You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Copy file name to clipboardexpand all lines: docs/en/baselines/Azure.All.md
+2-2
Original file line number
Diff line number
Diff line change
@@ -4,7 +4,7 @@ Includes all Azure rules.
4
4
5
5
## Rules
6
6
7
-
The following rules are included within `Azure.All`. This baseline includes a total of 411 rules.
7
+
The following rules are included within the `Azure.All` baseline. This baseline includes a total of 411 rules.
8
8
9
9
Name | Synopsis | Severity
10
10
---- | -------- | --------
@@ -259,7 +259,7 @@ Name | Synopsis | Severity
259
259
[Azure.Policy.Descriptors](../rules/Azure.Policy.Descriptors.md) | Policy and initiative definitions should use a display name, description, and category. | Awareness
260
260
[Azure.Policy.ExemptionDescriptors](../rules/Azure.Policy.ExemptionDescriptors.md) | Policy exemptions should use a display name and description. | Awareness
261
261
[Azure.Policy.WaiverExpiry](../rules/Azure.Policy.WaiverExpiry.md) | Configure policy waiver exemptions to expire. | Awareness
262
-
[Azure.PostgreSQL.AAD](../rules/Azure.PostgreSQL.AAD.md) | Use Azure Active Directory (AAD) authentication with Azure Database for PostgreSQL databases. | Critical
262
+
[Azure.PostgreSQL.AAD](../rules/Azure.PostgreSQL.AAD.md) | Use Entra ID authentication with Azure Database for PostgreSQL databases. | Critical
263
263
[Azure.PostgreSQL.AADOnly](../rules/Azure.PostgreSQL.AADOnly.md) | Ensure Azure AD-only authentication is enabled with Azure Database for PostgreSQL databases. | Important
264
264
[Azure.PostgreSQL.AllowAzureAccess](../rules/Azure.PostgreSQL.AllowAzureAccess.md) | Determine if access from Azure services is required. | Important
265
265
[Azure.PostgreSQL.DefenderCloud](../rules/Azure.PostgreSQL.DefenderCloud.md) | Enable Microsoft Defender for Cloud for Azure Database for PostgreSQL. | Important
Copy file name to clipboardexpand all lines: docs/en/baselines/Azure.Default.md
+2-2
Original file line number
Diff line number
Diff line change
@@ -4,7 +4,7 @@ Default baseline for Azure rules.
4
4
5
5
## Rules
6
6
7
-
The following rules are included within `Azure.Default`. This baseline includes a total of 402 rules.
7
+
The following rules are included within the `Azure.Default` baseline. This baseline includes a total of 402 rules.
8
8
9
9
Name | Synopsis | Severity
10
10
---- | -------- | --------
@@ -252,7 +252,7 @@ Name | Synopsis | Severity
252
252
[Azure.Policy.Descriptors](../rules/Azure.Policy.Descriptors.md) | Policy and initiative definitions should use a display name, description, and category. | Awareness
253
253
[Azure.Policy.ExemptionDescriptors](../rules/Azure.Policy.ExemptionDescriptors.md) | Policy exemptions should use a display name and description. | Awareness
254
254
[Azure.Policy.WaiverExpiry](../rules/Azure.Policy.WaiverExpiry.md) | Configure policy waiver exemptions to expire. | Awareness
255
-
[Azure.PostgreSQL.AAD](../rules/Azure.PostgreSQL.AAD.md) | Use Azure Active Directory (AAD) authentication with Azure Database for PostgreSQL databases. | Critical
255
+
[Azure.PostgreSQL.AAD](../rules/Azure.PostgreSQL.AAD.md) | Use Entra ID authentication with Azure Database for PostgreSQL databases. | Critical
256
256
[Azure.PostgreSQL.AADOnly](../rules/Azure.PostgreSQL.AADOnly.md) | Ensure Azure AD-only authentication is enabled with Azure Database for PostgreSQL databases. | Important
257
257
[Azure.PostgreSQL.AllowAzureAccess](../rules/Azure.PostgreSQL.AllowAzureAccess.md) | Determine if access from Azure services is required. | Important
258
258
[Azure.PostgreSQL.DefenderCloud](../rules/Azure.PostgreSQL.DefenderCloud.md) | Enable Microsoft Defender for Cloud for Azure Database for PostgreSQL. | Important
Copy file name to clipboardexpand all lines: docs/en/baselines/Azure.GA_2023_06.md
+6-2
Original file line number
Diff line number
Diff line change
@@ -1,3 +1,7 @@
1
+
---
2
+
obsolete: true
3
+
---
4
+
1
5
# Azure.GA_2023_06
2
6
3
7
<!-- OBSOLETE -->
@@ -6,7 +10,7 @@ Include rules released June 2023 or prior for Azure GA features.
6
10
7
11
## Rules
8
12
9
-
The following rules are included within `Azure.GA_2023_06`. This baseline includes a total of 374 rules.
13
+
The following rules are included within the `Azure.GA_2023_06` baseline. This baseline includes a total of 374 rules.
10
14
11
15
Name | Synopsis | Severity
12
16
---- | -------- | --------
@@ -229,7 +233,7 @@ Name | Synopsis | Severity
229
233
[Azure.Policy.Descriptors](../rules/Azure.Policy.Descriptors.md) | Policy and initiative definitions should use a display name, description, and category. | Awareness
230
234
[Azure.Policy.ExemptionDescriptors](../rules/Azure.Policy.ExemptionDescriptors.md) | Policy exemptions should use a display name and description. | Awareness
231
235
[Azure.Policy.WaiverExpiry](../rules/Azure.Policy.WaiverExpiry.md) | Configure policy waiver exemptions to expire. | Awareness
232
-
[Azure.PostgreSQL.AAD](../rules/Azure.PostgreSQL.AAD.md) | Use Azure Active Directory (AAD) authentication with Azure Database for PostgreSQL databases. | Critical
236
+
[Azure.PostgreSQL.AAD](../rules/Azure.PostgreSQL.AAD.md) | Use Entra ID authentication with Azure Database for PostgreSQL databases. | Critical
233
237
[Azure.PostgreSQL.AADOnly](../rules/Azure.PostgreSQL.AADOnly.md) | Ensure Azure AD-only authentication is enabled with Azure Database for PostgreSQL databases. | Important
234
238
[Azure.PostgreSQL.AllowAzureAccess](../rules/Azure.PostgreSQL.AllowAzureAccess.md) | Determine if access from Azure services is required. | Important
235
239
[Azure.PostgreSQL.DefenderCloud](../rules/Azure.PostgreSQL.DefenderCloud.md) | Enable Microsoft Defender for Cloud for Azure Database for PostgreSQL. | Important
Copy file name to clipboardexpand all lines: docs/en/baselines/Azure.GA_2023_09.md
+6-2
Original file line number
Diff line number
Diff line change
@@ -1,3 +1,7 @@
1
+
---
2
+
obsolete: true
3
+
---
4
+
1
5
# Azure.GA_2023_09
2
6
3
7
<!-- OBSOLETE -->
@@ -6,7 +10,7 @@ Include rules released September 2023 or prior for Azure GA features.
6
10
7
11
## Rules
8
12
9
-
The following rules are included within `Azure.GA_2023_09`. This baseline includes a total of 385 rules.
13
+
The following rules are included within the `Azure.GA_2023_09` baseline. This baseline includes a total of 385 rules.
10
14
11
15
Name | Synopsis | Severity
12
16
---- | -------- | --------
@@ -238,7 +242,7 @@ Name | Synopsis | Severity
238
242
[Azure.Policy.Descriptors](../rules/Azure.Policy.Descriptors.md) | Policy and initiative definitions should use a display name, description, and category. | Awareness
239
243
[Azure.Policy.ExemptionDescriptors](../rules/Azure.Policy.ExemptionDescriptors.md) | Policy exemptions should use a display name and description. | Awareness
240
244
[Azure.Policy.WaiverExpiry](../rules/Azure.Policy.WaiverExpiry.md) | Configure policy waiver exemptions to expire. | Awareness
241
-
[Azure.PostgreSQL.AAD](../rules/Azure.PostgreSQL.AAD.md) | Use Azure Active Directory (AAD) authentication with Azure Database for PostgreSQL databases. | Critical
245
+
[Azure.PostgreSQL.AAD](../rules/Azure.PostgreSQL.AAD.md) | Use Entra ID authentication with Azure Database for PostgreSQL databases. | Critical
242
246
[Azure.PostgreSQL.AADOnly](../rules/Azure.PostgreSQL.AADOnly.md) | Ensure Azure AD-only authentication is enabled with Azure Database for PostgreSQL databases. | Important
243
247
[Azure.PostgreSQL.AllowAzureAccess](../rules/Azure.PostgreSQL.AllowAzureAccess.md) | Determine if access from Azure services is required. | Important
244
248
[Azure.PostgreSQL.DefenderCloud](../rules/Azure.PostgreSQL.DefenderCloud.md) | Enable Microsoft Defender for Cloud for Azure Database for PostgreSQL. | Important
Copy file name to clipboardexpand all lines: docs/en/baselines/Azure.GA_2023_12.md
+2-2
Original file line number
Diff line number
Diff line change
@@ -4,7 +4,7 @@ Include rules released December 2023 or prior for Azure GA features.
4
4
5
5
## Rules
6
6
7
-
The following rules are included within `Azure.GA_2023_12`. This baseline includes a total of 394 rules.
7
+
The following rules are included within the `Azure.GA_2023_12` baseline. This baseline includes a total of 394 rules.
8
8
9
9
Name | Synopsis | Severity
10
10
---- | -------- | --------
@@ -245,7 +245,7 @@ Name | Synopsis | Severity
245
245
[Azure.Policy.Descriptors](../rules/Azure.Policy.Descriptors.md) | Policy and initiative definitions should use a display name, description, and category. | Awareness
246
246
[Azure.Policy.ExemptionDescriptors](../rules/Azure.Policy.ExemptionDescriptors.md) | Policy exemptions should use a display name and description. | Awareness
247
247
[Azure.Policy.WaiverExpiry](../rules/Azure.Policy.WaiverExpiry.md) | Configure policy waiver exemptions to expire. | Awareness
248
-
[Azure.PostgreSQL.AAD](../rules/Azure.PostgreSQL.AAD.md) | Use Azure Active Directory (AAD) authentication with Azure Database for PostgreSQL databases. | Critical
248
+
[Azure.PostgreSQL.AAD](../rules/Azure.PostgreSQL.AAD.md) | Use Entra ID authentication with Azure Database for PostgreSQL databases. | Critical
249
249
[Azure.PostgreSQL.AADOnly](../rules/Azure.PostgreSQL.AADOnly.md) | Ensure Azure AD-only authentication is enabled with Azure Database for PostgreSQL databases. | Important
250
250
[Azure.PostgreSQL.AllowAzureAccess](../rules/Azure.PostgreSQL.AllowAzureAccess.md) | Determine if access from Azure services is required. | Important
251
251
[Azure.PostgreSQL.DefenderCloud](../rules/Azure.PostgreSQL.DefenderCloud.md) | Enable Microsoft Defender for Cloud for Azure Database for PostgreSQL. | Important
Copy file name to clipboardexpand all lines: docs/en/baselines/Azure.MCSB.v1.md
+8-2
Original file line number
Diff line number
Diff line change
@@ -1,3 +1,9 @@
1
+
---
2
+
taxonomy: Azure.MCSB.v1
3
+
export: true
4
+
experimental: true
5
+
---
6
+
1
7
# Azure.MCSB.v1
2
8
3
9
<!-- EXPERIMENTAL -->
@@ -6,7 +12,7 @@ Microsoft Cloud Security Benchmark v1.
6
12
7
13
## Controls
8
14
9
-
The following rules are included within `Azure.MCSB.v1`. This baseline includes a total of 131 rules.
15
+
The following rules are included within the `Azure.MCSB.v1` baseline. This baseline includes a total of 131 rules.
10
16
11
17
Name | Synopsis | Severity
12
18
---- | -------- | --------
@@ -104,7 +110,7 @@ Name | Synopsis | Severity
104
110
[Azure.MySQL.MinTLS](../rules/Azure.MySQL.MinTLS.md) | MySQL DB servers should reject TLS versions older than 1.2. | Critical
105
111
[Azure.MySQL.UseSSL](../rules/Azure.MySQL.UseSSL.md) | Enforce encrypted MySQL connections. | Critical
106
112
[Azure.NSG.Associated](../rules/Azure.NSG.Associated.md) | Network Security Groups (NSGs) should be associated to a subnet or network interface. | Awareness
107
-
[Azure.PostgreSQL.AAD](../rules/Azure.PostgreSQL.AAD.md) | Use Azure Active Directory (AAD) authentication with Azure Database for PostgreSQL databases. | Critical
113
+
[Azure.PostgreSQL.AAD](../rules/Azure.PostgreSQL.AAD.md) | Use Entra ID authentication with Azure Database for PostgreSQL databases. | Critical
108
114
[Azure.PostgreSQL.AADOnly](../rules/Azure.PostgreSQL.AADOnly.md) | Ensure Azure AD-only authentication is enabled with Azure Database for PostgreSQL databases. | Important
109
115
[Azure.PostgreSQL.MinTLS](../rules/Azure.PostgreSQL.MinTLS.md) | PostgreSQL DB servers should reject TLS versions older than 1.2. | Critical
0 commit comments