Azure_NetworkWatcher_3

Ensure that Network Security Group Flow Log retention period is greater than 90 days

Description

Flow logs enable capturing information about IP traffic flowing in and out of network security groups. Logs can be used to check for anomalies and give insight into suspected breaches.

Remediation

Use the Following command:

1. az network watcher flow-log create –resource-group resourceGroupName –enabled true –nsg nsgName –storage-account storageAccountName –location location

# To configure

2. az network watcher flow-log create –resource-group resourceGroupName –enabled true –nsg nsgName –storage-account storageAccountName –location location –format JSON –log-version 2

Service

Networking

Severity

Medium

Compliance

Mapping

We are now live on AWS Marketplace.
The integrated view of your cloud infrastructure is now easier than ever!