.
azure.rule.availability-set Source
Matches resource instances of azurerm_availability_set.
Classification: azure.concept.compute-placement.
azure.rule.file-share-backup-policy Source
Matches resource instances of azurerm_backup_policy_file_share.
Classification: azure.concept.backup-plan.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.virtual-machine-backup-policy Source
Matches resource instances of azurerm_backup_policy_vm.
Classification: azure.concept.backup-plan.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.backup-protected-vm Source
Matches resource instances of azurerm_backup_protected_vm.
Classification: azure.concept.site-recovery-detail.
azure.rule.bastion-host Source
Matches resource instances of azurerm_bastion_host.
Classification: azure.concept.bastion-host.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.batch-account Source
Matches resource instances of azurerm_batch_account.
Classification: azure.concept.batch-account.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.batch-application Source
Matches resource instances of azurerm_batch_application.
Classification: azure.concept.batch-pool.
azure.rule.batch-pool Source
Matches resource instances of azurerm_batch_pool.
Classification: azure.concept.batch-pool.
azure.rule.bot-channels-registration Source
Matches resource instances of azurerm_bot_channels_registration.
Classification: azure.concept.bot-service.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.azure-bot Source
Matches resource instances of azurerm_bot_service_azure_bot.
Classification: azure.concept.bot-service.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.bot-web-app Source
Matches resource instances of azurerm_bot_web_app.
Classification: azure.concept.bot-service.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.capacity-reservation-group Source
Matches resource instances of azurerm_capacity_reservation_group.
Classification: azure.concept.compute-placement.
azure.rule.capacity-reservation Source
Matches resource instances of azurerm_capacity_reservation.
Classification: azure.concept.compute-placement.
azure.rule.cdn-endpoint Source
Matches resource instances of azurerm_cdn_endpoint.
Classification: azure.concept.content-delivery-profile.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.front-door-endpoint Source
Matches resource instances of azurerm_cdn_frontdoor_endpoint.
Classification: azure.concept.load-balancer-component.
azure.rule.front-door-origin-group Source
Matches resource instances of azurerm_cdn_frontdoor_origin_group.
Classification: azure.concept.load-balancer-component.
azure.rule.front-door-origin Source
Matches resource instances of azurerm_cdn_frontdoor_origin.
Classification: azure.concept.load-balancer-component.
azure.rule.front-door-profile Source
Matches resource instances of azurerm_cdn_frontdoor_profile.
Classification: azure.concept.front-door-profile.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.front-door-route Source
Matches resource instances of azurerm_cdn_frontdoor_route.
Classification: azure.concept.load-balancer-component.
azure.rule.cdn-profile Source
Matches resource instances of azurerm_cdn_profile.
Classification: azure.concept.content-delivery-profile.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.chaos-studio-experiment Source
Matches resource instances of azurerm_chaos_studio_experiment.
Classification: azure.concept.chaos-experiment.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.ai-services-project Source
Matches resource instances of azurerm_cognitive_account_project.
Classification: azure.concept.ai-foundry.
azure.rule.ai-services-account Source
Matches resource instances of azurerm_cognitive_account.
Classification: azure.concept.ai-service-account.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.ai-model-deployment Source
Matches resource instances of azurerm_cognitive_deployment.
Classification: azure.concept.ai-inference-endpoint.
azure.rule.communication-service Source
Matches resource instances of azurerm_communication_service.
Classification: azure.concept.communication-service.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.confidential-ledger Source
Matches resource instances of azurerm_confidential_ledger.
Classification: azure.concept.confidential-ledger.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.container-app-environment Source
Matches resource instances of azurerm_container_app_environment.
Classification: azure.concept.container-app-environment.
Contexts
rf.context.network: targetsrf.concept.subnetthroughsource.infrastructure_subnet_id.azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Relations
azure.relation.observed-by: targetsazure.concept.log-analytics-workspacethroughsource.log_analytics_workspace_id.
Conditions, identity and resolution
Identity
attributes:["id"]scope:"provider"
Endpoint
attributes:["id"]
Context through source.infrastructure_subnet_id
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.idmatch.strategy:"exact"
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
Relation through source.log_analytics_workspace_id
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.idmatch.strategy:"exact"
azure.rule.container-app-job Source
Matches resource instances of azurerm_container_app_job.
Classification: azure.concept.container-app-job.
Contexts
rf.context.runtime: targetsazure.concept.container-app-environmentthroughsource.container_app_environment_id.azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.container_app_environment_id
on_null:"absent"on_empty:"absent"match.by:target.idmatch.strategy:"exact"
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.container-app Source
Matches resource instances of azurerm_container_app.
Classification: azure.concept.container-app.
Contexts
rf.context.runtime: targetsazure.concept.container-app-environmentthroughsource.container_app_environment_id.azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.container_app_environment_id
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.idmatch.strategy:"exact"
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.connected-container-registry Source
Matches resource instances of azurerm_container_connected_registry.
Classification: azure.concept.container-registry.
azure.rule.container-instance-group Source
Matches resource instances of azurerm_container_group.
Classification: azure.concept.container-instance-group.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.container-registry Source
Matches resource instances of azurerm_container_registry.
Classification: azure.concept.container-registry.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.cosmos-account Source
Matches resource instances of azurerm_cosmosdb_account.
Classification: azure.concept.cosmos-account.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Identity
attributes:["id", "name"]scope:"provider"
Endpoint
attributes:["id", "name"]
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.cosmos-cassandra-cluster Source
Matches resource instances of azurerm_cosmosdb_cassandra_cluster.
Classification: rf.concept.managed-database.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.cosmos-cassandra-keyspace Source
Matches resource instances of azurerm_cosmosdb_cassandra_keyspace.
Classification: azure.concept.logical-database.
Contexts
azure.context.ownership: targetsazure.concept.cosmos-accountthroughsource.account_name.
Conditions, identity and resolution
Identity
attributes:["id", "name"]scope:"provider"
Endpoint
attributes:["id", "name"]
Context through source.account_name
on_null:"absent"on_empty:"absent"match.by:target.namematch.strategy:"exact"
azure.rule.cosmos-cassandra-table Source
Matches resource instances of azurerm_cosmosdb_cassandra_table.
Classification: azure.concept.database-component.
Contributions
- targets
azure.concept.logical-databasethroughsource.cassandra_keyspace_id.
Conditions, identity and resolution
Contribution through source.cassandra_keyspace_id
on_null:"absent"on_empty:"absent"match.by:target.idmatch.strategy:"exact"
azure.rule.cosmos-gremlin-database Source
Matches resource instances of azurerm_cosmosdb_gremlin_database.
Classification: azure.concept.logical-database.
Contexts
azure.context.ownership: targetsazure.concept.cosmos-accountthroughsource.account_name.
Conditions, identity and resolution
Identity
attributes:["id", "name"]scope:"provider"
Endpoint
attributes:["id", "name"]
Context through source.account_name
on_null:"absent"on_empty:"absent"match.by:target.namematch.strategy:"exact"
azure.rule.cosmos-gremlin-graph Source
Matches resource instances of azurerm_cosmosdb_gremlin_graph.
Classification: azure.concept.database-component.
Contributions
- targets
azure.concept.logical-databasethroughsource.database_name.
Conditions, identity and resolution
Contribution through source.database_name
on_null:"absent"on_empty:"absent"match.by:target.namematch.strategy:"exact"
azure.rule.cosmos-mongo-collection Source
Matches resource instances of azurerm_cosmosdb_mongo_collection.
Classification: azure.concept.database-component.
Contributions
- targets
azure.concept.logical-databasethroughsource.database_name.
Conditions, identity and resolution
Contribution through source.database_name
on_null:"absent"on_empty:"absent"match.by:target.namematch.strategy:"exact"
azure.rule.cosmos-mongo-database Source
Matches resource instances of azurerm_cosmosdb_mongo_database.
Classification: azure.concept.logical-database.
Contexts
azure.context.ownership: targetsazure.concept.cosmos-accountthroughsource.account_name.
Conditions, identity and resolution
Identity
attributes:["id", "name"]scope:"provider"
Endpoint
attributes:["id", "name"]
Context through source.account_name
on_null:"absent"on_empty:"absent"match.by:target.namematch.strategy:"exact"
azure.rule.cosmos-postgresql-cluster Source
Matches resource instances of azurerm_cosmosdb_postgresql_cluster.
Classification: rf.concept.managed-database.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.cosmos-sql-container Source
Matches resource instances of azurerm_cosmosdb_sql_container.
Classification: azure.concept.database-component.
Contexts
azure.context.ownership: targetsazure.concept.logical-databasethroughsource.database_name.
Contributions
- targets
azure.concept.logical-databasethroughsource.database_name.
Conditions, identity and resolution
Context through source.database_name
on_null:"absent"on_empty:"absent"match.by:target.namematch.strategy:"exact"
Contribution through source.database_name
on_null:"absent"on_empty:"absent"match.by:target.namematch.strategy:"exact"
azure.rule.cosmos-sql-database Source
Matches resource instances of azurerm_cosmosdb_sql_database.
Classification: azure.concept.logical-database.
Contexts
azure.context.ownership: targetsazure.concept.cosmos-accountthroughsource.account_name.
Conditions, identity and resolution
Identity
attributes:["id", "name"]scope:"provider"
Endpoint
attributes:["id", "name"]
Context through source.account_name
on_null:"absent"on_empty:"absent"match.by:target.namematch.strategy:"exact"
azure.rule.cosmos-dedicated-gateway Source
Matches resource instances of azurerm_cosmosdb_sql_dedicated_gateway.
Classification: azure.concept.database-component.
Contributions
- targets
azure.concept.cosmos-accountthroughsource.cosmosdb_account_id.
Conditions, identity and resolution
Contribution through source.cosmosdb_account_id
on_null:"absent"on_empty:"absent"match.by:target.idmatch.strategy:"exact"
azure.rule.custom-ip-prefix Source
Matches resource instances of azurerm_custom_ip_prefix.
Classification: azure.concept.public-address.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Identity
attributes:["id"]scope:"provider"
Endpoint
attributes:["id"]
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.managed-grafana Source
Matches resource instances of azurerm_dashboard_grafana.
Classification: azure.concept.managed-grafana.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.data-factory-data-flow Source
Matches resource instances of azurerm_data_factory_data_flow.
Classification: azure.concept.data-integration-detail.
azure.rule.data-factory-blob-dataset Source
Matches resource instances of azurerm_data_factory_dataset_azure_blob.
Classification: azure.concept.data-integration-detail.
azure.rule.data-factory-sql-dataset Source
Matches resource instances of azurerm_data_factory_dataset_azure_sql_table.
Classification: azure.concept.data-integration-detail.
azure.rule.data-factory-azure-integration-runtime Source
Matches resource instances of azurerm_data_factory_integration_runtime_azure.
Classification: azure.concept.data-integration-runtime.
azure.rule.data-factory-self-hosted-integration-runtime Source
Matches resource instances of azurerm_data_factory_integration_runtime_self_hosted.
Classification: azure.concept.data-integration-runtime.
azure.rule.data-factory-blob-linked-service Source
Matches resource instances of azurerm_data_factory_linked_service_azure_blob_storage.
Classification: azure.concept.data-integration-detail.
azure.rule.data-factory-sql-linked-service Source
Matches resource instances of azurerm_data_factory_linked_service_azure_sql_database.
Classification: azure.concept.data-integration-detail.
azure.rule.data-factory-managed-private-endpoint Source
Matches resource instances of azurerm_data_factory_managed_private_endpoint.
Classification: azure.concept.data-integration-detail.
azure.rule.data-factory-pipeline Source
Matches resource instances of azurerm_data_factory_pipeline.
Classification: azure.concept.workflow.
azure.rule.data-factory-schedule-trigger Source
Matches resource instances of azurerm_data_factory_trigger_schedule.
Classification: azure.concept.data-integration-detail.
azure.rule.data-factory Source
Matches resource instances of azurerm_data_factory.
Classification: azure.concept.data-factory.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.data-protection-blob-backup-policy Source
Matches resource instances of azurerm_data_protection_backup_policy_blob_storage.
Classification: azure.concept.backup-plan.
azure.rule.data-protection-disk-backup-policy Source
Matches resource instances of azurerm_data_protection_backup_policy_disk.
Classification: azure.concept.backup-plan.
azure.rule.data-protection-backup-vault Source
Matches resource instances of azurerm_data_protection_backup_vault.
Classification: azure.concept.backup-vault.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.data-share-account Source
Matches resource instances of azurerm_data_share_account.
Classification: azure.concept.data-share-account.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.database-migration-project Source
Matches resource instances of azurerm_database_migration_project.
Classification: azure.concept.migration-service.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.database-migration-service Source
Matches resource instances of azurerm_database_migration_service.
Classification: azure.concept.migration-service.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.data-box-edge-device Source
Matches resource instances of azurerm_databox_edge_device.
Classification: azure.concept.migration-service.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.databricks-virtual-network-peering Source
Matches resource instances of azurerm_databricks_virtual_network_peering.
Classification: azure.concept.network-peering.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.databricks-workspace Source
Matches resource instances of azurerm_databricks_workspace.
Classification: azure.concept.databricks-workspace.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.datadog-monitor Source
Matches resource instances of azurerm_datadog_monitor.
Classification: azure.concept.third-party-monitor.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.dedicated-hardware-security-module Source
Matches resource instances of azurerm_dedicated_hardware_security_module.
Classification: azure.concept.managed-hsm.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Identity
attributes:["id"]scope:"provider"
Endpoint
attributes:["id"]
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.dedicated-host-group Source
Matches resource instances of azurerm_dedicated_host_group.
Classification: azure.concept.dedicated-host-group.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.dev-box-definition Source
Matches resource instances of azurerm_dev_center_dev_box_definition.
Classification: azure.concept.developer-environment.
azure.rule.dev-center-project Source
Matches resource instances of azurerm_dev_center_project.
Classification: azure.concept.dev-center-project.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.dev-center Source
Matches resource instances of azurerm_dev_center.
Classification: azure.concept.dev-center.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.dev-test-lab Source
Matches resource instances of azurerm_dev_test_lab.
Classification: azure.concept.developer-environment.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.dev-test-linux-virtual-machine Source
Matches resource instances of azurerm_dev_test_linux_virtual_machine.
Classification: azure.concept.compute-instance.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.dev-test-windows-virtual-machine Source
Matches resource instances of azurerm_dev_test_windows_virtual_machine.
Classification: azure.concept.compute-instance.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.digital-twins-event-grid-endpoint Source
Matches resource instances of azurerm_digital_twins_endpoint_eventgrid.
Classification: azure.concept.iot-detail.
azure.rule.digital-twins-instance Source
Matches resource instances of azurerm_digital_twins_instance.
Classification: azure.concept.digital-twins-instance.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.dns-a-record Source
Matches resource instances of azurerm_dns_a_record.
Classification: azure.concept.dns-record.
Contexts
azure.context.ownership: targetsazure.concept.dns-zonethroughsource.zone_name.
Contributions
- targets
azure.concept.dns-zonethroughsource.zone_name.
Conditions, identity and resolution
Context through source.zone_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
Contribution through source.zone_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.dns-aaaa-record Source
Matches resource instances of azurerm_dns_aaaa_record.
Classification: azure.concept.dns-record.
Contexts
azure.context.ownership: targetsazure.concept.dns-zonethroughsource.zone_name.
Contributions
- targets
azure.concept.dns-zonethroughsource.zone_name.
Conditions, identity and resolution
Context through source.zone_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
Contribution through source.zone_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.dns-cname-record Source
Matches resource instances of azurerm_dns_cname_record.
Classification: azure.concept.dns-record.
Contexts
azure.context.ownership: targetsazure.concept.dns-zonethroughsource.zone_name.
Contributions
- targets
azure.concept.dns-zonethroughsource.zone_name.
Conditions, identity and resolution
Context through source.zone_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
Contribution through source.zone_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.dns-mx-record Source
Matches resource instances of azurerm_dns_mx_record.
Classification: azure.concept.dns-record.
Contexts
azure.context.ownership: targetsazure.concept.dns-zonethroughsource.zone_name.
Contributions
- targets
azure.concept.dns-zonethroughsource.zone_name.
Conditions, identity and resolution
Context through source.zone_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
Contribution through source.zone_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.dns-ns-record Source
Matches resource instances of azurerm_dns_ns_record.
Classification: azure.concept.dns-record.
Contexts
azure.context.ownership: targetsazure.concept.dns-zonethroughsource.zone_name.
Contributions
- targets
azure.concept.dns-zonethroughsource.zone_name.
Conditions, identity and resolution
Context through source.zone_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
Contribution through source.zone_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.dns-ptr-record Source
Matches resource instances of azurerm_dns_ptr_record.
Classification: azure.concept.dns-record.
Contexts
azure.context.ownership: targetsazure.concept.dns-zonethroughsource.zone_name.
Contributions
- targets
azure.concept.dns-zonethroughsource.zone_name.
Conditions, identity and resolution
Context through source.zone_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
Contribution through source.zone_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.dns-srv-record Source
Matches resource instances of azurerm_dns_srv_record.
Classification: azure.concept.dns-record.
Contexts
azure.context.ownership: targetsazure.concept.dns-zonethroughsource.zone_name.
Contributions
- targets
azure.concept.dns-zonethroughsource.zone_name.
Conditions, identity and resolution
Context through source.zone_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
Contribution through source.zone_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.dns-txt-record Source
Matches resource instances of azurerm_dns_txt_record.
Classification: azure.concept.dns-record.
Contexts
azure.context.ownership: targetsazure.concept.dns-zonethroughsource.zone_name.
Contributions
- targets
azure.concept.dns-zonethroughsource.zone_name.
Conditions, identity and resolution
Context through source.zone_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
Contribution through source.zone_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.dns-zone Source
Matches resource instances of azurerm_dns_zone.
Classification: azure.concept.dns-zone.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Identity
attributes:["id", "name"]scope:"provider"
Endpoint
attributes:["id", "name"]
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.dynatrace-monitor Source
Matches resource instances of azurerm_dynatrace_monitor.
Classification: azure.concept.third-party-monitor.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.elastic-cloud Source
Matches resource instances of azurerm_elastic_cloud_elasticsearch.
Classification: azure.concept.third-party-monitor.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.elastic-san-volume-group Source
Matches resource instances of azurerm_elastic_san_volume_group.
Classification: azure.concept.elastic-san.
azure.rule.elastic-san-volume Source
Matches resource instances of azurerm_elastic_san_volume.
Classification: azure.concept.block-storage-volume.
azure.rule.elastic-san Source
Matches resource instances of azurerm_elastic_san.
Classification: azure.concept.elastic-san.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.email-communication-service Source
Matches resource instances of azurerm_email_communication_service.
Classification: azure.concept.email-communication-service.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.event-grid-domain-topic Source
Matches resource instances of azurerm_eventgrid_domain_topic.
Classification: azure.concept.event-grid-topic.
Contexts
azure.context.ownership: targetsazure.concept.event-grid-domainthroughsource.domain_name.
Conditions, identity and resolution
Identity
attributes:["id"]scope:"provider"
Endpoint
attributes:["id"]
Context through source.domain_name
on_null:"absent"on_empty:"absent"match.by:target.namematch.strategy:"exact"
azure.rule.event-grid-domain Source
Matches resource instances of azurerm_eventgrid_domain.
Classification: azure.concept.event-grid-domain.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Identity
attributes:["id", "name"]scope:"provider"
Endpoint
attributes:["id", "name"]
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.event-grid-event-subscription Source
Matches resource instances of azurerm_eventgrid_event_subscription.
Classification: azure.concept.message-subscription.
Contexts
azure.context.ownership: targetsazure.concept.event-grid-topicthroughsource.scope.
Relations
azure.relation.subscribes-to: targetsazure.concept.event-grid-topicthroughsource.scope.azure.relation.delivers-to: targetsazure.concept.event-streamthroughsource.eventhub_id.azure.relation.delivers-to: targetsazure.concept.message-queuethroughsource.service_bus_queue_id.azure.relation.delivers-to: targetsazure.concept.service-bus-topicthroughsource.service_bus_topic_id.azure.relation.delivers-to: targetsazure.concept.serverless-functionthroughsource.azure_function_endpoint[0].function_id.azure.relation.delivers-to: targetsazure.concept.storage-accountthroughsource.storage_queue_endpoint[0].storage_account_id.
Conditions, identity and resolution
Context through source.scope
on_null:"absent"on_empty:"absent"match.by:target.idmatch.strategy:"exact"
Relation through source.scope
on_null:"absent"on_empty:"absent"match.by:target.idmatch.strategy:"exact"
Relation through source.eventhub_id
on_null:"absent"on_empty:"absent"match.by:target.idmatch.strategy:"exact"
Relation through source.service_bus_queue_id
on_null:"absent"on_empty:"absent"match.by:target.idmatch.strategy:"exact"
Relation through source.service_bus_topic_id
on_null:"absent"on_empty:"absent"match.by:target.idmatch.strategy:"exact"
Relation through source.azure_function_endpoint[0].function_id
on_null:"absent"on_empty:"absent"match.by:target.idmatch.strategy:"exact"
Relation through source.storage_queue_endpoint[0].storage_account_id
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.idmatch.strategy:"exact"
azure.rule.event-grid-namespace-topic Source
Matches resource instances of azurerm_eventgrid_namespace_topic.
Classification: azure.concept.message-topic.
Contexts
azure.context.ownership: targetsazure.concept.event-grid-domainthroughsource.eventgrid_namespace_id.
Conditions, identity and resolution
Context through source.eventgrid_namespace_id
on_null:"absent"on_empty:"absent"match.by:target.idmatch.strategy:"exact"
azure.rule.event-grid-namespace Source
Matches resource instances of azurerm_eventgrid_namespace.
Classification: azure.concept.event-grid-domain.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Identity
attributes:["id", "name"]scope:"provider"
Endpoint
attributes:["id", "name"]
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.event-grid-partner-namespace Source
Matches resource instances of azurerm_eventgrid_partner_namespace.
Classification: azure.concept.event-grid-domain.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Identity
attributes:["id", "name"]scope:"provider"
Endpoint
attributes:["id", "name"]
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.event-grid-system-topic-subscription Source
Matches resource instances of azurerm_eventgrid_system_topic_event_subscription.
Classification: azure.concept.message-subscription.
Contexts
azure.context.ownership: targetsazure.rule.event-grid-system-topicthroughsource.system_topic.
Relations
azure.relation.subscribes-to: targetsazure.rule.event-grid-system-topicthroughsource.system_topic.azure.relation.delivers-to: targetsazure.concept.event-streamthroughsource.eventhub_id.azure.relation.delivers-to: targetsazure.concept.message-queuethroughsource.service_bus_queue_id.azure.relation.delivers-to: targetsazure.concept.service-bus-topicthroughsource.service_bus_topic_id.azure.relation.delivers-to: targetsazure.concept.serverless-functionthroughsource.azure_function_endpoint[0].function_id.azure.relation.delivers-to: targetsazure.concept.storage-accountthroughsource.storage_queue_endpoint[0].storage_account_id.
Conditions, identity and resolution
Context through source.system_topic
on_null:"absent"on_empty:"absent"match.by:target.namematch.strategy:"exact"
Relation through source.system_topic
on_null:"absent"on_empty:"absent"match.by:target.namematch.strategy:"exact"
Relation through source.eventhub_id
on_null:"absent"on_empty:"absent"match.by:target.idmatch.strategy:"exact"
Relation through source.service_bus_queue_id
on_null:"absent"on_empty:"absent"match.by:target.idmatch.strategy:"exact"
Relation through source.service_bus_topic_id
on_null:"absent"on_empty:"absent"match.by:target.idmatch.strategy:"exact"
Relation through source.azure_function_endpoint[0].function_id
on_null:"absent"on_empty:"absent"match.by:target.idmatch.strategy:"exact"
Relation through source.storage_queue_endpoint[0].storage_account_id
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.idmatch.strategy:"exact"
azure.rule.event-grid-system-topic Source
Matches resource instances of azurerm_eventgrid_system_topic.
Classification: azure.concept.event-grid-topic.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Identity
attributes:["id", "name"]scope:"provider"
Endpoint
attributes:["id", "name"]
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.event-grid-topic Source
Matches resource instances of azurerm_eventgrid_topic.
Classification: azure.concept.event-grid-topic.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Identity
attributes:["id"]scope:"provider"
Endpoint
attributes:["id"]
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.event-hubs-cluster Source
Matches resource instances of azurerm_eventhub_cluster.
Classification: azure.concept.event-stream.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Identity
attributes:["id", "name"]scope:"provider"
Endpoint
attributes:["id", "name"]
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.event-hubs-consumer-group Source
Matches resource instances of azurerm_eventhub_consumer_group.
Classification: azure.concept.messaging-detail.
Contexts
azure.context.ownership: targetsazure.concept.event-streamthroughsource.eventhub_name.
Contributions
- targets
azure.concept.event-streamthroughsource.eventhub_name.
Conditions, identity and resolution
Context through source.eventhub_name
on_null:"absent"on_empty:"absent"match.by:target.namematch.strategy:"exact"
Contribution through source.eventhub_name
on_null:"absent"on_empty:"absent"match.by:target.namematch.strategy:"exact"
azure.rule.event-hubs-schema-group Source
Matches resource instances of azurerm_eventhub_namespace_schema_group.
Classification: azure.concept.messaging-detail.
Contributions
- targets
azure.concept.messaging-namespacethroughsource.namespace_id.
Conditions, identity and resolution
Contribution through source.namespace_id
on_null:"absent"on_empty:"absent"match.by:target.idmatch.strategy:"exact"
azure.rule.event-hubs-namespace Source
Matches resource instances of azurerm_eventhub_namespace.
Classification: azure.concept.messaging-namespace.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Identity
attributes:["id"]scope:"provider"
Endpoint
attributes:["id"]
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.event-hub Source
Matches resource instances of azurerm_eventhub.
Classification: azure.concept.event-stream.
Contexts
azure.context.ownership: targetsazure.concept.messaging-namespacethroughsource.namespace_id.
Conditions, identity and resolution
Identity
attributes:["id", "name"]scope:"provider"
Endpoint
attributes:["id", "name"]
Context through source.namespace_id
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.idmatch.strategy:"exact"
azure.rule.expressroute-circuit Source
Matches resource instances of azurerm_express_route_circuit.
Classification: azure.concept.dedicated-interconnect.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.expressroute-gateway Source
Matches resource instances of azurerm_express_route_gateway.
Classification: azure.concept.expressroute-gateway.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.expressroute-port Source
Matches resource instances of azurerm_express_route_port.
Classification: azure.concept.dedicated-interconnect.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.arc-custom-location Source
Matches resource instances of azurerm_extended_location_custom_location.
Classification: azure.concept.custom-location.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.fabric-capacity Source
Matches resource instances of azurerm_fabric_capacity.
Classification: azure.concept.analytics-cluster.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.azure-firewall-policy-rule-collection-group Source
Matches resource instances of azurerm_firewall_policy_rule_collection_group.
Classification: azure.concept.firewall-policy.
azure.rule.azure-firewall-policy Source
Matches resource instances of azurerm_firewall_policy.
Classification: azure.concept.firewall-policy.
azure.rule.azure-firewall Source
Matches resource instances of azurerm_firewall.
Classification: azure.concept.azure-firewall.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.fluid-relay Source
Matches resource instances of azurerm_fluid_relay_server.
Classification: azure.concept.realtime-communication-service.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.classic-front-door Source
Matches resource instances of azurerm_frontdoor.
Classification: azure.concept.front-door-profile.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.flex-consumption-function-app Source
Matches resource instances of azurerm_function_app_flex_consumption.
Classification: azure.concept.serverless-function.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.rf.context.network: targetsrf.concept.subnetthroughsource.virtual_network_subnet_id.rf.context.runtime: targetsazure.concept.app-service-planthroughsource.service_plan_id.
Conditions, identity and resolution
Identity
attributes:["id"]scope:"provider"
Endpoint
attributes:["id"]
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
Context through source.virtual_network_subnet_id
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.idmatch.strategy:"exact"
Context through source.service_plan_id
on_null:"absent"on_empty:"absent"match.by:target.idmatch.strategy:"exact"
azure.rule.function-app-function Source
Matches resource instances of azurerm_function_app_function.
Classification: azure.concept.serverless-function.
Conditions, identity and resolution
Identity
attributes:["id"]scope:"provider"
Endpoint
attributes:["id"]
azure.rule.graph-data-connect-account Source
Matches resource instances of azurerm_graph_services_account.
Classification: azure.concept.graph-data-connect-account.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.hdinsight-hadoop-cluster Source
Matches resource instances of azurerm_hdinsight_hadoop_cluster.
Classification: azure.concept.analytics-cluster.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.hdinsight-hbase-cluster Source
Matches resource instances of azurerm_hdinsight_hbase_cluster.
Classification: azure.concept.analytics-cluster.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.hdinsight-interactive-query-cluster Source
Matches resource instances of azurerm_hdinsight_interactive_query_cluster.
Classification: azure.concept.analytics-cluster.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.hdinsight-kafka-cluster Source
Matches resource instances of azurerm_hdinsight_kafka_cluster.
Classification: azure.concept.analytics-cluster.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.hdinsight-spark-cluster Source
Matches resource instances of azurerm_hdinsight_spark_cluster.
Classification: azure.concept.analytics-cluster.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.health-bot Source
Matches resource instances of azurerm_healthbot.
Classification: azure.concept.bot-service.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.health-data-dicom-service Source
Matches resource instances of azurerm_healthcare_dicom_service.
Classification: azure.concept.health-data-service.
azure.rule.health-data-fhir-service Source
Matches resource instances of azurerm_healthcare_fhir_service.
Classification: azure.concept.health-data-service.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.health-data-medtech-service Source
Matches resource instances of azurerm_healthcare_medtech_service.
Classification: azure.concept.health-data-service.
azure.rule.healthcare-service Source
Matches resource instances of azurerm_healthcare_service.
Classification: azure.concept.health-data-service.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.health-data-services-workspace Source
Matches resource instances of azurerm_healthcare_workspace.
Classification: azure.concept.health-data-workspace.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.compute-image Source
Matches resource instances of azurerm_image.
Classification: azure.concept.compute-image.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.iot-central-application Source
Matches resource instances of azurerm_iotcentral_application.
Classification: azure.concept.iot-central-application.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.iot-hub-device-update-account Source
Matches resource instances of azurerm_iothub_device_update_account.
Classification: azure.concept.iot-update-service.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.iot-hub-device-update-instance Source
Matches resource instances of azurerm_iothub_device_update_instance.
Classification: azure.concept.iot-detail.
azure.rule.iot-hub-device-provisioning-service Source
Matches resource instances of azurerm_iothub_dps.
Classification: azure.concept.iot-provisioning-service.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.iot-hub-event-hubs-endpoint Source
Matches resource instances of azurerm_iothub_endpoint_eventhub.
Classification: azure.concept.iot-detail.
azure.rule.iot-hub-service-bus-queue-endpoint Source
Matches resource instances of azurerm_iothub_endpoint_servicebus_queue.
Classification: azure.concept.iot-detail.
azure.rule.iot-hub-storage-endpoint Source
Matches resource instances of azurerm_iothub_endpoint_storage_container.
Classification: azure.concept.iot-detail.
azure.rule.iot-hub Source
Matches resource instances of azurerm_iothub.
Classification: azure.concept.iot-hub.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.ip-group Source
Matches resource instances of azurerm_ip_group.
Classification: azure.concept.network-policy-detail.
azure.rule.key-vault-access-policy Source
Matches resource instances of azurerm_key_vault_access_policy.
Classification: azure.concept.security-detail.
Contributions
- targets
azure.concept.key-vaultthroughsource.key_vault_id.
Conditions, identity and resolution
Contribution through source.key_vault_id
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.idmatch.strategy:"exact"
azure.rule.key-vault-certificate Source
Matches resource instances of azurerm_key_vault_certificate.
Classification: azure.concept.security-detail.
Contributions
- targets
azure.concept.key-vaultthroughsource.key_vault_id.
Conditions, identity and resolution
Contribution through source.key_vault_id
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.idmatch.strategy:"exact"
azure.rule.key-vault-key Source
Matches resource instances of azurerm_key_vault_key.
Classification: azure.concept.encryption-key.
Contexts
azure.context.ownership: targetsazure.concept.key-vaultthroughsource.key_vault_id.
Conditions, identity and resolution
Context through source.key_vault_id
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.idmatch.strategy:"exact"
azure.rule.managed-hsm-key Source
Matches resource instances of azurerm_key_vault_managed_hardware_security_module_key.
Classification: azure.concept.encryption-key.
Contexts
azure.context.ownership: targetsazure.concept.managed-hsmthroughsource.managed_hsm_id.
Conditions, identity and resolution
Context through source.managed_hsm_id
on_null:"absent"on_empty:"absent"match.by:target.idmatch.strategy:"exact"
azure.rule.managed-hsm Source
Matches resource instances of azurerm_key_vault_managed_hardware_security_module.
Classification: azure.concept.managed-hsm.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Identity
attributes:["id"]scope:"provider"
Endpoint
attributes:["id"]
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.key-vault-secret Source
Matches resource instances of azurerm_key_vault_secret.
Classification: azure.concept.managed-secret.
Contexts
azure.context.ownership: targetsazure.concept.key-vaultthroughsource.key_vault_id.
Conditions, identity and resolution
Context through source.key_vault_id
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.idmatch.strategy:"exact"
azure.rule.key-vault Source
Matches resource instances of azurerm_key_vault.
Classification: azure.concept.key-vault.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Identity
attributes:["id"]scope:"provider"
Endpoint
attributes:["id"]
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.automatic-kubernetes-cluster Source
Matches resource instances of azurerm_kubernetes_automatic_cluster.
Classification: rf.concept.kubernetes-cluster.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Identity
attributes:["id"]scope:"provider"
Endpoint
attributes:["id"]
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.aks-node-pool Source
Matches resource instances of azurerm_kubernetes_cluster_node_pool.
Classification: azure.concept.kubernetes-node-pool.
Contexts
rf.context.network: targetsrf.concept.subnetthroughsource.vnet_subnet_id.
Contributions
- targets
rf.concept.kubernetes-clusterthroughsource.kubernetes_cluster_id.
Conditions, identity and resolution
Context through source.vnet_subnet_id
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.idmatch.strategy:"exact"
Contribution through source.kubernetes_cluster_id
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.idmatch.strategy:"exact"
azure.rule.aks-cluster Source
Matches resource instances of azurerm_kubernetes_cluster.
Classification: rf.concept.kubernetes-cluster.
Contexts
rf.context.network: targetsrf.concept.subnetthroughsource.default_node_pool[0].vnet_subnet_id.azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Relations
azure.relation.observed-by: targetsazure.concept.log-analytics-workspacethroughsource.oms_agent[0].log_analytics_workspace_id.
Conditions, identity and resolution
Identity
attributes:["id"]scope:"provider"
Endpoint
attributes:["id", "kube_config[0].host", "kube_admin_config[0].host"]
Context through source.default_node_pool[0].vnet_subnet_id
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.idmatch.strategy:"exact"
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
Relation through source.oms_agent[0].log_analytics_workspace_id
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.idmatch.strategy:"exact"
azure.rule.kubernetes-fleet Source
Matches resource instances of azurerm_kubernetes_fleet_manager.
Classification: azure.concept.kubernetes-fleet.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.data-explorer-cluster Source
Matches resource instances of azurerm_kusto_cluster.
Classification: azure.concept.data-explorer-cluster.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.data-explorer-event-grid-connection Source
Matches resource instances of azurerm_kusto_eventgrid_data_connection.
Classification: azure.concept.database-component.
azure.rule.data-explorer-event-hubs-connection Source
Matches resource instances of azurerm_kusto_eventhub_data_connection.
Classification: azure.concept.database-component.
azure.rule.load-balancer-backend-pool Source
Matches resource instances of azurerm_lb_backend_address_pool.
Classification: azure.concept.load-balancer-component.
Contributions
- targets
azure.concept.load-balancerthroughsource.loadbalancer_id.
Conditions, identity and resolution
Contribution through source.loadbalancer_id
on_null:"absent"on_empty:"absent"match.by:target.idmatch.strategy:"exact"
azure.rule.load-balancer-nat-rule Source
Matches resource instances of azurerm_lb_nat_rule.
Classification: azure.concept.load-balancer-component.
azure.rule.load-balancer-outbound-rule Source
Matches resource instances of azurerm_lb_outbound_rule.
Classification: azure.concept.load-balancer-component.
azure.rule.load-balancer-probe Source
Matches resource instances of azurerm_lb_probe.
Classification: azure.concept.load-balancer-component.
azure.rule.load-balancer-rule Source
Matches resource instances of azurerm_lb_rule.
Classification: azure.concept.load-balancer-component.
Contributions
- targets
azure.concept.load-balancerthroughsource.loadbalancer_id.
Conditions, identity and resolution
Contribution through source.loadbalancer_id
on_null:"absent"on_empty:"absent"match.by:target.idmatch.strategy:"exact"
azure.rule.load-balancer Source
Matches resource instances of azurerm_lb.
Classification: azure.concept.load-balancer.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Identity
attributes:["id"]scope:"provider"
Endpoint
attributes:["id"]
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.lighthouse-definition Source
Matches resource instances of azurerm_lighthouse_definition.
Classification: azure.concept.governance-detail.
azure.rule.linux-function-app Source
Matches resource instances of azurerm_linux_function_app.
Classification: azure.concept.serverless-function.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.rf.context.network: targetsrf.concept.subnetthroughsource.virtual_network_subnet_id.rf.context.runtime: targetsazure.concept.app-service-planthroughsource.service_plan_id.
Relations
azure.relation.observed-by: targetsazure.concept.application-insightsthroughsource.site_config[0].application_insights_connection_string.
Conditions, identity and resolution
Identity
attributes:["id"]scope:"provider"
Endpoint
attributes:["id"]
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
Context through source.virtual_network_subnet_id
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.idmatch.strategy:"exact"
Context through source.service_plan_id
on_null:"absent"on_empty:"absent"match.by:target.idmatch.strategy:"exact"
Relation through source.site_config[0].application_insights_connection_string
on_null:"absent"on_empty:"absent"match.by:target.connection_stringmatch.strategy:"exact"
azure.rule.linux-virtual-machine-scale-set Source
Matches resource instances of azurerm_linux_virtual_machine_scale_set.
Classification: azure.concept.virtual-machine-scale-set.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.linux-virtual-machine Source
Matches resource instances of azurerm_linux_virtual_machine.
Classification: azure.concept.compute-instance.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.linux-web-app Source
Matches resource instances of azurerm_linux_web_app.
Classification: azure.concept.app-service.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.rf.context.network: targetsrf.concept.subnetthroughsource.virtual_network_subnet_id.rf.context.runtime: targetsazure.concept.app-service-planthroughsource.service_plan_id.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
Context through source.virtual_network_subnet_id
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.idmatch.strategy:"exact"
Context through source.service_plan_id
on_null:"absent"on_empty:"absent"match.by:target.idmatch.strategy:"exact"
azure.rule.load-test Source
Matches resource instances of azurerm_load_test.
Classification: azure.concept.load-test.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.local-network-gateway Source
Matches resource instances of azurerm_local_network_gateway.
Classification: azure.concept.local-network-gateway.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.log-analytics-cluster Source
Matches resource instances of azurerm_log_analytics_cluster.
Classification: azure.concept.log-analytics-workspace.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Identity
attributes:["id"]scope:"provider"
Endpoint
attributes:["id"]
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.log-analytics-data-export-rule Source
Matches resource instances of azurerm_log_analytics_data_export_rule.
Classification: azure.concept.operations-detail.
Contributions
- targets
azure.concept.log-analytics-workspacethroughsource.workspace_resource_id.
Conditions, identity and resolution
Contribution through source.workspace_resource_id
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.idmatch.strategy:"exact"
azure.rule.log-analytics-saved-search Source
Matches resource instances of azurerm_log_analytics_saved_search.
Classification: azure.concept.operations-detail.
Contributions
- targets
azure.concept.log-analytics-workspacethroughsource.log_analytics_workspace_id.
Conditions, identity and resolution
Contribution through source.log_analytics_workspace_id
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.idmatch.strategy:"exact"
azure.rule.log-analytics-solution Source
Matches resource instances of azurerm_log_analytics_solution.
Classification: azure.concept.operations-detail.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Contributions
- targets
azure.concept.log-analytics-workspacethroughsource.workspace_resource_id.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
Contribution through source.workspace_resource_id
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.idmatch.strategy:"exact"
azure.rule.log-analytics-workspace-table Source
Matches resource instances of azurerm_log_analytics_workspace_table.
Classification: azure.concept.operations-detail.
Contributions
- targets
azure.concept.log-analytics-workspacethroughsource.workspace_id.
Conditions, identity and resolution
Contribution through source.workspace_id
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.idmatch.strategy:"exact"
azure.rule.log-analytics-workspace Source
Matches resource instances of azurerm_log_analytics_workspace.
Classification: azure.concept.log-analytics-workspace.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Identity
attributes:["id"]scope:"provider"
Endpoint
attributes:["id"]
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.logic-app-http-action Source
Matches resource instances of azurerm_logic_app_action_http.
Classification: azure.concept.api-management-detail.
azure.rule.logic-app-integration-account Source
Matches resource instances of azurerm_logic_app_integration_account.
Classification: azure.concept.integration-account.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.logic-app-standard Source
Matches resource instances of azurerm_logic_app_standard.
Classification: azure.concept.workflow.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.logic-app-recurrence-trigger Source
Matches resource instances of azurerm_logic_app_trigger_recurrence.
Classification: azure.concept.api-management-detail.
azure.rule.logic-app-workflow Source
Matches resource instances of azurerm_logic_app_workflow.
Classification: azure.concept.workflow.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.machine-learning-compute-cluster Source
Matches resource instances of azurerm_machine_learning_compute_cluster.
Classification: azure.concept.machine-learning-compute.
azure.rule.machine-learning-compute-instance Source
Matches resource instances of azurerm_machine_learning_compute_instance.
Classification: azure.concept.machine-learning-compute.
azure.rule.machine-learning-inference-cluster Source
Matches resource instances of azurerm_machine_learning_inference_cluster.
Classification: azure.concept.ai-inference-endpoint.
azure.rule.machine-learning-workspace Source
Matches resource instances of azurerm_machine_learning_workspace.
Classification: azure.concept.machine-learning-workspace.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.maintenance-configuration Source
Matches resource instances of azurerm_maintenance_configuration.
Classification: azure.concept.maintenance-configuration.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.managed-application Source
Matches resource instances of azurerm_managed_application.
Classification: azure.concept.managed-application.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.managed-devops-pool Source
Matches resource instances of azurerm_managed_devops_pool.
Classification: azure.concept.developer-environment.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.managed-disk Source
Matches resource instances of azurerm_managed_disk.
Classification: azure.concept.block-storage-volume.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.managed-lustre-file-system Source
Matches resource instances of azurerm_managed_lustre_file_system.
Classification: azure.concept.managed-file-storage.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.managed-redis-geo-replication Source
Matches resource instances of azurerm_managed_redis_geo_replication.
Classification: azure.concept.database-component.
azure.rule.azure-managed-redis Source
Matches resource instances of azurerm_managed_redis.
Classification: azure.concept.managed-cache.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.maps-account Source
Matches resource instances of azurerm_maps_account.
Classification: azure.concept.maps-account.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.mongo-cluster Source
Matches resource instances of azurerm_mongo_cluster.
Classification: rf.concept.managed-database.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.monitor-action-group Source
Matches resource instances of azurerm_monitor_action_group.
Classification: azure.concept.operations-detail.
azure.rule.monitor-data-collection-endpoint Source
Matches resource instances of azurerm_monitor_data_collection_endpoint.
Classification: azure.concept.operations-detail.
azure.rule.monitor-diagnostic-setting Source
Matches resource instances of azurerm_monitor_diagnostic_setting.
Classification: azure.concept.operations-detail.
azure.rule.monitor-metric-alert Source
Matches resource instances of azurerm_monitor_metric_alert.
Classification: azure.concept.operations-detail.
azure.rule.monitor-private-link-scope Source
Matches resource instances of azurerm_monitor_private_link_scope.
Classification: azure.concept.private-link-scope.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.monitor-scheduled-query-alert Source
Matches resource instances of azurerm_monitor_scheduled_query_rules_alert_v2.
Classification: azure.concept.operations-detail.
azure.rule.monitor-workspace Source
Matches resource instances of azurerm_monitor_workspace.
Classification: azure.concept.monitor-workspace.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.mssql-database Source
Matches resource instances of azurerm_mssql_database.
Classification: azure.concept.logical-database.
Contexts
azure.context.ownership: targetsazure.concept.sql-serverthroughsource.server_id.
Conditions, identity and resolution
Identity
attributes:["id", "name"]scope:"provider"
Endpoint
attributes:["id", "name"]
Context through source.server_id
on_null:"absent"on_empty:"absent"match.by:target.idmatch.strategy:"exact"
azure.rule.sql-elastic-pool Source
Matches resource instances of azurerm_mssql_elasticpool.
Classification: azure.concept.database-component.
azure.rule.sql-failover-group Source
Matches resource instances of azurerm_mssql_failover_group.
Classification: azure.concept.database-component.
azure.rule.sql-managed-database Source
Matches resource instances of azurerm_mssql_managed_database.
Classification: azure.concept.logical-database.
Conditions, identity and resolution
Identity
attributes:["id", "name"]scope:"provider"
Endpoint
attributes:["id", "name"]
azure.rule.sql-managed-instance Source
Matches resource instances of azurerm_mssql_managed_instance.
Classification: rf.concept.managed-database.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.mssql-server Source
Matches resource instances of azurerm_mssql_server.
Classification: azure.concept.sql-server.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Identity
attributes:["id"]scope:"provider"
Endpoint
attributes:["id"]
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.mysql-database Source
Matches resource instances of azurerm_mysql_flexible_database.
Classification: azure.concept.logical-database.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Identity
attributes:["id", "name"]scope:"provider"
Endpoint
attributes:["id", "name"]
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.mysql-flexible-server Source
Matches resource instances of azurerm_mysql_flexible_server.
Classification: rf.concept.managed-database.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.nat-gateway-public-ip-association Source
Matches resource instances of azurerm_nat_gateway_public_ip_association.
Classification: azure.concept.network-policy-detail.
Contributions
- targets
azure.concept.managed-natthroughsource.nat_gateway_id. - targets
azure.concept.public-addressthroughsource.public_ip_address_id.
Conditions, identity and resolution
Contribution through source.nat_gateway_id
on_null:"absent"on_empty:"absent"match.by:target.idmatch.strategy:"exact"
Contribution through source.public_ip_address_id
on_null:"absent"on_empty:"absent"match.by:target.idmatch.strategy:"exact"
azure.rule.nat-gateway-public-ip-prefix-association Source
Matches resource instances of azurerm_nat_gateway_public_ip_prefix_association.
Classification: azure.concept.network-policy-detail.
Contributions
- targets
azure.concept.managed-natthroughsource.nat_gateway_id. - targets
azure.concept.public-addressthroughsource.public_ip_prefix_id.
Conditions, identity and resolution
Contribution through source.nat_gateway_id
on_null:"absent"on_empty:"absent"match.by:target.idmatch.strategy:"exact"
Contribution through source.public_ip_prefix_id
on_null:"absent"on_empty:"absent"match.by:target.idmatch.strategy:"exact"
azure.rule.nat-gateway Source
Matches resource instances of azurerm_nat_gateway.
Classification: azure.concept.managed-nat.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Identity
attributes:["id"]scope:"provider"
Endpoint
attributes:["id"]
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.netapp-account Source
Matches resource instances of azurerm_netapp_account.
Classification: azure.concept.netapp-account.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.netapp-backup-policy Source
Matches resource instances of azurerm_netapp_backup_policy.
Classification: azure.concept.backup-plan.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.netapp-backup-vault Source
Matches resource instances of azurerm_netapp_backup_vault.
Classification: azure.concept.backup-vault.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.netapp-capacity-pool Source
Matches resource instances of azurerm_netapp_pool.
Classification: azure.concept.netapp-capacity-pool.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.netapp-volume Source
Matches resource instances of azurerm_netapp_volume.
Classification: azure.concept.managed-file-storage.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.ddos-protection-plan Source
Matches resource instances of azurerm_network_ddos_protection_plan.
Classification: azure.concept.ddos-protection-plan.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.network-function-traffic-collector Source
Matches resource instances of azurerm_network_function_azure_traffic_collector.
Classification: azure.concept.network-function-service.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.network-manager-ipam-pool Source
Matches resource instances of azurerm_network_manager_ipam_pool.
Classification: azure.concept.network-policy-detail.
azure.rule.virtual-network-manager Source
Matches resource instances of azurerm_network_manager.
Classification: azure.concept.virtual-network-manager.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.network-security-group Source
Matches resource instances of azurerm_network_security_group.
Classification: azure.concept.network-security-group.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.network-security-perimeter Source
Matches resource instances of azurerm_network_security_perimeter.
Classification: azure.concept.network-security-perimeter.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.network-security-rule Source
Matches resource instances of azurerm_network_security_rule.
Classification: azure.concept.network-policy-detail.
azure.rule.network-watcher-flow-log Source
Matches resource instances of azurerm_network_watcher_flow_log.
Classification: azure.concept.operations-detail.
azure.rule.network-watcher Source
Matches resource instances of azurerm_network_watcher.
Classification: azure.concept.network-watcher.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.new-relic-monitor Source
Matches resource instances of azurerm_new_relic_monitor.
Classification: azure.concept.third-party-monitor.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.nginx-deployment Source
Matches resource instances of azurerm_nginx_deployment.
Classification: azure.concept.hybrid-platform.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.notification-hubs-namespace Source
Matches resource instances of azurerm_notification_hub_namespace.
Classification: azure.concept.notification-namespace.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.notification-hub Source
Matches resource instances of azurerm_notification_hub.
Classification: azure.concept.notification-hub.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.oracle-autonomous-database Source
Matches resource instances of azurerm_oracle_autonomous_database.
Classification: rf.concept.managed-database.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.oracle-cloud-vm-cluster Source
Matches resource instances of azurerm_oracle_cloud_vm_cluster.
Classification: azure.concept.hybrid-platform.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.oracle-exadata-infrastructure Source
Matches resource instances of azurerm_oracle_exadata_infrastructure.
Classification: azure.concept.hybrid-platform.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.oracle-resource-anchor Source
Matches resource instances of azurerm_oracle_resource_anchor.
Classification: azure.concept.hybrid-platform.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.orchestrated-virtual-machine-scale-set Source
Matches resource instances of azurerm_orchestrated_virtual_machine_scale_set.
Classification: azure.concept.virtual-machine-scale-set.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.palo-alto-firewall Source
Matches resource instances of azurerm_palo_alto_next_generation_firewall_virtual_network_local_rulestack.
Classification: azure.concept.hybrid-platform.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.playwright-workspace Source
Matches resource instances of azurerm_playwright_workspace.
Classification: azure.concept.developer-environment.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.point-to-site-vpn-gateway Source
Matches resource instances of azurerm_point_to_site_vpn_gateway.
Classification: azure.concept.vpn-gateway.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.policy-definition Source
Matches resource instances of azurerm_policy_definition.
Classification: azure.concept.governance-detail.
azure.rule.policy-set-definition Source
Matches resource instances of azurerm_policy_set_definition.
Classification: azure.concept.governance-detail.
azure.rule.portal-dashboard Source
Matches resource instances of azurerm_portal_dashboard.
Classification: azure.concept.operations-detail.
azure.rule.postgresql-backup Source
Matches resource instances of azurerm_postgresql_flexible_server_backup.
Classification: azure.concept.database-component.
azure.rule.postgresql-database Source
Matches resource instances of azurerm_postgresql_flexible_server_database.
Classification: azure.concept.logical-database.
Conditions, identity and resolution
Identity
attributes:["id", "name"]scope:"provider"
Endpoint
attributes:["id", "name"]
azure.rule.postgresql-flexible-server Source
Matches resource instances of azurerm_postgresql_flexible_server.
Classification: rf.concept.managed-database.
Contexts
rf.context.network: targetsrf.concept.subnetthroughsource.delegated_subnet_id.azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Relations
azure.relation.private-name-resolution: targetsazure.concept.dns-zonethroughsource.private_dns_zone_id.
Conditions, identity and resolution
Context through source.delegated_subnet_id
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.idmatch.strategy:"exact"
Relation through source.private_dns_zone_id
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.idmatch.strategy:"exact"
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.power-bi-embedded-capacity Source
Matches resource instances of azurerm_powerbi_embedded.
Classification: azure.concept.analytics-cluster.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.private-dns-a-record Source
Matches resource instances of azurerm_private_dns_a_record.
Classification: azure.concept.dns-record.
Contexts
azure.context.ownership: targetsazure.concept.dns-zonethroughsource.private_dns_zone_id.
Contributions
- targets
azure.concept.dns-zonethroughsource.private_dns_zone_id.
Conditions, identity and resolution
Context through source.private_dns_zone_id
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.idmatch.strategy:"exact"
Contribution through source.private_dns_zone_id
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.idmatch.strategy:"exact"
azure.rule.private-dns-cname-record Source
Matches resource instances of azurerm_private_dns_cname_record.
Classification: azure.concept.dns-record.
Contexts
azure.context.ownership: targetsazure.concept.dns-zonethroughsource.private_dns_zone_id.
Contributions
- targets
azure.concept.dns-zonethroughsource.private_dns_zone_id.
Conditions, identity and resolution
Context through source.private_dns_zone_id
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.idmatch.strategy:"exact"
Contribution through source.private_dns_zone_id
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.idmatch.strategy:"exact"
azure.rule.private-dns-forwarding-ruleset Source
Matches resource instances of azurerm_private_dns_resolver_dns_forwarding_ruleset.
Classification: azure.concept.private-network-link.
azure.rule.private-dns-inbound-endpoint Source
Matches resource instances of azurerm_private_dns_resolver_inbound_endpoint.
Classification: azure.concept.private-network-link.
azure.rule.private-dns-outbound-endpoint Source
Matches resource instances of azurerm_private_dns_resolver_outbound_endpoint.
Classification: azure.concept.private-network-link.
azure.rule.private-dns-resolver Source
Matches resource instances of azurerm_private_dns_resolver.
Classification: azure.concept.private-dns-resolver.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.private-dns-zone-vnet-link Source
Matches resource instances of azurerm_private_dns_zone_virtual_network_link.
Classification: azure.concept.private-network-link.
Contexts
azure.context.ownership: targetsazure.concept.dns-zonethroughsource.private_dns_zone_id.
Contributions
- targets
azure.concept.dns-zonethroughsource.private_dns_zone_id. - targets
rf.concept.virtual-networkthroughsource.virtual_network_id.
Conditions, identity and resolution
Context through source.private_dns_zone_id
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.idmatch.strategy:"exact"
Contribution through source.private_dns_zone_id
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.idmatch.strategy:"exact"
Contribution through source.virtual_network_id
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.idmatch.strategy:"exact"
azure.rule.private-dns-zone Source
Matches resource instances of azurerm_private_dns_zone.
Classification: azure.concept.dns-zone.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Identity
attributes:["id", "name"]scope:"provider"
Endpoint
attributes:["id", "name"]
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.private-endpoint Source
Matches resource instances of azurerm_private_endpoint.
Classification: azure.concept.private-endpoint.
Contexts
rf.context.network: targetsrf.concept.subnetthroughsource.subnet_id.azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.subnet_id
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.idmatch.strategy:"exact"
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.private-link-service Source
Matches resource instances of azurerm_private_link_service.
Classification: azure.concept.private-link-service.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.proximity-placement-group Source
Matches resource instances of azurerm_proximity_placement_group.
Classification: azure.concept.compute-placement.
azure.rule.public-ip-prefix Source
Matches resource instances of azurerm_public_ip_prefix.
Classification: azure.concept.public-address.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Identity
attributes:["id"]scope:"provider"
Endpoint
attributes:["id"]
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.public-address Source
Matches resource instances of azurerm_public_ip.
Classification: azure.concept.public-address.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Identity
attributes:["id"]scope:"provider"
Endpoint
attributes:["id"]
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.purview-account Source
Matches resource instances of azurerm_purview_account.
Classification: azure.concept.purview-account.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.qumulo-file-system Source
Matches resource instances of azurerm_qumulo_file_system.
Classification: azure.concept.managed-file-storage.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.recovery-services-vault Source
Matches resource instances of azurerm_recovery_services_vault.
Classification: azure.concept.backup-vault.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.red-hat-openshift-cluster Source
Matches resource instances of azurerm_redhat_openshift_cluster.
Classification: rf.concept.kubernetes-cluster.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Identity
attributes:["id"]scope:"provider"
Endpoint
attributes:["id"]
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.azure-cache-for-redis Source
Matches resource instances of azurerm_redis_cache.
Classification: azure.concept.managed-cache.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.relay-hybrid-connection Source
Matches resource instances of azurerm_relay_hybrid_connection.
Classification: azure.concept.relay-connection.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.relay-namespace Source
Matches resource instances of azurerm_relay_namespace.
Classification: azure.concept.relay-namespace.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.resource-group Source
Matches resource instances of azurerm_resource_group.
Classification: azure.concept.resource-group.
Conditions, identity and resolution
Identity
attributes:["name"]scope:"provider"
Endpoint
attributes:["id", "name"]
azure.rule.resource-policy-assignment Source
Matches resource instances of azurerm_resource_policy_assignment.
Classification: azure.concept.governance-detail.
azure.rule.role-assignment Source
Matches resource instances of azurerm_role_assignment.
Classification: azure.concept.governance-detail.
azure.rule.role-definition Source
Matches resource instances of azurerm_role_definition.
Classification: azure.concept.governance-detail.
azure.rule.route-server Source
Matches resource instances of azurerm_route_server.
Classification: azure.concept.route-table.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.route-table Source
Matches resource instances of azurerm_route_table.
Classification: azure.concept.route-table.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.route Source
Matches resource instances of azurerm_route.
Classification: azure.concept.network-policy-detail.
azure.rule.ai-search-service Source
Matches resource instances of azurerm_search_service.
Classification: azure.concept.ai-search-service.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.defender-subscription-plan Source
Matches resource instances of azurerm_security_center_subscription_pricing.
Classification: azure.concept.defender-plan.
azure.rule.defender-workspace Source
Matches resource instances of azurerm_security_center_workspace.
Classification: azure.concept.defender-plan.
azure.rule.sentinel-nrt-alert-rule Source
Matches resource instances of azurerm_sentinel_alert_rule_nrt.
Classification: azure.concept.security-detail.
azure.rule.sentinel-scheduled-alert-rule Source
Matches resource instances of azurerm_sentinel_alert_rule_scheduled.
Classification: azure.concept.security-detail.
azure.rule.sentinel-automation-rule Source
Matches resource instances of azurerm_sentinel_automation_rule.
Classification: azure.concept.security-detail.
azure.rule.sentinel-aws-cloudtrail-connector Source
Matches resource instances of azurerm_sentinel_data_connector_aws_cloud_trail.
Classification: azure.concept.security-detail.
azure.rule.sentinel-entra-connector Source
Matches resource instances of azurerm_sentinel_data_connector_azure_active_directory.
Classification: azure.concept.security-detail.
azure.rule.service-fabric-cluster Source
Matches resource instances of azurerm_service_fabric_cluster.
Classification: azure.concept.service-fabric-cluster.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.managed-service-fabric-cluster Source
Matches resource instances of azurerm_service_fabric_managed_cluster.
Classification: azure.concept.service-fabric-cluster.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.app-service-plan Source
Matches resource instances of azurerm_service_plan.
Classification: azure.concept.app-service-plan.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Identity
attributes:["id"]scope:"provider"
Endpoint
attributes:["id"]
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.service-bus-namespace Source
Matches resource instances of azurerm_servicebus_namespace.
Classification: azure.concept.messaging-namespace.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Identity
attributes:["id"]scope:"provider"
Endpoint
attributes:["id"]
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.service-bus-queue Source
Matches resource instances of azurerm_servicebus_queue.
Classification: azure.concept.message-queue.
Contexts
azure.context.ownership: targetsazure.concept.messaging-namespacethroughsource.namespace_id.
Conditions, identity and resolution
Identity
attributes:["id"]scope:"provider"
Endpoint
attributes:["id"]
Context through source.namespace_id
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.idmatch.strategy:"exact"
azure.rule.service-bus-subscription-rule Source
Matches resource instances of azurerm_servicebus_subscription_rule.
Classification: azure.concept.messaging-detail.
azure.rule.service-bus-subscription Source
Matches resource instances of azurerm_servicebus_subscription.
Classification: azure.concept.message-subscription.
Contexts
azure.context.ownership: targetsazure.concept.service-bus-topicthroughsource.topic_id.
Relations
azure.relation.subscribes-to: targetsazure.concept.service-bus-topicthroughsource.topic_id.
Conditions, identity and resolution
Context through source.topic_id
on_null:"absent"on_empty:"absent"match.by:target.idmatch.strategy:"exact"
Relation through source.topic_id
on_null:"absent"on_empty:"absent"match.by:target.idmatch.strategy:"exact"
azure.rule.service-bus-topic Source
Matches resource instances of azurerm_servicebus_topic.
Classification: azure.concept.service-bus-topic.
Contexts
azure.context.ownership: targetsazure.concept.messaging-namespacethroughsource.namespace_id.
Conditions, identity and resolution
Identity
attributes:["id"]scope:"provider"
Endpoint
attributes:["id"]
Context through source.namespace_id
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.idmatch.strategy:"exact"
azure.rule.compute-gallery Source
Matches resource instances of azurerm_shared_image_gallery.
Classification: azure.concept.image-gallery.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.shared-image Source
Matches resource instances of azurerm_shared_image.
Classification: azure.concept.compute-image.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.signalr-service Source
Matches resource instances of azurerm_signalr_service.
Classification: azure.concept.realtime-communication-service.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.site-recovery-fabric Source
Matches resource instances of azurerm_site_recovery_fabric.
Classification: azure.concept.site-recovery-fabric.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.site-recovery-protection-container Source
Matches resource instances of azurerm_site_recovery_protection_container.
Classification: azure.concept.site-recovery-fabric.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.site-recovery-replicated-vm Source
Matches resource instances of azurerm_site_recovery_replicated_vm.
Classification: azure.concept.site-recovery-detail.
azure.rule.site-recovery-plan Source
Matches resource instances of azurerm_site_recovery_replication_recovery_plan.
Classification: azure.concept.site-recovery-detail.
azure.rule.disk-snapshot Source
Matches resource instances of azurerm_snapshot.
Classification: azure.concept.disk-snapshot.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.spring-app Source
Matches resource instances of azurerm_spring_cloud_app.
Classification: azure.concept.spring-app.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.spring-apps-gateway Source
Matches resource instances of azurerm_spring_cloud_gateway.
Classification: azure.concept.spring-app.
azure.rule.spring-apps-service Source
Matches resource instances of azurerm_spring_cloud_service.
Classification: azure.concept.spring-apps-service.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.azure-local-cluster Source
Matches resource instances of azurerm_stack_hci_cluster.
Classification: azure.concept.azure-local-cluster.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.stack-hci-virtual-hard-disk Source
Matches resource instances of azurerm_stack_hci_virtual_hard_disk.
Classification: azure.concept.block-storage-volume.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.static-web-app Source
Matches resource instances of azurerm_static_web_app.
Classification: azure.concept.static-web-app.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.storage-account Source
Matches resource instances of azurerm_storage_account.
Classification: azure.concept.storage-account.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Identity
attributes:["id"]scope:"provider"
Endpoint
attributes:["id"]
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.storage-blob Source
Matches resource instances of azurerm_storage_blob.
Classification: azure.concept.storage-object-detail.
Contributions
- targets
rf.concept.object-storage-containerthroughsource.storage_container_id.
Conditions, identity and resolution
Contribution through source.storage_container_id
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.idmatch.strategy:"exact"
azure.rule.blob-container Source
Matches resource instances of azurerm_storage_container.
Classification: rf.concept.object-storage-container.
Contexts
azure.context.ownership: targetsazure.concept.storage-accountthroughsource.storage_account_id.
Conditions, identity and resolution
Identity
attributes:["id"]scope:"provider"
Endpoint
attributes:["id", "name"]
Context through source.storage_account_id
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.idmatch.strategy:"exact"
azure.rule.data-lake-filesystem Source
Matches resource instances of azurerm_storage_data_lake_gen2_filesystem.
Classification: rf.concept.object-storage-container.
Contexts
azure.context.ownership: targetsazure.concept.storage-accountthroughsource.storage_account_id.
Conditions, identity and resolution
Identity
attributes:["id"]scope:"provider"
Endpoint
attributes:["id"]
Context through source.storage_account_id
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.idmatch.strategy:"exact"
azure.rule.data-lake-path Source
Matches resource instances of azurerm_storage_data_lake_gen2_path.
Classification: azure.concept.storage-object-detail.
azure.rule.storage-encryption-scope Source
Matches resource instances of azurerm_storage_encryption_scope.
Classification: azure.concept.storage-object-detail.
Contributions
- targets
azure.concept.storage-accountthroughsource.storage_account_id.
Conditions, identity and resolution
Contribution through source.storage_account_id
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.idmatch.strategy:"exact"
azure.rule.storage-management-policy Source
Matches resource instances of azurerm_storage_management_policy.
Classification: azure.concept.storage-object-detail.
Contributions
- targets
azure.concept.storage-accountthroughsource.storage_account_id.
Conditions, identity and resolution
Contribution through source.storage_account_id
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.idmatch.strategy:"exact"
azure.rule.storage-mover Source
Matches resource instances of azurerm_storage_mover.
Classification: azure.concept.migration-service.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.queue-storage-queue Source
Matches resource instances of azurerm_storage_queue.
Classification: azure.concept.message-queue.
Contexts
azure.context.ownership: targetsazure.concept.storage-accountthroughsource.storage_account_id.
Conditions, identity and resolution
Identity
attributes:["id"]scope:"provider"
Endpoint
attributes:["id"]
Context through source.storage_account_id
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.idmatch.strategy:"exact"
azure.rule.storage-share-directory Source
Matches resource instances of azurerm_storage_share_directory.
Classification: azure.concept.storage-object-detail.
azure.rule.storage-share-file Source
Matches resource instances of azurerm_storage_share_file.
Classification: azure.concept.storage-object-detail.
azure.rule.azure-files-share Source
Matches resource instances of azurerm_storage_share.
Classification: azure.concept.managed-file-storage.
Contexts
azure.context.ownership: targetsazure.concept.storage-accountthroughsource.storage_account_id.
Conditions, identity and resolution
Context through source.storage_account_id
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.idmatch.strategy:"exact"
azure.rule.storage-sync-service Source
Matches resource instances of azurerm_storage_sync.
Classification: azure.concept.storage-sync-service.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.storage-table-entity Source
Matches resource instances of azurerm_storage_table_entity.
Classification: azure.concept.storage-object-detail.
Contributions
- targets
azure.concept.table-storage-tablethroughsource.storage_table_id.
Conditions, identity and resolution
Contribution through source.storage_table_id
on_null:"absent"on_empty:"absent"match.by:target.idmatch.strategy:"exact"
azure.rule.table-storage-table Source
Matches resource instances of azurerm_storage_table.
Classification: azure.concept.table-storage-table.
Contexts
azure.context.ownership: targetsazure.concept.storage-accountthroughsource.storage_account_id.
Conditions, identity and resolution
Identity
attributes:["id"]scope:"provider"
Endpoint
attributes:["id"]
Context through source.storage_account_id
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.idmatch.strategy:"exact"
azure.rule.stream-analytics-cluster Source
Matches resource instances of azurerm_stream_analytics_cluster.
Classification: azure.concept.analytics-cluster.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.stream-analytics-job Source
Matches resource instances of azurerm_stream_analytics_job.
Classification: azure.concept.stream-analytics-job.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.stream-analytics-blob-output Source
Matches resource instances of azurerm_stream_analytics_output_blob.
Classification: azure.concept.data-integration-detail.
azure.rule.stream-analytics-event-hubs-input Source
Matches resource instances of azurerm_stream_analytics_stream_input_eventhub_v2.
Classification: azure.concept.data-integration-detail.
azure.rule.subnet-nat-gateway-association Source
Matches resource instances of azurerm_subnet_nat_gateway_association.
Classification: azure.concept.network-policy-detail.
Contributions
- targets
rf.concept.subnetthroughsource.subnet_id. - targets
azure.concept.managed-natthroughsource.nat_gateway_id.
Conditions, identity and resolution
Contribution through source.subnet_id
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.idmatch.strategy:"exact"
Contribution through source.nat_gateway_id
on_null:"absent"on_empty:"absent"match.by:target.idmatch.strategy:"exact"
azure.rule.subnet-network-security-group-association Source
Matches resource instances of azurerm_subnet_network_security_group_association.
Classification: azure.concept.network-policy-detail.
azure.rule.subnet-route-table-association Source
Matches resource instances of azurerm_subnet_route_table_association.
Classification: azure.concept.network-policy-detail.
azure.rule.subnet Source
Matches resource instances of azurerm_subnet.
Classification: rf.concept.subnet.
Contexts
rf.context.network: targetsrf.concept.virtual-networkthroughsource.virtual_network_name.azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Identity
attributes:["id"]scope:"provider"
Endpoint
attributes:["id"]
Context through source.virtual_network_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.synapse-private-link-hub Source
Matches resource instances of azurerm_synapse_private_link_hub.
Classification: azure.concept.private-link-scope.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.synapse-spark-pool Source
Matches resource instances of azurerm_synapse_spark_pool.
Classification: azure.concept.analytics-pool.
azure.rule.synapse-sql-pool Source
Matches resource instances of azurerm_synapse_sql_pool.
Classification: azure.concept.analytics-pool.
azure.rule.synapse-workspace Source
Matches resource instances of azurerm_synapse_workspace.
Classification: azure.concept.synapse-workspace.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.system-center-vmm-server Source
Matches resource instances of azurerm_system_center_virtual_machine_manager_server.
Classification: azure.concept.hybrid-platform.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.system-center-virtual-machine Source
Matches resource instances of azurerm_system_center_virtual_machine_manager_virtual_machine_instance.
Classification: azure.concept.compute-instance.
azure.rule.traffic-manager-azure-endpoint Source
Matches resource instances of azurerm_traffic_manager_azure_endpoint.
Classification: azure.concept.load-balancer-component.
azure.rule.traffic-manager-profile Source
Matches resource instances of azurerm_traffic_manager_profile.
Classification: azure.concept.traffic-manager-profile.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.trusted-signing-account Source
Matches resource instances of azurerm_trusted_signing_account.
Classification: azure.concept.trusted-signing-account.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.user-assigned-managed-identity Source
Matches resource instances of azurerm_user_assigned_identity.
Classification: rf.concept.service-identity.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Identity
attributes:["id", "principal_id", "client_id"]scope:"global"
Endpoint
attributes:["id", "principal_id", "client_id"]
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.video-indexer-account Source
Matches resource instances of azurerm_video_indexer_account.
Classification: azure.concept.video-indexer-account.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.virtual-desktop-application-group Source
Matches resource instances of azurerm_virtual_desktop_application_group.
Classification: azure.concept.virtual-desktop-application-group.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.virtual-desktop-application Source
Matches resource instances of azurerm_virtual_desktop_application.
Classification: azure.concept.compute-placement.
azure.rule.virtual-desktop-host-pool Source
Matches resource instances of azurerm_virtual_desktop_host_pool.
Classification: azure.concept.virtual-desktop-host-pool.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.virtual-desktop-scaling-plan Source
Matches resource instances of azurerm_virtual_desktop_scaling_plan.
Classification: azure.concept.compute-placement.
azure.rule.virtual-desktop-workspace Source
Matches resource instances of azurerm_virtual_desktop_workspace.
Classification: azure.concept.virtual-desktop-workspace.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.virtual-hub Source
Matches resource instances of azurerm_virtual_hub.
Classification: azure.concept.virtual-hub.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.virtual-machine-restore-point Source
Matches resource instances of azurerm_virtual_machine_restore_point.
Classification: azure.concept.disk-snapshot.
azure.rule.virtual-machine-scale-set Source
Matches resource instances of azurerm_virtual_machine_scale_set.
Classification: azure.concept.virtual-machine-scale-set.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.virtual-machine Source
Matches resource instances of azurerm_virtual_machine.
Classification: azure.concept.compute-instance.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.virtual-network-gateway-connection Source
Matches resource instances of azurerm_virtual_network_gateway_connection.
Classification: azure.concept.vpn-connection.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.virtual-network-gateway Source
Matches resource instances of azurerm_virtual_network_gateway.
Classification: azure.concept.vpn-gateway.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.virtual-network-peering Source
Matches resource instances of azurerm_virtual_network_peering.
Classification: azure.concept.network-peering.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.rf.context.network: targetsrf.concept.virtual-networkthroughsource.virtual_network_name.
Relations
azure.relation.peers-with: targetsrf.concept.virtual-networkthroughsource.remote_virtual_network_id.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
Context through source.virtual_network_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
Relation through source.remote_virtual_network_id
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.idmatch.strategy:"exact"
azure.rule.virtual-network Source
Matches resource instances of azurerm_virtual_network.
Classification: rf.concept.virtual-network.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Identity
attributes:["id", "name"]scope:"provider"
Endpoint
attributes:["id", "name"]
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.virtual-wan Source
Matches resource instances of azurerm_virtual_wan.
Classification: azure.concept.virtual-wan.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.vmware-cluster Source
Matches resource instances of azurerm_vmware_cluster.
Classification: azure.concept.hybrid-platform.
azure.rule.vmware-private-cloud Source
Matches resource instances of azurerm_vmware_private_cloud.
Classification: azure.concept.vmware-private-cloud.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.vpn-gateway-connection Source
Matches resource instances of azurerm_vpn_gateway_connection.
Classification: azure.concept.vpn-connection.
azure.rule.vpn-gateway Source
Matches resource instances of azurerm_vpn_gateway.
Classification: azure.concept.vpn-gateway.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.vpn-site Source
Matches resource instances of azurerm_vpn_site.
Classification: azure.concept.local-network-gateway.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.web-application-firewall-policy Source
Matches resource instances of azurerm_web_application_firewall_policy.
Classification: azure.concept.web-application-firewall-policy.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Identity
attributes:["id"]scope:"provider"
Endpoint
attributes:["id"]
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.web-pubsub Source
Matches resource instances of azurerm_web_pubsub.
Classification: azure.concept.realtime-communication-service.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.windows-function-app Source
Matches resource instances of azurerm_windows_function_app.
Classification: azure.concept.serverless-function.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.rf.context.network: targetsrf.concept.subnetthroughsource.virtual_network_subnet_id.rf.context.runtime: targetsazure.concept.app-service-planthroughsource.service_plan_id.
Relations
azure.relation.observed-by: targetsazure.concept.application-insightsthroughsource.site_config[0].application_insights_connection_string.
Conditions, identity and resolution
Identity
attributes:["id"]scope:"provider"
Endpoint
attributes:["id"]
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
Context through source.virtual_network_subnet_id
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.idmatch.strategy:"exact"
Context through source.service_plan_id
on_null:"absent"on_empty:"absent"match.by:target.idmatch.strategy:"exact"
Relation through source.site_config[0].application_insights_connection_string
on_null:"absent"on_empty:"absent"match.by:target.connection_stringmatch.strategy:"exact"
azure.rule.windows-virtual-machine-scale-set Source
Matches resource instances of azurerm_windows_virtual_machine_scale_set.
Classification: azure.concept.virtual-machine-scale-set.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.windows-virtual-machine Source
Matches resource instances of azurerm_windows_virtual_machine.
Classification: azure.concept.compute-instance.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.windows-web-app Source
Matches resource instances of azurerm_windows_web_app.
Classification: azure.concept.app-service.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.rf.context.network: targetsrf.concept.subnetthroughsource.virtual_network_subnet_id.rf.context.runtime: targetsazure.concept.app-service-planthroughsource.service_plan_id.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
Context through source.virtual_network_subnet_id
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.idmatch.strategy:"exact"
Context through source.service_plan_id
on_null:"absent"on_empty:"absent"match.by:target.idmatch.strategy:"exact"
azure.rule.sap-discovery-virtual-instance Source
Matches resource instances of azurerm_workloads_sap_discovery_virtual_instance.
Classification: azure.concept.hybrid-platform.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.sap-single-node-virtual-instance Source
Matches resource instances of azurerm_workloads_sap_single_node_virtual_instance.
Classification: azure.concept.hybrid-platform.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"
azure.rule.sap-three-tier-virtual-instance Source
Matches resource instances of azurerm_workloads_sap_three_tier_virtual_instance.
Classification: azure.concept.hybrid-platform.
Contexts
azure.context.ownership: targetsazure.concept.resource-groupthroughsource.resource_group_name.
Conditions, identity and resolution
Context through source.resource_group_name
on_null:"absent"on_empty:"absent"external:"allow"match.by:target.namematch.strategy:"exact"