π Azure Key Vault Key - object.extracts.yaml
- Contextual name: π object.extracts.yaml
- ID:
/types/CA10__CaAzureKeyVaultKey__c/object.extracts.yaml
- Located in: π Azure Key Vault Key
Used Inβ
Logic | Policy | Flags |
---|---|---|
π§ wip.logic.yaml π’ | π Azure Key Vault Automatic Key Rotation is not enabled π π’ | π’ x3 |
π§ prod.logic.yaml π’ | π Azure Non-RBAC Key Vault stores Keys without expiration date π’ | π’ x3 |
π§ prod.logic.yaml π’ | π Azure RBAC Key Vault stores Keys without expiration date π’ | π’ x3 |
Contentβ
---
extracts:
# Values: Enabled, Disabled. Not Nullable. Can't have no access, retrieved via Microsoft.KeyVault/keys
- name: "CA10__enabledStatus__c"
value:
FIELD:
path: "CA10__enabledStatus__c"
undeterminedIf:
isEmpty: "Corrupted data. Key State cannot be empty."
# Nullable. Can't have no access, retrieved via Microsoft.KeyVault/keys
- name: "CA10__expirationDate__c"
value:
FIELD:
path: "CA10__expirationDate__c"
# Nullable
- name: "CA10__lifetimeActions__c"
value:
FIELD:
path: "CA10__lifetimeActions__c"
# undeterminedIf:
# noAccessDelegate:
# path: "CA10__lifetimeActions__c"
# currentStateMessage: "Unable to determine Key Rotation Policy. Possible permission issue with keys/getrotationpolicy"