Skip to main content

πŸ“ Azure Subscription Microsoft Defender For Open-Source Relational Databases is not set to On 🟒

  • Contextual name: πŸ“ Microsoft Defender For Open-Source Relational Databases is not set to On 🟒
  • ID: /ce/ca/azure/subscription/microsoft-defender-for-open-source-relational-databases
  • Located in: πŸ“ Azure Subscription

Flags​

Our Metadata​

  • Policy Type: COMPLIANCE_POLICY
  • Policy Category:
    • SECURITY

Logic​

Description​

Open File

Description​

Turning on Microsoft Defender for Open-source relational databases enables threat detection for Open-source relational databases, providing threat intelligence, anomaly detection, and behavior analytics in the Microsoft Defender for Cloud.

Rationale​

Enabling Microsoft Defender for Open-source relational databases allows for greater defense-in-depth, with threat detection provided by the Microsoft Security Response Center (MSRC).

Impact​

Turning on Microsoft Defender for Open-source relational databases incurs an additional cost per resource.

Audit​

From Azure Portal​
  1. Go to Microsoft Defender for Cloud.
  2. Under Management, select Environment Settings.
  3. Click on the subscription name.
  4. Select the Defender plans blade.
  5. Click Select types > in the row for Databases.
  6. Ensure the toggle switch next to Open-source relational databases is set to On.
From Azure CLI​

Run the following command:

az security pricing show -n OpenSourceRelationalDatabases --query pricingTier
From PowerShell​

... see more

Remediation​

Open File

Remediation​

From Azure Portal​

  1. Go to Microsoft Defender for Cloud.
  2. Under Management, select Environment Settings.
  3. Click on the subscription name.
  4. Select the Defender plans blade.
  5. Click Select types > in the row for Databases.
  6. Set the toggle switch next to Open-source relational databases to On.
  7. Select Continue.
  8. Select Save.

From Azure CLI​

Run the following command:

az security pricing create -n 'OpenSourceRelationalDatabases' --tier 'standard'

From PowerShell​

Use the below command to enable Standard pricing tier for Open-source relational databases:

set-azsecuritypricing -name "OpenSourceRelationalDatabases" -pricingtier "Standard"

policy.yaml​

Open File

Linked Framework Sections​

SectionSub SectionsInternal RulesPoliciesFlags
πŸ’Ό CIS Azure v2.1.0 β†’ πŸ’Ό 2.1.5 Ensure That Microsoft Defender for Open-Source Relational Databases Is Set To 'On' - Level 2 (Automated)1
πŸ’Ό CIS Azure v3.0.0 β†’ πŸ’Ό 3.1.7.2 Ensure That Microsoft Defender for Open-Source Relational Databases Is Set To 'On' (Automated)1
πŸ’Ό Cloudaware Framework β†’ πŸ’Ό Microsoft Defender Configuration26