Skip to content

Azure Diagnostic Settings Security Checks

All security checks Aether365 performs for Azure Diagnostic Settings.

IDTitleSeverityFramework
AZURE.162Ensure the storage account containing the container with activity logs is encrypted with Customer Managed Key (CMK)MediumCIS Microsoft Azure Foundations
AZURE.163Ensure that logging for Azure AppService 'HTTP logs' is enabledLowCIS Microsoft Azure Foundations
AZURE.164Ensure Diagnostic Setting captures appropriate categoriesMediumCIS Microsoft Azure Foundations
AZURE.165Ensure that a 'Diagnostic Setting' exists for Subscription Activity LogsMediumCIS Microsoft Azure Foundations
AZURE.166Ensure that logging for Azure Key Vault is 'Enabled'MediumCIS Microsoft Azure Foundations
AZURE.167Ensure that Azure Monitor Resource Logging is Enabled for All Services that Support itMediumCIS Microsoft Azure Foundations
AZURE.168Ensure that Network Security Group Flow logs are captured and sent to Log AnalyticsMediumCIS Microsoft Azure Foundations
Var denne side nyttig?