MS.POWERPLATFORM.3.2v1 - An inbound/outbound connection allowlist SHOULD be configured.

Information

Depending on agency needs an allowlist can be configured to allow cross tenant collaboration via connectors.

NOTE: Nessus has provided the target output to assist in reviewing the benchmark to ensure target compliance.

Solution

1. Follow steps 1 and 2 in MS.POWERPLATFORM.3.1v1 instructions to arrive at the same page.

2. The tenant isolation allowlist can be configured by clicking New tenant rule on the Tenant Isolation page.

3. Select the Direction of the rule and add the Tenant Domain or ID this rule applies to.

4. If Tenant Isolation is switched Off, these rules will not be enforced until tenant isolation is turned On.

See Also

https://github.com/cisagov/ScubaGear/tree/v1.5.0/

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-6b.

Plugin: microsoft_azure

Control ID: 49acc81b1fc3c7bff191278e77262e77dc20d80f072735a87ee67003d9753e8a