Mods

Policy: Azure > CIS v4.0 > 10 - Storage Services > 10.03 - Storage Accounts > 10.03.10 - Ensure Azure Resource Manager Delete locks are applied

Configures auditing against a CIS Benchmark item.

Level: 1

Azure Resource Manager locks provide a way to lock down resources to prevent accidental or malicious deletion. Delete locks prevent users from deleting resources, which helps protect critical storage accounts from accidental deletion.

Applying delete locks to critical storage accounts ensures that they cannot be accidentally or maliciously deleted, protecting the data stored within them.

Primary Policy

This policy is used with the following primary policy:

Controls

Setting this policy configures this control:

Policy Specification

Schema Type
string
Default
Per Azure > CIS v4.0 > 10 - Storage Services > 10.03 - Storage Accounts
Valid Values [YAML]
  • Per Azure > CIS v4.0 > 10 - Storage Services > 10.03 - Storage Accounts
    
  • Skip
    
  • Check: Benchmark using attestation
    

Category

In Your Workspace

Developers