Skip to main content

💼 7.8 Ensure only MFA enabled identities can access privileged Virtual Machine - Level 2 (Automated)

  • ID: /frameworks/cis-azure-v2.1.0/07/08

Description​

Verify identities without MFA that can log in to a privileged virtual machine using separate login credentials. An adversary can leverage the access to move laterally and perform actions with the virtual machine's managed identity. Make sure the virtual machine only has necessary permissions, and revoke the admin-level permissions according to the least privileges principal

Similar​

  • Sections
    • /frameworks/cis-azure-v3.0.0/08/10
  • Internal
    • ID: dec-c-3adaec3e

Similar Sections (Take Policies From)​

SectionSub SectionsInternal RulesPoliciesFlagsCompliance
💼 CIS Azure v3.0.0 → 💼 8.10 Ensure only MFA enabled identities can access privileged Virtual Machine (Manual)no data

Similar Sections (Give Policies To)​

SectionSub SectionsInternal RulesPoliciesFlagsCompliance
💼 CIS Azure v3.0.0 → 💼 8.10 Ensure only MFA enabled identities can access privileged Virtual Machine (Manual)no data

Sub Sections​

SectionSub SectionsInternal RulesPoliciesFlagsCompliance