[Knowledge] virtual-network: ## Advisory Notes — Stage 1: Managed Identity - **[Architec...

Open Beginner friendly
#47 0 comments 0 reactions 0 assignees View on GitHub

Nobody has claimed this yet.

Assessment

Difficulty
1/5
Estimated time
Under an hour
Newbie friendliness
85/100
Issue type
Documentation
Clarity
Clearly specified
Activity status
Quiet
Tech stack
azure
Domain
documentation

Research direction

Read knowledge/services/virtual-network.md and the issue's Content to Add section. Add the Stage 1 Managed Identity advisory notes to that file; done when the supplied notes are present in the document.

Written by the indexing model from the issue text.

Description

Knowledge Contribution

Type: Pitfall
File: knowledge/services/virtual-network.md

Context

Advisory Notes — Stage 1: Managed Identity

  • [Architectural Trade-off] A single shared identity across all Container Apps simplifies wiring but increases blast radius — if the identity's permissions are over-scoped in later stages, every service inherits that exposure. Consider per-service identities for production least-privilege isolation.

  • [Security] No resource lock is applied to the managed identity. Accidental deletion would orphan all downstream RBAC assignments and break ev

Rationale

Advisory Notes — Stage 1: Managed Identity

  • [Architectural Trade-off] A single shared identity across all Container Apps simplifies wiring but increases blast radius — if the identity's permissions are over-scoped in later stages, every service inherits that exposure. Consider per-service identities for production least-privilege isolation.

  • [Security] No resource lock is applied to the managed identity. Accidental deletion would orphan all downstream RBAC assignments and break ev

Content to Add
## Advisory Notes — Stage 1: Managed Identity

- **[Architectural Trade-off]** A single shared identity across all Container Apps simplifies wiring but increases blast radius — if the identity's permi
Source

Build advisory review

Dominant language
Python
Stars
41
Forks
10
PR merge metrics
No merged PRs in 30d

Contributor guide

No contributing guide indexed for this repository

First steps

  1. Read the whole issue, then the project's contributing guide.
  2. Comment on the issue to say you are picking it up — it saves two people doing the same work.
  3. Fork the repository and make your change on a branch.
  4. Open a pull request that references the issue number.

More from Azure/az-prototype

All issues in Azure/az-prototype

Similar issues

More Python issues

Get new issues in your inbox

A short digest of beginner-friendly GitHub issues.