Data protection

Azure Storage Account SMB traffic is not set to 3.1.1 version only and not encrypted

Platform(s)
Compliance Frameworks
  • coppa
  • ,
  • CPRA
  • ,
  • iso_27001_2022
  • ,
  • iso_27002_2022
  • ,
  • mpa
  • ,
  • NIST 800-53
  • ,
  • pipeda

Description

Azure Files exposes settings that let you toggle the SMB protocol to be more compatible or more secure, depending on your organization's requirements. Server Message Block (SMB) 3.1.1 is the most recent version of the SMB protocol, released with Windows 10, containing important security and performance updates. Azure Files SMB 3.1.1 ships with two additional encryption modes, AES-128-GCM and AES-256-GCM, in addition to AES-128-CCM which was already supported. For more info, see https://learn.microsoft.com/en-us/azure/storage/files/files-smb-protocol?tabs=azure-portal