last sync: 2024-Sep-18 17:50:24 UTC

Microsoft Managed Control 1419 - Remote Maintenance | Cryptographic Protection | Regulatory Compliance - Maintenance

Azure BuiltIn Policy definition

Source Azure Portal
Display name Microsoft Managed Control 1419 - Remote Maintenance | Cryptographic Protection
Id b6747bf9-2b97-45b8-b162-3c8becb9937d
Version 1.0.1
Details on versioning
Versioning Versions supported for Versioning: 0
Built-in Versioning [Preview]
Category Regulatory Compliance
Microsoft Learn
Description Microsoft implements this Maintenance control
Additional metadata Name/Id: ACF1419 / Microsoft Managed Control 1419
Category: Maintenance
Title: Remote Maintenance | Cryptographic Protection
Ownership: Customer, Microsoft
Description: The information system implements cryptographic mechanisms to protect the integrity and confidentiality of nonlocal maintenance and diagnostic communications.
Requirements: All nonlocal maintenance and diagnostic connections to the Azure environment follow the nonlocal access requirements as outline in Azure’s Access Control SOP and Microsoft’s Online Services Key Management Standard. Multifactor authentication is enforced using Azure-issued smart cards and PINs for nonlocal access connections via the Azure Remote Desktop Gateways and SSH. This is enforced through the configuration of the Remote Desktop servers and is audited through security monitoring tools. FIPS 140-2 TLSv1.2 encryption is the required configuration for establishing nonlocal connections to the Azure Remote Desktop Gateway and SSH.
Mode Indexed
Type Static
Preview False
Deprecated False
Effect Fixed
audit
RBAC role(s) none
Rule aliases none
Rule resource types IF (2)
Microsoft.Resources/subscriptions
Microsoft.Resources/subscriptions/resourceGroups
Compliance
The following 1 compliance controls are associated with this Policy definition 'Microsoft Managed Control 1419 - Remote Maintenance | Cryptographic Protection' (b6747bf9-2b97-45b8-b162-3c8becb9937d)
Control Domain Control Name MetadataId Category Title Owner Requirements Description Info Policy#
op.exp.10 Cryptographic key protection op.exp.10 Cryptographic key protection 404 not found n/a n/a 53
Initiatives usage
Initiative DisplayName Initiative Id Initiative Category State Type
Spain ENS 175daf90-21e1-4fec-b745-7b4c909aa94c Regulatory Compliance GA BuiltIn
History
Date/Time (UTC ymd) (i) Change type Change detail
2022-04-01 20:29:14 change Patch (1.0.0 > 1.0.1)
JSON compare
compare mode: version left: version right:
JSON
api-version=2021-06-01
EPAC