cis-azure-storage-17.15
Ensure Azure Resource Manager ReadOnly locks are considered for Azure Storage Accounts
Browse reusable Agent Skills, each with a clear purpose and practical guidance.
Ensure Azure Resource Manager ReadOnly locks are considered for Azure Storage Accounts
Ensure Redundancy is set to 'geo-redundant storage (GRS)' on critical Azure Storage Accounts
Ensure Private Endpoints are used to access Storage Accounts
Ensure that 'Public Network Access' is 'Disabled' for storage accounts
Ensure that 'Enable Infrastructure Encryption' for Each Storage Account in Azure Storage is Set to 'enabled'
Ensure 'Allow Azure services on the trusted services list to access this storage account' is Enabled for Storage Account Access
Ensure Soft Delete is Enabled for Azure Containers and Blob Storage
Ensure Storage Logging is Enabled for Queue Service for 'Read', 'Write', and 'Delete' requests
Ensure stored access policies (SAP) are used when generating shared access signature (SAS) tokens
Ensure Storage Explorer is using the latest version