Network misconfigurations

Azure Network Security Group have rule that allow unrestricted access from the Internet

Platform(s)
Compliance Frameworks

Description

Network security group contains rules that allow unrestricted access from the Internet - including all protocols (TCP,UDP,ICMP) and destination ports. In order to keep security best practices and decrease the risk for malicious activities, you should restrict access to be only from allowed IP addresses.
  • Recommended Mitigation

    Configure networking rules to allow incoming traffic from allowed IP addresses only.