Skip to content

v1.20.0-B0085

Pre-release
Pre-release
Compare
Choose a tag to compare
@BernieWhite BernieWhite released this 25 Sep 10:22
· 907 commits to main since this release
cd17ede

What's changed since pre-release v1.20.0-B0028:

  • New rules:
    • Azure Cache for Redis:
    • App Configuration:
      • Check identity-based authentication is used for configuration stores by @pazdedav.
        #1691
    • Container Registry:
      • Check soft delete policy is enabled by @bengeset96.
        #1674
    • Defender for Cloud:
      • Check Microsoft Defender for Cloud is enabled for Containers by @jdewisscher.
        #1632
      • Check Microsoft Defender for Cloud is enabled for Virtual Machines by @jdewisscher.
        #1632
      • Check Microsoft Defender for Cloud is enabled for SQL Servers by @jdewisscher.
        #1632
      • Check Microsoft Defender for Cloud is enabled for App Services by @jdewisscher.
        #1632
      • Check Microsoft Defender for Cloud is enabled for Storage Accounts by @jdewisscher.
        #1632
      • Check Microsoft Defender for Cloud is enabled for SQL Servers on machines by @jdewisscher.
        #1632
    • Network Security Group:
      • Check AKS managed NSGs don't contain custom rules by @ms-sambell.
        #8
    • Storage Account:
  • Updated rules:
    • Important change: Updated rules, tests and docs with Microsoft Defender for Cloud by @jonathanruiz.
      #545
      • The following rules have been renamed with aliases:
        • Renamed Azure.SQL.ThreatDetection to Azure.SQL.DefenderCloud.
        • Renamed Azure.SecurityCenter.Contact to Azure.DefenderCloud.Contact.
        • Renamed Azure.SecurityCenter.Provisioning to Azure.DefenderCloud.Provisioning.
      • If you are referencing the old names please consider updating to the new names.
    • Updated documentation examples for Front Door and Key Vault rules by @lluppesms.
      #1667
    • Improved the way we check that VM or VMSS has Linux by @VeraBE
      #1704
  • General improvements:
  • Bug fixes:

See change log