Infrastructure Security |
json |
MEDIUM |
Ensure Known internal web port (Tcp:8000) is not exposed to public for Azure Network Security Rule |
AC_AZURE_0528 |
Infrastructure Security |
json |
LOW |
Ensure NetBIOS Name Service (Udp:137) is not exposed to private hosts more than 32 for Azure Network Security Rule |
AC_AZURE_0482 |
Infrastructure Security |
json |
LOW |
Ensure Microsoft-DS (Tcp:445) is not exposed to private hosts more than 32 for Azure Network Security Rule |
AC_AZURE_0494 |
Infrastructure Security |
json |
LOW |
Ensure MSSQL Debugger (Tcp:135) is not exposed to private hosts more than 32 for Azure Network Security Rule |
AC_AZURE_0512 |
Infrastructure Security |
json |
HIGH |
Ensure PostgreSQL (Udp:5432) is not exposed to entire internet for Azure Network Security Rule |
AC_AZURE_0457 |
Infrastructure Security |
json |
MEDIUM |
Ensure Memcached SSL (Tcp:11215) is not exposed to public for Azure Network Security Rule |
AC_AZURE_0504 |
Infrastructure Security |
json |
MEDIUM |
Ensure SQL Server Analysis (Tcp:2382) is not exposed to public for Azure Network Security Rule |
AC_AZURE_0441 |
Infrastructure Security |
json |
LOW |
Ensure POP3 (Tcp:110) is not exposed to private hosts more than 32 for Azure Network Security Rule |
AC_AZURE_0461 |
Infrastructure Security |
json |
LOW |
Ensure Known internal web port (Tcp:8080) is not exposed to private hosts more than 32 for Azure Network Security Rule |
AC_AZURE_0524 |
Infrastructure Security |
json |
HIGH |
Ensure SaltStack Master (Tcp:4505) is not exposed to entire internet for Azure Network Security Rule |
AC_AZURE_0436 |
Infrastructure Security |
json |
MEDIUM |
Ensure NetBIOS Datagram Service (Udp:138) is not exposed to public for Azure Network Security Rule |
AC_AZURE_0477 |
Infrastructure Security |
json |
HIGH |
Ensure Hadoop Name Node (Tcp:9000) is not exposed to entire internet for Azure Network Security Rule |
AC_AZURE_0532 |
Infrastructure Security |
json |
MEDIUM |
Ensure Memcached SSL (Udp:11215) is not exposed to public for Azure Network Security Rule |
AC_AZURE_0498 |
Infrastructure Security |
json |
MEDIUM |
Ensure CIFS / SMB (Tcp:3020) is not exposed to public for Azure Network Security Rule |
AC_AZURE_0271 |
Infrastructure Security |
json |
HIGH |
Ensure Memcached SSL (Tcp:11214) is not exposed to entire internet for Azure Network Security Rule |
AC_AZURE_0508 |
Infrastructure Security |
json |
LOW |
Ensure MSSQL Server (Tcp:1433) is not exposed to private hosts more than 32 for Azure Network Security Rule |
AC_AZURE_0509 |
Infrastructure Security |
json |
HIGH |
Ensure CIFS / SMB (Tcp:3020) is not exposed to entire internet for Azure Network Security Rule |
AC_AZURE_0270 |
Infrastructure Security |
json |
LOW |
Ensure NetBIOS Datagram Service (Udp:138) is not exposed to private hosts more than 32 for Azure Network Security Rule |
AC_AZURE_0476 |
Infrastructure Security |
json |
LOW |
Ensure DNS (Udp:53) is not exposed to private hosts more than 32 for Azure Network Security Rule |
AC_AZURE_0533 |
Infrastructure Security |
json |
HIGH |
Ensure Memcached SSL (Udp:11215) is not exposed to entire internet for Azure Network Security Rule |
AC_AZURE_0499 |
Infrastructure Security |
json |
LOW |
Ensure server is not exposed to private hosts more than 32 for Azure Network Security Rule |
AC_AZURE_0421 |
Infrastructure Security |
json |
LOW |
Ensure SQL Server Analysis (Tcp:2383) is not exposed to private hosts more than 32 for Azure Network Security Rule |
AC_AZURE_0437 |
Infrastructure Security |
json |
HIGH |
Ensure PostgreSQL (Tcp:5432) is not exposed to entire internet for Azure Network Security Rule |
AC_AZURE_0460 |
Infrastructure Security |
json |
MEDIUM |
Ensure Known internal web port (Tcp:8080) is not exposed to public for Azure Network Security Rule |
AC_AZURE_0525 |
Infrastructure Security |
json |
HIGH |
Ensure Memcached SSL (Tcp:11215) is not exposed to entire internet for Azure Network Security Rule |
AC_AZURE_0505 |
Infrastructure Security |
json |
LOW |
Ensure SQL Server Analysis (Tcp:2382) is not exposed to private hosts more than 32 for Azure Network Security Rule |
AC_AZURE_0440 |
Infrastructure Security |
json |
HIGH |
Ensure SSH (Tcp:22) is not exposed to entire internet for Azure Network Security Rule |
AC_AZURE_0285 |
Infrastructure Security |
json |
MEDIUM |
Ensure MSSQL Debugger (Tcp:135) is not exposed to public for Azure Network Security Rule |
AC_AZURE_0513 |
Infrastructure Security |
json |
MEDIUM |
Ensure PostgreSQL (Udp:5432) is not exposed to public for Azure Network Security Rule |
AC_AZURE_0456 |
Infrastructure Security |
json |
MEDIUM |
Ensure Microsoft-DS (Tcp:445) is not exposed to public for Azure Network Security Rule |
AC_AZURE_0495 |
Infrastructure Security |
json |
HIGH |
Ensure that RDP access is restricted from the internet for Azure Network Security Rule |
AC_AZURE_0342 |
Infrastructure Security |
json |
HIGH |
Ensure Known internal web port (Tcp:8000) is not exposed to entire internet for Azure Network Security Rule |
AC_AZURE_0529 |
Infrastructure Security |
json |
MEDIUM |
Ensure NetBIOS Name Service (Udp:137) is not exposed to public for Azure Network Security Rule |
AC_AZURE_0483 |
Infrastructure Security |
json |
LOW |
Ensure Oracle DB SSL (Tcp:2484) is not exposed to private hosts more than 32 for Azure Network Security Rule |
AC_AZURE_0467 |
Infrastructure Security |
json |
LOW |
Ensure MySQL (Tcp:3306) is not exposed to private hosts more than 32 for Azure Network Security Rule |
AC_AZURE_0488 |
Infrastructure Security |
json |
MEDIUM |
Ensure LDAP SSL (Tcp:636) is not exposed to public for Azure Network Security Rule |
AC_AZURE_0522 |
Infrastructure Security |
json |
HIGH |
Ensure Telnet (Tcp:23) is not exposed to entire internet for Azure Network Security Rule |
AC_AZURE_0430 |
Infrastructure Security |
json |
MEDIUM |
Ensure VNC Listener (Tcp:5500) is not exposed to public for Azure Network Security Rule |
AC_AZURE_0426 |
Infrastructure Security |
json |
MEDIUM |
Ensure NetBIOS Session Service (Udp:139) is not exposed to public for Azure Network Security Rule |
AC_AZURE_0471 |
Infrastructure Security |
json |
MEDIUM |
Ensure DNS (Udp:53) is not exposed to public for Azure Network Security Rule |
AC_AZURE_0534 |
Infrastructure Security |
json |
LOW |
Ensure MSSQL Admin (Tcp:1434) is not exposed to private hosts more than 32 for Azure Network Security Rule |
AC_AZURE_0518 |
Infrastructure Security |
json |
HIGH |
Ensure NetBIOS Name Service (Udp:137) is not exposed to entire internet for Azure Network Security Rule |
AC_AZURE_0484 |
Infrastructure Security |
json |
MEDIUM |
Ensure Mongo Web Portal (Tcp:27018) is not exposed to public for Azure Network Security Rule |
AC_AZURE_0492 |
Infrastructure Security |
json |
HIGH |
Ensure MSSQL Debugger (Tcp:135) is not exposed to entire internet for Azure Network Security Rule |
AC_AZURE_0514 |
Infrastructure Security |
json |
HIGH |
Ensure Puppet Master (Tcp:8140) is not exposed to entire internet for Azure Network Security Rule |
AC_AZURE_0451 |
Infrastructure Security |
json |
HIGH |
Ensure Memcached SSL (Udp:11214) is not exposed to entire internet for Azure Network Security Rule |
AC_AZURE_0502 |
Infrastructure Security |
json |
MEDIUM |
Ensure SMTP (Tcp:25) is not exposed to public for Azure Network Security Rule |
AC_AZURE_0447 |
Infrastructure Security |
json |
LOW |
Ensure Memcached SSL (Tcp:11215) is not exposed to private hosts more than 32 for Azure Network Security Rule |
AC_AZURE_0503 |
Infrastructure Security |
json |
LOW |
Ensure SMTP (Tcp:25) is not exposed to private hosts more than 32 for Azure Network Security Rule |
AC_AZURE_0446 |
Infrastructure Security |
json |
LOW |
Ensure MSSQL Browser (Udp:1434) is not exposed to private hosts more than 32 for Azure Network Security Rule |
AC_AZURE_0515 |
Infrastructure Security |
json |
MEDIUM |
Ensure Puppet Master (Tcp:8140) is not exposed to public for Azure Network Security Rule |
AC_AZURE_0450 |
Infrastructure Security |
json |
HIGH |
Ensure Mongo Web Portal (Tcp:27018) is not exposed to entire internet for Azure Network Security Rule |
AC_AZURE_0493 |
Infrastructure Security |
json |
LOW |
Ensure NetBIOS Name Service (Tcp:137) is not exposed to private hosts more than 32 for Azure Network Security Rule |
AC_AZURE_0485 |
Infrastructure Security |
json |
HIGH |
Ensure Cassandra OpsCenter (Tcp:61621) is not exposed to entire internet for Azure Network Security Rule |
AC_AZURE_0276 |
Infrastructure Security |
json |
MEDIUM |
Ensure MSSQL Admin (Tcp:1434) is not exposed to public for Azure Network Security Rule |
AC_AZURE_0519 |
Infrastructure Security |
json |
LOW |
Ensure NetBIOS Session Service (Udp:139) is not exposed to private hosts more than 32 for Azure Network Security Rule |
AC_AZURE_0470 |
Infrastructure Security |
json |
HIGH |
Ensure DNS (Udp:53) is not exposed to entire internet for Azure Network Security Rule |
AC_AZURE_0535 |
Infrastructure Security |
json |
HIGH |
Ensure VNC Listener (Tcp:5500) is not exposed to entire internet for Azure Network Security Rule |
AC_AZURE_0427 |
Infrastructure Security |
json |
LOW |
Ensure SaltStack Master (Tcp:4506) is not exposed to private hosts more than 32 for Azure Network Security Rule |
AC_AZURE_0431 |
Infrastructure Security |
json |
HIGH |
Ensure Oracle DB SSL (Udp:2484) is not exposed to entire internet for Azure Network Security Rule |
AC_AZURE_0466 |
Infrastructure Security |
json |
MEDIUM |
Ensure MySQL (Tcp:3306) is not exposed to public for Azure Network Security Rule |
AC_AZURE_0489 |
Infrastructure Security |
json |
HIGH |
Ensure LDAP SSL (Tcp:636) is not exposed to entire internet for Azure Network Security Rule |
AC_AZURE_0523 |
Infrastructure Security |
json |
LOW |
Ensure Puppet Master (Tcp:8140) is not exposed to private hosts more than 32 for Azure Network Security Rule |
AC_AZURE_0449 |
Infrastructure Security |
json |
LOW |
Ensure Cassandra (Tcp:7001) is not exposed to private hosts more than 32 for Azure Network Security Rule |
AC_AZURE_0275 |
Infrastructure Security |
json |
LOW |
Ensure Cassandra OpsCenter (Tcp:61621) is not exposed to private hosts more than 32 for Azure Network Security Rule |
AC_AZURE_0536 |
Infrastructure Security |
json |
LOW |
Ensure NetBIOS Session Service (Tcp:139) is not exposed to private hosts more than 32 for Azure Network Security Rule |
AC_AZURE_0473 |
Infrastructure Security |
json |
HIGH |
Ensure VNC Server (Tcp:5900) is not exposed to entire internet for Azure Network Security Rule |
AC_AZURE_0424 |
Infrastructure Security |
json |
MEDIUM |
Ensure SaltStack Master (Tcp:4506) is not exposed to public for Azure Network Security Rule |
AC_AZURE_0432 |
Infrastructure Security |
json |
HIGH |
Ensure MSSQL Admin (Tcp:1434) is not exposed to entire internet for Azure Network Security Rule |
AC_AZURE_0520 |
Infrastructure Security |
json |
MEDIUM |
Ensure Oracle DB SSL (Udp:2484) is not exposed to public for Azure Network Security Rule |
AC_AZURE_0465 |
Infrastructure Security |
json |
HIGH |
Ensure SNMP (Udp:161) is not exposed to entire internet for Azure Network Security Rule |
AC_AZURE_0445 |
Infrastructure Security |
json |
LOW |
Ensure Memcached SSL (Udp:11214) is not exposed to private hosts more than 32 for Azure Network Security Rule |
AC_AZURE_0500 |
Infrastructure Security |
json |
MEDIUM |
Ensure Prevalent known internal port (Tcp:3000) is not exposed to public for Azure Network Security Rule |
AC_AZURE_0453 |
Infrastructure Security |
json |
MEDIUM |
Ensure MSSQL Browser (Udp:1434) is not exposed to public for Azure Network Security Rule |
AC_AZURE_0516 |
Infrastructure Security |
json |
HIGH |
Ensure MySQL (Tcp:3306) is not exposed to entire internet for Azure Network Security Rule |
AC_AZURE_0490 |
Infrastructure Security |
json |
LOW |
Ensure Telnet (Tcp:23) is not exposed to private hosts more than 32 for Azure Network Security Rule |
AC_AZURE_0428 |
Infrastructure Security |
json |
MEDIUM |
Ensure NetBIOS Name Service (Tcp:137) is not exposed to public for Azure Network Security Rule |
AC_AZURE_0486 |
Infrastructure Security |
json |
HIGH |
Ensure Oracle DB SSL (Tcp:2484) is not exposed to entire internet for Azure Network Security Rule |
AC_AZURE_0469 |
Infrastructure Security |
json |
HIGH |
Ensure NetBIOS Name Service (Tcp:137) is not exposed to entire internet for Azure Network Security Rule |
AC_AZURE_0487 |
Infrastructure Security |
json |
MEDIUM |
Ensure Oracle DB SSL (Tcp:2484) is not exposed to public for Azure Network Security Rule |
AC_AZURE_0468 |
Infrastructure Security |
json |
MEDIUM |
Ensure Telnet (Tcp:23) is not exposed to public for Azure Network Security Rule |
AC_AZURE_0429 |
Infrastructure Security |
json |
LOW |
Ensure Mongo Web Portal (Tcp:27018) is not exposed to private hosts more than 32 for Azure Network Security Rule |
AC_AZURE_0491 |
Infrastructure Security |
json |
LOW |
Ensure Prevalent known internal port (Tcp:3000) is not exposed to private hosts more than 32 for Azure Network Security Rule |
AC_AZURE_0452 |
Infrastructure Security |
json |
HIGH |
Ensure MSSQL Browser (Udp:1434) is not exposed to entire internet for Azure Network Security Rule |
AC_AZURE_0517 |
Infrastructure Security |
json |
MEDIUM |
Ensure SNMP (Udp:161) is not exposed to public for Azure Network Security Rule |
AC_AZURE_0444 |
Infrastructure Security |
json |
MEDIUM |
Ensure Memcached SSL (Udp:11214) is not exposed to public for Azure Network Security Rule |
AC_AZURE_0501 |
Infrastructure Security |
json |
LOW |
Ensure LDAP SSL (Tcp:636) is not exposed to private hosts more than 32 for Azure Network Security Rule |
AC_AZURE_0521 |
Infrastructure Security |
json |
LOW |
Ensure Oracle DB SSL (Udp:2484) is not exposed to private hosts more than 32 for Azure Network Security Rule |
AC_AZURE_0464 |
Infrastructure Security |
json |
HIGH |
Ensure SaltStack Master (Tcp:4506) is not exposed to entire internet for Azure Network Security Rule |
AC_AZURE_0433 |
Infrastructure Security |
json |
LOW |
Ensure VNC Listener (Tcp:5500) is not exposed to private hosts more than 32 for Azure Network Security Rule |
AC_AZURE_0425 |
Infrastructure Security |
json |
MEDIUM |
Ensure Cassandra OpsCenter (Tcp:61621) is not exposed to public for Azure Network Security Rule |
AC_AZURE_0537 |
Infrastructure Security |
json |
HIGH |
Ensure NetBIOS Session Service (Udp:139) is not exposed to entire internet for Azure Network Security Rule |
AC_AZURE_0472 |
Infrastructure Security |
json |
MEDIUM |
Ensure Cassandra (Tcp:7001) is not exposed to public for Azure Network Security Rule |
AC_AZURE_0274 |
Infrastructure Security |
json |
HIGH |
Ensure SMTP (Tcp:25) is not exposed to entire internet for Azure Network Security Rule |
AC_AZURE_0448 |
Infrastructure Security |
json |
LOW |
Ensure SNMP (Udp:161) is not exposed to private hosts more than 32 for Azure Network Security Rule |
AC_AZURE_0443 |
Infrastructure Security |
json |
LOW |
Ensure Memcached SSL (Tcp:11214) is not exposed to private hosts more than 32 for Azure Network Security Rule |
AC_AZURE_0506 |
Infrastructure Security |
json |
MEDIUM |
Ensure SSH (Tcp:22) is not exposed to public for Azure Network Security Rule |
AC_AZURE_0286 |
Infrastructure Security |
json |
LOW |
Ensure PostgreSQL (Udp:5432) is not exposed to private hosts more than 32 for Azure Network Security Rule |
AC_AZURE_0455 |
Infrastructure Security |
json |
MEDIUM |
Ensure MSSQL Server (Tcp:1433) is not exposed to public for Azure Network Security Rule |
AC_AZURE_0510 |
Infrastructure Security |
json |
HIGH |
Ensure Microsoft-DS (Tcp:445) is not exposed to entire internet for Azure Network Security Rule |
AC_AZURE_0496 |
Infrastructure Security |
json |
LOW |
Ensure NetBIOS Datagram Service (Tcp:138) is not exposed to private hosts more than 32 for Azure Network Security Rule |
AC_AZURE_0479 |
Infrastructure Security |
json |
HIGH |
Ensure that request initiated from all ports () for all destination ports () is restricted from the internet for Azure Network Security Rule |
AC_AZURE_0357 |
Infrastructure Security |
json |
MEDIUM |
Ensure SQL Server Analysis (Tcp:2383) is not exposed to public for Azure Network Security Rule |
AC_AZURE_0438 |
Infrastructure Security |
json |
MEDIUM |
Ensure NetBIOS Datagram Service (Tcp:138) is not exposed to public for Azure Network Security Rule |
AC_AZURE_0480 |
Infrastructure Security |
json |
HIGH |
Ensure Cassandra (Tcp:7001) is not exposed to entire internet for Azure Network Security Rule |
AC_AZURE_0273 |
Infrastructure Security |
json |
MEDIUM |
Ensure PostgreSQL (Tcp:5432) is not exposed to public for Azure Network Security Rule |
AC_AZURE_0459 |
Infrastructure Security |
json |
LOW |
Ensure Hadoop Name Node (Tcp:9000) is not exposed to private hosts more than 32 for Azure Network Security Rule |
AC_AZURE_0530 |
Infrastructure Security |
json |
HIGH |
Ensure NetBIOS Session Service (Tcp:139) is not exposed to entire internet for Azure Network Security Rule |
AC_AZURE_0475 |
Infrastructure Security |
json |
LOW |
Ensure VNC Server (Tcp:5900) is not exposed to private hosts more than 32 for Azure Network Security Rule |
AC_AZURE_0422 |
Infrastructure Security |
json |
LOW |
Ensure SaltStack Master (Tcp:4505) is not exposed to private hosts more than 32 for Azure Network Security Rule |
AC_AZURE_0434 |
Infrastructure Security |
json |
HIGH |
Ensure Known internal web port (Tcp:8080) is not exposed to entire internet for Azure Network Security Rule |
AC_AZURE_0526 |
Infrastructure Security |
json |
HIGH |
Ensure POP3 (Tcp:110) is not exposed to entire internet for Azure Network Security Rule |
AC_AZURE_0463 |
Infrastructure Security |
json |
LOW |
Ensure Known internal web port (Tcp:8000) is not exposed to private hosts more than 32 for Azure Network Security Rule |
AC_AZURE_0527 |
Infrastructure Security |
json |
MEDIUM |
Ensure POP3 (Tcp:110) is not exposed to public for Azure Network Security Rule |
AC_AZURE_0462 |
Infrastructure Security |
json |
MEDIUM |
Ensure SaltStack Master (Tcp:4505) is not exposed to public for Azure Network Security Rule |
AC_AZURE_0435 |
Infrastructure Security |
json |
MEDIUM |
Ensure VNC Server (Tcp:5900) is not exposed to public for Azure Network Security Rule |
AC_AZURE_0423 |
Infrastructure Security |
json |
MEDIUM |
Ensure Hadoop Name Node (Tcp:9000) is not exposed to public for Azure Network Security Rule |
AC_AZURE_0531 |
Infrastructure Security |
json |
MEDIUM |
Ensure NetBIOS Session Service (Tcp:139) is not exposed to public for Azure Network Security Rule |
AC_AZURE_0474 |
Infrastructure Security |
json |
LOW |
Ensure PostgreSQL (Tcp:5432) is not exposed to private hosts more than 32 for Azure Network Security Rule |
AC_AZURE_0458 |
Infrastructure Security |
json |
LOW |
Ensure CIFS / SMB (Tcp:3020) is not exposed to private hosts more than 32 for Azure Network Security Rule |
AC_AZURE_0272 |
Infrastructure Security |
json |
HIGH |
Ensure NetBIOS Datagram Service (Tcp:138) is not exposed to entire internet for Azure Network Security Rule |
AC_AZURE_0481 |
Infrastructure Security |
json |
HIGH |
Ensure SQL Server Analysis (Tcp:2383) is not exposed to entire internet for Azure Network Security Rule |
AC_AZURE_0439 |
Infrastructure Security |
json |
LOW |
Ensure Memcached SSL (Udp:11215) is not exposed to private hosts more than 32 for Azure Network Security Rule |
AC_AZURE_0497 |
Infrastructure Security |
json |
HIGH |
Ensure NetBIOS Datagram Service (Udp:138) is not exposed to entire internet for Azure Network Security Rule |
AC_AZURE_0478 |
Infrastructure Security |
json |
HIGH |
Ensure Prevalent known internal port (Tcp:3000) is not exposed to entire internet for Azure Network Security Rule |
AC_AZURE_0454 |
Infrastructure Security |
json |
HIGH |
Ensure MSSQL Server (Tcp:1433) is not exposed to entire internet for Azure Network Security Rule |
AC_AZURE_0511 |
Infrastructure Security |
json |
LOW |
Ensure SSH (Tcp:22) is not exposed to private hosts more than 32 for Azure Network Security Rule |
AC_AZURE_0287 |
Infrastructure Security |
json |
HIGH |
Ensure SQL Server Analysis (Tcp:2382) is not exposed to entire internet for Azure Network Security Rule |
AC_AZURE_0442 |
Infrastructure Security |
json |
MEDIUM |
Ensure Memcached SSL (Tcp:11214) is not exposed to public for Azure Network Security Rule |
AC_AZURE_0507 |