We are trying to enforce tags on all resources using a custom policy with mode as indexed (only evaluate resource types that support tags). It is working fine for resources that supports tags, but deny the deployment of resource type that doesn't support tags, for example :-publicIPAddresses
Can someone help us with this issue. Thanks in advance.
