This policy ensures encryption is enabled on all Data Lake Store accounts
$definition = New-AzPolicyDefinition -Name "data-lake-store-encryption" -DisplayName "Enforce encryption on Data Lake Store accounts" -description "This policy ensures encryption is enabled on all Data Lake Store accounts" -Policy 'https://raw.githubusercontent.com/Azure/azure-policy/master/samples/DataLake/data-lake-store-encryption/azurepolicy.rules.json' -Parameter 'https://raw.githubusercontent.com/Azure/azure-policy/master/samples/DataLake/data-lake-store-encryption/azurepolicy.parameters.json' -Mode Indexed
$definition
$assignment = New-AzPolicyAssignment -Name <assignmentname> -Scope <scope> -PolicyDefinition $definition
$assignment
az policy definition create --name 'data-lake-store-encryption' --display-name 'Enforce encryption on Data Lake Store accounts' --description 'This policy ensures encryption is enabled on all Data Lake Store accounts' --rules 'https://raw.githubusercontent.com/Azure/azure-policy/master/samples/DataLake/data-lake-store-encryption/azurepolicy.rules.json' --params 'https://raw.githubusercontent.com/Azure/azure-policy/master/samples/DataLake/data-lake-store-encryption/azurepolicy.parameters.json' --mode Indexed
az policy assignment create --name <assignmentname> --scope <scope> --policy "data-lake-store-encryption"