Skip to main content

💼 7 Networking Services

  • ID: /frameworks/cis-azure-v6.0.0/07

Description​

This section covers security recommendations to follow in order to set networking policies on an Azure subscription.

Similar​

Sub Sections​

SectionSub SectionsInternal RulesPoliciesFlagsCompliance
💼 7.1 Ensure that RDP Access from the Internet is Evaluated and Restricted (Automated)1no data
💼 7.2 Ensure that SSH Access from the Internet is Evaluated and Restricted (Automated)1no data
💼 7.3 Ensure that UDP Port Access from the Internet is Evaluated and Restricted (Automated)1no data
💼 7.4 Ensure that HTTP(S) Access from the Internet is Evaluated and Restricted (Automated)1no data
💼 7.5 Ensure that Network Security Group Flow Log Retention Days is Set to Greater than or equal to 90 (Automated)1no data
💼 7.6 Ensure that Network Watcher is 'Enabled' for Azure Regions That are in Use (Automated)1no data
💼 7.7 Ensure that Public IP Addresses are Evaluated on a Periodic Basis (Manual)1no data
💼 7.8 Ensure that Virtual Network Flow Log Retention Days is Set to Greater than or Equal to 90 (Automated)1no data
💼 7.9 Ensure 'Authentication type' is Set to 'Azure Active Directory' only for Azure VPN Gateway Point-to-Site Configuration (Automated)1no data
💼 7.10 Ensure Azure Web Application Firewall (WAF) is Enabled on Azure Application Gateway (Automated)1no data
💼 7.11 Ensure Subnets Are Associated with Network Security Groups (Automated)1no data
💼 7.12 Ensure the SSL Policy's 'Min protocol version' is Set to 'TLSv1_2' or Higher on Azure Application Gateway (Automated)1no data
💼 7.13 Ensure 'HTTP2' is Set to 'Enabled' on Azure Application Gateway (Automated)1no data
💼 7.14 Ensure Request Body Inspection is Enabled in Azure Web Application Firewall policy on Azure Application Gateway (Automated)1no data
💼 7.15 Ensure Bot Protection is Enabled in Azure Web Application Firewall Policy on Azure Application Gateway (Automated)1no data
💼 7.16 Ensure Azure Network Security Perimeter is Used to Secure Azure Platform-as-a-service Resources (Manual)1no data