Azure_RedisCache_1

Ensure there are no firewall rules allowing unrestricted access to Redis from other Azure sources

Description

Redis Cache should not be configured to allow unlimited access.If a firewall rule is configured to allow start IP and end IP addresses both from 0.0.0.0/0 then the Redis Cache is open to any Azure source.

Remediation

Perform the following in the Azure Console:

  1. Go to Azure Cache for Redis,
  2. For each Redis Cache Select Firewall.
  3. Delete any Rule that has 0.0.0.0 in it’s start and end ip address.
  4. Select Save.

Default Values:
No firewalls rules are set

References:

  1. https://docs.microsoft.com/en-us/azure/redis-cache/cache-configure#firewall

Service

Database Services

Severity

High

Compliance

Mapping

We are now live on AWS Marketplace.
The integrated view of your cloud infrastructure is now easier than ever!