Skip to main content

πŸ’Ό 8.11 Ensure Trusted Launch is enabled on Virtual Machines (Automated)

  • Contextual name: πŸ’Ό 8.11 Ensure Trusted Launch is enabled on Virtual Machines (Automated)
  • ID: /frameworks/cis-azure-v3.0.0/08/11
  • Located in: πŸ’Ό 8 Virtual Machines

Description​

When Secure Boot and vTPM are enabled together, they provide a strong foundation for protecting your VM from boot attacks. For example, if an attacker attempts to replace the bootloader with a malicious version, Secure Boot will prevent the VM from booting. If the attacker is able to bypass Secure Boot and install a malicious bootloader, vTPM can be used to detect the intrusion and alert you.

Similar​

Sub Sections​

SectionSub SectionsInternal RulesPoliciesFlags

Policies (1)​

PolicyLogic CountFlags
πŸ“ Azure Virtual Machine Trusted Launch is not enabled 🟒1🟒 x6