Description
This policy identifies Azure Key Vault Certificates that are valid for more that 12 months. Restrict the validity period of certificates stored in Azure Key Vault to 12 months or less.
Rationaleβ
Limiting certificate validity reduces the risk of misuse if compromised and helps ensure timely renewal, improving security and reliability.
Impactβ
Minor administrative effort required to ensure certificate renewal and lifecycle management.
Auditβ
This policy flags an Azure Key Vault Certificate as INCOMPLIANT if Validity Period (in months) is set to more than 12.
Default Valueβ
Validity Period (in months) is set to 12 by default.