Skip to main content

๐Ÿ’ผ 5 Logging and Monitoring

  • Contextual name: ๐Ÿ’ผ 5 Logging and Monitoring
  • ID: /frameworks/cis-azure-v1.4.0/05
  • Located in: ๐Ÿ’ผ CIS Azure v1.4.0

Descriptionโ€‹

Empty...

Similarโ€‹

  • Internal
    • ID: dec-b-816dbebe

Sub Sectionsโ€‹

SectionSub SectionsInternal RulesPoliciesFlags
๐Ÿ’ผ 5.1 Configuring Diagnostic Settings5
ย ย ย ย ๐Ÿ’ผ 5.1.1 Ensure that a 'Diagnostics Setting' exists - Level 1 (Manual _ Not supported, requires a manual assessment)
ย ย ย ย ๐Ÿ’ผ 5.1.2 Ensure Diagnostic Setting captures appropriate categories - Level 1 (Automated)11
ย ย ย ย ๐Ÿ’ผ 5.1.3 Ensure the storage container storing the activity logs is not publicly accessible - Level 1 (Automated _ Not supported, requires a manual assessment)
ย ย ย ย ๐Ÿ’ผ 5.1.4 Ensure the storage account containing the container with activity logs is encrypted with BYOK (Use Your Own Key) - Level 2 (Automated)11
ย ย ย ย ๐Ÿ’ผ 5.1.5 Ensure that logging for Azure KeyVault is 'Enabled' - Level 1 (Automated)11
๐Ÿ’ผ 5.2 Monitoring using Activity Log Alerts9
ย ย ย ย ๐Ÿ’ผ 5.2.1 Ensure that Activity Log Alert exists for Create Policy Assignment - Level 1 (Automated)11
ย ย ย ย ๐Ÿ’ผ 5.2.2 Ensure that Activity Log Alert exists for Delete Policy Assignment - Level 1 (Automated)11
ย ย ย ย ๐Ÿ’ผ 5.2.3 Ensure that Activity Log Alert exists for Create or Update Network Security Group - Level 1 (Automated)11
ย ย ย ย ๐Ÿ’ผ 5.2.4 Ensure that Activity Log Alert exists for Delete Network Security Group - Level 1 (Automated)11
ย ย ย ย ๐Ÿ’ผ 5.2.5 Ensure that Activity Log Alert exists for Create or Update Network Security Group (Network Security Group Rule) - Level 1 (Automated)
ย ย ย ย ๐Ÿ’ผ 5.2.6 Ensure that activity log alert exists for the Delete Network Security Group Rule - Level 1 (Automated)
ย ย ย ย ๐Ÿ’ผ 5.2.7 Ensure that Activity Log Alert exists for Create or Update Security Solution - Level 1 (Automated)
ย ย ย ย ๐Ÿ’ผ 5.2.8 Ensure that Activity Log Alert exists for Delete Security Solution - Level 1 (Automated)11
ย ย ย ย ๐Ÿ’ผ 5.2.9 Ensure that Activity Log Alert exists for Create or Update or Delete SQL Server Firewall Rule - Level 1 (Automated)
๐Ÿ’ผ 5.3 Ensure that Diagnostic Logs Are Enabled for All Services that Support it. - Level 1 (Manual _ Not supported, requires a manual assessment)