Skip to content

Latest commit

 

History

History
18 lines (13 loc) · 825 Bytes

storage-accounts-https.md

File metadata and controls

18 lines (13 loc) · 825 Bytes

CloudSploit

AZURE / Storage Accounts / Storage Accounts HTTPS

Quick Info

Plugin Title Storage Accounts HTTPS
Cloud AZURE
Category Storage Accounts
Description Ensures HTTPS-only traffic is allowed to storage account endpoints.
More Info Storage accounts can contain sensitive information and should only be accessed over HTTPS. Enabling the HTTPS-only flag ensures that Azure does not allow HTTP traffic to storage accounts.
AZURE Link https://docs.microsoft.com/en-us/azure/governance/policy/samples/ensure-https-storage-account
Recommended Action Enable the HTTPS-only option for all storage accounts.

Detailed Remediation Steps