[[["Easy to understand","easyToUnderstand","thumb-up"],["Solved my problem","solvedMyProblem","thumb-up"],["Other","otherUp","thumb-up"]],[["Hard to understand","hardToUnderstand","thumb-down"],["Incorrect information or sample code","incorrectInformationOrSampleCode","thumb-down"],["Missing the information/samples I need","missingTheInformationSamplesINeed","thumb-down"],["Other","otherDown","thumb-down"]],["Last updated 2025-06-12 UTC."],[[["This document details the YAML format for configuring Binary Authorization policies, which control container image deployments."],["`admissionWhitelistPatterns` allows for specifying container images exempt from policy enforcement, using exact paths or wildcard patterns for broader exemptions."],["`globalPolicyEvaluationMode` determines whether Google-maintained system images are automatically exempt, which is enabled by default to ensure GKE functionality."],["The `defaultAdmissionRule` node defines the policy for all non-exempt container images, while `clusterAdmissionRules` apply to specific clusters, and both use `ADMISSION_RULE` for constraints."],["`ADMISSION_RULE` specifies constraints like `evaluationMode` to determine image deployment actions, `enforcementMode` for policy violations, and `requireAttestationsBy` for mandatory attestor authorization."]]],[]], This page contains reference information for Binary Authorization policies as specified in YAML format. When you configure a policy using the command-line interface, you edit a, The YAML schema reference is a detailed reference guide to Azure Pipelines YAML pipelines. It includes a catalog of all supported YAML capabilities and the available options. Here are the syntax conventions used in the YAML schema reference..