An Azure resource that rolls out a Bicep or ARM template and treats everything it creates as one managed group. Resources dropped from the template can be removed or simply released, and deny settings can guard the rest against changes.
Read more: Microsoft Learn
In the Ultra Transcenders books
Each book explains Deployment stack in context, with comparison tables and the common traps.
Terms in this definition
- Bicep
Domain-specific language for declaring Azure infrastructure as code, which is compiled into ARM templates.
- ARM template
JSON file describing Azure infrastructure declaratively. Once deployed it keeps no live connection to the resources, unlike Blueprints, which retires fully on 31 January 2027.
- Deny settings
On a deployment stack, DenyDelete or DenyWriteAndDelete applies deny assignments to the managed resources that bind every principal, Owners too, apart from any excluded.
- REST
Short for representational state transfer, the style of HTTP API that Azure services expose.
Related terms
- actionOnUnmanage
Controls what a deployment stack does with resources that drop out of its template: detach them or delete them. The delete option takes over from complete deployment mode, which is on the way to deprecation.
- Azure Deployment Stack Owner
Built-in role covering full deployment stack management, deny settings included.