Skip to content

v1.27.0

Compare
Choose a tag to compare
@BernieWhite BernieWhite released this 30 May 16:39
· 611 commits to main since this release
c6cc2e5

What's changed since v1.26.1:

  • New features:
  • New rules:
    • Application Gateway:
    • API Management:
      • Check that APIs published in Azure API Management are on-boarded to Microsoft Defender for APIs by @BenjaminEngeset.
        #2187
      • Check that base element for any policy element in a section is configured by @BenjaminEngeset.
        #2072
    • Arc-enabled Kubernetes cluster:
      • Check that Microsoft Defender for Containers extension for Arc-enabled Kubernetes clusters is configured by @BenjaminEngeset.
        #2124
    • Arc-enabled server:
      • Check that a maintenance configuration for Arc-enabled servers is associated by @BenjaminEngeset.
        #2122
    • Container App:
      • Check that container apps has disabled session affinity to prevent unbalanced distribution by @BenjaminEngeset.
        #2188
      • Check that container apps with IP ingress restrictions mode configured is set to allow for all rules defined by @BenjaminEngeset.
        #2189
    • Cosmos DB:
    • Defender for Cloud:
    • Key Vault:
      • Check that key vaults uses Azure RBAC as the authorization system for the data plane by @BenjaminEngeset.
        #1916
    • Storage Account:
      • Check that Microsoft Defender for Storage is enabled for storage accounts by @BenjaminEngeset.
        #2225
      • Check that sensitive data threat detection in Microsoft Defender for Storage is enabled for storage accounts by @BenjaminEngeset.
        #2207
      • Check that Malware Scanning in Microsoft Defender for Storage is enabled for storage accounts by @BenjaminEngeset.
        #2206
    • Virtual Machine:
  • General improvements:
  • Updated rules:
    • API Management:
      • Updated Azure.APIM.EncryptValues to check all API Management named values are encrypted with Key Vault secrets @BenjaminEngeset.
        #2146
    • Container App:
    • Defender for Cloud:
  • Engineering:
    • Bump Microsoft.NET.Test.Sdk to 17.6.0.
      #2216
  • Bug fixes:

What's changed since pre-release v1.27.0-B0186:

  • No additional changes.

See change log.