Network misconfigurations

Azure virtual machine allows direct SMB access from the Internet

Risk Level

Informational (4)

Compliance Frameworks


Server Message Block (SMB) is a communication protocol intended to provide shared access to files on a network of systems. The SMB port (445) is open on your virtual machine and allows all incoming traffic from the Internet. In order to keep security best practices, you should restrict access to be only from allowed IP addresses.
  • Recommended Mitigation

    Configure networking rule to allow incoming SMB traffic from allowed IP addresses only.