CIS Microsoft Azure Foundations v1.3.1 L1

Warning! Audit Deprecated

This audit file has been deprecated and will be removed in a future update.

View Next Version

Audit Details

Name: CIS Microsoft Azure Foundations v1.3.1 L1

Updated: 1/4/2023

Authority: Cloud Services

Plugin: microsoft_azure

Revision: 1.6

Estimated Item Count: 66

Audit Changelog

 
Revision 1.6

Jan 4, 2023

Miscellaneous
  • Audit deprecated.
  • Metadata updated.
  • References updated.
Revision 1.5

Sep 14, 2022

Functional Update
  • 1.3 Ensure guest users are reviewed on a monthly basis
Miscellaneous
  • References updated.
Revision 1.4

Jun 10, 2022

Functional Update
  • 5.1.5 Ensure that logging for Azure KeyVault is 'Enabled'
  • 7.1 Ensure Virtual Machines are utilizing Managed Disks
  • 7.4 Ensure that only approved extensions are installed
  • 7.5 Ensure that the latest OS Patches for all Virtual Machines are applied
  • 7.6 Ensure that the endpoint protection for all Virtual Machines is installed
  • 8.1 Ensure that the expiration date is set on all keys
  • 8.2 Ensure that the expiration date is set on all Secrets
  • 8.4 Ensure the key vault is recoverable
  • 9.10 Ensure FTP deployments are disabled
  • 9.2 Ensure web app redirects all HTTP traffic to HTTPS in Azure App Service
  • 9.3 Ensure web app is using the latest version of TLS encryption
  • 9.5 Ensure that Register with Azure Active Directory is enabled on App Service
  • 9.6 Ensure that 'PHP version' is the latest, if used to run the web app
  • 9.7 Ensure that 'Python version' is the latest, if used to run the web app
  • 9.8 Ensure that 'Java version' is the latest, if used to run the web app
  • 9.9 Ensure that 'HTTP Version' is the latest, if used to run the web app
Revision 1.3

Apr 25, 2022

Miscellaneous
  • References updated.
Revision 1.2

Mar 29, 2022

Miscellaneous
  • Metadata updated.
  • References updated.
Revision 1.1

Nov 16, 2021

Functional Update
  • 5.1.5 Ensure that logging for Azure KeyVault is 'Enabled'
Miscellaneous
  • References updated.