More Info:

Allowing public access to activity log content may aid an adversary in identifying weaknesses in the affected account’s use or configuration.

Risk Level

Low

Address

Security, Operational Maturity

Compliance Standards

CISAZURE, CBP, HITRUST

Triage and Remediation

Remediation

To remediate the misconfiguration in Azure, you can follow these steps:

  1. Open the Azure portal and navigate to the storage account that contains the container with the logs.

  2. Click on the “Containers” tab on the left-hand side of the screen.

  3. Select the container that contains the logs.

  4. Click on the “Access policy” tab on the top of the screen.

  5. Under the “Public access level” section, select “Private (no anonymous access)“.

  6. Click on the “Save” button at the top of the screen to save the changes.

  7. Verify that the container is no longer publicly accessible by trying to access it from a different browser or device.

By following these steps, you have successfully remediated the misconfiguration and ensured that the storage account container containing the logs is no longer publicly accessible.

Additional Reading: