Locks, at ReadOnly or CanNotDelete level, that stop management-plane changes. They place no limits on where resources go or how large they are, and data-plane work such as blob reads and writes carries on regardless.
Read more: Microsoft Learn
In the Ultra Transcenders books
AZ-305AZ-104AZ-700SC-500AZ-900
Each book explains Resource locks in context, with comparison tables and the common traps.
Terms in this definition
- ReadOnly
Lock level for resources preventing modification and deletion; placed on the source or destination resource group or subscription, it also prevents moves.
- CanNotDelete
Lock level under which a resource can still be read and modified but not deleted; moving it remains possible.
- Stop sequence
One of up to four strings that make the model halt generation; the sequence itself is not included in the output.
- WHERE
Limits a SELECT, UPDATE or DELETE to just the rows meeting a condition. Omit it, and the statement hits every row.
- BLOB
Short for binary large object: raw binary data, like pictures, audio, video or documents, that only an application can make sense of. Azure keeps these files as blobs in Blob Storage.
Related terms
- Governance
Keeping cloud deployments in line with an organisation's rules on technology, security and compliance, helped by Azure Policy, tags and resource locks.
- Microsoft.Authorization
Namespace of the resource provider handling policy, resource locks, role definitions and role assignments. Only roles such as Owner and User Access Administrator hold roleAssignments/write.