Policy: Azure > CIS v5.0 > 8 - Security Services > 8.03 - Key Vault > 8.03.07 - Ensure Public Network Access is Disabled
Configures auditing against a CIS Benchmark item.
Level: 2
Ensure that Public Network Access is disabled for Key Vaults to restrict access to the Key Vault's public endpoint.
Disabling public network access removes the Vault's public endpoint from Azure public DNS, reducing its exposure to the public internet and strengthening the network security boundary.
Targets
This policy targets the following resource types:
Primary Policy
This policy is used with the following primary policy:
Controls
Setting this policy configures this control:
Policy Specification
Schema Type | |
|---|---|
Default | |
Valid Values [YAML] |
|
Category
In Your Workspace
Developers
- tmod:@turbot/cis#/control/categories/v071406
- tmod:@turbot/azure-cisv5-0#/policy/types/r080307
- turbot graphql policy-type --id "tmod:@turbot/azure-cisv5-0#/policy/types/r080307"
- turbot graphql policy-settings --filter "policyTypeId:tmod:@turbot/azure-cisv5-0#/policy/types/r080307"
Get Policy TypeGet Policy Settings
Category URI
Policy Type URI
GraphQL
CLI