Blob Container Immutability Policy
The ImmutabilityPolicy property of a blob container, including Id, resource name, resource type, Etag. Uses Azure REST API version 2022-09-01. In version 1.x of the Azure Native provider, it used API version 2021-02-01. Other available API versions: 2023-01-01, 2023-04-01, 2023-05-01, 2024-01-01.
Example Usage
CreateOrUpdateImmutabilityPolicy
using System.Collections.Generic;
using System.Linq;
using Pulumi;
using AzureNative = Pulumi.AzureNative;
return await Deployment.RunAsync(() =>
{
var blobContainerImmutabilityPolicy = new AzureNative.Storage.BlobContainerImmutabilityPolicy("blobContainerImmutabilityPolicy", new()
{
AccountName = "sto7069",
AllowProtectedAppendWrites = true,
ContainerName = "container6397",
ImmutabilityPeriodSinceCreationInDays = 3,
ImmutabilityPolicyName = "default",
ResourceGroupName = "res1782",
});
});
package main
import (
storage "github.com/pulumi/pulumi-azure-native-sdk/storage/v2"
"github.com/pulumi/pulumi/sdk/v3/go/pulumi"
)
func main() {
pulumi.Run(func(ctx *pulumi.Context) error {
_, err := storage.NewBlobContainerImmutabilityPolicy(ctx, "blobContainerImmutabilityPolicy", &storage.BlobContainerImmutabilityPolicyArgs{
AccountName: pulumi.String("sto7069"),
AllowProtectedAppendWrites: pulumi.Bool(true),
ContainerName: pulumi.String("container6397"),
ImmutabilityPeriodSinceCreationInDays: pulumi.Int(3),
ImmutabilityPolicyName: pulumi.String("default"),
ResourceGroupName: pulumi.String("res1782"),
})
if err != nil {
return err
}
return nil
})
}
package generated_program;
import com.pulumi.Context;
import com.pulumi.Pulumi;
import com.pulumi.core.Output;
import com.pulumi.azurenative.storage.BlobContainerImmutabilityPolicy;
import com.pulumi.azurenative.storage.BlobContainerImmutabilityPolicyArgs;
import java.util.List;
import java.util.ArrayList;
import java.util.Map;
import java.io.File;
import java.nio.file.Files;
import java.nio.file.Paths;
public class App {
public static void main(String[] args) {
Pulumi.run(App::stack);
}
public static void stack(Context ctx) {
var blobContainerImmutabilityPolicy = new BlobContainerImmutabilityPolicy("blobContainerImmutabilityPolicy", BlobContainerImmutabilityPolicyArgs.builder()
.accountName("sto7069")
.allowProtectedAppendWrites(true)
.containerName("container6397")
.immutabilityPeriodSinceCreationInDays(3)
.immutabilityPolicyName("default")
.resourceGroupName("res1782")
.build());
}
}
CreateOrUpdateImmutabilityPolicyWithAllowProtectedAppendWritesAll
using System.Collections.Generic;
using System.Linq;
using Pulumi;
using AzureNative = Pulumi.AzureNative;
return await Deployment.RunAsync(() =>
{
var blobContainerImmutabilityPolicy = new AzureNative.Storage.BlobContainerImmutabilityPolicy("blobContainerImmutabilityPolicy", new()
{
AccountName = "sto7069",
AllowProtectedAppendWritesAll = true,
ContainerName = "container6397",
ImmutabilityPeriodSinceCreationInDays = 3,
ImmutabilityPolicyName = "default",
ResourceGroupName = "res1782",
});
});
package main
import (
storage "github.com/pulumi/pulumi-azure-native-sdk/storage/v2"
"github.com/pulumi/pulumi/sdk/v3/go/pulumi"
)
func main() {
pulumi.Run(func(ctx *pulumi.Context) error {
_, err := storage.NewBlobContainerImmutabilityPolicy(ctx, "blobContainerImmutabilityPolicy", &storage.BlobContainerImmutabilityPolicyArgs{
AccountName: pulumi.String("sto7069"),
AllowProtectedAppendWritesAll: pulumi.Bool(true),
ContainerName: pulumi.String("container6397"),
ImmutabilityPeriodSinceCreationInDays: pulumi.Int(3),
ImmutabilityPolicyName: pulumi.String("default"),
ResourceGroupName: pulumi.String("res1782"),
})
if err != nil {
return err
}
return nil
})
}
package generated_program;
import com.pulumi.Context;
import com.pulumi.Pulumi;
import com.pulumi.core.Output;
import com.pulumi.azurenative.storage.BlobContainerImmutabilityPolicy;
import com.pulumi.azurenative.storage.BlobContainerImmutabilityPolicyArgs;
import java.util.List;
import java.util.ArrayList;
import java.util.Map;
import java.io.File;
import java.nio.file.Files;
import java.nio.file.Paths;
public class App {
public static void main(String[] args) {
Pulumi.run(App::stack);
}
public static void stack(Context ctx) {
var blobContainerImmutabilityPolicy = new BlobContainerImmutabilityPolicy("blobContainerImmutabilityPolicy", BlobContainerImmutabilityPolicyArgs.builder()
.accountName("sto7069")
.allowProtectedAppendWritesAll(true)
.containerName("container6397")
.immutabilityPeriodSinceCreationInDays(3)
.immutabilityPolicyName("default")
.resourceGroupName("res1782")
.build());
}
}
Import
An existing resource can be imported using its type token, name, and identifier, e.g.
$ pulumi import azure-native:storage:BlobContainerImmutabilityPolicy default /subscriptions/{subscriptionId}/resourceGroups/{resourceGroupName}/providers/Microsoft.Storage/storageAccounts/{accountName}/blobServices/default/containers/{containerName}/immutabilityPolicies/{immutabilityPolicyName}
Properties
This property can only be changed for unlocked time-based retention policies. When enabled, new blocks can be written to an append blob while maintaining immutability protection and compliance. Only new blocks can be added and any existing blocks cannot be modified or deleted. This property cannot be changed with ExtendImmutabilityPolicy API.
This property can only be changed for unlocked time-based retention policies. When enabled, new blocks can be written to both 'Append and Bock Blobs' while maintaining immutability protection and compliance. Only new blocks can be added and any existing blocks cannot be modified or deleted. This property cannot be changed with ExtendImmutabilityPolicy API. The 'allowProtectedAppendWrites' and 'allowProtectedAppendWritesAll' properties are mutually exclusive.
The immutability period for the blobs in the container since the policy creation, in days.