Skip to main content

πŸ’Ό 8.10 Ensure only MFA enabled identities can access privileged Virtual Machine (Manual)

  • Contextual name: πŸ’Ό 8.10 Ensure only MFA enabled identities can access privileged Virtual Machine (Manual)
  • ID: /frameworks/cis-azure-v3.0.0/08/10
  • Located in: πŸ’Ό 8 Virtual Machines

Description​

Verify identities without MFA that can log in to a privileged virtual machine using separate login credentials. An adversary can leverage the access to move laterally and perform actions with the virtual machine's managed identity. Make sure the virtual machine only has necessary permissions, and revoke the admin-level permissions according to the least privileges principal

Similar​

Sub Sections​

SectionSub SectionsInternal RulesPoliciesFlags

Policies (1)​

PolicyLogic CountFlags
πŸ“ Privileged Azure Virtual Machine is accessed by identities without MFA 🟒🟒 x3