Ensure only MFA enabled identities can access privileged Virtual Machine
Skills in this repository
CyberStrikeus/CyberStrike - Page 170
SkillsMP has collected 7,442 skills from CyberStrikeus/CyberStrike. Open a skill to review its source and details.
CyberStrikeus/CyberStrikeShowing 40 of 7,442 collected skills.
Ensure Private Virtual Networks are used for Container Instances
Ensure a Managed Identity is used for interactions with other Azure services
Ensure the principle of least privilege is used when assigning roles to a Managed Identity
Ensure SSL is configured for CycleCloud
Ensure 'Microsoft Entra Authentication' is 'Enabled'
Ensure 'Update Channel' is set to 'Stable'
Ensure that 'Allow access only via SSL' is set to 'Yes'
Ensure that 'Minimum TLS version' is set to TLS v1.2 (or higher)
Ensure that 'Access Policies' are Implemented and Reviewed Periodically
Ensure that 'System Assigned Managed Identity' is set to 'On'
Ensure that 'Public Network Access' is 'Disabled'
Ensure Azure Cache for Redis is Using a Private Link
Ensure that Azure Cache for Redis is Using Customer-Managed Keys
Ensure 'Access Keys Authentication' is set to 'Disabled'
Ensure That 'Firewalls & Networks' Is Limited to Use Selected Networks Instead of All Networks
Ensure that Cosmos DB uses Private Endpoints where possible
Ensure that 'disableLocalAuth' is set to 'true'
Ensure 'Public Network Access' is 'Disabled'
Ensure critical data is encrypted with customer-managed keys (CMK)
Ensure the firewall does not allow all network traffic
Ensure that Cosmos DB Logging is Enabled
Ensure Data Factory is encrypted using Customer Managed Keys
Ensure Data Factory is using Managed Identities
Ensure that Data Factory is using Azure Key Vault to store Credentials and Secrets
Ensure that Data Factory is using RBAC to manage privilege assignment
Ensure Azure Database for MySQL uses Customer Managed Keys for Encryption at Rest
Ensure Azure Database for MySQL uses only Microsoft Entra Authentication
Ensure 'Public Network Access' is 'Disabled' for Azure Database for MySQL
Ensure Private Endpoints Are Used for Azure MySQL Databases
Ensure server parameter 'audit_log_enabled' is set to 'ON' for MySQL flexible server
Ensure server parameter 'audit_log_events' has 'CONNECTION' set for MySQL flexible server
Ensure server parameter 'error_server_log_file' is Enabled for MySQL Database Server
Ensure server parameter 'require_secure_transport' is set to 'ON' for MySQL Server
Ensure server parameter 'tls_version' is set to 'TLSv1.2' (or higher) for MySQL flexible server
Ensure Azure Database for PostgreSQL uses Customer Managed Keys for Encryption at Rest
Ensure server parameter 'require_secure_transport' is set to 'ON' for PostgreSQL server
Ensure server parameter 'ssl_min_protocol_version' is set to 'TLSv1.2' or higher for PostgreSQL server
Ensure Azure Database for PostgreSQL uses only Microsoft Entra Authentication
Ensure 'Public Network Access' is 'Disabled' for Azure Database for PostgreSQL