Skip to content

Commit

Permalink
Update monitor-sql-encryption.md
Browse files Browse the repository at this point in the history
  • Loading branch information
shuklaalok87 authored Jul 24, 2019
1 parent 3eb52e4 commit aed9adb
Showing 1 changed file with 10 additions and 1 deletion.
11 changes: 10 additions & 1 deletion en/azure/securitycenter/monitor-sql-encryption.md
Original file line number Diff line number Diff line change
Expand Up @@ -15,4 +15,13 @@
| **Recommended Action** | 1. Go to Azure Security Center 2. Click on Security policy 3. Click on your Subscription Name 4. Look for the "Monitor SQL encryption" setting. 5. Ensure that it is not set to Disabled |

## Detailed Remediation Steps

1. Log into the Microsoft Azure Management Console.
2. Select the "Search resources, services, and docs" option at the top and search for Security Center. </br> <img src="/resources/azure/securitycenter/monitor-sql-encryption/step2.png"/>
3. Scroll down the "Security Center" navigation panel and select the "Security policy" option under "POLICY & COMPLIANCE."</br> <img src="/resources/azure/securitycenter/monitor-sql-encryption/step3.png"/>
4. On the "Policy Management" page under "Name" column select the "Subscription Name" that needs to be verified.</br> <img src="/resources/azure/securitycenter/monitor-sql-encryption/step4.png"/>
5. On the "Security Policy" page scroll down the "Data" section and check the "Monitor unencrypted SQL databases in Azure Security Center". If it's set to "Disabled" then "Monitor SQL Encryption" is not enabled on the selected "Subscription."</br> <img src="/resources/azure/securitycenter/monitor-sql-encryption/step5.png"/>
6. Repeat steps number 2 - 5 to check other "Subscriptions" under the "Security Center."</br>
7. Navigate to the "Security Center", select the "Security policy" and under "Policy Management" seelct the "Subscription" that needs to enable the "SQL Encryption."</br> <img src="/resources/azure/securitycenter/monitor-sql-encryption/step7.png"/>
8. Select the "Subscription" link under the "Security policy" at the top to get into the configuration settings. </br> <img src="/resources/azure/securitycenter/monitor-sql-encryption/step8.png"/>
9. Scroll down the page and under "Parameter" choose the "Monitor unencrypted SQL databases in Azure Security Center" and select the "AuditIfNotExists" option from the dropdown menu and click on the "Save" button at the bottom to make the necessary changes.</br> <img src="/resources/azure/securitycenter/monitor-sql-encryption/step9.png"/>
10. Repeat steps number 7 - 9 to ensures "Monitor SQL Encryption" is enabled in Security Center.</br>

0 comments on commit aed9adb

Please sign in to comment.