    Automatically Enforce Expiring Group Memberships?


      Is there some way within ARM to set polices on certain resources (Specifically Active Directory groups in this case) whereby that resource can only be requested for a finite amount of time.  As it stands today when a user goes to request membership in an AD group they have the option to set an expiration date on the resource.



      This is currently dependent on the requestor of the resource selecting this option however.  Is there some way to set a policy to have access automatically expire on these groups?