Ensure 'Public Network Access' is 'Disabled' for storage accounts
Skills in this repository
CyberStrikeus/CyberStrike - Page 175
SkillsMP has collected 7,442 skills from CyberStrikeus/CyberStrike. Open a skill to review its source and details.
CyberStrikeus/CyberStrikeShowing 40 of 7,442 collected skills.
Ensure default network access rule for storage accounts is set to deny
Ensure 'Default to Microsoft Entra authorization in the Azure portal' is set to 'Enabled'
Ensure 'Secure transfer required' is set to 'Enabled'
Ensure 'Allow Azure services on the trusted services list to access this storage account' is Enabled for Storage Account Access
Ensure the 'Minimum TLS version' for storage accounts is set to 'Version 1.2'
Ensure 'Cross Tenant Replication' is not enabled
Ensure 'Allow Blob Anonymous Access' is set to 'Disabled'
Ensure Azure Resource Manager Delete locks are applied to Azure Storage Accounts
Ensure 'Encryption key source' is set to 'Customer Managed Key' for Azure NetApp Files accounts
Ensure 'Allowed Protocols' for shared access signature (SAS) tokens is set to 'HTTPS Only'
Ensure that shared access signature (SAS) tokens expire within an hour
Ensure that soft delete for blobs on Azure Blob Storage storage accounts is Enabled
Ensure stored access policies (SAP) are used when generating shared access signature (SAS) tokens
Ensure 'Versioning' is set to 'Enabled' on Azure Blob Storage storage accounts
Ensure locked immutability policies are used for containers storing business-critical blob data
Ensure double encryption is used for Azure Data Box in high-security environments
Ensure 'Public network access' is set to 'Disabled' on Azure Elastic SAN
Ensure customer-managed keys (CMK) are used to encrypt data at rest on Azure Elastic SAN volume groups
Ensure 'Allowed Protocols' for shared access signature (SAS) tokens is set to 'HTTPS Only'
Ensure that shared access signature (SAS) tokens expire within an hour
Ensure stored access policies (SAP) are used when generating shared access signature (SAS) tokens
Ensure that 'Enable key rotation reminders' is enabled for each Storage Account
Ensure 'Allowed Protocols' for shared access signature (SAS) tokens is set to 'HTTPS Only'
Ensure that Storage Account Access Keys are Periodically Regenerated
Ensure that shared access signature (SAS) tokens expire within an hour
Ensure 'Allow storage account key access' for Azure Storage Accounts is 'Disabled'
Ensure Storage for Critical Data are Encrypted with Customer Managed Keys (CMK)
Ensure Storage Logging is Enabled for Table Service for 'Read', 'Write', and 'Delete' Requests
Ensure the 'Minimum TLS version' for storage accounts is set to 'Version 1.2'
Ensure 'Cross Tenant Replication' is not enabled
Ensure that 'Allow Blob Anonymous Access' is set to 'Disabled'
Ensure Azure Resource Manager Delete locks are applied to Azure Storage Accounts
Ensure Azure Resource Manager ReadOnly locks are considered for Azure Storage Accounts
Ensure Redundancy is set to 'geo-redundant storage (GRS)' on critical Azure Storage Accounts
Ensure Private Endpoints are used to access Storage Accounts
Ensure that 'Public Network Access' is 'Disabled' for storage accounts
Ensure Default Network Access Rule for Storage Accounts is Set to Deny
Ensure that 'Secure transfer required' is set to 'Enabled'
Ensure that 'Enable Infrastructure Encryption' for Each Storage Account in Azure Storage is Set to 'enabled'