|
4 | 4 | "policyType": "BuiltIn",
|
5 | 5 | "description": "The Microsoft cloud security benchmark initiative represents the policies and controls implementing security recommendations defined in Microsoft cloud security benchmark, see https://aka.ms/azsecbm. This also serves as the Microsoft Defender for Cloud default policy initiative. You can directly assign this initiative, or manage its policies and compliance results within Microsoft Defender for Cloud.",
|
6 | 6 | "metadata": {
|
7 |
| - "version": "47.6.0", |
| 7 | + "version": "47.7.0", |
8 | 8 | "category": "Security Center"
|
9 | 9 | },
|
10 |
| - "version": "47.6.0", |
| 10 | + "version": "47.7.0", |
11 | 11 | "policyDefinitionGroups": [
|
12 | 12 | {
|
13 | 13 | "name": "Azure_Security_Benchmark_v3.0_NS-1",
|
|
5910 | 5910 | "groupNames": [
|
5911 | 5911 | "Azure_Security_Benchmark_v3.0_PV-4"
|
5912 | 5912 | ]
|
| 5913 | + }, |
| 5914 | + { |
| 5915 | + "policyDefinitionId": "/providers/Microsoft.Authorization/policyDefinitions/71ef260a-8f18-47b7-abcb-62d0673d94dc", |
| 5916 | + "definitionVersion": "1.*.*", |
| 5917 | + "policyDefinitionReferenceId": "cognitiveServicesAccountsShouldHaveLocalAuthenticationMethodsDisabled", |
| 5918 | + "groupNames": [ |
| 5919 | + "Azure_Security_Benchmark_v3.0_IM-1" |
| 5920 | + ] |
| 5921 | + }, |
| 5922 | + { |
| 5923 | + "policyDefinitionId": "/providers/Microsoft.Authorization/policyDefinitions/cddd188c-4b82-4c48-a19d-ddf74ee66a01", |
| 5924 | + "definitionVersion": "3.*.*", |
| 5925 | + "policyDefinitionReferenceId": "cognitiveServicesShouldUsePrivateLink", |
| 5926 | + "groupNames": [ |
| 5927 | + "Azure_Security_Benchmark_v3.0_NS-2" |
| 5928 | + ] |
| 5929 | + }, |
| 5930 | + { |
| 5931 | + "policyDefinitionId": "/providers/Microsoft.Authorization/policyDefinitions/fc4d8e41-e223-45ea-9bf5-eada37891d87", |
| 5932 | + "definitionVersion": "1.*.*", |
| 5933 | + "policyDefinitionReferenceId": "virtualMachinesAndVirtualMachineScaleSetsShouldHaveEncryptionAtHostEnabled", |
| 5934 | + "groupNames": [ |
| 5935 | + "Azure_Security_Benchmark_v3.0_DP-4" |
| 5936 | + ] |
| 5937 | + }, |
| 5938 | + { |
| 5939 | + "policyDefinitionId": "/providers/Microsoft.Authorization/policyDefinitions/797b37f7-06b8-444c-b1ad-fc62867f335a", |
| 5940 | + "definitionVersion": "1.*.*", |
| 5941 | + "policyDefinitionReferenceId": "azureCosmosDBShouldDisablePublicNetworkAccess", |
| 5942 | + "groupNames": [ |
| 5943 | + "Azure_Security_Benchmark_v3.0_NS-2" |
| 5944 | + ] |
| 5945 | + }, |
| 5946 | + { |
| 5947 | + "policyDefinitionId": "/providers/Microsoft.Authorization/policyDefinitions/58440f8a-10c5-4151-bdce-dfbaad4a20b7", |
| 5948 | + "definitionVersion": "1.*.*", |
| 5949 | + "policyDefinitionReferenceId": "cosmosDBAaccountsShouldUsePrivateLink", |
| 5950 | + "groupNames": [ |
| 5951 | + "Azure_Security_Benchmark_v3.0_NS-2" |
| 5952 | + ] |
| 5953 | + }, |
| 5954 | + { |
| 5955 | + "policyDefinitionId": "/providers/Microsoft.Authorization/policyDefinitions/21a6bc25-125e-4d13-b82d-2e19b7208ab7", |
| 5956 | + "definitionVersion": "1.*.*", |
| 5957 | + "policyDefinitionReferenceId": "vPNGatewaysShouldUseOnlyAzureActiveDirectoryAzureADAuthenticationForPointtositeUsers", |
| 5958 | + "groupNames": [ |
| 5959 | + "Azure_Security_Benchmark_v3.0_IM-1" |
| 5960 | + ] |
| 5961 | + }, |
| 5962 | + { |
| 5963 | + "policyDefinitionId": "/providers/Microsoft.Authorization/policyDefinitions/32e6bbec-16b6-44c2-be37-c5b672d103cf", |
| 5964 | + "definitionVersion": "2.*.*", |
| 5965 | + "policyDefinitionReferenceId": "azureSQLDatabaseShouldBeRunningTLSVersion12OrNewer", |
| 5966 | + "groupNames": [ |
| 5967 | + "Azure_Security_Benchmark_v3.0_DP-3", |
| 5968 | + "Azure_Security_Benchmark_v3.0_IM-4" |
| 5969 | + ] |
| 5970 | + }, |
| 5971 | + { |
| 5972 | + "policyDefinitionId": "/providers/Microsoft.Authorization/policyDefinitions/9dfea752-dd46-4766-aed1-c355fa93fb91", |
| 5973 | + "definitionVersion": "1.*.*", |
| 5974 | + "policyDefinitionReferenceId": "azureSQLManagedInstancesShouldDisablePublicNetworkAccess", |
| 5975 | + "groupNames": [ |
| 5976 | + "Azure_Security_Benchmark_v3.0_NS-2" |
| 5977 | + ] |
| 5978 | + }, |
| 5979 | + { |
| 5980 | + "policyDefinitionId": "/providers/Microsoft.Authorization/policyDefinitions/8c6a50c6-9ffd-4ae7-986f-5fa6111f9a54", |
| 5981 | + "definitionVersion": "2.*.*", |
| 5982 | + "policyDefinitionReferenceId": "storageAccountsShouldPreventSharedKeyAccess", |
| 5983 | + "groupNames": [ |
| 5984 | + "Azure_Security_Benchmark_v3.0_IM-1" |
| 5985 | + ] |
5913 | 5986 | }
|
5914 | 5987 | ]
|
5915 | 5988 | },
|
|
0 commit comments