Skip to content

Azure Storage Accounts Security Checks

All security checks Aether365 performs for Azure Storage Accounts.

IDTitleSeverityFramework
AZURE.183Ensure that 'Allow Blob Anonymous Access' is set to 'Disabled'MediumCIS Microsoft Azure Foundations
AZURE.184Ensure 'Cross Tenant Replication' is not enabledMediumCIS Microsoft Azure Foundations
AZURE.185Ensure Default Network Access Rule for Storage Accounts is Set to DenyMediumCIS Microsoft Azure Foundations
AZURE.186Ensure Storage logging is Enabled for Blob Service for 'Read', 'Write', and 'Delete' requestsMediumCIS Microsoft Azure Foundations
AZURE.187Ensure Storage Logging is Enabled for Table Service for 'Read', 'Write', and 'Delete' RequestsMediumCIS Microsoft Azure Foundations
AZURE.188Ensure Private Endpoints are used to access Storage AccountsMediumCIS Microsoft Azure Foundations
AZURE.189Ensure that Shared Access Signature Tokens Expire Within an HourMediumCIS Microsoft Azure Foundations
AZURE.190Ensure that storage account access keys are periodically regeneratedMediumCIS Microsoft Azure Foundations
AZURE.191Ensure that 'Enable Infrastructure Encryption' for Each Storage Account in Azure Storage is Set to 'enabled'MediumCIS Microsoft Azure Foundations
AZURE.192Ensure that 'Enable key rotation reminders' is enabled for each Storage AccountMediumCIS Microsoft Azure Foundations
AZURE.193Ensure storage for critical data are encrypted with Customer Managed KeyMediumCIS Microsoft Azure Foundations
AZURE.194Ensure the 'Minimum TLS version' for storage accounts is set to 'Version 1.2'MediumCIS Microsoft Azure Foundations
AZURE.195Ensure that 'Public Network Access' is 'Disabled' for storage accountsMediumCIS Microsoft Azure Foundations
AZURE.196Ensure Storage Logging is Enabled for Queue Service for 'Read', 'Write', and 'Delete' requestsMediumCIS Microsoft Azure Foundations
AZURE.197Ensure that 'Secure transfer required' is set to 'Enabled'MediumCIS Microsoft Azure Foundations
AZURE.198Ensure Soft Delete is Enabled for Azure Containers and Blob StorageMediumCIS Microsoft Azure Foundations
AZURE.199Ensure 'Allow Azure services on the trusted services list to access this storage account' is Enabled for Storage Account AccessMediumCIS Microsoft Azure Foundations
Ця сторінка була корисною?