Skip to main content

💼 7 Networking Services

  • ID: /frameworks/cis-azure-v5.0.0/07

Description​

This section covers security recommendations to follow in order to set networking policies on an Azure subscription.

Similar​

Sub Sections​

SectionSub SectionsInternal RulesPoliciesFlagsCompliance
💼 7.1 Ensure that RDP access from the Internet is evaluated and restricted (Automated)1no data
💼 7.2 Ensure that SSH access from the Internet is evaluated and restricted (Automated)1no data
💼 7.3 Ensure that UDP access from the Internet is evaluated and restricted (Automated)1no data
💼 7.4 Ensure that HTTP(S) access from the Internet is evaluated and restricted (Automated)1no data
💼 7.5 Ensure that network security group flow log retention days is set to greater than or equal to 90 (Automated)1no data
💼 7.6 Ensure that Network Watcher is 'Enabled' for Azure Regions that are in use (Automated)1no data
💼 7.7 Ensure that Public IP addresses are Evaluated on a Periodic Basis (Manual)1no data
💼 7.8 Ensure that virtual network flow log retention days is set to greater than or equal to 90 (Automated)1no data
💼 7.9 Ensure 'Authentication type' is set to 'Azure Active Directory' only for Azure VPN Gateway point-to-site configuration (Manual)1no data
💼 7.10 Ensure Azure Web Application Firewall (WAF) is enabled on Azure Application Gateway (Automated)1no data
💼 7.11 Ensure subnets are associated with network security groups (Automated)1no data
💼 7.12 Ensure the SSL policy's 'Min protocol version' is set to 'TLSv1_2' or higher on Azure Application Gateway (Automated)1no data
💼 7.13 Ensure 'HTTP2' is set to 'Enabled' on Azure Application Gateway (Automated)1no data
💼 7.14 Ensure request body inspection is enabled in Azure Web Application Firewall policy on Azure Application Gateway (Automated)1no data
💼 7.15 Ensure bot protection is enabled in Azure Web Application Firewall policy on Azure Application Gateway (Automated)1no data
💼 7.16 Ensure Azure Network Security Perimeter is used to secure Azure platform-as-a-service resources (Manual)1no data