Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Update file names for plugins for remediation guides #721

Merged
Show file tree
Hide file tree
Changes from all commits
Commits
File filter

Filter by extension

Filter by extension

Conversations
Failed to load comments.
Loading
Jump to
Jump to file
Failed to load files.
Loading
Diff view
Diff view
2 changes: 1 addition & 1 deletion README.md
Original file line number Diff line number Diff line change
Expand Up @@ -188,7 +188,7 @@ This repository is an extension of CloudSploit's [open-source scanning engine](h
* [Security Configuration Monitoring](en/azure/defender/security-configuration-monitoring.md)
* [Security Contact Additional Email](en/azure/defender/security-contact-additional-email.md)
* [Security Contacts Enabled](en/azure/defender/security-contacts-enabled.md)
* [Security Contact Enabled for Subscription Owner](en/azure/defender/security-contacts-enabled-for-subscription-owner.md)
* [Security Contact Enabled for Subscription Owner](en/azure/defender/security-contact-enabled-for-subscription-owner.md)
* [Standard Pricing Enabled](en/azure/defender/standard-pricing-enabled.md)
* File Service
* [File Service All Access ACL](en/azure/fileservice/file-service-all-access-acl.md)
Expand Down
14 changes: 7 additions & 7 deletions en/azure/defender/security-contact-additional-email.md
Original file line number Diff line number Diff line change
Expand Up @@ -18,11 +18,11 @@


1. Log in to the Microsoft Azure Management Console.
2. Select the "Search resources, services, and docs" option at the top and search for "Microsoft Defender for Cloud". </br> <img src="/resources/azure/defender/security-contacts-additional-email/step2.png"/>
3. On the "Microsoft Defender for Cloud" page, scroll down the left navigation panel and choose "Environment Settings". </br> <img src="/resources/azure/defender/security-contacts-additional-email/step3.png"/>
4. On the "Environment Settings" page, select the "Subscription" by clicking on the "Name". </br> <img src="/resources/azure/defender/security-contacts-additional-email/step4.png"/>
5. Under the "Settings | Defender plans " page, click on the "Email Notifications". </br> <img src="/resources/azure/defender/security-contacts-additional-email/step5.png"/>
6. On the "Settings | Email notifications" page under "Email recipients" if the "Additional email addresses (separated by commas)" is empty then the security contacts additional are not configured to be sent to the admins. </br> <img src="/resources/azure/defender/security-contacts-additional-email/step6.png"/>
7. On the "Additional email addresses (separated by commas) section add the additional email addresses. </br> <img src="/resources/azure/defender/security-contacts-additional-email/step7.png"/>
8. Under "Notification types" select "High" from the dropdown next to "Notify about alerts with the following severity (or higher). Click on the "Save" button to make the changes. </br> <img src="/resources/azure/defender/security-contacts-additional-email/step8.png"/>
2. Select the "Search resources, services, and docs" option at the top and search for "Microsoft Defender for Cloud". </br> <img src="/resources/azure/defender/security-contact-additional-email/step2.png"/>
3. On the "Microsoft Defender for Cloud" page, scroll down the left navigation panel and choose "Environment Settings". </br> <img src="/resources/azure/defender/security-contact-additional-email/step3.png"/>
4. On the "Environment Settings" page, select the "Subscription" by clicking on the "Name". </br> <img src="/resources/azure/defender/security-contact-additional-email/step4.png"/>
5. Under the "Settings | Defender plans " page, click on the "Email Notifications". </br> <img src="/resources/azure/defender/security-contact-additional-email/step5.png"/>
6. On the "Settings | Email notifications" page under "Email recipients" if the "Additional email addresses (separated by commas)" is empty then the security contacts additional are not configured to be sent to the admins. </br> <img src="/resources/azure/defender/security-contact-additional-email/step6.png"/>
7. On the "Additional email addresses (separated by commas) section add the additional email addresses. </br> <img src="/resources/azure/defender/security-contact-additional-email/step7.png"/>
8. Under "Notification types" select "High" from the dropdown next to "Notify about alerts with the following severity (or higher). Click on the "Save" button to make the changes. </br> <img src="/resources/azure/defender/security-contact-additional-email/step8.png"/>
9. Repeat step number 3 - 8 to ensure to ensure that email notifications are configured to be sent to subscription owners. </br>
Original file line number Diff line number Diff line change
Expand Up @@ -17,11 +17,11 @@
## Detailed Remediation Steps

1. Log in to the Microsoft Azure Management Console.
2. Select the "Search resources, services, and docs" option at the top and search for "Microsoft Defender for Cloud". </br> <img src="/resources/azure/defender/security-contacts-enabled-for-subscription-owner/step2.png"/>
3. On the "Microsoft Defender for Cloud" page, scroll down the left navigation panel and choose "Environment Settings". </br> <img src="/resources/azure/defender/security-contacts-enabled-for-subscription-owner/step3.png"/>
4. On the "Environment Settings" page, select the "Subscription" by clicking on the "Name". </br> <img src="/resources/azure/defender/security-contacts-enabled-for-subscription-owner/step4.png"/>
5. Under the "Settings | Defender plans " page, click on the "Email Notifications". </br> <img src="/resources/azure/defender/security-contacts-enabled-for-subscription-owner/step5.png"/>
6. On the "Settings | Email notifications" page under "Email recipients" if the "Additional email addresses (separated by commas)" is empty and only "owner" is selected in "All users with the following roles" then the defender alerts are not configured to be sent to the admins. </br> <img src="/resources/azure/defender/security-contacts-enabled-for-subscription-owner/step6.png"/>
7. Under "Email recipients", click the dropdown for "All users with the following roles" and check mark "AccountAdmin and "ServiceAdmin" along with owner and enter one or more than one "Email addresses" separated by "comma in section "Additional email addresses (separated by commas)". </br> <img src="/resources/azure/defender/security-contacts-enabled-for-subscription-owner/step7.png"/>
8. Under "Notification types" select "High" from the dropdown next to "Notify about alerts with the following severity (or higher). Click on the "Save" button to make the changes.</br> <img src="/resources/azure/defender/security-contacts-enabled-for-subscription-owner/step8.png"/>
2. Select the "Search resources, services, and docs" option at the top and search for "Microsoft Defender for Cloud". </br> <img src="/resources/azure/defender/security-contact-enabled-for-subscription-owner/step2.png"/>
3. On the "Microsoft Defender for Cloud" page, scroll down the left navigation panel and choose "Environment Settings". </br> <img src="/resources/azure/defender/security-contact-enabled-for-subscription-owner/step3.png"/>
4. On the "Environment Settings" page, select the "Subscription" by clicking on the "Name". </br> <img src="/resources/azure/defender/security-contact-enabled-for-subscription-owner/step4.png"/>
5. Under the "Settings | Defender plans " page, click on the "Email Notifications". </br> <img src="/resources/azure/defender/security-contact-enabled-for-subscription-owner/step5.png"/>
6. On the "Settings | Email notifications" page under "Email recipients" if the "Additional email addresses (separated by commas)" is empty and only "owner" is selected in "All users with the following roles" then the defender alerts are not configured to be sent to the admins. </br> <img src="/resources/azure/defender/security-contact-enabled-for-subscription-owner/step6.png"/>
7. Under "Email recipients", click the dropdown for "All users with the following roles" and check mark "AccountAdmin and "ServiceAdmin" along with owner and enter one or more than one "Email addresses" separated by "comma in section "Additional email addresses (separated by commas)". </br> <img src="/resources/azure/defender/security-contact-enabled-for-subscription-owner/step7.png"/>
8. Under "Notification types" select "High" from the dropdown next to "Notify about alerts with the following severity (or higher). Click on the "Save" button to make the changes.</br> <img src="/resources/azure/defender/security-contact-enabled-for-subscription-owner/step8.png"/>
9. Repeat step number 3 - 8 to ensure to ensure that email notifications are configured to be sent to subscription owners. </br>