Skip to main content

📁 Azure Storage

  • Contextual name: 📁 Storage
  • ID: /ce/ca/azure/storage

Policies (27)

PolicyLogic CountFlagsCompliance
🛡️ Access Key Rotation Reminders are not enabled🟢⚪🟢 x2, ⚪ x1no data
🛡️ Access Keys are not regenerated periodically🟢⚪🟢 x2, ⚪ x1no data
🛡️ Allow Blob Anonymous Access is enabled🟢1🟢 x6no data
🛡️ Blob Containers Soft Delete is not enabled🟢1🟢 x6no data
🛡️ Blob Logging is not enabled for Read, Write, and Delete requests🟢1🟢 x6no data
🛡️ Blob Service Versioning is not enabled🟢1🟢 x6no data
🛡️ Critical Data is not encrypted with customer managed key🟢⚪🟢 x2, ⚪ x1no data
🛡️ Cross Tenant Replication is enabled🟢1🟢 x6no data
🛡️ Default Network Access Rule is not set to Deny🟢1🟢 x6no data
🛡️ Default To OAuth Authentication is not set to Yes🟢1🟢 x6no data
🛡️ File Shares SMB Channel Encryption is not set to AES-256-GCM or higher🟢1🟢 x6no data
🛡️ File Shares SMB Protocol Version is not set to SMB 3.1.1 or higher🟢1🟢 x6no data
🛡️ File Shares Soft Delete is not enabled🟢1🟢 x6no data
🛡️ Minimum TLS Version is not set to TLS 1.2 or higher🟢1🟢 x6no data
🛡️ Private Endpoints are not used🟢1🟢 x6no data
🛡️ Public Network Access is not disabled🟢1🟢 x6no data
🛡️ Queue Logging is not enabled for Read, Write, and Delete requests🟢1🟢 x6no data
🛡️ Require Infrastructure Encryption is not enabled🟢1🟢 x6no data
🛡️ Secure Transfer Required is not enabled🟢1🟢 x6no data
🛡️ Shared Access Signature Tokens do not expire within 1 hour🟢⚪🟢 x2, ⚪ x1no data
🛡️ Shared Key Access is not disabled🟢1🟢 x6no data
🛡️ Storage Account is located in a less cost-effective region🟢1🟢 x6no data
🛡️ Storage Account uses Delete lock🟢⚪🟢 x2, ⚪ x1no data
🛡️ Storage Account uses Locally Redundant Storage replication option🟢1🟢 x6no data
🛡️ Storage Account uses ReadOnly lock🟢⚪🟢 x2, ⚪ x1no data
🛡️ Table Logging is not enabled for Read, Write, and Delete requests🟢1🟢 x6no data
🛡️ Trusted Azure Services are not enabled as networking exceptions🟢1🟢 x6no data